AZ-104: Microsoft Azure Administrator Practice
Exam with 250 Questions and answers | latest
update
Save
Terms in this set (251)
What should you use to assign Role-Based Access Control (RBAC)
permissions to a group of users to
manage virtual machines in a
resource group?
Which Azure AD edition is required to Premium P1
implement Conditional Access
policies?
What should you use to enforce that Azure Policy
all resources in a subscription must
have a specific tag?
What type of resource lock prevents CannotDelete
deletion but allows modifications?
What should you implement to Management groups
manage resources across multiple
subscriptions as a single unit?
,Which role provides full access to all Contributor
resources but cannot assign roles in
Azure RBAC?
What is the maximum number of 5,000
custom roles you can create in an
Azure subscription?
What should you use to provide Azure AD Privileged Identity Management (PIM)
temporary elevated access to Azure
resources?
Which authentication method FIDO2 security keys
provides the highest level of security
for Azure AD users?
What feature should you use to Group-based licensing
automatically assign licenses to
users when they join a specific
group?
What is the scope of a custom RBAC Management group, subscription, or resource
role? group
What should you use to audit all Azure Activity Log
activities performed on Azure
resources?
Which Azure AD feature allows users Self-service password reset (SSPR)
to reset their own passwords?
, What should you deploy to Azure AD Connect
synchronize on-premises Active
Directory with Azure AD?
What is the maximum number of 500
Azure AD tenants a user account can
belong to?
What should you configure to Azure Policy with allowed locations
prevent users from creating Azure
resources outside of approved
regions?
Which Azure service allows you to Azure Blueprints
create reusable environment
definitions with policies and RBAC?
What is the minimum Azure AD role User Administrator
required to create a new user?
What should you configure to ensure Nothing - this is default behavior
that deleted users can be restored
within 30 days?
What scope provides the broadest Management group
access for an Azure RBAC
assignment?
What should you configure to Dynamic user groups
automatically add users to groups
based on user attributes?
Exam with 250 Questions and answers | latest
update
Save
Terms in this set (251)
What should you use to assign Role-Based Access Control (RBAC)
permissions to a group of users to
manage virtual machines in a
resource group?
Which Azure AD edition is required to Premium P1
implement Conditional Access
policies?
What should you use to enforce that Azure Policy
all resources in a subscription must
have a specific tag?
What type of resource lock prevents CannotDelete
deletion but allows modifications?
What should you implement to Management groups
manage resources across multiple
subscriptions as a single unit?
,Which role provides full access to all Contributor
resources but cannot assign roles in
Azure RBAC?
What is the maximum number of 5,000
custom roles you can create in an
Azure subscription?
What should you use to provide Azure AD Privileged Identity Management (PIM)
temporary elevated access to Azure
resources?
Which authentication method FIDO2 security keys
provides the highest level of security
for Azure AD users?
What feature should you use to Group-based licensing
automatically assign licenses to
users when they join a specific
group?
What is the scope of a custom RBAC Management group, subscription, or resource
role? group
What should you use to audit all Azure Activity Log
activities performed on Azure
resources?
Which Azure AD feature allows users Self-service password reset (SSPR)
to reset their own passwords?
, What should you deploy to Azure AD Connect
synchronize on-premises Active
Directory with Azure AD?
What is the maximum number of 500
Azure AD tenants a user account can
belong to?
What should you configure to Azure Policy with allowed locations
prevent users from creating Azure
resources outside of approved
regions?
Which Azure service allows you to Azure Blueprints
create reusable environment
definitions with policies and RBAC?
What is the minimum Azure AD role User Administrator
required to create a new user?
What should you configure to ensure Nothing - this is default behavior
that deleted users can be restored
within 30 days?
What scope provides the broadest Management group
access for an Azure RBAC
assignment?
What should you configure to Dynamic user groups
automatically add users to groups
based on user attributes?