Câu 25: SC-500: Implementing End-to-End Security Controls for Cloud and AI Workloads
You have an Azure Storage account named storage1 that hosts a blob container named container1. You have an Azure Functions app named app1 that uses a managed identity. You need to configure app1 to read, write, and delete blobs in container1. The solution must follow the principle of least privilege. What should you d…
Nội dung câu hỏi
You have an Azure Storage account named storage1 that hosts a blob container named container1. You have an Azure Functions app named app1 that uses a managed identity. You need to configure app1 to read, write, and delete blobs in container1. The solution must follow the principle of least privilege. What should you do?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. Assign the Storage Account Contributor role to the managed identity of app1 at the scope of storage1.
- B. Assign the Storage Blob Delegator role to the managed identity of App1 at the scope of container1.
- C. Assign the Owner role to the managed identity of App1 at the scope of container1.
- D. Assign the Storage Blob Data Contributor role to the managed identity of App1 at the scope of container1. — đáp án hiện tại
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.