問題文
Two Azure virtual machines and one Azure Function must all authenticate to the same Azure Key Vault by using the same identity, and that identity must survive if any one of the three resources is deleted. Which identity option should you use?
選択肢
- A user-assigned managed identity assigned to all three resources
- An app registration with a client secret stored in the application code
- A service principal with a certificate renewed manually every year
- A system-assigned managed identity on each of the three resources