nerdexam
Microsoft

AZ-801 · Question #60

You have an on-premises Active Directory Domain Services (AD DS) tenant that syncs with an Azure Active Directory (Azure AD) tenant. The AD DS domain contains a domain controller named DC1. DC1 does N

The solution requires the following configurations: On DC1: Install the Azure AD Password Protection DC agent. On a member server: Install the Azure AD Password Protection proxy service. In Azure: Configure Azure AD Password Protection. Refer to the explanation link for full deta

Secure Windows Server on-premises and hybrid infrastructures

Question

You have an on-premises Active Directory Domain Services (AD DS) tenant that syncs with an Azure Active Directory (Azure AD) tenant. The AD DS domain contains a domain controller named DC1. DC1 does NOT have internet access. You need to configure password security for on-premises users. The solution must meet the following requirements: - Prevent the users from using known weak passwords. - Prevent the users from using the company name in passwords. What should you do? To answer, drag the appropriate configurations to the correct targets. Each configuration may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. NOTE: Each correct selection is worth one point.

Exhibit

AZ-801 question #60 exhibit

Explanation

The solution requires the following configurations: On DC1: Install the Azure AD Password Protection DC agent. On a member server: Install the Azure AD Password Protection proxy service. In Azure: Configure Azure AD Password Protection. Refer to the explanation link for full details: https://docs.microsoft.com/en-us/azure/active-directory/authentication/howto-password-ban-bad-on-premises-deploy

Topics

#Azure AD Password Protection#On-premises Active Directory Domain Services (AD DS)#Password Policy#Hybrid Identity

Community Discussion

No community discussion yet for this question.

Full AZ-801 Practice