exam questions

Exam SC-400 All Questions

View all questions & answers for the SC-400 exam

Exam SC-400 topic 2 question 28 discussion

Actual exam question from Microsoft's SC-400
Question #: 28
Topic #: 2
[All SC-400 Questions]

You have a data loss prevention (DLP) policy configured for endpoints as shown in the following exhibit.

From a computer named Computer1, a user can sometimes upload files to cloud services and sometimes cannot. Other users experience the same issue.
What are two possible causes of the issue? Each correct answer presents a complete solution.
NOTE: Each correct selection is worth one point.

  • A. The computers are NOT onboarded to the Microsoft 365 compliance center.
  • B. The Copy to clipboard action is set to Audit only.
  • C. There are file path exclusions in the Microsoft 365 Endpoint data loss prevention (Endpoint DLP) settings.
  • D. The Access by unallowed apps action is set to Audit only.
  • E. The unallowed browsers in the Microsoft 365 Endpoint data loss prevention (Endpoint DLP) settings are NOT configured.
Show Suggested Answer Hide Answer
Suggested Answer: CE 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
IAGirl
Highly Voted 2 years, 8 months ago
Selected Answer: CE
The computers are already onboarded, that's why sometimes can upload files and sometines cannot, the answer is C and E
upvoted 9 times
...
PrettyFlyWifi
Highly Voted 2 years, 8 months ago
E looks a certain answer, as if you go into a DLP policy and choose 'Actions', you can hover over the i for a description. It states "When this action is set to Block, other browsers (defined in the unallowed browsers list in Endpoint DLP settings) are blocked from accessing the file." This would make sense, because if you don't define the browsers you want to block, it will still let you upload files. The other answer seems like it should be A, because you only get these options if you select the "devices" location in the DLP policy. This means you'd need to onboard the device to be able to use these policy settings properly. A and E for me.
upvoted 6 times
Domza
10 months, 1 week ago
Correct~ A and E - the rest is out) read and read!
upvoted 1 times
...
...
Kodoi
Most Recent 8 months, 1 week ago
Selected Answer: CE
A is incorrect. If Computer 1 is not onboarded, the DLP policy does not apply. In other words, the user will not fail to upload. B is False. Auditing does not inhibit uploading. C is correct. Uploads are normally blocked, but can be uploaded if the file exists in an excluded path. D is incorrect. Auditing does not inhibit uploading. E is correct. For example, uploads from a browser are allowed, while uploads from Explorer are blocked. The point of this question is that uploads can succeed or fail depending on the user scenario.
upvoted 2 times
...
heshmat2022
1 year ago
IT WAS ON EXAM OCTOBER 18 2023
upvoted 1 times
...
Tommytong
1 year ago
Originally thought it was A,E however after looking at it again along with the comments I’m switching to C,E. E - if you don’t have the browser configured in the global DLP settings - putting it to block state won’t prevent it. A - Does not work like I originally thought because the issue happens sporadically. If it wasn’t onboarded, there would be zero policies and nothing to enforce. C - while it seems odd because it’s file path exclusion and you’re connecting to cloud services, you can absolutely have private cloud network shares or even OneDrive type WebDAV locations
upvoted 1 times
...
Gesbie
1 year, 2 months ago
was on Exam August 9, 2023
upvoted 1 times
...
xswe
1 year, 6 months ago
This is a tricky one but I would exclude E since we can see in the picture that the unallowed browsers is set to "Block" so it should be configured already. The copy to clicpboard should not cover the uploading of files since you dont copy files when you upload them to a cloud solution. Unallwed apps should not be the correct solution since they are problably uploading the files to the cloud service with a browser. I would choose "device not onboarded" and "file path exclusion in endpoint DLP".
upvoted 1 times
_Nickname_
1 year, 5 months ago
It can't be A since the user reports he is sometimes blocked from his computer1. If computer1 is not onboarded he wouldn't be blocked at all.
upvoted 3 times
...
...
Reinto
1 year, 8 months ago
Selected Answer: CE
The only logical choices
upvoted 1 times
...
Rockalm
1 year, 10 months ago
"D:The Access by unallowed apps action is set to Audit only." Audit only doesn't block the upload.
upvoted 1 times
...
chrissempai
2 years ago
Selected Answer: AC
AC is the correct answer. If you pay attention the unallowed browser is set to block so E is not a valid answer
upvoted 3 times
...
JamesM9
2 years, 6 months ago
The answer here is C & E.
upvoted 4 times
...
UWSFish
2 years, 9 months ago
I have AC....If you read carefully on choice E...Unallowed browser is NOT configured...as has been pointed out by bing
upvoted 1 times
UWSFish
2 years, 8 months ago
I was wrong...is CE: Detects when a user attempts to upload an item to a restricted service domain or access an item through a browser. If they are using a browser that is listed in DLP as an unallowed browser, the upload activity will be blocked and the user is redirected to use Microsoft Edge . Microsoft Edge will then either allow or block the upload or access based on the DLP policy configuration ....so if unallowed browser is NOT configured you can use chrome/etc with impugnity anc won't be kicked over to edge which observes the DLP policy, in other words, sometimes can upload (chrome), sometimes can not (edge).
upvoted 5 times
...
...
Pravda
2 years, 9 months ago
On exam 1/20/2022
upvoted 1 times
...
Sam12
2 years, 9 months ago
Selected Answer: CE
CE for me!
upvoted 4 times
...
ChaBum
2 years, 9 months ago
Selected Answer: CE
C: depending if the source path is part of the exception or not, the upload is allowed or not E relates to users behavior, using different browsers with some being allowed and other blocked
upvoted 3 times
doori88
1 year, 4 months ago
totally agree
upvoted 1 times
...
Pereiraman
2 years, 9 months ago
agree, the only ones that can cause unstable and related with DLP.
upvoted 1 times
...
...
solfis737
2 years, 10 months ago
https://docs.microsoft.com/en-us/microsoft-365/compliance/endpoint-dlp-using?view=o365-worldwide "You may want to exclude certain paths from DLP monitoring, DLP alerting, and DLP policy enforcement on your devices because they are too noisy or don’t contain files you are interested in. Files in those locations will not be audited and any files that are created or modified in those locations will not be subject to DLP policy enforcement."
upvoted 2 times
...
Ali_557
2 years, 10 months ago
AE looks more valid.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago