nerdexam
Microsoft

AZ-305 · Question #131

You have an Azure Active Directory (Azure AD) tenant that syncs with an on-premises Active Directory domain. Your company has a line-of-business (LOB) application that was developed internally. You…

The correct answer is A. Azure AD enterprise applications D. Conditional Access policies. https://learn.microsoft.com/en-us/azure/active-directory/app-proxy/application-proxy-configure- single-sign-on-on-premises-apps

Submitted by ricky.ec· Mar 6, 2026Design identity, governance, and monitoring solutions

Question

You have an Azure Active Directory (Azure AD) tenant that syncs with an on-premises Active Directory domain. Your company has a line-of-business (LOB) application that was developed internally. You need to implement SAML single sign-on (SSO) and enforce multi-factor authentication (MFA) when users attempt to access the application from an unknown location. Which two features should you include in the solution? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.

Options

  • AAzure AD enterprise applications
  • BAzure AD Identity Protection
  • CAzure Application Gateway
  • DConditional Access policies
  • EAzure AD Privileged Identity Management (PIM)

How the community answered

(58 responses)
  • A
    66% (38)
  • B
    5% (3)
  • C
    9% (5)
  • E
    21% (12)

Explanation

https://learn.microsoft.com/en-us/azure/active-directory/app-proxy/application-proxy-configure- single-sign-on-on-premises-apps

Community Discussion

No community discussion yet for this question.

Full AZ-305 Practice