exam questions

Exam SC-300 All Questions

View all questions & answers for the SC-300 exam

Exam SC-300 topic 2 question 109 discussion

Actual exam question from Microsoft's SC-300
Question #: 109
Topic #: 2
[All SC-300 Questions]

You have a Microsoft Entra tenant.

You configure self-service password reset (SSPR) by using the following settings:

• Require users to register when signing in: Yes
• Number of methods required to reset: 1

What is a valid authentication method available to users?

  • A. an email to an address outside your organization
  • B. a mobile app notification
  • C. a smartcard
  • D. an email to an address in your organization
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
nicolaslindt
Highly Voted 3 months, 3 weeks ago
Selected Answer: A
When administrators require one method be used to reset a password, verification code is the only option available for the app option. (https://learn.microsoft.com/en-us/entra/identity/authentication/concept-sspr-howitworks). The following authentication methods are available for SSPR: Mobile app notification Mobile app code Email Mobile phone Office phone (available only for tenants with paid subscriptions) Security questions
upvoted 5 times
...
Obi_Wan_Jacoby
Most Recent 1 month ago
Selected Answer: B
I am going with B. I researched this quite a bit online using different articles and ran a lot thru copilot. The Email option for Self-Service Password Reset (SSPR) can be configured for either internal or external email addresses. However, using an internal email address is generally more secure and recommended. Comparison: Email vs. Mobile App Notification Email: Pros: Easy to set up and use; familiar to most users. Cons: Can be less secure due to potential phishing attacks; relies on users having access to their email. Mobile App Notification: Pros: More secure; uses push notifications through apps like Microsoft Authenticator; less susceptible to phishing. Cons: Requires users to have the app installed and configured. Recommendation: Mobile App Notification is generally better for security and reliability. It provides a stronger defense against phishing and ensures users can securely reset their passwords using a trusted app.
upvoted 2 times
Obi_Wan_Jacoby
1 month ago
Also, the only option in SSPR reset for email is simply titled "Email", not external or internal as the question asks. The following authentication methods are available for SSPR: Mobile app notification Mobile app code Hardware OATH token Software OATH token Email Mobile phone Office phone (available only for tenants with paid subscriptions) Security questions
upvoted 1 times
...
...
rvln7
2 months, 2 weeks ago
Selected Answer: A
"When administrators require one method be used to reset a password, verification code is the only option available. When administrators require two methods be used to reset a password, users are able to use notification OR verification code in addition to any other enabled methods." https://learn.microsoft.com/en-us/entra/identity/authentication/concept-sspr-howitworks?source=recommendations#authentication-methods so we can NOT use a mobile app notification here and SSPR does not allow sending reset codes to internal email addresses due to security risks. so the right answer is A. Users can receive a verification code via an external email guys, please stop guessing answers, read the documentation first
upvoted 2 times
...
Btn26
4 months, 2 weeks ago
Selected Answer: B
For self-service password reset (SSPR) in Microsoft Entra, a valid authentication method available to users is **a mobile app notification** (Option B)[1](https://learn.microsoft.com/en-us/entra/identity/authentication/concept-sspr-howitworks)[2](https://learn.microsoft.com/en-us/entra/identity/authentication/tutorial-enable-sspr). This method is commonly used for verifying user identity during the password reset process. [1](https://learn.microsoft.com/en-us/entra/identity/authentication/concept-sspr-howitworks): [Microsoft Learn - Self-service password reset deep dive](https://learn.microsoft.com/en-us/entra/identity/authentication/concept-sspr-howitworks) [2](https://learn.microsoft.com/en-us/entra/identity/authentication/tutorial-enable-sspr): [Microsoft Learn - Enable Microsoft Entra self-service password reset](https://learn.microsoft.com/en-us/entra/identity/authentication/tutorial-enable-sspr)
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago