You need to provide VM1 with secure access to a database on SQL1 by using a contained database user. Which action should you perform?
Choose an answer
Tap an option to check your answer.
Correct answer: Enable a managed identity on VM1..
Why this is the answer
Enabling a managed identity on VM1 is the correct action because managed identities provide an automatically managed identity in Azure Active Directory for applications to use when connecting to resources that support Azure AD authentication. This eliminates the need for developers to manage credentials. SQL1, when configured with Azure AD authentication, can then grant VM1's managed identity access to the database using a contained database user. Creating a secret or key in KV1 (Key Vault) would involve managing credentials, which a managed identity aims to avoid. Configuring a service endpoint on SQL1 enhances network security by keeping traffic within the Azure backbone but doesn't directly address the secure authentication of VM1 to the database using a contained database user.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed