SC-300 Exam Question 166
You plan to deploy a new Azure AD tenant.
Which multifactor authentication (MFA) method will be enabled by default for the tenant?
Which multifactor authentication (MFA) method will be enabled by default for the tenant?
SC-300 Exam Question 167
You have a Microsoft 365 ES subscription that contains a user named User1. User1 is eligible for the Application a dministrator role.
User1 needs to configure a new connector group for an application proxy.
What should you to activate the role for User1?
User1 needs to configure a new connector group for an application proxy.
What should you to activate the role for User1?
SC-300 Exam Question 168
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have a Microsoft 365 tenant.
All users must use the Microsoft Authenticator app for multi-factor authentication (MFA) whenaccessing Microsoft 365 services.
Some users report that they received an MFA prompt on their Microsoft Authenticator app without initiating a sign-in request.
You need to block the users automatically when they report an MFA request that they did not initiate.
Solution: From the Azure portal, you configure the Notifications settings for multi-factor authentication (MFA).
Does this meet the goal?
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have a Microsoft 365 tenant.
All users must use the Microsoft Authenticator app for multi-factor authentication (MFA) whenaccessing Microsoft 365 services.
Some users report that they received an MFA prompt on their Microsoft Authenticator app without initiating a sign-in request.
You need to block the users automatically when they report an MFA request that they did not initiate.
Solution: From the Azure portal, you configure the Notifications settings for multi-factor authentication (MFA).
Does this meet the goal?
SC-300 Exam Question 169
You have an Azure AD tenant that contains the groups shown in the following table.

You create an access review for Group1 as shown in the following table.

You create an access review for Group2 as shown in the following table.

What is the minimum number of Azure AD Premium P2 licenses required for each group? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.


You create an access review for Group1 as shown in the following table.

You create an access review for Group2 as shown in the following table.

What is the minimum number of Azure AD Premium P2 licenses required for each group? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.

SC-300 Exam Question 170
You have a Microsoft Entra tenant that contains a user named User1.
An administrator deletes User1. You need to identify the following:
* What is the maximum number of days for which you have the option to restore the User1 account?
* Which is the least privileged role that can be used to restore User1?
To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.

An administrator deletes User1. You need to identify the following:
* What is the maximum number of days for which you have the option to restore the User1 account?
* Which is the least privileged role that can be used to restore User1?
To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.





