Microsoft Certified: Azure Administrator AssociateManage Azure identities and governanceEasy
A company is implementing a new naming convention for all Azure resources. They want to ensure that all new Virtual Machines (VMs) deployed into a specific subscription have a name that starts with 'vm-'. If a VM is deployed with a different naming pattern, the deployment should fail. Which Azure governance feature should be used to enforce this naming convention?
- AAzure Policy
- BAzure Advisor
- CAzure Monitor
- DAzure Resource Groups
Show answer & explanationAnswer & explanation
Correct answer: A. Azure Policy
Azure Policy is the service used to create, assign, and manage policies that enforce rules over your Azure resources, including naming conventions. A policy can be configured to deny deployments that do not adhere to the specified naming pattern.
Why the other options are wrong
- B. Azure Advisor provides recommendations for best practices, but does not enforce rules or deny deployments.
- C. Azure Monitor collects and analyzes telemetry data, not for enforcing governance rules like naming conventions.
- D. Azure Resource Groups are logical containers for resources, not for enforcing naming conventions.
Azure Policy (Naming Convention Enforcement)
Using Azure Policy to create rules that define and enforce specific naming conventions for Azure resources, with the option to deny deployments that violate these conventions.
- Ensures consistency across resources.
- Can use regular expressions for complex patterns.
- Can be applied at various scopes (subscription, management group, resource group).
Memory trick: Azure Policy is the traffic cop for your Azure resources.