Azure
Enable one runtime service principal for Azure Blob Storage backups and restores.
Create a Microsoft Entra service principal with Blob data access scoped to the required storage account and container. Configure the API process:
Restart the API. Towbar shows Azure Blob Storage only when every enabled value is valid and never stores or returns the service-principal secret. Confirm permissions with a real resource backup and restore. Rotate the secret in the environment, recreate the API container, verify an operation, and then revoke the previous secret.
Last modified on September 9, 2026
