exam questions

Exam SC-300 All Questions

View all questions & answers for the SC-300 exam

Exam SC-300 topic 2 question 47 discussion

Actual exam question from Microsoft's SC-300
Question #: 47
Topic #: 2
[All SC-300 Questions]

You have an Azure subscription that contains a user named User1.

You need to meet the following requirements:

• Prevent User1 from being added as an owner of newly registered apps.
• Ensure that User1 can manage the application proxy settings.
• Ensure that User1 can register apps.
• Use the principle of least privilege.

Which role should you assign to User1?

  • A. Application developer
  • B. Cloud application administrator
  • C. Service support administrator
  • D. Application administrator
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
doch
Highly Voted 1 year, 9 months ago
Selected Answer: D
Application Administrator is correct. Application Administrator = Can create and manage all aspects of app registrations and enterprise apps. Cloud Application Administrator = Can create and manage all aspects of app registrations and enterprise apps ***except App Proxy***. Service Support Administrator = Can read service health information and manage support tickets. Application Developer = Can create application registrations independent of the 'Users can register applications' setting. https://learn.microsoft.com/en-us/azure/active-directory/roles/permissions-reference
upvoted 9 times
...
Halwagy
Highly Voted 1 year, 9 months ago
Selected Answer: D
Correct Answer given
upvoted 5 times
...
baz
Most Recent 9 months, 2 weeks ago
D. Application Administrator - other roles can manage Application Proxy settings
upvoted 2 times
...
Shena2021
1 year, 1 month ago
A. Application developer This role provides the necessary permissions for managing application proxy settings and registering apps, while it doesn't grant the owner role, aligning with the principle of least privilege preventing User1 from being added as an owner of newly registered apps
upvoted 3 times
...
EmnCours
1 year, 2 months ago
Selected Answer: D
D. Application administrator
upvoted 2 times
...
dule27
1 year, 4 months ago
Selected Answer: D
D. Application administrator
upvoted 2 times
...
dejo
1 year, 8 months ago
How can you prevent User1 from being added as the owner of newly created applications if you grant him the application administrator role? As User1 should be able to register applications, when he does that, he will automatically be assigned the owner role of those apps.
upvoted 3 times
Studytime2023
11 months ago
https://learn.microsoft.com/en-us/entra/identity/role-based-access-control/permissions-reference#application-administrator
upvoted 1 times
...
dobriv
1 year, 8 months ago
From the doch's link : Application Administrator Users in this role can create and manage all aspects of enterprise applications, application registrations, and application proxy settings. Note that users assigned to this role are not added as owners when creating new application registrations or enterprise applications. Application Developer Users in this role can create application registrations when the "Users can register applications" setting is set to No. This role also grants permission to consent on one's own behalf when the "Users can consent to apps accessing company data on their behalf" setting is set to No. Users assigned to this role are added as owners when creating new application registrations. D is the right one.
upvoted 12 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago