AZ-305 · Question 14 · Domain 1.4: Application Identities
You are designing an application architecture where an application running on an Azure Virtual Machine needs to retrieve database connection strings securely from Azure Key Vault.
The security team mandates that no credentials or secrets used to authenticate to the Key Vault can be stored in the VM's code or configuration files. The identity used must be tied to the lifecycle of the VM.
Which identity solution should you use?
Answer options:
User-assigned Managed Identity
System-assigned Managed Identity
Service Principal with a client secret
Service Principal with a certificate
55 questions · hints · full answers · grading