次の表に示すオブジェクトを含む Azure Active Directory (Azure AD) テナントがあります。 Azure AD ロールの Azure AD Privileged Identity Management (PIM) で適格として追加できるオブジェクトはどれですか?
正解:B
You cannot assign service principals as eligible to Azure AD roles, Azure roles, and Privileged Access groups but you can grant a time limited active assignment to all three. Reference: https://docs.microsoft.com/en-us/azure/active-directory/privileged-identity-management/pim- deployment-plan