Skip to content

Conversation

@yihezkel
Copy link
Contributor

@yihezkel yihezkel commented May 4, 2025

Event Grid doesn't support using Managed Identity in the trusted service flow described here. There's an ICM where a customer was successfully using Managed Private Endpoint in their Event Grid flow, and when they removed that MPE in favor of a MI (per this doc), the storage account stopped trusting their Kusto Event Grid connection.

The other Kusto flows that connect to storage, such as native ingestion, do support MI.

Event Grid is flighting via feature flag to support the trusted flow via MI, and so should be supported in the near future. Therefore, we made a note internally that once that process completes, we'll remove from this doc the exception we're adding now.

Thank you for contributing to Kusto documentation

Please add a brief comment outlining the purpose of this PR. Add links to any relevant references such as DevOps work items.

Make sure you've done the following:

  1. Acrolinx: Make sure your Acrolinx score is at least 80 (higher is better) and with 0 spelling issues.

  2. Successful build: Review the build status to make sure all files are green (Succeeded) and there are no errors, warnings, or suggestions.

  3. Preview the pages: Click each Preview URL link, scan the entire page looking for formatting issues, in particular the parts you edited.

  4. Check the Table of Contents: If you're adding a new markdown file, make sure it is linked from the table of contents.

  5. Sign off: Once the PR is finalized, add a comment with #sign-off . If you need to cancel the sign-off, add a comment with #hold-off.

    NOTE: Signing off means the document can be published at any time.

Next steps

  • All PRs to this repository are reviewed and merged by a human. Automatic merge is disabled on this repository for PRs, even with the qualifies-for-auto-merge label.
  • Once all feedback on the PR is addressed, the PR will be merged into the main branch.

Learn more about how to contribute

Event Grid doesn't support using Managed Identity in the trusted service flow described here.
There's an ICM where a customer was successfully using Managed Private Endpoint in their Event Grid flow, and when they removed that MPE in favor of a MI (per this doc), the storage account stopped trusting their Kusto Event Grid connection.

The other Kusto flows that connect to storage, such as native ingestion, do support MI.

Event Grid is flighting via feature flag to support the trusted flow via MI, and so should be supported in the near future. Therefore, we made a note internally that once that process completes, we'll remove from this doc the exception we're adding now.
@prmerger-automator
Copy link
Contributor

@yihezkel : Thanks for your contribution! The author(s) and reviewer(s) have been notified to review your proposed change.

@learn-build-service-prod
Copy link
Contributor

Learn Build status updates of commit d26e1aa:

✅ Validation status: passed

File Status Preview URL Details
data-explorer/security-network-managed-private-endpoint-create.md ✅Succeeded

For more details, please refer to the build report.

For any questions, please:

@yihezkel yihezkel changed the title Update security-network-managed-private-endpoint-create.md Indicate trusted flows from Kusto to Storage Account don't yet work for Event Grid data connections May 4, 2025
@ttorble
Copy link
Contributor

ttorble commented May 5, 2025

@yihezkel did you intend to open this PR in the private repo? It looks like you have access to the private repo, and if so, you should use that for content updates. I'll leave this PR open in case @shsagir wants to review it here. If you decide to open a new PR in the private repo, please close this PR. Thanks.

@shsagir

Can you review the proposed changes?

IMPORTANT: When the changes are ready for publication, adding a #sign-off comment is the best way to signal that the PR is ready for the review team to merge.

#label:"aq-pr-triaged"
@MicrosoftDocs/public-repo-pr-review-team

@prmerger-automator prmerger-automator bot added the aq-pr-triaged tracking label for the PR review team label May 5, 2025
@ktalmor
Copy link
Contributor

ktalmor commented May 20, 2025

#sign-off

@prmerger-automator
Copy link
Contributor

Invalid command: '#sign-off'. Only the assigned author of one or more file in this PR can sign off. @shsagir

@shsagir
Copy link
Collaborator

shsagir commented May 20, 2025

#sign-off

@learn-build-service-prod
Copy link
Contributor

Learn Build status updates of commit c52ac81:

✅ Validation status: passed

File Status Preview URL Details
data-explorer/security-network-managed-private-endpoint-create.md ✅Succeeded

For more details, please refer to the build report.

For any questions, please:

@Court72 Court72 merged commit d2b7203 into MicrosoftDocs:main May 20, 2025
3 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants