SC-300 Exam Question 106

You need to meet the planned changes and technical requirements for App1.
What should you implement?
  • SC-300 Exam Question 107

    You have an Azure AD tenant that contains the users shown in the following table.

    In Azure AD Identity Protection, you configure a user risk policy that has the following settings:
    * Assignments:
    o Users: Group1
    o User risk: Low and above
    * Controls:
    o Access: Block access
    * Enforce policy: On
    In Azure AD Identity Protection, you configure a sign-in risk policy that has the following settings:
    * Assignments:
    o Users: Group2
    o Sign-in risk: Low and above
    * Controls:
    o Access: Require multi-factor authentication
    * Enforce policy. On
    the following settings:
    ng settings:
    For each of the following statements, select Yes if the statement is true. Otherwise, select No.
    NOTE: Each correct selection is worth one point.

    SC-300 Exam Question 108

    Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
    After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
    You have an Azure Active Directory (Azure AD) tenant that syncs to an Active Directory forest.
    You discover that when a user account is disabled in Active Directory, the disabled user can still authenticate to Azure AD for up to 30 minutes.
    You need to ensure that when a user account is disabled in Active Directory, the user account is immediately prevented from authenticating to Azure AD.
    Solution: You configure conditional access policies.
    Does this meet the goal?
  • SC-300 Exam Question 109

    You have an Azure Ad tenant that contains the users show in the following table.

    You create a dynamic user group and configure the following rule syntax.

    Which users will be added to the group?
  • SC-300 Exam Question 110

    You have an Azure AD tenant that contains multiple storage accounts.
    You plan to deploy multiple Azure App Service apps that will require access to the storage accounts.
    You need to recommend an identity solution to provide the apps with access to the storage accounts. The solution must minimize administrative effort.
    Which type of identity should you recommend, and what should you recommend using to control access to the storage accounts? To answer, select the appropriate options in the answer area.