Microsoft
AZ-305 · Question #131
You have an Azure Active Directory (Azure AD) tenant that syncs with an on-premises Active Directory domain. Your company has a line-of-business (LOB) application that was developed internally. You…
The correct answer is A. Azure AD enterprise applications D. Conditional Access policies. https://learn.microsoft.com/en-us/azure/active-directory/app-proxy/application-proxy-configure- single-sign-on-on-premises-apps
Submitted by ricky.ec· Mar 6, 2026Design identity, governance, and monitoring solutions
Question
You have an Azure Active Directory (Azure AD) tenant that syncs with an on-premises Active Directory domain. Your company has a line-of-business (LOB) application that was developed internally. You need to implement SAML single sign-on (SSO) and enforce multi-factor authentication (MFA) when users attempt to access the application from an unknown location. Which two features should you include in the solution? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.
Options
- AAzure AD enterprise applications
- BAzure AD Identity Protection
- CAzure Application Gateway
- DConditional Access policies
- EAzure AD Privileged Identity Management (PIM)
How the community answered
(58 responses)- A66% (38)
- B5% (3)
- C9% (5)
- E21% (12)
Explanation
https://learn.microsoft.com/en-us/azure/active-directory/app-proxy/application-proxy-configure- single-sign-on-on-premises-apps
Community Discussion
No community discussion yet for this question.