🃏 Identity & Governance Flashcards

Review Entra ID, RBAC, and governance concepts for AZ-104.

Card 1 of 5

Question

What is the scope hierarchy for RBAC?

Click to reveal answer

Answer

Management Group → Subscription → Resource Group → Resource. Permissions are inherited downward.

Click to flip back

All Identity & Governance Flashcards

1

Q: What is the scope hierarchy for RBAC?

A: Management Group → Subscription → Resource Group → Resource. Permissions are inherited downward.

2

Q: What is an Administrative Unit?

A: A container in Entra ID that restricts administrative permissions to a defined subset of users, groups, or devices.

3

Q: What is the difference between Azure Policy and RBAC?

A: Azure Policy enforces rules on resource properties. RBAC controls who can perform actions on resources.

4

Q: What does a Delete lock do?

A: Prevents deletion of a resource but allows reading and modification.

5

Q: How do you enforce tag inheritance?

A: Use Azure Policy with the "Inherit a tag from the resource group" effect.

More AZ-104 Flashcard Decks