Microsoft
AZ-500 · Question #311
Your company has an Active Directory forest with a single domain, named weylandindustries.com. They also have an Azure Active Directory (Azure AD) tenant with the same name. After syncing all…
The correct answer is A. You should make use of the Synchronization Rules Editor to create an attribute-based filtering. Use the Synchronization Rules Editor and write attribute-based filtering rule. https://docs.microsoft.com/en-us/azure/active-directory/hybrid/how-to-connect-sync-change-the-
Submitted by satoshi_tk· Mar 6, 2026Secure identity and access
Question
Your company has an Active Directory forest with a single domain, named weylandindustries.com. They also have an Azure Active Directory (Azure AD) tenant with the same name. After syncing all on-premises identities to Azure AD, you are informed that users with a givenName attribute starting with LAB should not be allowed to sync to Azure AD. Which of the following actions should you take?
Options
- AYou should make use of the Synchronization Rules Editor to create an attribute-based filtering
- BYou should configure a DNAT rule on the Firewall.
- CYou should configure a network traffic filtering rule on the Firewall.
- DYou should make use of Active Directory Users and Computers to create an attribute-based
How the community answered
(25 responses)- A76% (19)
- B12% (3)
- C4% (1)
- D8% (2)
Explanation
Use the Synchronization Rules Editor and write attribute-based filtering rule. https://docs.microsoft.com/en-us/azure/active-directory/hybrid/how-to-connect-sync-change-the-
Community Discussion
No community discussion yet for this question.