CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 41: AI-200: Developing AI Cloud Solutions on Azure

You are developing an AI-powered API that retrieves connection strings and API keys from Azure Key Vault. You must configure a solution that provides the following security functionality:The API must authenticate to Key Vault without storing credentials in any application configuration files. The identity used by the…

Nội dung câu hỏi

You are developing an AI-powered API that retrieves connection strings and API keys from Azure Key Vault. You must configure a solution that provides the following security functionality:The API must authenticate to Key Vault without storing credentials in any application configuration files. The identity used by the API must have only the minimum permissions necessary to read secrets. The configuration must minimize the blast radius if an identity or credential is compromised. You need to implement a secure access strategy for the AP I. Which two actions should you perform? Each correct answer presents part of the solution.NOTE: Each correct selection is worth one point.

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. Assign the Key Vault Administrator role at subscription scope.
  2. B. Grant the Key Vault Secrets User role at vault scope. — đáp án hiện tại
  3. C. Use system-assigned managed identity. — đáp án hiện tại
  4. D. Store a secret value in Azure App Configuration.

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề