You are configuring user access control in Azure AD. Which policy would restrict access based on user location?
AConditional Access Policy
BAccess Review Policy
CIdentity Protection Policy
DPassword Policy
Explanation
Conditional Access Policies can enforce access controls based on user location; the others do not affect access based on location.
Q32
A company needs to temporarily halt data processing on an Azure VM without deleting the associated resources. What should they do?
AStop the VM
BDelete the VM
CDeallocate the VM
DTerminate the subscription
Explanation
Deallocating the VM stops all processes and releases resources, while stopping the VM keeps it allocated. Deleting the VM removes all associated resources.
Q33
What happens when a shared mailbox reaches its storage limit in Microsoft 365?
ANo new emails are accepted
BEmails are deleted automatically
CMailbox becomes read-only
DService is terminated immediately
Explanation
When a shared mailbox reaches its limit, it will not accept new emails until space is cleared; emails are not deleted randomy or the service terminated.
Q34
Which Microsoft 365 feature allows user attribute synchronization with Azure AD?
AAzure AD Connect
BAzure AD Sync
CMicrosoft Graph API
DIdentity Protection
Explanation
Azure AD Connect is designed for user attribute synchronization while the others do not fulfill this specific purpose.
Q35
A company needs to restrict sensitive document sharing externally. What should they implement?
AData Loss Prevention policies
BAzure Information Protection
CConditional Access Policies
DRole-Based Access Control
Explanation
Data Loss Prevention policies are specifically designed to prevent sensitive data sharing externally, unlike the others which address different concerns.
Q36
What happens when an Azure subscription goes into a disabled state?
AAll resources are permanently deleted
BResources become read-only
CBilling continues as usual
DAzure services remain fully operational
Explanation
In disabled state, resources become read-only but are not deleted; billing does not continue and services are not fully operational.
Q37
Which service is used for managing Azure subscriptions?
AAzure Portal
BAzure Storage
CAzure Functions
DAzure Active Directory
Explanation
Azure Portal provides subscription management, while the others serve different functions.
Q38
A company needs to ensure their SharePoint Online sites are compliant with regulations. What should they implement?
AData Loss Prevention
BAzure Virtual Network
CMicrosoft Exchange
DPower Automate
Explanation
Data Loss Prevention (DLP) policies help enforce compliance, unlike the other options.
Q39
You are configuring Multi-Factor Authentication (MFA) for Azure AD users. What happens if a user cannot verify a second method?
AAccess is granted automatically
BUser cannot sign in
CMFA will be disabled
DAccess is granted on first attempt
Explanation
If a second method isn't verified, the user cannot sign in, ensuring security is maintained.
Q40
Which service provides identity protection in Azure?
AAzure Active Directory
BAzure Storage
CAzure Functions
DAzure Virtual Machines
Explanation
Azure Active Directory offers identity protection features, while others do not focus on identity management.