exam questions

Exam SC-300 All Questions

View all questions & answers for the SC-300 exam

Exam SC-300 topic 8 question 2 discussion

Actual exam question from Microsoft's SC-300
Question #: 2
Topic #: 8
[All SC-300 Questions]

HOTSPOT -
You need to support the planned changes and meet the technical requirements for MFA.
Which feature should you use, and how long before the users must complete the registration? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Hot Area:

Show Suggested Answer Hide Answer
Suggested Answer:
Box 1: A Conditional Access policy
Litware identifies the following authentication requirements:
Implement multi-factor authentication (MFA) for all Litware users by using conditional access policies.

Box 2: 14 days -
Multi-factor authentication (MFA): multi-factor authentication is a type of authentication that requires the use of two or more verification factors to gain access to a system. Azure MFA offers a 14 day grace period after being initiated.
Reference:
https://www.syskit.com/blog/using-azure-conditional-access-when-security-defaults-isnt-enough/

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Hot_156
Highly Voted 2 years, 2 months ago
Well, this is something confuse... They ask you to force MFA using CA policy. If you use it, you will be forced to register for MFA YES or YES and there will not be any 14 days grace period. This happens when you use CA, so if they are giving you the option to choose grace days, the answer cannot be MFA CA policy. It has to be MFA registration. I TESTED THIS! there you have, if they ask you for something with 14 days grace period, it cannot be MFA CA policy, if they don't give you that option on the exam, you can go for MFA CA.
upvoted 18 times
Alcpt
6 months, 1 week ago
correct. as per https://techcommunity.microsoft.com/t5/security-compliance-and-identity/mfa-14-days-grace-period/m-p/3203306
upvoted 1 times
...
...
zed026
Highly Voted 2 years, 3 months ago
First answer should be MFA registration policy. https://docs.microsoft.com/en-us/azure/active-directory/identity-protection/howto-identity-protection-configure-mfa-policy#policy-configuration
upvoted 14 times
w00t
2 years, 3 months ago
But the requirement literally says: "Implement multi-factor authentication (MFA) for all Litware users by using CONDITIONAL ACCESS POLICIES." lol
upvoted 1 times
prelek1984
2 years, 2 months ago
but Conditional access doesn't offer 14 day grace period
upvoted 12 times
...
...
...
naveenbio
Most Recent 3 days, 21 hours ago
There are two ways to get a 14-day grace period for MFA registration: Security Defaults (Free): Enables MFA for everyone in your tenant, no extra licenses needed. MFA Registration Policy (Paid): More granular control, requires Azure AD Premium P2 licenses. https://learn.microsoft.com/en-us/entra/id-protection/howto-identity-protection-configure-mfa-policy
upvoted 1 times
...
ACSC
1 year, 2 months ago
MFA registration policy 14 days https://learn.microsoft.com/en-us/azure/active-directory/identity-protection/howto-identity-protection-configure-mfa-policy#what-is-the-azure-ad-multifactor-authentication-registration-policy
upvoted 4 times
...
Leon1969
1 year, 2 months ago
MFA registration policy: https://learn.microsoft.com/en-us/azure/active-directory/identity-protection/howto-identity-protection-configure-mfa-policy Microsoft Entra ID Protection will prompt your users to register the next time they sign in interactively and they'll have 14 days to complete registration
upvoted 2 times
...
ServerBrain
1 year, 3 months ago
What are the technical requirements to be implemented to meet MFA?? These are:• Implement multi-factor authentication (MFA) for all Litware users by using conditional access policies. • Exempt users from using MFA to authenticate to Azure AD from the Boston office of Litware. • Enforce MFA when accessing on-premises applications. • Control all access to all Azure resources and Azure AD applications by using conditional access policies. • Implement a conditional access policy that has session controls for Microsoft SharePoint Online. So,,,, if you need Conditional Access Policies, not CA Registration policy..
upvoted 3 times
...
JN_311
1 year, 5 months ago
Based on the MS link: https://learn.microsoft.com/en-us/azure/active-directory/identity-protection/howto-identity-protection-configure-mfa-policy#what-is-the-azure-ad-multifactor-authentication-registration-policy Answer: MFA Registration Policy 14 Days
upvoted 3 times
...
dule27
1 year, 5 months ago
A Conditional access policy 14 days
upvoted 1 times
AK_1234
1 year, 2 months ago
Incorrect. - MFA Registeration policy - 14 days https://learn.microsoft.com/en-us/azure/active-directory/identity-protection/howto-identity-protection-configure-mfa-policy#what-is-the-azure-ad-multifactor-authentication-registration-policy
upvoted 1 times
...
...
dobriv
1 year, 8 months ago
I think the first answer is MFA registration policy : ......for the 14 day grace period to apply to users when registering for MFA, there are two ways to achieve this. One way would be to enable Security Defaults which would enable MFA for the entire tenant. This option does not need additional licenses and can be enabled from the AAD portal. The second option would be to enable the AAD MFA Registration Policy. To do this, you would require Identity Protection, which is included within the AAD Premium P2 licenses. This policy will apply to Conditional Access Policies.
upvoted 1 times
...
estyj
2 years ago
I would say conditional access policy since it said to Implement multi-factor authentication (MFA) for all Litware users by using conditional access policies. 14 day grace period. Exempt users from using MFA to authenticate to Azure AD from the Boston office of Litware.
upvoted 3 times
chikorita
1 year, 8 months ago
this made the most sense to me
upvoted 1 times
...
...
Jacordoba
2 years, 2 months ago
MFA registration Policy 14 days should be the answer
upvoted 6 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago