单选题 You configure a new Microsoft 365 tenant to use a default domain name of contoso.com.

You need to ensure that you can control access to Microsoft 365 resources by using conditional access policies.

What should you do first?

A、 Disable the User consent settings.
B、 Disable Security defaults.
C、 Configure a multi-factor authentication (MFA) registration policy.
D、 Configure password protection for Windows Server Active Directory.
下载APP答题
由4l***qf提供 分享 举报 纠错

相关试题

单选题 Note: This question is part of a series of questions that present the same scenario. 

Each question in the series contains a unique solution that might meet the stated goals. 

Some question sets might have more than one correct solution, while others might not 

have a correct solution.

After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.

You have an Active Directory forest that syncs to an Azure Active Directory (Azure AD) tenant.

You discover that when a user account is disabled in Active Directory, the disabled user can still authenticate to Azure AD for up to 30 minutes.

You need to ensure that when a user account is disabled in Active Directory, the user account is immediately prevented from authenticating to Azure AD.

Solution: You configure password writeback.

Does this meet the goal?

A、Yes
B、No

单选题 You have an Azure Active Directory (Azure AD) tenant that contains the following objects: 

✑ A device named Device1 

✑ Users named User1, User2, User3, User4, and User5 

✑ Groups named Group1, Group2, Group3, Group4, and Group5 

The groups are configured as shown in the following table. image1.png 

To which groups can you assign a Microsoft Office 365 Enterprise E5 license directly?

A、Group1 and Group4 only
B、Group1, Group2, Group3, Group4, and Group5
C、Group1 and Group2 only
D、Group1 only
E、Group1, Group2, Group4, and Group5 only

单选题 You have 2,500 users who are assigned Microsoft Office 365 Enterprise E3 licenses. The licenses are assigned to individual users.

From the Groups blade in the Azure Active Directory admin center, you assign Microsoft 365 Enterprise E5 licenses to the users.

You need to remove the Office 365 Enterprise E3 licenses from the users by using the least amount of administrative effort.

What should you use?

A、the Identity Governance blade in the Azure Active Directory admin center
B、the Set-AzureAdUser cmdlet
C、the Licenses blade in the Azure Active Directory admin center
D、the Set-WindowsProductKey cmdlet

单选题

You have a Microsoft Exchange organization that uses an SMTP address space of contoso.com.

Several users use their contoso.com email address for self-service sign-up to Azure Active Directory (Azure AD).

You gain global administrator privileges to the Azure AD tenant that contains the selfsigned users.

You need to prevent the users from creating user accounts in the contoso.com Azure AD tenant for self-service sign-up to Microsoft 365 services.

Which PowerShell cmdlet should you run?

A、Set-MsolCompanySettings
B、Set-MsolDomainFederationSettings
C、Update-MsolfederatedDomain
D、Set-MsolDomain

单选题 You have an Azure Active Directory (Azure AD) tenant that contains the objects shown in the following table.

b4374b007ff222f2af33b3e559c7504b.png

Which objects can you add as members to Group3?

A、User2 and Group2 only
B、User2, Group1, and Group2 only
C、User1, User2, Group1 and Group2
D、User1 and User2 only
E、User2 only

单选题 DRAG DROP - 

You have an on-premises Microsoft Exchange organization that uses an SMTP address space of contoso.com. 

You discover that users use their email address for self-service sign-up to Microsoft 365 services. 

You need to gain global administrator privileges to the Azure Active Directory (Azure AD) tenant that contains the self-signed users. 

Which four actions should you perform in sequence? 

To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. 

Select and Place:

21cb151b19510d1cfcceecc7c1f925ed.png

A、2164
B、2461
C、2146
D、2614

单选题 Your network contains an on-premises Active Directory domain that syncs to an Azure 

Active Directory (Azure AD) tenant.

Users sign in to computers that run Windows 10 and are joined to the domain.

You plan to implement Azure AD Seamless Single Sign-On (Azure AD Seamless SSO).

You need to configure the computers for Azure AD Seamless SSO.

What should you do?

A、Configure Sign-in options.
B、Enable Enterprise State Roaming.
C、Modify the Intranet Zone settings.
D、Install the Azure AD Connect Authentication Agent.

单选题 You have a Microsoft 365 tenant that uses the domain named fabrikam.com. 

The Guest invite settings for Azure Active Directory (Azure AD) are configured as shown in the exhibit. (Click the Exhibit tab.) 

image2.png

A user named bsmith@fabrikam.com shares a Microsoft SharePoint Online document 

library to the users shown in the following table.

89078ba7f6ebdace998f2484ef701d1e.png

Which users will be emailed a passcode?

A、User2 only
B、User1 only
C、User1 and User2 only
D、User1, User2, and User3