AZ-500 Exam Question 136

You have a Microsoft Entra tenant.
You need to prevent nonprivileged Microsoft Entra users from creating service principals in Microsoft Entra ID.
  • AZ-500 Exam Question 137

    You have an Azure subscription named Sub1 that contains the storage accounts shown in the following table

    The storage3 storage account is encrypted by using customer-managed keys.
    YOU need to enable Microsoft Defender for storage to meet the following requirements.
    * The storage1 and storage2 account must be include in the defender for storage requirement.
    * The storage3 account must be exclude from the Defender for Storage protections.
    Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and them in the correct order.

    AZ-500 Exam Question 138

    You have an Azure Active Directory (Azure AD) tenant named contoso.com that contains the users shown in the following table.

    Contoso.com contains a group naming policy. The policy has a custom blocked word list rule that includes the word Contoso.
    Which users can create a group named Contoso Sales in contoso.com? To answer, select the appropriate options in the answer area.
    NOTE: Each correct selection is worth one point.

    AZ-500 Exam Question 139

    You have an Azure subscription that contains the virtual machines shown in the following table.

    From Azure Security Center, you turn on Auto Provisioning.
    You deploy the virtual machines shown in the following table.

    On which virtual machines is the Log Analytics agent installed?
  • AZ-500 Exam Question 140

    Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements.
    Your company has an Active Directory forest with a single domain, named weylandindustries.com. They also have an Azure Active Directory (Azure AD) tenant with the same name.
    You have been tasked with integrating Active Directory and the Azure AD tenant. You intend to deploy Azure AD Connect.
    Your strategy for the integration must make sure that password policies and user logon limitations affect user accounts that are synced to the Azure AD tenant, and that the amount of necessary servers are reduced.
    Solution: You recommend the use of federation with Active Directory Federation Services (AD FS).
    Does the solution meet the goal?