Module 1 - Configure User and Group Accounts Flashcards

1
Q

Create user accounts

A

Things to know about user accounts:

Cloud identity - A user account with a cloud identity is defined only in Microsoft Entra ID. This type of user account includes administrator accounts and users who are managed as part of your organization. A cloud identity can be for user accounts defined in your Microsoft Entra organization, and also for user accounts defined in an external Microsoft Entra instance. When a cloud identity is removed from the primary directory, the user account is deleted.

Directory-synchronized identity - User accounts that have a directory-synchronized identity are defined in an on-premises Active Directory. A synchronization activity occurs via Microsoft Entra Connect to bring these user accounts in to Azure. The source for these accounts is Windows Server Active Directory.

Guest user - Guest user accounts are defined outside Azure. Examples include user accounts from other cloud providers, and Microsoft accounts like an Xbox LIVE account. The source for guest user accounts is Invited user. Guest user accounts are useful when external vendors or contractors need access to your Azure resources.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Manage user accounts

A

Must be global admin or user admin to manage users

A new user account must have a display name and an associated user account name . User profile , picture, job , contact info is optional.

Deleted users can be restored for 30 days

Sign in and audit log information is available

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Create user groups

A

Group Types:
1. Security groups - are used to manage member and computer access to shared resources for a group of users

  1. Microsoft 365 groups - Group members have access to a shared mailbox, calendar, files, SharePoint site, and more. They don’t have access to azure resources and services.

Assignment types
1. Assigned - add specific users as members of a group , where each user can have a unique permission

  1. Dynamic user( Can only be user in a P1 or P2 licence) - process of automatically adding or removing users or other objects (such as devices) from a security group based on predefined criteria. This allows you to create and manage security groups that automatically include or exclude members based on specific attributes
    You can choose the criteria such as job title and then the users will be automatically added to the group based on the criteria that is set.
  2. Dynamic device( Security groups only)
    Automatically add or remove devices in security groups based on the crtiteria that is set.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Manage user and group properties

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Manage external users

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Manage licenses

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q
A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly