Configuring and Operating Microsoft Azure Virtual Desktop: Roles for Customer Service Department

Roles for Customer Service Department

Question

The customer service department in your company needs to send the messages to AVD users, disconnect the sessions, and sign the users out of the session host.

Which role is needed for the customer service department?

Answers

Explanations

Click on the arrows to vote for the correct answer

A. B. C. D.

Correct Answer: B

The User Session Operator role allows to send the messages to the intended users, disconnect the sessions, and utilize the "logoff" function to sign users out of the session host.

The following figure describes the permissions associated with the User Session Operator role:

Microsoft DesktopVirtualization/hostpools/read
Microsoft. Desktop Virtualization/hostpools/sessionhosts/read
Microsoft. Desktop Virtualization/hostpools/sessionhosts/usersessions/*
Microsoft. Resources/subscriptions/resourceGroups/read
Microsoft.Resources/deployments/read

Microsoft. Authorization/*/read

Microsoft.Insights/alertRules/*

Microsoft.Support/*

Option A is incorrect.The session Host operator role allows the user to view and remove the session hosts, even changing drain mode.

Option B is correct.

The User Session Operator role allows sending the messages to the intended users, disconnecting the sessions, and utilizing the "logoff" function to sign users out of the session host.

Option C is incorrect.

Host Pool Reader will allow the user to see everything in the host pool and therefore is not the right role to be assigned.

Option D is incorrect.

Application Group Reader should be assigned if you want the user to get access to information about the various applications in the workspace.

To know more about Built-in roles for Azure Virtual Desktop, please visit the below-given link:

The correct answer for this question is B. User session operator.

Explanation:

In Azure Virtual Desktop (AVD), roles are used to provide users with permissions to perform certain actions within the AVD environment. There are various roles available in AVD that provide different levels of access and control over the AVD environment.

In this scenario, the customer service department needs to send messages to AVD users, disconnect the sessions, and sign the users out of the session host. To perform these actions, the customer service department needs permissions to manage user sessions.

The User session operator role is a built-in role in AVD that provides permissions to manage user sessions, including the ability to send messages to users, disconnect their sessions, and sign them out of session hosts. This role does not provide permissions to manage the session host or other aspects of the AVD environment.

Therefore, option B - User session operator is the correct answer for this question. Option A - Session Host Operator provides permissions to manage the session host, but not user sessions. Option C - Desktop Virtualization Host Pool Reader provides read-only access to desktop virtualization host pools, and option D - Desktop Virtualization Application Group Reader provides read-only access to desktop virtualization application groups, but neither of these roles provide permissions to manage user sessions.