exam questions

Exam MD-101 All Questions

View all questions & answers for the MD-101 exam

Exam MD-101 topic 1 question 13 discussion

Actual exam question from Microsoft's MD-101
Question #: 13
Topic #: 1
[All MD-101 Questions]

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements.
Your company has a hybrid configuration of Microsoft Azure Active Directory (Azure AD). Your company also has a Microsoft 365 subscription.
After creating a conditional access policy for Microsoft Exchange Online, you are tasked with configuring the policy to block access to Exchange Online. However, the policy should allow access for hybrid Azure AD-joined devices
Solution: You should configure the Device platforms settings.
Does the solution meet the goal?

  • A. Yes
  • B. No
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️
Within a Conditional Access policy, an administrator can make use of signals from conditions like risk, device platform, or location to enhance their policy decisions.

Client apps -
By default, all newly created Conditional Access policies will apply to all client app types even if the client apps condition isn't configured.
These conditions are commonly used when requiring a managed device, blocking legacy authentication, and blocking web applications but allowing mobile or desktop apps.
Reference:
https://docs.microsoft.com/en-us/azure/active-directory/conditional-access/conditions#device-state

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Anker
Highly Voted 3 years, 3 months ago
Just as an FYI, device state is being deprecated so eventually Filters will take the place of Device State so that would be the correct answer going forward.:)
upvoted 5 times
syougun200x
2 years, 8 months ago
I see. In conditinal access conditions -> filter for devices -> exclude filtered devices.
upvoted 2 times
...
...
MR_Eliot
Most Recent 3 years ago
Selected Answer: B
The answer is correct. You can change the setting in "AAD > Security > Conditional Access > [your policy] > Access Controls > Grant" and then chose "Require Hybrid Azure AD joined device".
upvoted 2 times
...
Cisco
3 years, 1 month ago
When I inspect the options I can use, I cant see an option here for a platform of Hybrid Azure AD Joined when I check the options in the drop down list for platforms. Has anyone visually verified this is an option? I only have the options of: Android, IOS, Windows Phone, Windows, Mac OS or Linux.
upvoted 1 times
...
Harisasikumar92
3 years, 6 months ago
B is correct. You need to include the device state to include the Azure AD Hybrid Joined option.
upvoted 4 times
Harisasikumar92
3 years, 6 months ago
Edit: Create a new conditional access policy and configure the device state to EXCLUDE Hybrid Azure AD Joined devices
upvoted 8 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago