Home » Microsoft » AZ-300 v.2 » What can you do from the Azure portal?
You have a resource group named RG1. RG1 contains an Azure Storage account named storageaccount1 and a virtual machine named VM1 that runs Windows Server 2016.
Storageaccount1 contains the disk files for VM1.
You apply a ReadOnly lock to RG1.
What can you do from the Azure portal?
A. Start VM1
B. Upload a blob to storageaccount1
C. View the keys of storageaccount1
D. generate an automation script for RG1
Correct Answer: C
Explanation/Reference:
Explanation:
ReadOnly allows authorized users to read a resource, but they can’t delete or update the resource. Applying this lock is similar to restricting all authorized users to the permissions granted by the Reader role.
References: https://docs.microsoft.com/en-us/azure/azure-resource-manager/resource-group-lock-resources
Correct is D – even the reference stated says that! “A read-only lock on a storage account prevents all users from listing the keys. The list keys operation is handled through a POST request because the returned keys are available for write operations.”
No, you can’t see the keys,
Correct option is D