exam questions

Exam MS-203 All Questions

View all questions & answers for the MS-203 exam

Exam MS-203 topic 1 question 59 discussion

Actual exam question from Microsoft's MS-203
Question #: 59
Topic #: 1
[All MS-203 Questions]

HOTSPOT -
You have a Microsoft 365 E5 tenant that contains two Azure Active Directory (Azure AD) security groups named Finance and Marketing. The tenant contains the users and devices shown in the following table.

The devices are configured as shown in the following table.

A conditional access policy is configured as shown in the following exhibit.

From Microsoft Exchange Online PowerShell, you run the following cmdlet.
Set-OwaMailboxPolicy -Identity OwaMailboxPolicy-Default
-ConditionalAccessPolicy ReadOnly
All the users connect to Exchange Online by using Outlook on the web.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Hot Area:

Show Suggested Answer Hide Answer
Suggested Answer:

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Baba65Baba
Highly Voted 2 years, 3 months ago
It has to be YNN Yes, since User1/Device1 is compliant No, since User2/Device 2 isn't part of the Compliance Policy No, since User3/Device 3 CANNOT download, cause the policy is "read only"
upvoted 6 times
Venusaur
2 years, 1 month ago
I agree with you.
upvoted 1 times
...
syougun200x
1 year, 5 months ago
It does not say if any device is compliant.
upvoted 2 times
...
Abdou1604
1 year, 9 months ago
how can u consider it complaint but its not azure AD joined neither enrolled to Intune ?
upvoted 4 times
...
...
Amir1909
Most Recent 6 months, 2 weeks ago
Yes No Yes
upvoted 1 times
...
ServerBrain
8 months ago
Y N N The default policy was applied and is set to ReadOnly. Set-OwaMailboxPolicy -Identity OwaMailboxPolicy-Default -ConditionalAccessPolicy ReadOnly
upvoted 1 times
...
Faheem2020
1 year, 3 months ago
"ConditionalAccessPolicy ReadOnly" in the owa policy specifies what action can be done by users in a non-managed device 1. Yes- The device1 is unmanaged, hence user1 can only view attachments 2. No- The condition access policy is not applicable to user2, therefore he has no restrictions 3. Yes- Since the device is managed, user3 has no restrictions in device 3 https://learn.microsoft.com/en-us/microsoft-365/security/office-365-security/secure-email-recommended-policies?view=o365-worldwide#limit-access-to-exchange-online-from-outlook-on-the-web&preserve-view=true
upvoted 1 times
...
pofofod917
1 year, 5 months ago
-ConditionalAccessPolicy This parameter is available only in the cloud-based service. The ConditionalAccessPolicy parameter specifies the Outlook on the Web Policy for limited access. For this feature to work properly, you also need to configure a Conditional Access policy in the Azure Active Directory Portal. Note: When you enable a Conditional Access policy, users will no longer be able to access the light version of Outlook on the web. An error message will direct them to use the default premium experience. Valid values are: Off: No conditional access policy is applied to Outlook on the web. This is the default value. ReadOnly: Users can't download attachments to their local computer, and can't enable Offline Mode on non-compliant computers. They can still view attachments in the browser. ReadOnlyPlusAttachmentsBlocked: All restrictions from ReadOnly apply, but users can't view attachments in the browser. Source: https://learn.microsoft.com/en-us/powershell/module/exchange/set-owamailboxpolicy?view=exchange-ps
upvoted 2 times
...
99redeyeflight
1 year, 9 months ago
My guess: Y - device cannot be compliant as it is not enrolled in Intune (a requirement for evaluation of compliance) N - user is not affected by the CA policy Y - device enrolled in intune (assuming complaint) - CA policy should not affect this user/device
upvoted 1 times
...
Kodeblack
2 years, 2 months ago
ON exam - 4/18/2022 All 3 case studies were also on exam
upvoted 1 times
...
kazaki
2 years, 3 months ago
Sorry it is yes No Yes Finance will be affected only The policy only applies to users in the azure policy regardless of device state
upvoted 2 times
...
kazaki
2 years, 4 months ago
Only finance users will be affected by policy so yes yes no
upvoted 3 times
...
mojtabaeshkevar
2 years, 5 months ago
Set-OwaMailboxPolicy -Identity OwaMailboxPolicy-Default -ConditionalAccessPolicy ReadOnly needs a Conditional access policy to work properly, CAP's member can't download attachments to their local computer. yet other users can. so it should be Yes, Yes, No https://profadmins.com/2021/10/09/restrict-downloading-attachments-from-owa/
upvoted 3 times
kazaki
2 years, 4 months ago
I own this website
upvoted 3 times
Olaf187
1 year, 11 months ago
Legend
upvoted 1 times
...
...
...
[Removed]
2 years, 6 months ago
Yes - User 1 only views the attachment (Read Only policy allows to view attachments on private computers). Yes - User 2 is not part of the Conditional Access Policy and the Device 2 is complaint. Yes - User 3 is part of the Finance group and the Conditional Access policy applies. The Device 3 is compliant. "These policies will restrict the ability for users to download attachments from email to a local machine when the devices are not compliant" https://techcommunity.microsoft.com/t5/outlook-blog/conditional-access-in-outlook-on-the-web-for-exchange-online/ba-p/267069
upvoted 1 times
Harshul
2 years, 4 months ago
Second option should be "NO" as User 2 is not a part of Policy.
upvoted 2 times
Harshul
2 years, 4 months ago
Answer should be Yes, No, Yes as user2 is not a part of a policy so he should be able to view, download and print attachments.
upvoted 2 times
...
...
...
gta33578
2 years, 6 months ago
on exam 11-27-21
upvoted 2 times
...
SCT
2 years, 7 months ago
I believe is Yes, No, Yes
upvoted 4 times
...
HGD545
2 years, 7 months ago
On the test Nov 3,2021
upvoted 2 times
...
Alexandersss
2 years, 8 months ago
can anyone explain the answers?
upvoted 1 times
HGD545
2 years, 7 months ago
Not verified but assumed Y,N,N because it says you ran -ConditionalAccessPolicy ReadOnly Based on that I assume you can only view
upvoted 2 times
Alexandersss
2 years, 6 months ago
ok, thanks.
upvoted 1 times
...
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...