Chapter 3 – Implementing Conditional Access Policies
- a. Require Azure Advanced Threat Protection
Explanation: Require Azure Advanced Threat Protection is not a condition that exists or that can be applied to any Microsoft 365 location or service.
- a. True
Explanation: N/A
- d. Block modern authentication
Explanation: No such baseline policy exists.
- a. Setting named locations in Azure AD, and c. Setting up MFA trusted IPs
Explanation: The other options do not relate to Conditional Access.
- a. True
Explanation: N/A
- d. The Azure portal under Azure Active Directory | Monitoring | Sign-ins
Explanation: The other options do not provide the ability to monitor Conditional Access events.
- a. Sign-in risk, b. Locations, and e. Device platforms
Explanation: The three correct answers are available under the Assignments | Conditions section of a Conditional Access policy. Directory Roles is available under Assignments | Users and Groups, while MFA is available under Access...