Managing network access for managed disks

Azure user 60 Reputation points
2024-08-29T11:24:34.9066667+00:00

Hi,

What happens if I set a VM's managed disk network settings to 'Disable public and private access' when it's in a VNet that's only accessible through a private IP address? Will the VM break, or are there any features that won't be available with the disk like backup&restore / re-size / move data inside vm? I'm trying to figure out what is the real difference between Disable public and private access and Disable public access and enable private access

Azure Virtual Network
Azure Virtual Network
An Azure networking service that is used to provision private networks and optionally to connect to on-premises datacenters.
2,509 questions
Azure Disk Storage
Azure Disk Storage
A high-performance, durable block storage designed to be used with Azure Virtual Machines and Azure VMware Solution.
644 questions
0 comments No comments
{count} votes

Accepted answer
  1. TP 98,086 Reputation points
    2024-08-29T16:35:19.9766667+00:00

    Hi,

    If you select Disable public and private access option the VM will still work fine, as well as backup/restore, etc., will all still work as normal.

    The network access options relate to exporting/importing managed disks.

    • Enable public access from all networks = importing/exporting can occur regardless of if the remote network is public or private
    • Disable public access and enable private access = importing/exporting needs to occur via private link (disk access resource)
    • Disable public and private access = importing/exporting isn't allowed

    NOTE: A Secure Access Signature (SAS) needs to be generated before an import/export is allowed, regardless of the network being public or private.

    Please click Accept Answer and upvote if the above was helpful.

    Thanks.

    -TP

    0 comments No comments

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.