ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 97 - AZ-720 discussion

Report
Export

HOTSPOT

A company has an Azure Active Directory (Azure AD) tenant. You are assigned the Owner role-based access control (RBAC) role of an Azure resource group named RG1. An administrator grants a user named User1 the Contributor RBAC role for RG1. User1 receives an authorization error when attempting to create a Cosmos DB account in RG1. The administrator verifies that they can create a Cosmos DB account in RG1.

You need to troubleshoot the issue.

What should you do?


Question 97
Correct answer: Question 97

Explanation:

BOX 1 = Review the deny assignments of RG1.

To determine the cause of the issue where User1 receives an authorization error when attempting to create a Cosmos DB account in RG1 despite being granted the Contributor RBAC role for RG1, you should review the deny assignments of RG1. Deny assignments are used to explicitly deny access to a user or group, even if they have been granted access through another role assignment

BOX 2 = Configure RBAC role assignments.

To resolve the issue where User1 receives an authorization error when attempting to create a Cosmos DB account in RG1 despite being granted the Contributor RBAC role for RG1, you should configure RBAC role assignments. Role-based access control (RBAC) is used to manage access to Azure resources. You can use RBAC to assign roles to users, groups, and service principals at different scopes.

asked 02/10/2024
gdgd gdgd
25 questions
User
0 comments
Sorted by

Leave a comment first