DRAG DROP
You manage an application deployed to a cloud service that utilizes an Azure Storage account.
The cloud service currently uses the primary access key.
Security policy requires that all shared access keys are changed without causing application downtime.
Which three steps should you perform in sequence? To answer, move the appropriate actions from the list
of actions to the answer area and arrange them in the correct order.
Answer: See the explanation
Box 2:
1. Update the connection strings in your application code to reference the secondary access key of
the storage account.
2. Regenerate the primary access key for your storage account. In the Management Portal, from the
dashboard or theConfigure page, click Manage Keys. Click Regenerate under the primary access
key, and then click Yes to confirm you want to generate a new key.
3. Update the connection strings in your code to reference the new primary access key.
4. Regenerate the secondary access key.
There are a few answers – all Shared access keys are to be changed and no downtime , the answer does not change the Secondary key. So…
1 – Regenerate secondary access key – No downtime , app still using primary key
2 – update the cloud service with the secondary access key- No downtime, app using the secondary key
3 – Regenerate Primary Key
4- update the cloud service with the primary access key
Sure 100% from valid practice exam
1- Regenerate the secondary access key
2- update the cloud service with the secondary access key
3- Regenerate primary access key
I agree with Ahmed here – there is no stated requirement to keep using the primary key for the cloud service so the extra step in not necessary. The question even says it is using the primary key currently, implying that it could have been the secondary, so there is no convention to keep it using the primary whenever possible.
The explanation leaves the secondary key unchanged if you look at the diagram while the text has an extra step.