Skip to content

Commit f8c700e

Browse files
authored
Update overview-storage-keys.md
1 parent 68ad48b commit f8c700e

File tree

1 file changed

+3
-0
lines changed

1 file changed

+3
-0
lines changed

articles/key-vault/secrets/overview-storage-keys.md

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -28,6 +28,9 @@ When you use the managed storage account key feature, consider the following poi
2828
- Only a single Key Vault object should manage storage account keys. Don't allow key management from multiple objects.
2929
- Regenerate keys by using Key Vault only. Don't manually regenerate your storage account keys.
3030

31+
> [!IMPORTANT]
32+
> Regenerating key directly in storage account breaks managed storage account setup and can invalidate SAS tokens in use and cause an outage.
33+
3134
## Service principal application ID
3235

3336
An Azure AD tenant provides each registered application with a [service principal](../../active-directory/develop/developer-glossary.md#service-principal-object). The service principal serves as the Application ID, which is used during authorization setup for access to other Azure resources via Azure RBAC.

0 commit comments

Comments
 (0)