exam questions

Exam AZ-500 All Questions

View all questions & answers for the AZ-500 exam

Exam AZ-500 topic 3 question 57 discussion

Actual exam question from Microsoft's AZ-500
Question #: 57
Topic #: 3
[All AZ-500 Questions]

You have an Azure Kubernetes Service (AKS) cluster that will connect to an Azure Container Registry.
You need to use the automatically generated service principal for the AKS cluster to authenticate to the Azure Container Registry.
What should you create?

  • A. a secret in Azure Key Vault
  • B. a role assignment
  • C. an Azure Active Directory (Azure AD) user
  • D. an Azure Active Directory (Azure AD) group
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Sergi0
Highly Voted 3 years, 3 months ago
The answer is correct
upvoted 26 times
...
deegadaze1
Highly Voted 2 years, 8 months ago
In Exam
upvoted 13 times
...
zellck
Most Recent 5 months, 4 weeks ago
Selected Answer: B
B is the answer. https://learn.microsoft.com/en-us/azure/aks/cluster-container-registry-integration The AKS to ACR integration assigns the AcrPull role to the Azure Active Directory (Azure AD) managed identity associated with the agent pool in your AKS cluster.
upvoted 5 times
...
majstor86
8 months ago
Selected Answer: B
B. a role assignment Outdated. System Managed Identity-currently
upvoted 5 times
...
Ajdlfasudfo0
9 months, 2 weeks ago
outdated questions, nowadays you get a System Managed Identity
upvoted 2 times
OrangeSG
9 months ago
You are correct. An Azure Kubernetes Service (AKS) cluster requires an identity to access Azure resources like load balancers and managed disks. This identity can be either a managed identity or a service principal. By default, when you create an AKS cluster a system-assigned managed identity is automatically created. To use a service principal, you have to create one, as AKS does not create one automatically. https://learn.microsoft.com/en-us/azure/aks/use-managed-identity
upvoted 3 times
...
...
Eltooth
1 year, 7 months ago
Selected Answer: B
B is correct answer.
upvoted 2 times
...
adamsca
1 year, 10 months ago
Correct This is a duplicate Question of Q21 topic3. Slightly different wording but same.
upvoted 2 times
...
SecurityAnalyst
2 years, 2 months ago
# IN EXAM - 31/8/2021
upvoted 3 times
...
Sandomj55
2 years, 2 months ago
In Exam 8/4/2021
upvoted 2 times
...
Corpsy
2 years, 3 months ago
In exam 06/07/21
upvoted 3 times
...
sureshatt
2 years, 7 months ago
I could accept the answer, but who needs RBAC for authentication? RBAC is for authorisation. Again, trying to confuse.
upvoted 1 times
Startkabels
2 years, 6 months ago
No that is just you being autistic :D In order to successfully authenticate you need authorization no?
upvoted 1 times
cfsxtuv33
1 year, 10 months ago
First, you need to "authenticate" to the network. Once you're authenticated you will then be "authorized" to access resources on that network.
upvoted 2 times
...
babusartop17
2 years, 4 months ago
It's actually the other way around -- first authenticate and then authorize see, this is why you don't get personal...
upvoted 19 times
wooyourdaddy
1 year, 10 months ago
Preach the good word / way !!
upvoted 2 times
...
...
...
...
macco455
2 years, 7 months ago
Correct... https://docs.microsoft.com/en-us/azure/aks/kubernetes-service-principal#delegate-access-to-other-azure-resources
upvoted 5 times
...
mayenite
2 years, 9 months ago
Correct
upvoted 2 times
...
tuta
2 years, 10 months ago
repeated on same page
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago