New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Microsoft AZ-140 Exam - Topic 4 Question 3 Discussion

Actual exam question for Microsoft's AZ-140 exam
Question #: 3
Topic #: 4
[All AZ-140 Questions]

You have a Windows Virtual Desktop host pool named Pool1 and an Azure Storage account named Storage1.

Storage1 stores FSLogix profile containers in a share folder named share1.

You create a new group named Group1. You provide Group1 with permission to sign in to Pool1.

You need to ensure that the members of Group1 can store the FSLogix profile containers in share1. The solution must use the principle of least privilege.

Which two privileges should you assign to Group1? Each correct answer presents part of the solution.

NOTE: Each correct selection is worth one point.

Show Suggested Answer Hide Answer
Suggested Answer: C, F

https://docs.microsoft.com/en-us/azure/virtual-desktop/create-file-share

Contribute your Thoughts:

0/2000 characters
Shakira
4 months ago
I agree, the Storage File Data SMB Share Contributor role is a must!
upvoted 0 times
...
Gilbert
4 months ago
Wait, why would you need the Elevated Contributor role? Sounds excessive.
upvoted 0 times
...
Pearline
4 months ago
The List folder / read data NTFS permissions seem right.
upvoted 0 times
...
Veronika
5 months ago
I think the Modify NTFS permissions are overkill for this.
upvoted 0 times
...
Norah
5 months ago
Definitely need the Storage Blob Data Contributor role for sure.
upvoted 0 times
...
Portia
5 months ago
I'm a bit confused about the difference between the SMB Share Reader and Contributor roles. I think we need to give Group1 enough permissions without over-privileging them.
upvoted 0 times
...
Dana
5 months ago
I think we need to focus on NTFS permissions for share1, especially the List folder/read data permissions. That seems crucial for accessing the profile containers.
upvoted 0 times
...
Farrah
5 months ago
I remember something about the Storage Blob Data Contributor role being necessary for managing blobs, but I'm not sure if it's the right choice here.
upvoted 0 times
...
Hillary
5 months ago
I practiced a similar question where we had to assign roles for Azure storage. I feel like the SMB Share Contributor role might be a good fit for allowing write access.
upvoted 0 times
...
Shaniqua
5 months ago
Hmm, this seems like it could be about disabling or exempting something from the security system's response to an exploit event. I'll need to carefully consider the options to determine the best answer.
upvoted 0 times
...
Mel
5 months ago
I'm feeling good about this one. The TOGAF Supporting category is the catch-all for anything not included in the other defined categories, so that's my pick.
upvoted 0 times
...
Louvenia
5 months ago
Remember - they want THREE answers. Don't just guess quickly. Read carefully and think through each option's connection to the Patriot Act's goals.
upvoted 0 times
...

Save Cancel