Provided answer E is correct.
"Azure storage encryption supports RSA and RSA-HSM keys of sizes 2048, 3072 and 4096"
https://learn.microsoft.com/en-us/azure/storage/common/customer-managed-keys-overview#enable-customer-managed-keys-for-a-storage-account
I *can* use an RSA key type with a key size of 2048, 3072 or 4096. I *should* use only 4096. The question doesn't provide compelling reasons to use a weaker key size.
As a non-native speaker, the wording in this question is confusing to me.
It would be better if the question asked about the suppoted types instead of what should you use or the answer. One could think that he should use RSA with the stronger key, so picks the wrong answer
hmm... chatGPT (if you want to believe AI) says... "E"
To use customer-managed key encryption for a blob container in Azure, you can use either an RSA key or an Elliptic Curve (EC) key. The minimum key size for an RSA key is 2048 bits, and the key size can be 2048, 3072, or 4096 bits. The recommended key size for an EC key is at least 256 bits.
Therefore, the correct answer is E. an RSA key type with a key size of 2048, 3072, or 4096 only.
E is the answer.
https://learn.microsoft.com/en-us/azure/storage/common/customer-managed-keys-overview#enable-customer-managed-keys-for-a-storage-account
Azure storage encryption supports RSA and RSA-HSM keys of sizes 2048, 3072 and 4096.
Answer is correct, RSA keys must be minimum 2048 bits in length.
see URL https://learn.microsoft.com/en-us/azure/storage/blobs/secure-file-transfer-protocol-support
i will go with option c
To use customer-managed key encryption for container1 in Azure Storage, you can follow these steps:
Create a key vault in Azure. This will be used to store the encryption key that you will use for customer-managed key encryption.
Create an encryption key in the key vault. You can use an EC key that uses the P-384 curve or P-521 curve, or an RSA key with a key size of 2048, 3072, or 4096.
Grant the Azure Storage account access to the key vault. You will need to do this in order for Azure Storage to be able to access the encryption key and use it for customer-managed key encryption.
Set the encryption key on the container1 container. You can do this using Azure PowerShell, Azure CLI, or the Azure Storage REST API.
Enable customer-managed key encryption on the container1 container. You can do this using Azure PowerShell, Azure CLI, or the Azure Storage REST API.
Once you have completed these steps, container1 will be encrypted with customer-managed key encryption using the encryption key in the key vault
This section is not available anymore. Please use the main Exam Page.AZ-104 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
nmnm22
Highly Voted 1 year, 7 months agomaki999
10 months, 3 weeks agoMuffay
Highly Voted 2 years, 3 months ago[Removed]
Most Recent 7 months, 3 weeks agoForkbeard
12 months agoa74d359
3 months, 1 week agoWeepingMaplte
1 year agoAmir1909
1 year, 1 month agoc5ad307
1 year, 2 months agoNoNo
2 years, 1 month agoUmbongoDrink
2 years, 2 months agozellck
2 years, 2 months agoMP26
2 years, 3 months agoYokuboE
2 years, 3 months agokhaled_razouk
2 years, 3 months agokameltz
2 years, 3 months agokhaled_razouk
2 years, 3 months agoDriede
2 years ago