🔥 40% Off Crucial Exams Memberships — This Week Only

3 days, 11 hours remaining!

Microsoft DevOps Engineer Expert AZ-400 Practice Question

Your organization hosts multiple repositories on GitHub Enterprise Cloud. You are authoring a workflow in repo "finance-app" that must create a pull request in repo "security-policies" located in the same organization. Organizational policy forbids classic or fine-grained personal access tokens and requires that any credential be short-lived (≤1 hour) and centrally revocable by administrators. What is the most appropriate authentication mechanism to use in the workflow to satisfy these constraints?

  • Store a classic personal access token as an organization secret and reference it in the workflow.

  • Create a fine-grained personal access token scoped to both repositories and add it as a repository secret.

  • Use the default GITHUB_TOKEN provided to the workflow run.

  • Generate an installation access token for a GitHub App that has the required repository permissions and use it within the workflow.

Microsoft DevOps Engineer Expert AZ-400
Develop a security and compliance plan
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot