You have an Azure subscription that contains a storage account named storage1.
You plan to use conditions when assigning role-based access control (RBAC) roles to storage1.
Which storage1 services support conditions when assigning roles?
You have an Azure subscription that contains a storage account named storage1.
You plan to use conditions when assigning role-based access control (RBAC) roles to storage1.
Which storage1 services support conditions when assigning roles?
Conditions for role-based access control (RBAC) in Azure can be applied to Blob storage (containers) and Queue storage services. These services support the use of Azure Active Directory (Azure AD) authentication, which is necessary for implementing RBAC with conditions. File shares rely on the SMB protocol and do not use Azure AD for authentication, and tables have their own authentication mechanisms which do not support conditions in the same way.
Anybody else just slogging through this dumps set? AZ 104 has got to be one of the most exhausting examinations to understand just because of the wide scope of things it covers as well as the specific questions on very specific products and scenarios. Good luck to everyone taking this exam.
Yes. Crazy thing is I already passed Az-305. This exam is much more laborious and filled with rote information.
agreed. correcta
Yeap, this has def been the most exhausting. Thought it was just me. How many times did you lot go through all the questions?
Couldn't agree more on this. Microsoft needs to divide Az-104 into two parts.
Need to extend Exam time also. Since I am not native English speaker, sometimes it's difficult to understand exam questions.
The answer is container and queue
Conditions can be added to Containers and Queues. https://learn.microsoft.com/en-us/azure/role-based-access-control/conditions-format#actions
I can view the dumps until 270 questions, does anyone has PDF file for full 533 questions ?
As of my last update in September 2021, Azure Active Directory (Azure AD) conditions in role-based access control (RBAC) assignments are generally used for fine-grained access control. These conditions can be based on attributes like user membership, IP address range, device state, and others. However, when it comes to Azure Storage services, not all of them fully support Azure AD-based authentication. Blob containers and queues do support Azure AD authentication, while file shares rely primarily on the SMB protocol (which doesn't use Azure AD for authentication) and tables have their own authentication mechanisms. Therefore, when considering the Azure storage services that support conditions in RBAC assignments based on Azure AD capabilities: E. containers and queues only is the correct answer.
containers and queues. "Currently, conditions can be added to built-in or custom role assignments that have blob storage or queue storage data actions. " https://learn.microsoft.com/en-us/azure/role-based-access-control/conditions-overview#where-can-conditions-be-added
why ET admins doesn't revisit and provide right answer in Reveal solution column ?
This question was in exam 15/01/24
what is the answer?
qual a resposta?
Container n queue. I know all of you agree with container, but confuse with Queue. Let me clear it. Imagine you have message store from one app and further need to dequeue to another app. In this case you need to provide RBAC to App service to access the Queue!
Open a storage account in the Azure Portal. Click the Access Control (IAM) blade Click + Add Click Add role assignment Enter "Blob" or "Queue" in the search box Click on one of the built-in roles. Conditions(Optional) tab will appear. Enter "Table" in the search box, select a built in role. Conditions(Optional) tab will NOT appear.
Thank you man!
> Currently, conditions can be added to built-in or custom role assignments that have blob storage or queue storage data actions because of: https://learn.microsoft.com/en-us/azure/role-based-access-control/conditions-overview#where-can-conditions-be-added
This question was on my exam today on 11/14/2023.
how many questions from the dump were on the exam?
Just make sure you know & understand all the questions and you wont have a problem ;)
from previous ET MS dumps i used, the amount is usually ~90-95%
Correct answer is Blob & Queue https://learn.microsoft.com/en-us/azure/role-based-access-control/conditions-overview
E is correct
Currently, Azure attribute-based access control (Azure ABAC) is generally available (GA) for controlling access only to Azure Blob Storage, Azure Data Lake Storage Gen2, and Azure Queues using request and resource attributes in the standard storage account performance tier. It is either not available or in PREVIEW for other storage account performance tiers, resource types, and attributes. For complete feature status information of ABAC for Azure Storage, see Status of condition features in Azure Storage. https://learn.microsoft.com/en-us/azure/storage/blobs/storage-auth-abac-examples?tabs=portal-visual-editor
How do you assign conditions to container? I only see Policy to be assigned when I'm at the container.
E. containers and queues only is the correct answer. Please check out @TechwithJaspal's video on Youtube. He explains very well. Video: https://www.youtube.com/watch?v=ef87Qun5wBU&list=PLScJxIJb83bc6vblZkn77dMjF6oTxh53y&index=2 Question #139
no explaination, it just only reading
E. I failed this exam a couple of days ago on my first attempt. The tips I will comment here probably will be go through this dump case study. In real exam, it took me 40min to finish case study and it was the first question in this exam. Feeling like get myself smashed from beginning.
second tip: Get contributor access to save self sometime
Third tip: Read question, understand, and yeah - memorize some, like the bloody key question