Troubleshooting ACL Issues for Azure AD Groups on Containers

Abdul 2,615 Reputation points Microsoft Vendor
2024-08-01T09:30:40.2733333+00:00

Why is access not granted to a user when added to a container's ACL via an Azure AD group?

"PS - Based on common issues that we have seen from customers and other sources, we are posting these questions to help the Azure community.""

Azure Blob Storage
Azure Blob Storage
An Azure service that stores unstructured data in the cloud as blobs.
2,934 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Abdul 2,615 Reputation points Microsoft Vendor
    2024-08-01T09:33:07.0433333+00:00

    Greetings!

    The issue arises when a user, who is part of an Azure AD group, cannot access files in a container even though the group has been added to the container's ACL. Initially, the user was granted direct ACL permissions on the container and could access files using Storage Explorer. However, after removing the individual permissions and adding the Azure AD group to the ACL, the user encountered access errors.

    Upon reviewing the error logs, it was identified that the Execute permission was missing in the ACLs. This permission is crucial for enabling access to the container's contents. To resolve this issue, add the Execute permission to the ACL and then verify the user's access again.

    Resources:

    Hope this helps. If you have any follow-up questions, please let me know. I would be happy to help.

    Please do not forget to "up-vote" wherever the information provided helps you, as this can be beneficial to other community members.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.