[Nov-2024] SC-300 Free Sample Questions to Practice One Year Update [Q171-Q187]

Share

[Nov-2024] SC-300 Free Sample Questions to Practice One Year Update

Download SC-300 exam with Microsoft SC-300 Real Exam Questions

NEW QUESTION # 171
Your network contains an on-premises Active Directory domain that syncs to an Azure Active Directory (Azure AD) tenant. The tenant contains the users shown in the following table.

All the users work remotely.
Azure AD Connect is configured in Azure AD as shown in the following exhibit.

Connectivity from the on-premises domain to the internet is lost.
Which users can sign in to Azure AD?

  • A. User1 only
  • B. User1 and User3 only
  • C. User1, User2, and User3
  • D. User1 and User2 only

Answer: B

Explanation:
Reference:
https://docs.microsoft.com/en-us/azure/active-directory/hybrid/how-to-connect-pta-current-limitations


NEW QUESTION # 172
You have an Azure Active Directory (Azure Azure) tenant that contains the objects shown in the following table.
* A device named Device1
* Users named User1, User2, User3, User4, and User5
* Five groups named Group1, Group2, Group3, Ciroup4, and Group5
The groups are configured as shown in the following table.

How many licenses are used if you assign the Microsoft Office 365 Enterprise E5 license to Group1?

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: C

Explanation:
Reference:
https://docs.microsoft.com/en-us/azure/active-directory/enterprise-users/licensing-group-advanced


NEW QUESTION # 173
You have an Azure Active Directory (Azure AD) tenant that has multi-factor authentication (MFA) enabled.
The account lockout settings are configured as shown in the following exhibit.

Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation:
App code
60
https://docs.microsoft.com/en-us/azure/active-directory/authentication/howto-mfa-mfasettings#account-lockout


NEW QUESTION # 174
You have three Azure subscriptions that are linked to a single Microsoft Entra tenant.
You need to evaluate and remediate the risks associated with highly privileged accounts. The solution must minimize administrative effort.
What should you use?

  • A. Microsoft Entra Permissions Management
  • B. Global Secure Access
  • C. Privileged Identify Management (PIM)
  • D. Microsoft Entra Verified ID

Answer: C


NEW QUESTION # 175
You have a Microsoft 365 tenant.
In Azure Active Directory (Azure AD), you configure the terms of use.
You need to ensure that only users who accept the terms of use can access the resources in the tenant. Other users must be denied access.
What should you configure?

  • A. an access policy in Microsoft Cloud App Security.
  • B. Terms and conditions in Microsoft Endpoint Manager.
  • C. a compliance policy in Microsoft Endpoint Manager
  • D. a conditional access policy in Azure AD

Answer: D

Explanation:
Reference:
https://docs.microsoft.com/en-us/azure/active-directory/conditional-access/terms-of-use


NEW QUESTION # 176
You have an Azure AD tenant that contains a user named Admin1.
Admin1 uses the Require password change for high-risk user's policy template to create a new Conditional Access policy.
Who is included and excluded by default in the policy assignment? To answer, drag the appropriate options to the correct target. Each option may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:


NEW QUESTION # 177
You have an Azure Active Directory (Azure AD) tenant that contains the following group:
Name: Group1
Members: User1, User2
Owner: User3
On January 15, 2021, you create an access review as shown in the exhibit. (Click the Exhibit tab.)

Users answer the Review1 question as shown in the following table.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Reference:
https://docs.microsoft.com/en-us/azure/active-directory/governance/review-your-access


NEW QUESTION # 178
Your network contains an Active Directory forest named contoso.com that is linked to an Azure Active Directory (Azure AD) tenant named contoso.com by using Azure AD Connect.
You need to prevent the synchronization of users who have the extensionAttribute15 attribute set to NoSync.
What should you do in Azure AD Connect?

  • A. Create an inbound synchronization rule for the Active Directory Domain Services connector.
  • B. Configure an Export run profile.
  • C. Create an inbound synchronization rule for the Windows Azure Active Directory connector.
  • D. Configure a Full Import run profile.

Answer: A

Explanation:
https://docs.microsoft.com/en-us/azure/active-directory/hybrid/how-to-connect-sync-change-the-configuration


NEW QUESTION # 179
You have an Azure subscription.
You are evaluating enterprise software as a service (SaaS) apps.
You need to ensure that the apps support automatic provisioning of Microsoft Entra users.
Which specification should the apps support?

  • A. WS-Fed
  • B. LDAP3
  • C. SCIM 2.0
  • D. OAuth 2.0

Answer: C


NEW QUESTION # 180
You have a Microsoft 365 E5 subscription that contains the users shown in the following table.

The users are assigned the roles shown in the following table.

For which users can User1 and User4 reset passwords? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation


NEW QUESTION # 181
You have an Azure AD tenant that contains the users shown in The following table.

You enable self-service password reset (SSPR) for all the users and configure SSPR to require security questions as the only authentication method.
Which users must use security questions when resetting their password?

  • A. User1, User3, and User4 only
  • B. User3and User4only
  • C. User4 only
  • D. User1 and User4only
  • E. User1, User2, User3. and User4

Answer: B


NEW QUESTION # 182
You have an Azure Active Directory (Azure AD) tenant that has an Azure Active Directory Premium Plan 2 license. The tenant contains the users shown in the following table.

You have the Device Settings shown in the following exhibit.

User1 has the devices shown in the following table.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation:
Box 1: Yes
Users may join 5 devices to Azure AD.
Box 2: Yes
Box 3: No
An additional local device administrator has not been applied
Reference:
https://docs.microsoft.com/en-us/azure/active-directory/devices/device-management-azure-portal


NEW QUESTION # 183
You have an Azure Active Directory (Azure AD) tenant that contains a user named User1 and the groups shown in the following table.

In the tenant, you create the groups shown in the following table.

Which members can you add to GroupA and GroupB? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation:

Reference:
https://bitsizedbytes.wordpress.com/2018/12/10/distribution-security-and-office-365-groups-nesting/


NEW QUESTION # 184
You have a Microsoft 365 subscription that contains the users shown in the following table.

From the tenan1, you configure a naming policy for groups.
Which users are affected by the naming policy?

  • A. User2 and User3 only
  • B. User3 and User4 only
  • C. User2 only
  • D. User1, User2, User3, and User4
  • E. User1, User2, and User3 only
  • F. User3only

Answer: B


NEW QUESTION # 185
You need to meet the planned changes for the User administrator role.
What should you do?

  • A. Modify Active Assignments.
  • B. Create an administrator unit.
  • C. Modify Role settings
  • D. Create an access review.

Answer: C

Explanation:
Role Setting details is where you need to be: Role setting details - User Administrator Privileged Identity Management | Azure AD roles Default Setting State Require justification on activation Yes Require ticket information on activation No On activation, require Azure MFA Yes Require approval to activate No Approvers None


NEW QUESTION # 186
Your company has an Azure Active Directory (Azure AD) tenant named contoso.com. The company has a business partner named Fabrikam, Inc.
Fabrikam uses Azure AD and has two verified domain names of fabrikam.com and litwareinc.com. Both domain names are used for Fabrikam email addresses.
You plan to create an access package named package1 that will be accessible only to the users at Fabrikam.
You create a connected organization for Fabrikam.
You need to ensure that the package1 will be accessible only to users who have fabrikam.com email addresses.
What should you do? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Reference:
https://docs.microsoft.com/en-us/azure/active-directory/governance/entitlement-management-access-package-request-policy
https://docs.microsoft.com/en-us/azure/active-directory/governance/entitlement-management-access-package-create


NEW QUESTION # 187
......


Microsoft SC-300 (Microsoft Identity and Access Administrator) Certification Exam is designed to validate the skills and knowledge of IT professionals in managing and securing Microsoft's identity and access solutions. SC-300 exam is ideal for those who aspire to become certified identity and access administrators and want to demonstrate their expertise in implementing and managing identity and access solutions on the Microsoft platform.


Microsoft Identity and Access Administrator Exam Certification Details:

Exam CodeSC-300
Exam Price$165 (USD)
Sample QuestionsMicrosoft Identity and Access Administrator Sample Questions
Books / TrainingCourse SC-300T00: Microsoft Identity and Access Administrator

 

Real exam questions are provided for Microsoft Certified: Identity and Access Administrator Associate tests, which can make sure you 100% pass: https://braindumps.testpdf.com/SC-300-practice-test.html