An administrator assigns a developer the built-in Contributor role for an Azure resource group. Which of the following tasks can the developer perform within this resource group? (Select TWO.)
- Create new resources, such as virtual machines and storage accountsCevap
- Delete existing resources, such as virtual machines and storage accountsCevap
- CRestrict resource deployments to specific Azure regions
- DEnforce a requirement that all resources must have specific tags applied
Cevap
The developer can create new resources and delete existing resources within the resource group.
The Contributor role allows users to perform full resource management tasks, which include creating new resources and deleting existing resources within the resource group where they hold the role.
Adım Adım Çözüm
Anahtar Kavram
Azure Role-Based Access Control (RBAC) grants specific permissions to manage Azure resources, whereas Azure Policy enforces compliance and resource properties.