AZ-500 · Question #133
SIMULATION Use the following login credentials as needed: To enter your username, place your cursor in the Sign in box and click on the username below. To enter your password, place your cursor in…
The correct answer assigns the 'Virtual Machine Contributor' role to user21059868 at the RG1lod10598168 resource group scope via Access Control (IAM), which grants exactly the permissions needed to manage virtual machine properties without granting broader administrative…
Question
Exhibits
Explanation
The correct answer assigns the 'Virtual Machine Contributor' role to user21059868 at the RG1lod10598168 resource group scope via Access Control (IAM), which grants exactly the permissions needed to manage virtual machine properties without granting broader administrative rights. This satisfies the principle of least privilege because the Virtual Machine Contributor role allows management of VMs but does not grant access to the virtual network, storage accounts, or the resource group itself. Using role-based access control (RBAC) at the resource group level ensures the user can manage all VMs within that group without over-provisioning permissions.
Topics
Community Discussion
No community discussion yet for this question.





