Microsoft Identity and Access Administrator
SC-300 Exam

View Related Case Study

You need to resolve the issue of the sales department users.

What should you configure for the Azure AD tenant?

  1. the Device settings
  2. the User settings
  3. the Access reviews settings
  4. Security defaults

Answer(s): B

Explanation:

Scenario: There are Sales department users in London and in Seattle.
* The users in the London office have the Microsoft 365 Phone System license unassigned.
* The users in the Seattle office have the Yammer Enterprise license unassigned.

Use the Active users page to unassign licenses.
When you use the Active users page to unassign licenses, you unassign product licenses from users.

Unassign licenses from one user.
In the admin center, go to the Users > Active users page.
Select the row of the user that you want to unassign a license for.
In the right pane, select Licenses and Apps.
Expand the Licenses section, clear the boxes for the licenses that you want to unassign, then select Save changes.


Reference:

https://docs.microsoft.com/en-us/microsoft-365/admin/manage/remove-licenses-from-users



View Related Case Study

You need to resolve the issue of IT_Group1.

What should you do first?

  1. Change Membership type of IT_Group1 to Dynamic User.
  2. Recreate the IT_Group1 group.
  3. Change Membership type of IT Group1 to Dynamic Device.
  4. Add an owner to IT_Group1.

Answer(s): B

Explanation:

Issue: When you attempt to assign the Device Administrators role to IT_Group1, the group does NOT appear in the selection list.

IT_Group: Type - Security, Membership type - assigned, Owner - None, Members - All users in the IT department.

You can only assign a role to a group that was created with the ‘isAssignableToRole’ property set to True, or was created in the Azure portal with Azure AD roles can be assigned to the group turned on. This group attribute makes the group one that can be assigned to a role in Azure Active Directory (Azure AD).

Incorrect:
Not A, not C: A group with isAssignableToRole property set to true cannot be of dynamic membership type.


Reference:

https://docs.microsoft.com/en-us/azure/active-directory/roles/groups-create-eligible



View Related Case Study

You need to implement the planned changes for litware.com.

What should you configure?

  1. Azure AD Connect cloud sync between the Azure AD tenant and litware.com
  2. Azure AD Connect to include the litware.com domain
  3. staging mode in Azure AD Connect for the litware.com domain

Answer(s): A

Explanation:

Even though Azure Connect Sync (Azure AD Connect) supports syncing objects from multiple AD forests, it does not support syncing from more than one on-prem server (https://learn.microsoft.com/en-us/azure/active-directory/hybrid/connect/plan-connect-topologies#multiple-forests-multiple-sync-servers-to-one-microsoft-entra-tenant). For this to work, AD trust would be required and we cannot do it.


Reference:

https://learn.microsoft.com/en-us/azure/active-directory/hybrid/cloud-sync/plan-cloud-sync-topologies#multi-forest-single-microsoft-entra-tenant



View Related Case Study

You need to allocate licenses to the new users from ADatum. The solution must meet the technical requirements.

Which type of object should you create?

  1. a Dynamic User security group
  2. a distribution group
  3. an OU
  4. an administrative unit

Answer(s): D

Explanation:

An administrative unit is an Azure AD resource that can be a container for other Azure AD resources. An administrative unit can contain only users, groups, or devices.

Administrative units restrict permissions in a role to any portion of your organization that you define.

Deployment scenario
It can be useful to restrict administrative scope by using administrative units in organizations that are made up of independent divisions of any kind. Consider the example of a large university that's made up of many autonomous schools (School of Business, School of Engineering, and so on). Each school has a team of IT admins who control access, manage users, and set policies for their school.

Scenario: Contoso plans to acquire a company named ADatum Corporation. One hundred new ADatum users will be created in an Active Directory OU named Adatum. The users will be located in London and Seattle.
Contoso identifies the following technical requirements: License allocation for new users must be assigned automatically based on the location of the user.


Reference:

https://docs.microsoft.com/en-us/azure/active-directory/roles/administrative-units




Jason
I passed my CCNA exam yesterday. I would like to make some comments. "Excellent Study Guide, Excellent Support Service, Excellent Examination Web Site" Best Regards
- UNITED STATES
Upvote


Micheal
Thanks for your study guides, i have passed it. All questions in your material, we study this only 2 days. Thanks very very much!!!!!
- UNITED STATES
Upvote


L. Woo
Thanks very much for your study guides, with your help i only use 3 weeks to take the MCSE. Your study guides are very very good.
- China
Upvote


Mick H.
I passed the CCIE Written exam 350-001 last Friday, Thanks very much for your study guide and your help.
- UNITED STATES
Upvote


Hagit
i ust wanted to thank you folks at braindumgalaxy.com for your assistance. I used your CCNP exams for practice and to identify my weak areas. Passed the CCNP recert on Tuesday without any big problems.
- Israel
Upvote


Cisco Engineer
I have found that your resources are probably the best on the market...and I work at Cisco.
- UNITED STATES
Upvote


Koshani
A well Good morning Dear braindumpgalaxy.com Team I wanna say that I passed the 000-888 yesterday and i am happy
- UNITED STATES
Upvote


Aized
I took the A+ hardware exam yesterday and thanks to your excellent and helping preparation material. I got a nice score.
- Pakistan
Upvote


Nazanin
I passed the exam with great distinction!
- CANADA
Upvote


Xiwan W
Great Price....Great Product. Keep up the good work!
- China
Upvote

Read more ...