Prerequisites to Create a Microsoft Azure Data Lake Storage Gen2 Connection

Prerequisites to Create a Microsoft Azure Data Lake Storage Gen2 Connection

Overview

Overview

You can use Microsoft Azure Data Lake Storage Gen2 Connector to connect to Microsoft Azure Data Lake Storage Gen 2 using Azure Active Directory (AAD) principal-based authentication.
Before you create a Microsoft Azure Data Lake Storage Gen2 connection, complete the following prerequisite tasks:
  1. Create a storage account to use with Microsoft Azure Data Lake Storage Gen2 and enable
    Hierarchical namespace
    in the Azure portal.
    You can use role-based access control or access control lists to authorize the users to access the resources in the storage account.
    • Role-based access control
      If you use role-based access control, assign the Contributor role or Reader role to the users.
      The contributor role grants you full access to manage all resources in the storage account, but does not allow you to assign roles.
      The reader role allows you to view all resources in the storage account, but does not allow you to make any changes.
      To add or remove role assignments, you must have write and delete permissions, such as an Owner role.
    • Access control lists
      If you use access control lists, you can provide read, write, and execute permissions to each directory and file for users.
  2. Create a Blob container in the storage account.
  3. Register an application in Azure Active Directory to authenticate users to access the Microsoft Azure Data Lake Storage Gen2 account.
    You can use role-based access control or access control lists to authorize the application.
    • Role-based access control
      If you use role-based access control, assign the Storage Blob Data Contributor or Storage Blob Data Reader role to the application.
      The Storage Blob Data Contributor role lets you read, write, and delete Azure Storage containers and blobs in the storage account.
      The Storage Blob Data Reader role lets you only read and list Azure Storage containers and blobs in the storage account.
    • Access control lists
      If you use access control lists, you can provide read, write, and execute permissions to each directory and file in the container.
For more information about Microsoft Azure Data Lake Storage Gen2 Connector, see the
Informatica Cloud® Data Integration Microsoft Azure Data Lake Storage Gen2 Connector User Guide
.

0 COMMENTS

We’d like to hear from you!