Question 201
You have a Microsoft Exchange organization that uses an SMTP address space of contoso.com.
Several users use their contoso.com email address for self-service sign-up to Azure Active Directory (Azure AD).
You gain global administrator privileges to the Azure AD tenant that contains the self-signed users.
You need to prevent the users from creating user accounts in the contoso.com Azure AD tenant for self-service sign-up to Microsoft 365 services.
Which PowerShell cmdlet should you run?
Question 202
Hotspot Question
You have a Microsoft 365 E5 subscription that contains two groups named Group1 and Group2.
The subscription contains the users shown in the following table.
You create the following Conditional Access policies:
Name: Policy1
Users:
o Include: Group1
o Exclude: Group2
Target resources:
o Include: All cloud apps
Grant:
o Grant access: Require multi-factor authentication
Session:
o Persistent browser session: Never persistent
Name: Policy2
Users:
o Include:
- Directory roles: Global Administrator
- Users and groups: User3
o Exclude: Group2
Target resources:
o Include: All cloud apps
Session:
o Sign-in frequency:
- Periodic authentication: 2 hours
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Question 203
You have an Azure AD tenant that contains the groups shown in the following table.
You create an access review for Group1 as shown in the following table.
You create an access review for Group2 as shown in the following table.
What is the minimum number of Azure AD Premium P2 licenses required for each group? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
Question 204
Drag and Drop Question
Your on-premises network contains an Active Directory Domain Services (AD DS) domain. The domain contains a server named Server1 that runs Windows Server and hosts a shared folder named Share1. The domain contains 500 devices that run Windows 11.
You have a Microsoft 365 E5 subscription that syncs with the domain.
From Global Secure Access, you enable the Private access profile and deploy the Global Secure Access client to all the devices.
You need to ensure that the devices can connect to Share1 remotely by using Global Secure Access.
Which three actions should you perform in sequence? To answer move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
Question 205
You have an Azure AD tenant that contains the groups shown in the following table.
You create an access review for Group1 as shown in the following table.
You create an access review for Group2 as shown in the following table.
What is the minimum number of Azure AD Premium P2 licenses required for each group? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.





