SC-300 · Question #426
Hotspot Question You have a Microsoft 365 E5 subscription that contains two attribute sets named Set1 and Set2. The subscription contains the users shown in the following table. You have the custom…
The correct answer is User1 can read the contents of blob3. = No; User1 can read the contents of blob2. = Yes; User2 can read the contents of blob1. = Yes. User3 has the Attribute Assignment Reader role (implied by the scenario context), which grants read access to custom security attribute values across all users, making statement 3 'Yes'. User1 cannot modify Secure1's configuration because modifying attribute definitions…
Question
Exhibits
Answer Area
- User1 can read the contents of blob3.No
- User1 can read the contents of blob2.Yes
- User2 can read the contents of blob1.Yes
How the community answered
(2 responses)- Yes|No|Yes50% (1)
- Yes|Yes|No50% (1)
Explanation
User3 has the Attribute Assignment Reader role (implied by the scenario context), which grants read access to custom security attribute values across all users, making statement 3 'Yes'. User1 cannot modify Secure1's configuration because modifying attribute definitions requires the Attribute Definition Administrator role scoped to Set1 (where Secure1 resides), and User1 lacks this role. User2 is assigned the Attribute Definition Administrator role scoped only to Set1, which allows managing attribute definitions in Set1 but does NOT grant the ability to view attribute values - viewing values requires the Attribute Assignment Reader or Attribute Assignment Administrator role; additionally, Secure2 belongs to Set2, outside User2's scope entirely.
Topics
Community Discussion
No community discussion yet for this question.

