exam questions

Exam AZ-103 All Questions

View all questions & answers for the AZ-103 exam

Exam AZ-103 topic 5 question 9 discussion

Actual exam question from Microsoft's AZ-103
Question #: 9
Topic #: 5
[All AZ-103 Questions]

From the MFA Server blade, you open the Block/unblock users blade as shown in the exhibit.

What caused AlexW to be blocked?

  • A. The user account password expired.
  • B. The user entered an incorrect PIN four times within 10 minutes.
  • C. An administrator manually blocked the user.
  • D. The user reported a fraud alert when prompted for additional authentication.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️
An Administrator can block a user:
1. Sign in to the Azure portal as an administrator.
2. Browse to Azure Active Directory > MFA > Block/unblock users.
3. Select Add to block a user.
4. Select the Replication Group. Enter the username for the blocked user as [email protected]. Enter a comment in the Reason field, for example: Lost phone.
5. Select Add to finish blocking the user.
Reference:
https://docs.microsoft.com/en-us/azure/active-directory/authentication/howto-mfa-mfasettings

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
aelqasabi
Highly Voted 5 years ago
Fraud alert Configure the fraud alert feature so that your users can report fraudulent attempts to access their resources. Users can report fraud attempts by using the mobile app or through their phone his phone is losted correct Answer C
upvoted 18 times
LTTAM
4 years, 10 months ago
How do they do that if their phone is lost??
upvoted 2 times
...
...
CristianN
Highly Voted 4 years, 12 months ago
IF MFA requires to enter a code when a user reports a fraud, and the reason for blocking that account is "Lost phone" how would he did to report the fraud? "Code to report fraud during initial greeting: When users receive a phone call to perform two-step verification, they normally press # to confirm their sign-in. To report fraud, the user enters a code before pressing #. This code is 0 by default, but you can customize it." The logical answer is C.
upvoted 13 times
...
tashakori
Most Recent 1 year, 1 month ago
C is correct
upvoted 1 times
...
Ozguraydin
4 years, 3 months ago
Answer is C. https://docs.microsoft.com/en-us/azure/active-directory/authentication/howto-mfa-mfasettings#block-and-unblock-users
upvoted 1 times
...
Saman2020
4 years, 8 months ago
Sign in to the Azure portal as an administrator. Browse to Azure Active Directory > MFA Server > Fraud alert Set the Allow users to submit fraud alerts setting to On Block user when fraud is reported.
upvoted 1 times
...
_syamantak
4 years, 9 months ago
Tricky question! Both C and D options can get an user locked. However, I dont expect Azure to set a comment 'user lost phone' if the actual reason is an user reporting a fraud alert. So I will go with C, and administrator blocking the MFA for the user and entered the comment.
upvoted 3 times
...
Shades
4 years, 9 months ago
Lets analyse which answer is correct: A. The user account password expired...It will not lead to account being blocked B. The user entered an incorrect PIN four times within 10 minutes...This may lead to account being locked (if you configure it like that, there is diff setting for that) C. An administrator manually blocked the user...Yes provide a comment & block a user D. The user reported a fraud alert when prompted for additional authentication....if a user receives an unknown MFA prompt , he can report it as fraud & the account get locked for 90 days..but then you dont get to fill that comment as we see in the question.
upvoted 6 times
...
Rajat0702
4 years, 10 months ago
Catch is the remark-Lost phone ..and thats manual entry by an admin .
upvoted 2 times
Jer0i
4 years, 10 months ago
I don't get it, is Microsoft wanting us to learn about Azure or work on our psychic abilities?
upvoted 14 times
batoyor933
4 years, 8 months ago
i literally laughed when i saw this. :)
upvoted 3 times
...
...
...
remz
4 years, 10 months ago
Common Sense Guys, MFA is required, so Phone is Required, user have no way of claiming anything on his account since he cannot Log in, its the admin that did the work C for sure its correct
upvoted 2 times
...
Omnipitus
4 years, 10 months ago
The Admin can complete a 'Reason field' when manually blocking a user. This is what the question is looking for.
upvoted 3 times
...
anon1234
4 years, 10 months ago
Has to be c: Manual block due to the "lost phone" comment... Below extract says you have to enter a comment when blocking a user. I cant find anything re comments from a fruad alert... Block and unblock users If a user's device has been lost or stolen, you can block authentication attempts for the associated account. Any authentication attempts for blocked users are automatically denied. Users remain blocked for 90 days from the time that they are blocked. Block a user To block a user, complete the following steps: Browse to Azure Active Directory > Security > MFA > Block/unblock users. Select Add to block a user. Select the Replication Group, then choose Azure Default. Enter the username for the blocked user as username\@domain.com, then provide a comment in the Reason field. When ready, select OK to block the user.
upvoted 4 times
...
macco455
4 years, 10 months ago
Correct Answer is C. There is no way to block a user automatically cause they lost their phone. An admin would have to go in and manually block them
upvoted 3 times
...
PM2
4 years, 11 months ago
Correct Answer, Exam question
upvoted 4 times
senseibrutal
4 years, 11 months ago
was it on your exam? I go with C
upvoted 4 times
...
...
chancer
5 years ago
D) Block user when fraud is reported: If a user reports fraud, their account is blocked for 90 days or until an administrator unblocks their account. An administrator can review sign-ins by using the sign-in report, and take appropriate action to prevent future fraud. An administrator can then unblock the user's account.
upvoted 9 times
Charl
5 years ago
I would say C- the question is made to catch you, there is no automated response that would make an option for Lost Phone, thus this looks like an admin could have entered a description and not an automated reason, leaving you with C.
upvoted 19 times
Neonlight8
4 years, 2 months ago
Screenshot shows lost phone, must be the admin entered that reason therefore C is correct
upvoted 1 times
...
...
Dungeon_Master
5 years ago
Agreed. The answer is D.
upvoted 2 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago