From the course: Microsoft Azure Cosmos DB Developer Specialty (DP-420) Cert Prep by Microsoft Press

Unlock this course with a free trial

Join today to access over 25,500 courses taught by industry experts.

Learning objective

Learning objective

- [Instructor] Welcome to Lesson 17: Implement Security for an Azure Cosmos DB Solution. We begin this lesson by choosing between service-managed and customer-managed encryption keys. We'll also configure network-level access control for Cosmos DB, we'll configure data encryption and manage control plane access by using Azure role-based access control or RBAC. After that, we'll turn to data plane access by using Azure Active Directory, and then configure Cross-Origin Resource Sharing or CORS settings. Finally, you'll manage account keys by using Azure Key Vault, implement customer-managed keys for encryption, and implement Always Encrypted. This is a big lesson, so let's get started.

Contents