Microsoft Azure Administrator Associate AZ-104 Practice Question
You assign the Contributor role to a user for a specific resource group named 'RG-WebApp'. The user has no other roles assigned at any other scope. What level of access does this user have?
The user has Reader permissions on the subscription and Contributor permissions on 'RG-WebApp'.
The user has Contributor permissions on the entire subscription.
The user has Contributor permissions on the 'RG-WebApp' resource group only.
The user has Contributor permissions on all resource groups within the subscription.
In Azure, role-based access control (RBAC) permissions are inherited from parent scopes down to child scopes. A role assigned at a resource group scope grants permissions only to that resource group and the resources within it. These permissions do not propagate upwards to the subscription level. Therefore, the user with the Contributor role on 'RG-WebApp' can create, manage, and delete resources only within that specific resource group. They do not have any permissions at the subscription level or in other resource groups.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What does it mean to assign a role at the resource group scope?
Open an interactive chat with Bash
What is the difference between resource group and subscription scope?
Open an interactive chat with Bash
How does Azure handle permissions inheritance?
Open an interactive chat with Bash
Microsoft Azure Administrator Associate AZ-104
Manage Azure identities and governance
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
IT & Cybersecurity Package Join Premium for Full Access