New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Microsoft AZ-305 Exam - Topic 3 Question 59 Discussion

Actual exam question for Microsoft's AZ-305 exam
Question #: 59
Topic #: 3
[All AZ-305 Questions]

You have an Azure Active Directory (Azure AD) tenant that syncs with an on-premises Active Directory domain.

Your company has a line-of-business (LOB) application that was developed internally.

You need to implement. SAML single sign-on (SSO) and enforce multi-factor authentication (MFA) when users attempt to access the application from an unknown location.

Which two features should you include in the solution? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.

Show Suggested Answer Hide Answer
Suggested Answer: A

Contribute your Thoughts:

0/2000 characters
Jettie
3 months ago
A and D are the way to go, no doubt!
upvoted 0 times
...
Shannon
3 months ago
Not sure about A, isn't it just for app management?
upvoted 0 times
...
Felton
3 months ago
Wait, why would you need C for this? Seems off.
upvoted 0 times
...
Antonette
4 months ago
I think B is also important for security.
upvoted 0 times
...
Kaitlyn
4 months ago
Definitely A and D for SSO and MFA!
upvoted 0 times
...
Eun
4 months ago
I feel like Azure Application Gateway might be related to security, but I don't think it directly ties into SSO or MFA.
upvoted 0 times
...
Rodolfo
4 months ago
Azure AD Identity Protection sounds familiar, but I can't recall if it's specifically for SSO or just for risk management.
upvoted 0 times
...
Casie
4 months ago
I think Conditional Access policies are definitely needed for enforcing MFA based on location. I practiced a similar question about that last week.
upvoted 0 times
...
Willis
5 months ago
I remember that Azure AD enterprise applications are crucial for SAML SSO, but I'm not entirely sure if they cover MFA as well.
upvoted 0 times
...
Kristel
5 months ago
This question seems a bit tricky. There are a lot of Azure AD features listed, and I'm not sure which ones are the most relevant. I think I'll start by focusing on the SAML SSO requirement, and then see how I can use Conditional Access to add the MFA component. Hopefully, I can piece together the right solution.
upvoted 0 times
...
Roxane
5 months ago
Okay, I've got this. For SAML SSO, I'll need to use the Azure AD enterprise applications feature to configure the integration. And to enforce MFA for unknown locations, the Conditional Access policies option is the way to go. I feel pretty confident about those two choices.
upvoted 0 times
...
Marci
5 months ago
Hmm, I'm a bit unsure about this one. There are a few different Azure AD features mentioned, and I'm not sure which ones are the best fit for the scenario. I'll need to carefully review the requirements and think through the different options before selecting my answers.
upvoted 0 times
...
Xuan
5 months ago
This looks like a pretty straightforward Azure AD and SAML SSO question. I think the key is to focus on the requirements - SAML SSO and MFA for an internal LOB app. The Azure AD enterprise applications and Conditional Access policies options seem like the obvious choices here.
upvoted 0 times
...
Novella
5 months ago
Custom automation could be a flexible solution, but it might require more development effort. The out-of-the-box options like Gmail Integration or Salesforce Inbox could be easier to implement.
upvoted 0 times
...
Mammie
5 months ago
I thought defining the schedule in its properties was important, but I can't recall if it's directly related to placing it on a sheet.
upvoted 0 times
...
Jacquelyne
10 months ago
Haha, I bet the person who wrote this question was just trying to sneak in a few red herrings to trip us up. Nice try, but I'm not falling for it!
upvoted 0 times
Candida
8 months ago
Yeah, those red herrings won't fool us!
upvoted 0 times
...
Gregg
9 months ago
D) Conditional Access policies
upvoted 0 times
...
Elbert
9 months ago
Yeah, those red herrings won't fool us!
upvoted 0 times
...
Mozell
9 months ago
D) Conditional Access policies
upvoted 0 times
...
Alishia
9 months ago
A) Azure AD enterprise applications
upvoted 0 times
...
Anissa
9 months ago
A) Azure AD enterprise applications
upvoted 0 times
...
...
Crissy
10 months ago
I'm not sure why they included Azure Application Gateway and Azure AD PIM as options. Those don't seem relevant to the problem statement. Weird choices there.
upvoted 0 times
...
Florinda
10 months ago
Azure AD Identity Protection could also be useful for analyzing user risk and triggering MFA based on that. Might be overkill for this scenario though.
upvoted 0 times
Terrilyn
10 months ago
D) Conditional Access policies
upvoted 0 times
...
Jerilyn
10 months ago
A) Azure AD enterprise applications
upvoted 0 times
...
...
Dean
11 months ago
I'm not sure about Azure AD Identity Protection, do you think it's necessary for our solution?
upvoted 0 times
...
Gianna
11 months ago
Looks like we need to use Azure AD enterprise applications and Conditional Access policies to implement SAML SSO and enforce MFA for the LOB app. Gotta love that Azure AD integration!
upvoted 0 times
...
Beata
11 months ago
I agree with Stevie, but we also need to add Conditional Access policies for enforcing MFA.
upvoted 0 times
...
Stevie
11 months ago
I think we should include Azure AD enterprise applications for SAML SSO.
upvoted 0 times
...

Save Cancel