Question 71

You configure a new Microsoft 36S tenant to use a default domain name of contosso.com.
You need to ensure that you can control access to Microsoft 365 resource-, by using conditional access policy.
What should you do first?
  • Question 72

    You have a Microsoft 365 tenant.
    All users must use the Microsoft Authenticator app for multi-factor authentication (MFA) when accessing Microsoft 365 services.
    Some users report that they received an MFA prompt on their Microsoft Authenticator app without initiating a sign-in request.
    You need to block the users automatically when they report an MFA request that they did not Initiate.
    Solution: From the Azure portal, you configure the Account lockout settings for multi-factor authentication (MFA).
    Does this meet the goal?
  • Question 73

    You need to configure the detection of multi-staged attacks to meet the monitoring requirements.
    What should you do?
  • Question 74

    You need to meet the technical requirements for license management by the helpdesk administrators.
    What should you create first, and which tool should you use? To answer, select the appropriate options in the answer area.
    NOTE: Each correct selection is worth one point.

    Question 75

    You have a Microsoft 365 tenant that uses the domain named fabrikam.com. The Guest invite settings for Azure Active Directory (Azure AD) are configured as shown in the exhibit. (Click the Exhibit tab.)

    A user named [email protected] shares a Microsoft SharePoint Online document library to the users shown in the following table.

    Which users will be emailed a passcode?