nerdexam
Microsoft

MS-102 · Question #468

A user receives the following message when attempting to sign in to https://myapps.microsoft.com: "Your sign-in was blocked. We've detected something unusual about this sign-in. For example, you…

The correct answer is A. Microsoft Azure Active Directory (Azure AD) Identity Protection policies. The message 'Your sign-in was blocked. We've detected something unusual about this sign-in' is the exact language displayed when Azure AD Identity Protection policies block a sign-in. Specifically, this occurs when a sign-in risk policy or user risk policy is configured to…

Submitted by jakub_pl· Apr 18, 2026Implement and manage Microsoft Entra identity and access

Question

A user receives the following message when attempting to sign in to https://myapps.microsoft.com:

"Your sign-in was blocked. We've detected something unusual about this sign-in. For example, you might be signing in from a new location device, or app. Before you can continue, we need to verity your identity. Please contact your admin." Which configuration prevents the users from signing in?

Options

  • AMicrosoft Azure Active Directory (Azure AD) Identity Protection policies
  • BMicrosoft Azure Active Directory (Azure AD) conditional access policies
  • CSecurity & Compliance supervision policies
  • DSecurity & Compliance data loss prevention (DIP) policies

How the community answered

(30 responses)
  • A
    73% (22)
  • B
    7% (2)
  • C
    17% (5)
  • D
    3% (1)

Explanation

The message 'Your sign-in was blocked. We've detected something unusual about this sign-in' is the exact language displayed when Azure AD Identity Protection policies block a sign-in. Specifically, this occurs when a sign-in risk policy or user risk policy is configured to block access above a certain risk threshold (e.g., medium or high). The phrase 'contact your admin' also aligns with Identity Protection behavior, which requires admin remediation or MFA to unblock. Conditional Access policies (B) can also block sign-ins but typically display different messaging and require different configuration triggers. DLP and supervision policies (C, D) do not affect authentication.

Topics

#Azure AD Identity Protection#Risky sign-in detection#Risk-based authentication#Sign-in verification

Community Discussion

No community discussion yet for this question.

Full MS-102 Practice