Does a Dedicated Data Endpoint Fix ACI Deployment from Registry1?
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You have an Azure container registry named Registry1 that contains an image named image1. You receive an error message when you attempt to deploy a container instance by using image1. You need to be able to deploy a container instance by using image1. Solution: You select Use dedicated data endpoint for Registry1. Does this meet the goal?
Community Votes
100% of anonymous learners picked answer B. Votes are pick records left by other test-takers — they are not the verified answer.
Community Insight
The question tests whether you can separate ACR authentication from ACR network/data-plane features — the trap is assuming a Premium registry data endpoint toggle grants ACI the credentials it needs to pull image1.
When an Azure Container Instance fails to pull image1 from Registry1, the fix is registry authentication, not the ACR 'Use dedicated data endpoint' setting. This page confirms that selecting the dedicated data endpoint does not meet the goal, so the correct answer is No (B).
Choosing Yes, because learners assume the dedicated data endpoint improves or unblocks image pulls. In reality it only changes the registry's data endpoint for network-restricted or private-endpoint scenarios and provides no credentials to Azure Container Instances.
Community Discussion (3 comments)
Comments & Corrections
No comments yet — spotted an error or have a note? Share it below.
Expert Analysis
Why the Answer Is Correct
"Use dedicated data endpoint" is a Premium-tier Azure Container Registry capability that gives the registry a stable, dedicated data endpoint used with firewall rules, private endpoints, or restricted networks. It does not create or expose any credential that an Azure Container Instance can use to authenticate against Registry1, so the image pull still fails with an unauthorized or image-not-found style error. To deploy a container instance from a private ACR image, ACI must authenticate — typically by enabling the registry admin user and passing username/password, or by using a service principal or managed identity with the AcrPull role. Because the proposed solution leaves the authentication failure untouched, it does not meet the goal, making No (B) the correct choice.Why the Other Options Are Wrong
Answer A (Yes) would only be valid if the dedicated data endpoint addressed the root cause of the deployment error, but the error is about accessibility/authentication of image1 rather than the registry's data-plane endpoint. Changing the data endpoint does not enable the admin user, does not issue credentials, and does not assign an identity to the container instance. ACI also needs the correct registry login server reference when pulling image1, and the dedicated data endpoint setting neither supplies nor corrects that. In short, the option is a networking/endpoint feature being mistaken for an authentication fix.Community Comment Notes
Community consensus matches the analysis: one learner states "You set Admin user to Enable for Registry1." and un4exa summarizes it as "Set Admin user enabled for ACR". Another commenter quoted Bing Copilot noting the image is likely inaccessible because of incorrect credentials or firewall rules — the credentials half of that answer is exactly the missing piece, while firewall handling would require network configuration rather than the dedicated data endpoint switch alone. No commenter argued that the dedicated data endpoint resolves the deployment error, which reinforces answer B.Official Reference
Exam Strategy
For AZ-104 container questions, first classify the failure as authentication (unauthorized image pull, admin user, service principal, managed identity) or networking (firewall, private endpoint, dedicated data endpoint), then match the solution to that category. In this 'Does this meet the goal?' series, a feature that belongs to the wrong category is always a No.
Frequently Asked Questions
Why doesn't the dedicated data endpoint fix the ACI image1 deployment error?
It only changes the registry's data-plane endpoint for restricted or private network scenarios. It supplies no credentials, so Azure Container Instances still fails to authenticate and pull image1 from Registry1.
How do you let an Azure Container Instance pull image1 from Registry1?
Enable the Registry1 admin user and pass the username/password to the container instance, or assign a service principal or managed identity the AcrPull role so ACI can authenticate.
Related Analysis
Practice All AZ-104 Questions
Access 100 questions with complete answers and detailed explanations.
View Full AZ-104 Practice Test →