You have a Microsoft 365 subscription that contains 1,000 users. Each user is assigned a Microsoft 365 E5 license.
The subscription uses sensitivity labels to classify corporate documents. All the users have Windows 11 devices that are onboarded to Microsoft Defender for Endpoint and are configured to sync files to Microsoft OneDrive.
You need to prevent the users from uploading the documents from OneDrive to external websites.
What should you include in the solution?
You need to design a strategy for securing the SharePoint Online and Exchange Online data. The solution must meet the application security requirements.
Which two services should you leverage in the strategy? Each correct answer presents part of the solution. NOTE; Each correct selection is worth one point.
You need to recommend a solution for securing the landing zones. The solution must meet the landing zone requirements and the business requirements.
What should you configure for each landing zone?
One of the stipulations is to meet the business requirements of minimizing costs. ExpressRoute is expensive.
Given the landing zone requirements of
1) 'Use a DNS namespace of litware.com'
2) 'Ensure that the Azure virtual machines in each landing zone communicate with Azure App Service web apps in the same zone over the Microsoft backbone network, rather than over public endpoints'
Your on-premises network contains an Active Directory Domain Services (AD DS) domain named corpxontoso.com and an AD DS-integrated application named App1.
Your perimeter network contains a server named Server1 that runs Windows Server.
You have a Microsoft Entra tenant named contoso.com that syncs with corp.contoso.com.
You plan to implement a security solution that will include the following configurations:
* Manage access to App1 by using Microsoft Entra Private Access.
* Deploy a Microsoft Entra application proxy connector to Server1.
* Implement single sign-on (SSO) for App1 by using Kerberos constrained delegation.
* For Server1, configure the following rules in Windows Defender Firewall with Advanced Security:
o Rule1: Allow TCP 443 inbound from a designated set of Azure URLs.
o Rule2: Allow TCP 443 outbound to a designated set of Azure URLs.
o Rule3: Allow TCP 80 outbound to a designated set of Azure URLs.
o Rule4: Allow TCP 389 outbound to the domain controllers on corp.contoso.com.
You need to maximize security for the planned implementation. The solution must minimize the impact on the connector.
Which rule should you remove?
You have to Azure subscriptions that contain 100 role-based access control (RBAC) role assignments.
You plan to consolidate the role assignments.
You need to recommend a solution to identify which role assignments were NOT used during the last 90 days. The solution must minimize administrative effort.
What should you include in the recommendation?
Charlene
7 days agoAshley
2 months agoJeannetta
2 months agoCaitlin
3 months agoRolande
3 months agoDestiny
3 months agoNiesha
4 months agoVi
4 months agoBrunilda
4 months agoIvette
5 months agoFelicidad
5 months agoWilliam
5 months agoMi
5 months agoLenna
6 months agoTerrilyn
6 months agoSherita
6 months agoKimberlie
6 months agoRolland
6 months agoRegenia
7 months agoLisbeth
7 months agoLaquanda
7 months agoIrene
7 months agoWei
7 months agoTammara
8 months agoVivan
8 months agoLuann
8 months agoChana
8 months agoKenneth
8 months agoCassi
9 months agoLonny
9 months agoGilma
9 months agoMargot
9 months agoLizbeth
9 months agoJaclyn
10 months agoIvette
10 months agoBritt
11 months agoTaryn
11 months agoValene
11 months agoBette
11 months agoRory
12 months agoKimberely
12 months agoDelpha
12 months agoHeike
12 months agoVincent
1 years agoNoelia
1 years ago