FEFreeExamDumps.in

SC-300 Practice Questions — Page 13

Question 121

Open question ↗

You have an Azure subscription named Sub1 that contains three users named User1, User2, and User3. Sub1 has a storage account named storage1 that contains the resources shown in the following table.

Sub1 contains the users shown in the following table.

Which users can read File1, and which users can read File2? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Question 121

Question 122

Open question ↗

You have an Azure Active Directory (Azure AD) tenant.

You open the risk detections report.

Which risk detection type is classified as a user risk?

  • A.impossible travel
  • B.anonymous IP address
  • C.malicious IP address
  • D.Azure AD threat intelligence

Question 123

Open question ↗

You have an Azure subscription.

From Entitlement management, you plan to create a catalog named Catalog1 that will contain a custom extension.

What should you create first, and what should you use to distribute Catalog1? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Question 123

Question 124

Open question ↗

You configure a new Microsoft 365 tenant to use a default domain name of contoso.com.

You need to ensure that you can control access to Microsoft 365 resources by using conditional access policies.

What should you do first?

  • A.Disable Security defaults.
  • B.Configure password protection for the Azure AD tenant.
  • C.Configure a multi-factor authentication (MFA) registration policy.
  • D.Disable the User consent settings.

Question 125

Open question ↗

You have a Microsoft 365 tenant.

An on-premises Active Directory domain is configured to sync with the Azure AD tenant. The domain contains the servers shown in the following table.

The domain controllers are prevented from communicating to the internet.

You implement Azure AD Password Protection on Server1 and Server2.

You deploy a new server named Server4 that runs Windows Server 2022.

You need to ensure that Azure AD Password Protection will continue to work if a single server fails.

What should you implement on Server4?

Question 125
  • A.Azure AD Connect
  • B.Azure AD Application Proxy
  • C.Password Change Notification Service (PCNS)
  • D.the Azure AD Password Protection proxy service

Question 126

Open question ↗

You have an on-premises app named App1.

You have a Microsoft Entra tenant.

You plan to publish App1 by using Microsoft Entra Private Access.

You need to enable the Private access profile.

Which blade should you use in the Microsoft Entra admin center?

  • A.Remote networks
  • B.Traffic forwarding
  • C.Security profiles
  • D.Connectors

Question 127

Open question ↗

You have an Azure AD tenant that contains a user named Admin1.

Admin1 uses the Require password change for high-risk users policy template to create a new Conditional Access policy.

Who is included and excluded by default in the policy assignment? To answer, drag the appropriate options to the correct target. Each option may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.

NOTE: Each correct selection is worth one point

Question 127

Question 128

Open question ↗

You have a Microsoft 365 E5 subscription. The subscription contains 500 devices that run Windows.

You deploy the Global Secure Access client to the devices.

You need to prevent users from accessing https://contoso.com from the devices.

Which three actions should you perform in sequence? To answer move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

Question 128

Question 129

Open question ↗

You have a Microsoft 365 tenant.

You currently allow email clients that use Basic authentication to connect to Microsoft Exchange Online.

You need to ensure that users can connect to Exchange Online only from email clients that use Modern authentication protocols.

What should you implement?

  • A.a conditional access policy in Azure AD
  • B.a compliance policy in Microsoft Intune
  • C.an OAuth policy in Microsoft Defender for Cloud Apps
  • D.an application control profile in Microsoft Intune

Question 130

Open question ↗

You plan to deploy a new Azure AD tenant.

Which multifactor authentication (MFA) method will be enabled by default for the tenant?

  • A.Microsoft Authenticator
  • B.SMS
  • C.voice call
  • D.email OTP