nerdexam
Microsoft

AZ-305 · Question #256

Your company has the divisions shown in the following table. Sub1 contains an Azure App Service web app named App1. App1 uses Azure AD for single- tenant user authentication. Users from contoso.com…

The correct answer is C. Use Azure AD entitlement management to govern external users. Application is single tenant so users must be in the same directory as the home tenant https://docs.microsoft.com/en-us/azure/active-directory/develop/single-and-multi-tenant-apps Azure AD entitlement management uses Azure AD business-to-business (B2B) to share access so you…

Submitted by salim_om· Mar 6, 2026Design identity, governance, and monitoring solutions

Question

Your company has the divisions shown in the following table. Sub1 contains an Azure App Service web app named App1. App1 uses Azure AD for single- tenant user authentication. Users from contoso.com can authenticate to App1. You need to recommend a solution to enable users in the fabrikam.com tenant to authenticate to App1. What should you recommend?

Options

  • AConfigure the Azure AD provisioning service.
  • BConfigure assignments for the fabrikam.com users by using Azure AD Privileged Identity
  • CUse Azure AD entitlement management to govern external users.
  • DConfigure Azure AD Identity Protection.

How the community answered

(36 responses)
  • A
    3% (1)
  • B
    6% (2)
  • C
    75% (27)
  • D
    17% (6)

Explanation

Application is single tenant so users must be in the same directory as the home tenant https://docs.microsoft.com/en-us/azure/active-directory/develop/single-and-multi-tenant-apps Azure AD entitlement management uses Azure AD business-to-business (B2B) to share access so you can collaborate with people outside your organization. With Azure AD B2B, external users authenticate to their home directory, but have a representation in your directory. https://docs.microsoft.com/en-us/azure/active-directory/governance/entitlement-management-

Topics

#Azure AD entitlement management#B2B#external users#authentication

Community Discussion

No community discussion yet for this question.

Full AZ-305 Practice