Microsoft Entra Flashcards
Microsoft Entra Terms of Use
Presents information to users before they access data and can be configured to require users to accept the terms of use.
Entra ID Password Protection
Prevents users from using specific words in their passwords
Which of the following are features of Self-Service Password Reset? (SSPR)
Password change
Password reset
Account unlock
Password write-back
Password Hash Synchronization
Syncs passwords (hash of hash) between Active Directory and Microsoft Entra ID.
Pass-through Authentication
Provides a simple password validation for Entra ID authentication services by using a software agent that runs on one or more on-prem servers. The servers validate the users directly with an on-prem Active Directory, which ensures that the password validation doesn’t happen in the cloud.
Federated Authentication
Entra ID ands off the authentication process to a separate trusted authentication system, such as an on-prem Active Directory Federation Service (AD FS), to validate the user’s password
Which of the following are authentication methods used to achieve hybrid identity?
Federation
Password hash synchronization
Pass through authentication
Active Directory Domain Services (AD DS)
AD DS allows you to manage multiple on-premises infrastructure components and systems by using a single identity per users. AD DS does not support mobile devices, SaaS applications or LOB apps that require modern authentication methods
Federation
Federation enables access to services across organizations.
Microsoft Entra External ID
allows external users to sign in with their preferred social, enterprise, or local account identities to get single sign-on (SSO) to applications.
An organization is migrating to the Microsoft cloud. The plan is to use a hybrid identity model. What can be used to sync identities between Active Directory Domain Services (AD DS) and Microsoft Entra tenant?
Microsoft Entra Connect
Which two additional forms of authentication are available in Microsoft Entra ID for multi-factor authentication (MFA) from any device?
The microsoft Authenticator app
voice call
Which of the following security features do security defaults in Entra ID NOT enable?
Requiring users to perform MFA for every signin
Here are the defaults:
Blocking legacy authentication like IMAP, SMPT
Protecting access to Azure Powershell with MFA
Requiring users to perform MFA registration within 14 days