Pre-Winter Sale Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: ac4s65

You have an Azure subscription named Sub1 that contains multiple virtual machines and an Azure...

You have an Azure subscription named Sub1 that contains multiple virtual machines and an Azure key vault named KV1.

Each virtual machine has a system-assigned managed identity. Sub1 has Microsoft Defender for Servers enabled. Defender for Servers has agentless scanning enabled.

Some virtual machines use managed disks that are encrypted by using customer-managed keys stored in KV1.

You discover that the affected virtual machines fail to return agentless scanning results in Microsoft Defender for Cloud.

You need to ensure that agentless scanning can analyze the virtual machines.

What should you do?

A.

Assign each virtual machine managed identity the Key Vault Reader role for KV1.

B.

Assign the scanning service the Key Vault Secrets User role for KV1.

C.

Enable Microsoft Defender for Key Vault for Sub1.

D.

Enable just-in-time (JIT) VM access for the affected virtual machines.

E.

Assign the scanning service the Key Vault Crypto Service Encryption User role for KV1

SC-500 PDF/Engine
  • Printable Format
  • Value of Money
  • 100% Pass Assurance
  • Verified Answers
  • Researched by Industry Experts
  • Based on Real Exams Scenarios
  • 100% Real Questions
buy now SC-500 pdf
Get 65% Discount on All Products, Use Coupon: "ac4s65"