A company needs to ensure users can access resources only from managed devices. Which policy should they implement?
AConditional Access policies
BRole-Based Access Control
CIdentity Protection
DApplication proxy
Explanation
Conditional Access policies can restrict access based on device management, while other options manage user roles or application access.
Q42
What happens when configuring an Azure Virtual Network with subnets?
ASubnets cannot communicate with each other
BSubnets have overlapping IP ranges
CSubnet route tables are mandatory
DSubnets can route traffic internally
Explanation
Subnets within the same virtual network can communicate, while other options present false limitations or requirements.
Q43
Which service helps manage mobile devices and applications in Azure?
AMicrosoft Intune
BAzure Functions
CAzure Monitor
DAzure Virtual Machines
Explanation
Microsoft Intune is designed for mobile device management, while the others serve different roles.
Q44
A company needs to ensure users can securely access applications with single sign-on. What Azure service should they utilize?
AAzure Active Directory
BAzure Blob Storage
CAzure Load Balancer
DAzure Logic Apps
Explanation
Azure Active Directory provides single sign-on capabilities, unlike the other options.
Q45
What happens when a device is marked as compliant in Intune?
AAccess is restricted immediately
BUser account is locked
CPolicy settings are enforced
DDevice is temporarily disabled
Explanation
Marking a device as compliant signifies that policy settings are enforced, whereas the other options propose incorrect consequences.
Q46
Which feature allows you to apply security settings to Azure resources centrally?
AAzure Policy
BAzure Logic Apps
CAzure Monitor
DAzure DevOps
Explanation
Azure Policy enables centralized management of security settings; the other options focus on different functionalities.
Q47
A company needs to provide secure access to on-premises applications for remote users. What Azure service should they consider?
AAzure Bastion
BAzure VPN Gateway
CAzure Application Gateway
DAzure Logic Apps
Explanation
Azure VPN Gateway establishes secure VPN connections; the other options serve different networking or application roles.
Q48
You are configuring an Azure Active Directory group. What happens when you assign a license to a group instead of an individual user?
AAll members get the license
BOnly admins can use the license
CLicense applies to specific users only
DNo impact on all users
Explanation
Assigning a license to a group enables all group members to receive the license; group licenses do not restrict licenses to admins or specific users.
Q49
A company needs to unify device management. Which service should they use?
AMicrosoft Endpoint Manager
BAzure DevOps
CAzure Functions
DMicrosoft Teams
Explanation
Microsoft Endpoint Manager allows for unified device management; the others do not serve this purpose.
Q50
What happens when a user device is marked as Compliant in Intune?
AAccess is denied to corporate resources
BDevice can access corporate resources
CDevice is automatically wiped
DNotifications are sent to IT admin
Explanation
A compliant device can access corporate resources; non-compliance results in restrictions, not automatic wipes.