exam questions

Exam SC-300 All Questions

View all questions & answers for the SC-300 exam

Exam SC-300 topic 2 question 8 discussion

Actual exam question from Microsoft's SC-300
Question #: 8
Topic #: 2
[All SC-300 Questions]

DRAG DROP -
You have a Microsoft 365 E5 tenant.
You purchase a cloud app named App1.
You need to enable real-time session-level monitoring of App1 by using Microsoft Cloud App Security.
In which order should you perform the actions? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
Select and Place:

Show Suggested Answer Hide Answer
Suggested Answer:

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
JasonYin
Highly Voted 3 years, 10 months ago
1. Publish App1. 2. Create a conditional access policy that has session controls configured. 3. From MCAS modify the Connected apps settings 4. From MCAS create a session policy Reference - https://techcommunity.microsoft.com/t5/itops-talk-blog/step-by-step-blocking-data-downloads-via-microsoft-cloud-app/ba-p/326357
upvoted 93 times
Ed2learn
3 years, 10 months ago
From my reading - I think you have 3 and 4 reversed. The MCAS session policy is first created then the setting is modified. let me know if you think I am wrong.
upvoted 2 times
w00t
2 years, 7 months ago
Within MCAS, you need to click "Edit Settings" within the Connected App (App1), and check the checkbox for allowing "Session controlled policies" before you can actually create a Session controlled policy. JasonYin posted the corrected steps.
upvoted 5 times
...
NawafAli
3 years, 3 months ago
based on testing, From modify the Connected apps settings will be before you can create a session policy in mcas.
upvoted 3 times
...
...
jack987
2 years, 4 months ago
I agree with JasonYin. The correct answer is: 1. Publish App1. 2. Create a conditional access policy that has session controls configured. 3. From MCAS modify the Connected apps settings 4. From MCAS create a session policy Reference - https://techcommunity.microsoft.com/t5/itops-talk-blog/step-by-step-blocking-data-downloads-via-microsoft-cloud-app/ba-p/326357
upvoted 3 times
...
Xyz_40
2 years, 11 months ago
Correct... perfect
upvoted 2 times
...
...
Ed2learn
Highly Voted 3 years, 10 months ago
The given answer is wrong and I differ slightly from Jason below. 1) publish app 2) create a conditional access policy that has session controls - this begins the process for 3) From MCAS create a session policy 4) from MCAS modify the connected apps settings.
upvoted 33 times
melatocaroca
3 years, 9 months ago
check jason link https://techcommunity.microsoft.com/t5/itops-talk-blog/step-by-step-blocking-data-downloads-via-microsoft-cloud-app/ba-p/326357
upvoted 1 times
...
Xyz_40
2 years, 11 months ago
Nop, the last two should be interchanged.
upvoted 3 times
...
Bloembar
3 years, 9 months ago
Correct tested it on a lab envoriment
upvoted 4 times
...
w00t
2 years, 7 months ago
Ed2Learn - incorrect. Steps 3 and 4 should be swapped. You CANNOT CREATE A SESSION POLICY IN MCAS for a specific app (App1) unless the app (App1) has it's Connected Apps settings changed (Enable Session Controlled policy checkbox needs to be checked - this is not done by default)
upvoted 2 times
...
...
EmnCours
Most Recent 1 year, 8 months ago
1. Publish App1. 2. Create a conditional access policy that has session controls configured. 3. From MCAS modify the Connected apps settings 4. From MCAS create a session policy
upvoted 4 times
...
Heshan
1 year, 9 months ago
On the exam, 09/07/2023
upvoted 2 times
...
dule27
1 year, 9 months ago
1. Publish App1. 2. Create a conditional access policy that has session controls configured. 3. From MCAS modify the Connected apps settings 4. From MCAS create a session policy
upvoted 1 times
...
AMZ
1 year, 10 months ago
Question valid - 06/23
upvoted 2 times
...
eleazarrd
2 years ago
Publicar App1 en Azure Active Directory (Azure AD). Desde Microsoft Cloud App Security, crear una política de sesión. Crear una política de acceso condicional que tenga configurado el control de sesión. Desde Microsoft Cloud App Security, modifique la configuración de aplicaciones conectadas para App1. La publicación de App1 en Azure AD es el primer paso para habilitar la supervisión en tiempo real de la aplicación con Microsoft Cloud App Security. Luego, se debe crear una política de sesión en Microsoft Cloud App Security para la aplicación App1. Después, se debe crear una política de acceso condicional que tenga configurado el control de sesión. Finalmente, se debe modificar la configuración de aplicaciones conectadas para App1 en Microsoft Cloud App Security para habilitar la supervisión en tiempo real de la aplicación.
upvoted 2 times
...
fuzzilogic
2 years, 1 month ago
I ask to chat GPT, and this is the correct answer: 1. Publish App1 in Azure Active Directory (Azure AD) 2. Create a conditional access policy that has session control configured 3. From Microsoft Cloud App Security, Create A session policy 4. From Microsoft Cloud App Security, modify the Connected apps settings for app1
upvoted 4 times
hml_2024
7 months, 4 weeks ago
This is also from ChatGPT. the correct order is: Publish App1 in Azure Active Directory (Azure AD) From Microsoft Cloud App Security, modify the Connected apps settings for App1 Create a conditional access policy that has session controls configured From Microsoft Cloud App Security, create a session policy
upvoted 1 times
...
...
Arjanussie
2 years, 1 month ago
I agree with Jason https://learn.microsoft.com/en-us/defender-cloud-apps/proxy-deployment-aad
upvoted 1 times
...
[Removed]
2 years, 4 months ago
Explanation is correct: https://www.examtopics.com/exams/microsoft/sc-300/view/11/#:~:text=The%20correct%20order%20is,allowing%20session%20controlled%20policies.
upvoted 1 times
...
Faheem2020
2 years, 7 months ago
After creating conditional access policy with session control, you then go to Defender for Cloud Apps, select the app and use onboard with session control. After that you create session policy as per this article https://learn.microsoft.com/en-us/defender-cloud-apps/proxy-deployment-any-app
upvoted 1 times
...
samir45
2 years, 7 months ago
Correct answer: 1) Publish App 2) In Azure AD, create a conditional access policy that has session controls. 3) From MCAS, create a session policy 4) From MCAS, modify the connected apps settings.
upvoted 2 times
...
w00t
2 years, 7 months ago
The correct order is what JasonYin posted: 1. Publish App1. 2. Create a conditional access policy that has session controls configured. 3. From MCAS modify the Connected apps settings 4. From MCAS create a session policy Everyone who is saying that Step 3 should be "Create a Session Policy" is wrong. When creating a Session policy for the specific application in question (App1), you won't be able to select App1 from the list of applications in this policy unless you FIRST "Modify the Connected Apps settings for App1", and select "Edit Settings" and check the checkbox for allowing session controlled policies.
upvoted 2 times
...
Zubairr13
2 years, 9 months ago
On the exam, 7/23/2022.
upvoted 2 times
...
shine98
2 years, 10 months ago
On the exam - June 12, 2022
upvoted 1 times
...
RandomNickname
2 years, 10 months ago
After looking into the video by VinoTee and Jason's link, 3, 4 should be create session pol for it to be generated, once it's generated modify from it's base settings. Unless I'm misunderstanding, but how can you modify something that you haven't already initially created? Feel free to add your input but; 1:Publish App 2: Created conditional access pol with session control 3: Create session pol 4: Modify connected app settings
upvoted 3 times
...
Nilz76
3 years ago
This question was in the exam 28/April/2022
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago