Kept on the target resource, this record tracks a private endpoint's approval state: Pending, Approved, Rejected or Disconnected. Requests from someone without permission on the resource (another tenant, say) wait as Pending for the owner's approval.
Read more: Microsoft Learn
In the Ultra Transcenders books
Each book explains Private endpoint connection in context, with comparison tables and the common traps.
Terms in this definition
- Private endpoint
A network interface in your subnet whose private IP leads, through Private Link, to a single instance of a service. Peered VNets and on-premises networks (via ExpressRoute or VPN) can use it, after which public access can be switched off.
- State
A parameter in OAuth that carries custom data through the authorisation flow and back, as with the "Support state parameter" option in APIM.
- Tenant
A trusted, dedicated Microsoft Entra ID instance that stores the users, groups and app registrations of one organisation. A subscription trusts only a single tenant, although a tenant can be trusted by several subscriptions.
- Full control
Gives every right over protected content, EXTRACT included, plus the ability to alter or strip the encryption. Owners and the Rights Management issuer always hold it.
Related terms
- LinkID
Number that identifies a private endpoint connection. It travels in the TCP Proxy v2 header so that the provider of a Private Link service can distinguish its consumers.
- Private Link service alias
When you create a Private Link service, Azure gives it a read-only name that is unique worldwide. The provider passes this to consumers, who use it, or the resource ID, to request a private endpoint connection.