Question 91

Please wait while the virtual machine loads. Once loaded, you may proceed to the lab section. This may take a few minutes, and the wait time will not be deducted from your overall test time.
When the Next button is available, click it to access the lab section. In this section, you will perform a set of tasks in a live environment. While most functionality will be available to you as it would be in a live environment, some functionality (e.g., copy and paste, ability to navigate to external websites) will not be possible by design.
Scoring is based on the outcome of performing the tasks stated in the lab. In other words, it doesn't matter how you accomplish the task, if you successfully perform it, you will earn credit for that task.
Labs are not timed separately, and this exam may have more than one lab that you must complete. You can use as much time as you would like to complete each lab. But, you should manage your time appropriately to ensure that you are able to complete the lab(s) and all other sections of the exam in the time provided.
Please note that once you submit your work by clicking the Next button within a lab, you will NOT be able to return to the lab.
You may now click next to proceed to the lab.
Lab information
Use the following login credentials as needed:
To enter your username, place your cursor in the Sign in box and click on the username below.
To enter your password, place your cursor in the Enter password box and click on the password below.
Microsoft 365 Username:
[email protected]
Microsoft 365 Password: *yfLo7Ir2&y-
If the Microsoft 365 portal does not load successfully in the browser, press CTRL-K to reload the portal in a new browser tab.
The following information is for technical support purposes only:
Lab Instance: 10811525
Your organization recently partnered with another organization named Fabrikam, Inc.
You plan to provide a Microsoft 365 license to an external user named [email protected], and then to share documents with the user.
You need to invite [email protected] to access your organization.

Question 92

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have a Microsoft 365 subscription.
You need to prevent users from accessing your Microsoft SharePoint Online sites unless the users are connected to your on-premises network.
Solution: From the Azure Active Directory admin center, you create a trusted location and a conditional access policy.
Does this meet the goal?
  • Question 93

    You have a Microsoft 365 subscription that contains the users shown in the following table.

    You have the named locations shown in the following table.

    You create a conditional access policy that has the following configurations:
    Users and groups:
    Include: Group1
    Exclude: Group2
    Cloud apps: Include all cloud apps
    Conditions:
    Include: Any location
    Exclude: Montreal
    Access control: Grant access, Require multi-factor authentication
    User1 is on the multi-factor authentication (MFA) blocked users list.
    For each of the following statements, select Yes if the statement is true. Otherwise, select No.
    NOTE: Each correct selection is worth one point.

    Question 94

    You have a Microsoft Azure Active Directory (Azure AD) tenant named contoso.com.
    A user named User1 has files on a Windows 10 device as shown in the following table.

    In Azure Information Protection, you create a label named Label1 that is configured to apply automatically. Label1 is configured as shown in the following exhibit.

    For each of the following statements, select Yes if the statement is true. Otherwise, select No.
    NOTE: Each correct selection is worth one point.

    Question 95

    Your company has on-premises servers and a Microsoft Azure Active Directory (Azure AD) tenant.
    Several months ago, the Azure AD Connect Health agent was installed on all the servers.
    You review the health status of all the servers regularly.
    Recently, you attempted to view the health status of a server named Server1 and discovered that the server is NOT listed on the Azure Active Directory Connect Servers list.
    You suspect that another administrator removed Server1 from the list.
    You need to ensure that you can view the health status of Server1.
    What are two possible ways to achieve the goal? Each correct answer presents a complete solution.
    NOTE: Each correct selection is worth one point.