nerdexam
Microsoft

MS-102 · Question #144

You have a Microsoft 365 E5 subscription that contains users in the United States, Europe, and Asia. You use Azure AD Identity Protection. You have a virtual desktop infrastructure (VDI). All VDI…

The correct answer is B. a trusted location. Configured trusted network locations are used by Identity Protection in some risk detections to reduce false positives. https://learn.microsoft.com/en-us/azure/active-directory/identity-protection/howto-identity- protection-configure-risk-policies

Submitted by weili_xi· Apr 18, 2026Implement and manage Microsoft Entra identity and access

Question

You have a Microsoft 365 E5 subscription that contains users in the United States, Europe, and Asia. You use Azure AD Identity Protection. You have a virtual desktop infrastructure (VDI). All VDI servers are located in the United States. Users connect to Microsoft 365 from laptops and the VDI. Some VDI users report that they are blocked from signing in to Microsoft 365 due to a high sign-in risk. You need to reduce the likelihood that the VDI users will be erroneously blocked from signing in to Microsoft 365. The solution must ensure that sign-ins from the VDI environment are protected by using Identity Protection. What should you configure?

Options

  • AExpressRoute for Microsoft 365
  • Ba trusted location
  • Ca Satellite Geography location
  • Da Conditional Access policy

How the community answered

(47 responses)
  • A
    11% (5)
  • B
    83% (39)
  • C
    2% (1)
  • D
    4% (2)

Explanation

Configured trusted network locations are used by Identity Protection in some risk detections to reduce false positives. https://learn.microsoft.com/en-us/azure/active-directory/identity-protection/howto-identity- protection-configure-risk-policies

Topics

#Azure AD Identity Protection#Named Locations#Conditional Access#VDI

Community Discussion

No community discussion yet for this question.

Full MS-102 Practice