Practice Test 3 | Microsoft Azure Security Technologies | AZ-500 | Dumps | Mock Test
You have a resource group in Azure named whizlab-rg. You need to ensure that no one has the ability to delete virtual networks from the resource group. The IT administrators should be able to add subnets to the virtual network. Which of the following would you implement to fulfill this requirement?
A. A read-only lock at the resource group level
B. A delete lock at the resource group level
C. An Azure policy assigned at the resource group level
D. An Azure policy assigned at the subscription level
Answer – B
You can use a delete-lock to ensure no resources get deleted from the resource group level.
The Microsoft documentation mentions the following.
Option A is incorrect since applying a read-only lock would then not allow one to add subnets to the virtual network.
Options C and D are incorrect since Azure policies can’t be used to prevent the deletion of resources.
For more information on locking resources, one can visit the below URL-
https://docs.microsoft.com/en-us/azure/azure-resource-manager/resource-group-lock-resources
Comments are closed, but trackbacks and pingbacks are open.