exam questions

Exam AZ-303 All Questions

View all questions & answers for the AZ-303 exam

Exam AZ-303 topic 2 question 15 discussion

Actual exam question from Microsoft's AZ-303
Question #: 15
Topic #: 2
[All AZ-303 Questions]

Your network contains an on-premises Active Directory and an Azure Active Directory (Azure AD) tenant.
You deploy Azure AD Connect and configure pass-through authentication.
Your Azure subscription contains several web apps that are accessed from the Internet.
You plan to use Azure Multi-Factor Authentication (MFA) with the Azure Active Directory tenant.
You need to recommend a solution to prevent users from being prompted for Azure MFA when they access the web apps from the on-premises network.
What should you include in the recommendation?

  • A. an Azure policy
  • B. trusted IPs
  • C. a site-to-site VPN between the on-premises network and Azure
  • D. an Azure ExpressRoute circuit
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️
The Trusted IPs feature of Azure Multi-Factor Authentication is used by administrators of a managed or federated tenant. The feature bypasses two-step verification for users who sign in from the company intranet. The feature is available with the full version of Azure Multi-Factor Authentication, and not the free version for administrators.
Reference:
https://docs.microsoft.com/en-us/azure/active-directory/authentication/howto-mfa-mfasettings#trusted-ips

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
sjoerdstefma
Highly Voted 4 years, 6 months ago
Allowing trusted IP is solution. Given answer is correct.
upvoted 27 times
...
czarul79
Highly Voted 4 years, 4 months ago
Q. was on the exam.
upvoted 5 times
...
itvinoth83
Most Recent 3 years, 2 months ago
Appeared in exam on 28-03-2022
upvoted 1 times
...
kristhiank
3 years, 3 months ago
Selected Answer: B
On exam today, Passed
upvoted 2 times
...
syu31svc
3 years, 9 months ago
The Trusted IPs feature of Azure Multi-Factor Authentication bypasses multi-factor authentication prompts for users who sign in from a defined IP address range. You can set trusted IP ranges for your on-premises environments to when users are in one of those locations, there's no Azure Multi-Factor Authentication prompt. https://docs.microsoft.com/en-us/azure/active-directory/authentication/howto-mfa-mfasettings#trusted-ips B is correct
upvoted 2 times
...
hamzeh69
3 years, 11 months ago
Pass exam, come today in my exam 6/7/2021 answer B
upvoted 4 times
...
azurellc
4 years, 1 month ago
On exam 5/15/2021
upvoted 3 times
...
Suharsh
4 years, 1 month ago
Was in today's exam and the given answer is correct.
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...