Setting on an Azure SQL server that turns off SQL authentication, leaving Entra identities as the only way to connect.
Read more: Microsoft Learn
In the Ultra Transcenders books
Each book explains Microsoft Entra-only authentication in context, with comparison tables and the common traps.
Terms in this definition
- Logical server
In Azure SQL, the parent resource for a set of databases, carrying their logins, Entra admin, firewall rules, auditing and TDE configuration. Think of it as a management boundary; it isn't an instance of SQL Server.
- SQL Server Authentication
Signing in with a password and SQL login name held in the server. MFA cannot be enforced with it.
- CONNECT
In SQL Server, the right to open a connection to a database. Fabric's equivalent is Read permission on an item, which allows connecting to a warehouse or SQL endpoint but not querying anything in it.
Related terms
- SQL Server Contributor
Built-in role that can manage databases and logical servers, including setting the Microsoft Entra admin. Switching Microsoft Entra-only authentication on or off is beyond it, though Contributor or SQL Security Manager can do so.
See Microsoft Entra-only authentication in the full glossary