Microsoft Azure AI Engineer Associate AI-102 Practice Question

Your company is containerizing a line-of-business application in Azure Kubernetes Service (AKS). The application must call an Azure AI Foundry Service endpoint at runtime, but security standards forbid embedding or storing access keys. All calls must be authenticated through Azure AD and credentials must rotate automatically. What should you configure to satisfy these requirements?

  • Configure Azure AD workload identity by assigning a user-assigned managed identity to the AKS cluster and granting it the Cognitive Services User role on the Azure AI Foundry resource.

  • Enable the AI Foundry service firewall and allow traffic only from the AKS virtual network.

  • Create a shared access signature (SAS) token for the AI Foundry endpoint and distribute it to the application at deployment time.

  • Generate an API key for the AI Foundry resource, store the key in Azure Key Vault, and inject it into the pods as an environment variable.

Microsoft Azure AI Engineer Associate AI-102
Plan and manage an Azure AI solution
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot