exam questions

Exam MS-102 All Questions

View all questions & answers for the MS-102 exam

Exam MS-102 topic 1 question 192 discussion

Actual exam question from Microsoft's MS-102
Question #: 192
Topic #: 1
[All MS-102 Questions]

HOTSPOT
-

Your network contains an on-premises Active Directory domain named adatum.com that syncs to Azure AD by using the Azure AD Connect Express Settings. Password writeback is disabled.

You create a user named User1 and enter Pass in the Password field as shown in the following exhibit.



The Azure AD password policy is configured as shown in the following exhibit.



You confirm that User1 is synced to Azure AD.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.

Show Suggested Answer Hide Answer
Suggested Answer:

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Casticod
Highly Voted 1 year, 7 months ago
YES NO NO If password writeback is disabled, the password policies in Azure AD and on-premises Active Directory will be enforced independently. By default, the Azure AD password policy requires users to change their passwords every 90 days. However, if you have a hybrid environment and are synchronizing passwords from on-premises Active Directory to Azure AD, the on-premises password policy will apply to your users. In this case, the password expiration period will be determined by your on-premises Active Directory policy settings, not by Azure AD. If you want to enforce a consistent password expiration policy for both on-premises and cloud users, you should configure the password policies in both environments to have the same settings. https://www.examtopics.com/discussions/microsoft/view/48898-exam-ms-100-topic-3-question-69-discussion/
upvoted 35 times
...
kt_thomas
Highly Voted 1 year, 5 months ago
whoever created the answer to this question should be fired
upvoted 9 times
...
justITtopics
Most Recent 6 months ago
1. Yes, the user is synchronized. 2. No, Password WriteBack is disabled, so the password must be changed in Active Directory, if the user changes the password in the My Apps portal, it will be overridden by the password from AD in the next ADDC sync process. 3. No, if you configure Entra Connect with Password Hash Synchronization (Express Settings), the app will apply the PasswordNeverExpires policy for each user, unless you had configured the "CloudPasswordPolicyForPasswordSyncedUsersEnabled" prior to setup of Entra Connect. This is only seen by PowerShell, even if you have unchecked "Set passwords to never expire (recommended)" in the Admin Center. https://learn.microsoft.com/en-us/entra/identity/hybrid/connect/how-to-connect-password-hash-synchronization
upvoted 2 times
justITtopics
3 months ago
Also, you can't change your password every 90 days form Azure AD (Entra ID), because password writeback is disabled and it will be change from Active Directory (local) after the next synchronization
upvoted 2 times
...
...
m2L
1 year, 4 months ago
Hello, Accordin to link below, you must enabble CloudPasswordPolicyForPasswordSyncedUsersEnabled before cloud Pasword can apply to Synced User. this feature is not enabled here therefore the answer is no https://learn.microsoft.com/en-us/entra/identity/hybrid/connect/how-to-connect-password-hash-synchronization
upvoted 1 times
...
gomezmax
1 year, 4 months ago
YES,NO, NO the writeback is disabled
upvoted 2 times
...
PhoenixMan
1 year, 5 months ago
In today exam
upvoted 2 times
...
sergioandreslq
1 year, 6 months ago
1. Yes, the user is synced. 2. No, the password must be changed in Active directory, if the user change the password in the My Apps portal, it will be overridden by the password from AD in the next ADDC sync process 3. No, The expiration period comes from Active directory, the policy to expire 90 days in Azure AD doesn't apply. For users synced from on-premises, the password policy is inherited from AD and the policies from Azure AD don't apply.
upvoted 3 times
...
Ranger_DanMT
1 year, 6 months ago
Yes i can verify we don't buy the licensing for SSPR writeback but passwords still expire. Password expire = Y
upvoted 1 times
Ranger_DanMT
1 year, 6 months ago
I misread. should be YNN
upvoted 2 times
...
...
rfree
1 year, 6 months ago
Question states, Azure Pword Policy has set password expiry to 90 days. So YNY, Yes you must change the Azure password. It will not sync back to AD, but still must be changed in Azure. Correct?
upvoted 1 times
agittunc
1 year, 6 months ago
No as it's a hybrid environment it should be changed from AD.
upvoted 1 times
...
...
ninjanaja
1 year, 7 months ago
Because " Password writeback is disabled." YNN
upvoted 6 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago