- (Exam Topic 4)
You have an Azure subscription that contains the users shown in the following table.
You need to implement Azure AD Privileged Identity Management (PIM). Which users can use PIM to activate their role permissions?
Correct Answer:
D
- (Exam Topic 4)
You have an Azure Active Directory (Azure AD) tenant that has multi-factor authentication (MFA) enabled. The account lockout settings are configured as shown in the following exhibit.
Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
NOTE: Each correct selection is worth one point.
Solution:
App code 60
https://docs.microsoft.com/en-us/azure/active-directory/authentication/howto-mfa-mfasettings#account-lockout
Does this meet the goal?
Correct Answer:
A
- (Exam Topic 1)
You need to configure app registration in Azure AD to meet the delegation requirements. What should you do? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
Solution:
Graphical user interface, text Description automatically generated
Reference:
https://docs.microsoft.com/en-us/azure/active-directory/roles/delegate-app-roles
Does this meet the goal?
Correct Answer:
A
- (Exam Topic 4)
You configure Azure Active Directory (Azure AD) Password Protection as shown in the exhibit. (Click the Exhibit tab.)
You are evaluating the following passwords: Pr0jectlitw@re
T@ilw1nd
C0nt0s0
Which passwords will be blocked?
Correct Answer:
C
Reference:
https://blog.enablingtechcorp.com/azure-ad-password-protection-password-evaluation
- (Exam Topic 4)
You have an Azure Active Directory (Azure AD) tenant that contains the users shown in the following table.
You plan to implement Azure AD Identity Protection.
Which users can configure the user risk policy, and which users can view the risky users report? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Solution:
Graphical user interface, text Description automatically generated
Reference:
https://docs.microsoft.com/en-us/azure/active-directory/identity-protection/overview-identity-protection
Does this meet the goal?
Correct Answer:
A