Free AZ-500 Exam Braindumps (page: 3)

Page 2 of 128

Your company has an Active Directory forest with a single domain, named weylandindustries.com. They also have an Azure Active Directory (Azure AD) tenant with the same name.
After syncing all on-premises identities to Azure AD, you are informed that users with a givenName attribute starting with LAB should not be allowed to sync to
Azure AD.
Which of the following actions should you take?

  1. You should make use of the Synchronization Rules Editor to create an attribute-based filtering rule.
  2. You should configure a DNAT rule on the Firewall.
  3. You should configure a network traffic filtering rule on the Firewall.
  4. You should make use of Active Directory Users and Computers to create an attribute-based filtering rule.

Answer(s): A

Explanation:

Use the Synchronization Rules Editor and write attribute-based filtering rule.


Reference:

https://docs.microsoft.com/en-us/azure/active-directory/hybrid/how-to-connect-sync-change-the-configuration



You have been tasked with applying conditional access policies for your company's current Azure Active Directory (Azure AD).
The process involves assessing the risk events and risk levels.
Which of the following is the risk level that should be configured for users that have leaked credentials?

  1. None
  2. Low
  3. Medium
  4. High

Answer(s): D

Explanation:

These six types of events are categorized in to 3 levels of risks ג€" High, Medium & Low:


Reference:

http://www.rebeladmin.com/2018/09/step-step-guide-configure-risk-based-azure-conditional-access-policies/



You have been tasked with applying conditional access policies for your company's current Azure Active Directory (Azure AD).
The process involves assessing the risk events and risk levels.
Which of the following is the risk level that should be configured for sign ins that originate from IP addresses with dubious activity?

  1. None
  2. Low
  3. Medium
  4. High

Answer(s): C

Explanation:


Reference:

http://www.rebeladmin.com/2018/09/step-step-guide-configure-risk-based-azure-conditional-access-policies/



You have been tasked with configuring an access review, which you plan to assigned to a new collection of reviews. You also have to make sure that the reviews can be reviewed by resource owners.
You start by creating an access review program and an access review control.
You now need to configure the Reviewers.
Which of the following should you set Reviewers to?

  1. Selected users.
  2. Members (Self).
  3. Group Owners.
  4. Anyone.

Answer(s): C

Explanation:

In the Reviewers section, select either one or more people to review all the users in scope. Or you can select to have the members review their own access. If the resource is a group, you can ask the group owners to review.


Reference:

https://docs.microsoft.com/en-us/azure/active-directory/governance/create-access-review https://docs.microsoft.com/en-us/azure/active-directory/governance/manage-programs-controls






Post your Comments and Discuss Microsoft AZ-500 exam with other Community members:

AZ-500 Discussions & Posts