Microsoft Azure Developer Associate AZ-204 Practice Question

You are developing an ASP.NET Core Web API protected with the Microsoft Identity platform (v2 endpoint). Client apps will call the API either on behalf of a signed-in user (delegated flow) or as a daemon service (client-credentials flow). The API must programmatically verify the permission conveyed in the token. Which claim should the API evaluate in each scenario?

  • Delegated flow - check the scp (scope) claim; client-credentials flow - check the roles claim.

  • Delegated flow - check the aud claim; client-credentials flow - check the appid claim.

  • Delegated flow - check the groups claim; client-credentials flow - check the scope claim.

  • Delegated flow - check the roles claim; client-credentials flow - check the scp (scope) claim.

Microsoft Azure Developer Associate AZ-204
Implement Azure security
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot