Microsoft

SC-300 practice test

Practice with 15 free Testara sample questions, or choose paid access to the full 343-question bank.

Provider
Microsoft
Question bank
343
Free sample
15 questions
Publisher
Testara

About this practice material

This page covers Testara's practice question bank for SC-300, a certification listed under Microsoft. Questions use original, exam-style scenarios and are not questions from the official certification exam.

Testara is an independent practice platform and is not affiliated with, endorsed by, or authorized by Microsoft. The certification credential is issued by Microsoft, not Testara. Certification and provider names belong to their respective owners.

Start practicing

The guest demo does not save an attempt. Sign in before buying access.

Try 15 questions free

Available without signing in

Free sample questions

These 15 questions and their explanations are server-rendered so you can inspect the material before opening the interactive demo.

  1. Question 1 · 1

    You have an Azure Active Directory (Azure AD) tenant that contains the following objects: ✑ A device named Device1 ✑ Users named User1, User2, User3, User4, and User5 ✑ Groups named Group1, Group2, Group3, Group4, and Group5 The groups are configured as shown in the following table. To which groups can you assign a Microsoft Office 365 Enterprise E5 license directly?

    Choose one answer.

    Question illustration 1
    • Group1 and Group4 only
    • Group1, Group2, Group3, Group4, and Group5
    • Group1 and Group2 only
    • Group1 only
    • Group1, Group2, Group4, and Group5 only
  2. Question 2 · 1

    Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You have an Active Directory forest that syncs to an Azure Active Directory (Azure AD) tenant. You discover that when a user account is disabled in Active Directory, the disabled user can still authenticate to Azure AD for up to 30 minutes. You need to ensure that when a user account is disabled in Active Directory, the user account is immediately prevented from authenticating to Azure AD. Solution: You configure password writeback. Does this meet the goal?

    Choose one answer.

    • Yes
    • No
  3. Question 3 · 1

    HOTSPOT - You have two Microsoft Entra tenants named contoso.com and fabrikam.com. Contoso.com contains the users shown in the following table. You configure cross-tenant synchronization from contoso.com to fabrikam.com by using the following settings: • Users and groups: Group1 • Provisioning Mode: Automatic • Attribute Mappings o Source Object Scope: Filter1, Filter2 Filter1 is configured as shown in the following table. Filter2 is configured as shown in the following table. For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.

    Choose an option for each prompt.

    Question illustration 1
    Question illustration 2
    Question illustration 3
    Question illustration 4

    User1 syncs to fabrikam.com.

    • Yes
    • No

    User2 syncs to fabrikam.com.

    • Yes
    • No

    User3 syncs to fabrikam.com.

    • Yes
    • No
  4. Question 4 · 1

    You have a Microsoft Entra tenant. You have the end-user desktop environments shown in the following table. You need to deploy Global Secure Access. In which environments can you install the Global Secure Access client?

    Choose one answer.

    Question illustration 1
    • Contractors, Developers, Frontline workers, Office staff, and Senior managers
    • Frontline workers and Senior managers only
    • Contractors and Office staff only
    • Developers, Office staff, and Senior managers only
  5. Question 5 · 1

    Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You have an Active Directory forest that syncs to an Azure Active Directory (Azure AD) tenant. You discover that when a user account is disabled in Active Directory, the disabled user can still authenticate to Azure AD for up to 30 minutes. You need to ensure that when a user account is disabled in Active Directory, the user account is immediately prevented from authenticating to Azure AD. Solution: You configure pass-through authentication. Does this meet the goal?

    Choose one answer.

    • Yes
    • No
  6. Question 6 · 1

    Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You have an Azure Active Directory (Azure AD) tenant that syncs to an Active Directory forest. You discover that when a user account is disabled in Active Directory, the disabled user can still authenticate to Azure AD for up to 30 minutes. You need to ensure that when a user account is disabled in Active Directory, the user account is immediately prevented from authenticating to Azure AD. Solution: You configure conditional access policies. Does this meet the goal?

    Choose one answer.

    • Yes
    • No
  7. Question 7 · 1

    You have an Azure Active Directory (Azure AD) tenant named contoso.com that contains an Azure AD enterprise application named App1. A contractor uses the credentials of user1@outlook.com. You need to ensure that you can provide the contractor with access to App1. The contractor must be able to authenticate as user1@outlook.com. What should you do?

    Choose one answer.

    • Run the New-AzADUser cmdlet.
    • Configure the External collaboration settings.
    • Add a WS-Fed identity provider.
    • Create a guest user account in contoso.com.
  8. Question 8 · 1

    Your network contains an Active Directory forest named contoso.com that is linked to an Azure Active Directory (Azure AD) tenant named contoso.com by using Azure AD Connect. You need to prevent the synchronization of users who have the extensionAttribute15 attribute set to NoSync. What should you do in Azure AD Connect?

    Choose one answer.

    • Create an inbound synchronization rule for the Windows Azure Active Directory connector.
    • Configure a Full Import run profile.
    • Create an inbound synchronization rule for the Active Directory Domain Services connector.
    • Configure an Export run profile.
  9. Question 9 · 1

    Your network contains an on-premises Active Directory domain that syncs to an Azure Active Directory (Azure AD) tenant. The tenant contains the users shown in the following table. All the users work remotely. Azure AD Connect is configured in Azure AD as shown in the following exhibit. Connectivity from the on-premises domain to the internet is lost. Which users can sign in to Azure AD?

    Choose one answer.

    Question illustration 1
    Question illustration 2
    • User1 and User3 only
    • User1 only
    • User1, User2, and User3
    • User1 and User2 only
  10. Question 10 · 1

    Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. You have an Active Directory forest that syncs to an Azure Active Directory (Azure AD) tenant. You discover that when a user account is disabled in Active Directory, the disabled user can still authenticate to Azure AD for up to 30 minutes. You need to ensure that when a user account is disabled in Active Directory, the user account is immediately prevented from authenticating to Azure AD. Solution: You configure Azure AD Password Protection. Does this meet the goal?

    Choose one answer.

    • Yes
    • No
  11. Question 11 · 1

    You have an Azure Active Directory (Azure AD) tenant named contoso.com. You need to ensure that Azure AD External Identities pricing is based on monthly active users (MAU). What should you configure?

    Choose one answer.

    • a user flow
    • the terms of use
    • a linked subscription
    • an access review
  12. Question 12 · 1

    You have a Microsoft Exchange organization that uses an SMTP address space of contoso.com. Several users use their contoso.com email address for self-service sign-up to Azure Active Directory (Azure AD). You gain global administrator privileges to the Azure AD tenant that contains the self-signed users. You need to prevent the users from creating user accounts in the contoso.com Azure AD tenant for self-service sign-up to Microsoft 365 services. Which PowerShell cmdlet should you run?

    Choose one answer.

    • Set-MsolCompanySettings
    • Set-MsolDomainFederationSettings
    • Update-MsolfederatedDomain
    • Set-MsolDomain
  13. Question 13 · 1

    You have a Microsoft 365 subscription. You need to ensure that when users access the Microsoft 365 portal from Microsoft Edge and have their browser language set to Spanish, they are presented with a Spanish sign-in form. What should you do in the Microsoft Entra admin center?

    Choose one answer.

    • From Settings for the users, configure the Usage location setting.
    • From Global Secure Access, configure the Session management settings.
    • Configure the Company branding settings.
    • Create a Conditional Access policy.
  14. Question 14 · 1

    DRAG DROP - You have a Microsoft 365 E5 subscription that contains three users named User1, User2, and User3. You need to configure the users as shown in the following table. Which portal should you use to configure each user? To answer, drag the appropriate portals to the correct users. Each portal may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. NOTE: Each correct selection is worth one point. Select and Place:

    Match each destination with an option.

    Question illustration 1
    Question illustration 2

    User1

    • Azure Active Directory admin center
    • Exchange admin center
    • Microsoft 365 compliance center
    • Microsoft Endpoint Manager admin center
    • SharePoint admin center

    User2

    • Azure Active Directory admin center
    • Exchange admin center
    • Microsoft 365 compliance center
    • Microsoft Endpoint Manager admin center
    • SharePoint admin center

    User3

    • Azure Active Directory admin center
    • Exchange admin center
    • Microsoft 365 compliance center
    • Microsoft Endpoint Manager admin center
    • SharePoint admin center
  15. Question 15 · 1

    You have an Active Directory forest that syncs to an Azure Active Directory (Azure AD) tenant. The tenant uses pass-through authentication. A corporate security policy states the following: ✑ Domain controllers must never communicate directly to the internet. ✑ Only required software must be installed on servers. The Active Directory domain contains the on-premises servers shown in the following table. You need to ensure that users can authenticate to Azure AD if a server fails. On which server should you install an additional pass-through authentication agent?

    Choose one answer.

    Question illustration 1
    • Server4
    • Server2
    • Server1
    • Server3

Each purchase applies to this certification. Prices are one-time payments, not monthly subscriptions.

Starter

$29 USD one time

Full access to one certification's question bank in standard practice mode for 60 days.

  • Full question bank for one certification
  • 60 days of access
  • Standard practice mode
  • Question notes and community discussions
  • Attempt scores and answer review

Professional

$49 USD one time

Full access to one certification's question bank, custom test controls and advanced analytics for 60 days.

  • Custom test builder
  • Timers and question selection
  • Randomized question and answer order
  • Advanced performance and weak-question analytics
  • Priority customer support
Try 15 questions free