Topic 4: Misc. Questions
You have an Azure Active Directory (Azure AD) tenant.
You configure self-service password reset (SSPR) by using the following settings:
A. home prions
B. mobile app notification
C. a mobile app code
D. an email to an address in your organization
You have a Microsoft Entra tenant.
You need to ensure that only users from specific external domains can be invited as guests
to the tenant.
Which settings should you configure?
A. Cross-tenant access settings
B. External collaboration settings
C. Linked subscriptions
D. All identity providers
Note: This question is part of a series of questions that present the same scenario. Each
question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a
correct solution.
After you answer a question in this section, you will NOT be able to return to it as a result
these questions will not appear in the review screen.
You have a Microsoft 365 E5 subscription.
You create a user named User1.
You need to ensure that User1 can update the status of identity Secure Score improvement
actions.
Solution: You assign the User Administrator role to User1.
Does this meet the goal?
A. Yes
B. No
You have a Microsoft 365 tenant that uses the domain named fabrikam.com. The Guest invite settings for Azure Active Directory (Azure AD) are configured as shown in the exhibit. (Click the Exhibit tab.)
A. User2 only
B. User1 only
C. User1 and User2 only
D. User1, User2, and User3
You have a Microsoft Entra tenant that contains a user named User1.
An administrator deletes User1. You need to identify the following:
You have an Azure subscription that contains a user named User1. The subscription is
onboarded to Microsoft Entra Permissions Management. You need to provide User! with
access to Permissions Management. The solution must meet the following requirements:
A. From the Microsoft Entra admin center, create a security group.
B. From the Role/Policy Template subtab of Permissions Management, create a template
C. From the Microsoft Entra admin center, assign a role to User1.
D. From the My Requests subtab of Permissions Management, create a new request
You have a Microsoft Entra tenant.
You discover that a large number of new apps were added to the tenant.
You need to implement an approval process for new enterprise applications. What should
you do?
A. From the Microsoft Defender portal, create a Cloud Discovery anomaly detection policy
B. From the Microsoft Entra admin center, configure the Admin consent settings
C. From the Microsoft Defender portal, configure an app connector
D. From the Microsoft Entra admin center, configure an access review
Your network contains an on-premises Active Directory Domain Services (AD DS) domain that syncs with Azure AD and contains the users shown in the following table.
Your company has a Microsoft 365 tenant.
All users have computers that run Windows 10 and are joined to the Azure Active Directory
(Azure AD) tenant.
The company subscribes to a third-party cloud service named Service1. Service1 supports
Azure AD authentication and authorization based on OAuth. Service1 is published to the
Azure AD gallery.
You need to recommend a solution to ensure that the users can connect to Service1
without being prompted for authentication. The solution must ensure that the users can
access Service1 only from Azure AD-joined computers. The solution must minimize
administrative effort.
What should you recommend for each requirement? To answer, select the appropriate
options in the answer area.
NOTE: Each correct selection is worth one point.
You have a Microsoft 365 subscription that contains a user named User1.
You need to ensure that User1 can create access reviews for Azure AD roles. The solution
must use the principal of least privilege.
Which role should you assign to User1?
A. Privileged role administrator
B. Identify Governance administrator
C. User administrator
D. User Access Administrate
You have an Azure subscription that contains the users shown in the following table.
You need to implement Azure AD Privileged Identity Management (PIM).
Which users can use PIM to activate their role permissions?
A. Admin! only
B. Admin2 only
C. Admin3 only
D. Admin1 and Admin2 only
E. Admin2 and Admin3 only
F. Admin1, Admin2, and Admin3
You have an Azure Ad tenant that contains the users show in the following table.
A. User1 only
B. User2 only
C. User3 only
D. User1 and User2 only
E. User1 and User3 only
F. User1, User2, and User3
Page 7 out of 26 Pages |
Previous |