question

anilkumar-3187 avatar image
0 Votes"
anilkumar-3187 asked anilkumar-3187 commented

Question on private endpoint and Private DNS Zone

Hello,

I am unable to find private endpoint for my storage account in Azure portal. For Azure SQL DB, private endpoint option is there in portal, although I could configure private endpoint for storage account using Private link in portal.

It seems to me Private DNS Zones are created separately for each resource type. If you configure private link for storage/blob and SQL database - two private links would be created. Private DNS Zone are global in nature which means they can have azure resources from multiple virtual networks in your subscription. Just wanted to clarify.

Appreciate your insightful response, thank you !!

azure-storage-accountsazure-dnsazure-private-link
· 2
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

@anilkumar-3187 For better understanding the issue, can you please elaborate bit more on your query? May I also know what are you trying to accomplish?

I didn't quite get it.
"Private DNS Zone are global in nature which means they can have azure resources from multiple virtual networks in your subscription. --> Private DNS Zones are not global in nature. They have to be linked to the VNet so that the resources in the VNet can leverage the Private DNS Zone"

0 Votes 0 ·

Thank you @Sumarigo-MSFT for your response.

I had put up this question for conceptual clarity.
First question was why private endpoint option is available Azure SQL DB but not for Storage account in Azure portal.

Second question was if I have three VNets in three Azure regions and try to create private endpoint for there Azure SQL databases, how many private DNS zone would be created in this case? If just one private DNS zone is created, I can assume private DNS zone is global in nature and is not tied a particular region.

Hope you get more clarity now, I am looking forward for your response.

Thank you!!



0 Votes 0 ·

1 Answer

SumanthMarigowda-MSFT avatar image
0 Votes"
SumanthMarigowda-MSFT answered anilkumar-3187 commented

@anilkumar-3187 Firstly, apologies for the delay in responding here !
Private endpoint is available for Storage account: https://docs.microsoft.com/en-us/azure/private-link/tutorial-private-endpoint-storage-portal
Private DNS Zone is global region, but must be linked to the Virtual Networks from where you want the connectivity.

Please let us know if you have any further queries. I’m happy to assist you further.


Please do not forget to 143752-image.png and “up-vote” wherever the information provided helps you, this can be beneficial to other community members.



image.png (1.1 KiB)
· 1
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

thank you @Sumarigo-MSFT for taking time to help - Appreciate it !!

StayBlessednHappy

0 Votes 0 ·