A company needs to guarantee that no administrator can permanently delete a secret from Azure Key Vault, even with Owner permissions. Which Key Vault feature enforces this?

Microsoft Azure Fundamentals Hard

Microsoft Azure Fundamentals — Hard

A company needs to guarantee that no administrator can permanently delete a secret from Azure Key Vault, even with Owner permissions. Which Key Vault feature enforces this?

Key points

  • Soft delete with Purge Protection prevents permanent deletion of secrets
  • Owner permissions do not override this feature
  • Deleted secrets can be recovered within retention period

Ready to go further?

Related questions