exam questions

Exam AZ-800 All Questions

View all questions & answers for the AZ-800 exam

Exam AZ-800 topic 1 question 24 discussion

Actual exam question from Microsoft's AZ-800
Question #: 24
Topic #: 1
[All AZ-800 Questions]

HOTSPOT
-

Your network contains an Azure Active Directory Domain Services (Azure AD DS) domain named contoso.com.

You need to configure a password policy for the local user accounts on the Azure virtual machines joined to contoso.com.

What should you do? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Show Suggested Answer Hide Answer
Suggested Answer:

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Goofer
Highly Voted 2 years, 3 months ago
A GPO linked to the AADDC Users OU has no effect on the local user accounts. You need to link the GPO to the AADDC Computers OU. 1. AAD DC Administrators group 2. AADDC Computers organizational unit (OU)
upvoted 27 times
...
SuradjBajaj
Highly Voted 2 years, 2 months ago
Correct, We need to create a Group Policy Object (GPO) in the Azure Active Directory Domain Services (Azure AD DS) domain, configure the GPO's password policy, and link the GPO to the organizational unit (OU) that contains the domain's computer accounts. To administer group policy in a managed domain, you must be signed in to a user account that's a member of the AAD DC Administrators group. There are two built-in Group Policy Objects (GPOs) in a managed domain - one for the AADDC Computers OU, and one for the AADDC Users OU. You can customize these GPOs to configure group policy as needed within your managed domain. By default, the AADDC Computers OU contains all the computer accounts of the member computers.
upvoted 5 times
...
stonwall12
Most Recent 4 months, 1 week ago
Answer: 1. AAD DC Administrators group 2. AADDC Computers Group (OU) 1. In Azure AD DS, this group has the necessary permissions to manage Azure AD DS configurations including password policies. 2. In Azure AD DS, domain-joined computers are automatically placed in the AADDC Computers OU, not the default Computers container. Group Policy Objects should be linked to this OU to affect all domain-joined Azure VMs. Reference: https://learn.microsoft.com/en-us/azure/active-directory-domain-services/password-policy
upvoted 1 times
...
Bob0331
8 months, 1 week ago
I would think it is the computer GPO as it says local user accounts, not user accounts in aaddc. Only the computer GPO can change the settings for local user accounts
upvoted 2 times
...
Bolo92
1 year, 5 months ago
valid 27.11.23
upvoted 1 times
...
MR_Eliot
1 year, 8 months ago
Correct answers: 1. AAD DC Administrators group -> You need this permission to be able to login on the Azure AD domain controller 2. AADDC Computers organizational unit (OU) -> Password policy, is a computer policy, not a user policy. so this one is right answer.
upvoted 4 times
...
syu31svc
2 years, 1 month ago
https://learn.microsoft.com/en-us/azure/active-directory-domain-services/manage-group-policy Answer is correct
upvoted 2 times
tomasek88
1 year, 10 months ago
wrong --> correct is AADDC Computers organizational unit (OU)
upvoted 2 times
...
...
STFN2019
2 years, 3 months ago
Correct
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago