Azure Buil-t-in policy name: Keys should not be active for longer than the specified number of day
Description: Specify the number of days that a key should be active. Keys that are used for an extended period of time increase the probability that an attacker could compromise the key. As a good security practice, make sure that your keys have not been active longer than two years.
Reference
Azure Policy built-in definitions for Key Vault
https://learn.microsoft.com/en-us/azure/key-vault/policy-reference
D is the answer.
https://learn.microsoft.com/en-us/azure/key-vault/general/azure-policy#lifecycle-of-keys
With lifecycle management built-ins you can flag or block keys that do not have an expiration date, get alerts whenever delays in key rotation may result in an outage, prevent the creation of new keys that are close to their expiration date, limit the lifetime and active status of keys to drive key rotation, and preventing keys from being active for more than a specified number of days.
https://learn.microsoft.com/en-us/azure/key-vault/general/azure-policy?tabs=certificates
You want to improve the security posture of your company by implementing requirements around minimum key sizes and maximum validity periods of certificates in your company's key vaults but you don't know which teams will be compliant and which are not.
Manage certificates that are within a specified number of days of expiration
Your service can experience an outage if a certificate that is not being adequately monitored is not rotated prior to its expiration. This policy is critical to making sure that your certificates stored in key vault are being monitored. It is recommended that you apply this policy multiple times with different expiration thresholds, for example, at 180, 90, 60, and 30-day thresholds. This policy can be used to monitor and triage certificate expiration in your organization.
upvoted 3 times
...
This section is not available anymore. Please use the main Exam Page.AZ-500 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
OrangeSG
Highly Voted 10 months, 1 week agoAzureJobsTillRetire
Highly Voted 10 months, 4 weeks agozellck
Most Recent 7 months, 1 week agoCristoicach91
8 months, 3 weeks agomajstor86
9 months, 1 week agoAjdlfasudfo0
10 months, 3 weeks ago