exam questions

Exam AZ-500 All Questions

View all questions & answers for the AZ-500 exam

Exam AZ-500 topic 3 question 6 discussion

Actual exam question from Microsoft's AZ-500
Question #: 6
Topic #: 3
[All AZ-500 Questions]

SIMULATION -
You need to prevent administrative users from accidentally deleting a virtual network named VNET1. The administrative users must be allowed to modify the settings of VNET1.
To complete this task, sign in to the Azure portal.

Show Suggested Answer Hide Answer
Suggested Answer: See the explanation below.
Locking prevents other users in your organization from accidentally deleting or modifying critical resources, such as Azure subscription, resource group, or resource.
Note: In Azure, the term resource refers to an entity managed by Azure. For example, virtual machines, virtual networks, and storage accounts are all referred to as Azure resources.
1. In the Settings blade for virtual network VNET, select Locks.

2. To add a lock, select Add.

3. For Lock type select Delete lock, and click OK
Reference:
https://docs.microsoft.com/en-us/azure/azure-resource-manager/resource-group-lock-resources

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
STomar
Highly Voted 3 years, 9 months ago
Delete lock should be applied as the ask is - Admin user should not be able to delete the resource. Delete lock = User can read or modify a resource, however cannot delete the same.
upvoted 10 times
...
pentium75
Most Recent 9 months, 1 week ago
"Prevent from accidental deletion" is EXACTLY what delete lock is for.
upvoted 1 times
...
Bryan09
1 year, 12 months ago
it seems both actions might be a solution. Locks affect everyone including admins!
upvoted 1 times
...
Anarchira
2 years ago
what about this? Go to the Azure portal and open the VNET1 resource page. Click on the "Access control (IAM)" tab on the left-hand menu. Click on the "+ Add" button to add a new role assignment. Select the "Virtual Network Contributor" role from the list of available roles. In the "Select" field, enter the name of the administrative user or group that you want to add the role assignment to. Click on the "Save" button to add the new role assignment. By assigning the "Virtual Network Contributor" role to the administrative users, they will be able to modify the settings of the virtual network but will not be able to delete it. This helps prevent accidental deletions of the resource.
upvoted 3 times
...
eroms
3 years, 11 months ago
Correct. Read-only option, as the name implies only allows for read only and not modify.
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago