New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Microsoft AZ-305 Exam - Topic 3 Question 66 Discussion

Actual exam question for Microsoft's AZ-305 exam
Question #: 66
Topic #: 3
[All AZ-305 Questions]

A company named Contoso, Ltd. has an Azure Active Directory (Azure AD) tenant that is integrated with Microsoft Office 365 and an Azure subscription.

Contoso has an on-premises identity infrastructure. The infrastructure includes servers that run Active Directory Domain Services (AD DS), and Azure AD Connect

Contoso has a partnership with a company named Fabrikam, Inc. Fabrikam has an Active Directory forest and an Office 365 tenant. Fabrikam has the same on-premises identity infrastructure as Contoso.

A team of 10 developers from Fabrikam will work on an Azure solution that will be hosted in the Azure subscription of Contoso. The developers must be added to the Contributor role for a resource in the Contoso subscription.

You need to recommend a solution to ensure that Contoso can assign the role to the 10 Fabrikam developers. The solution must ensure that the Fabrikam developers use their existing credentials to access resources.

What should you recommend?

Show Suggested Answer Hide Answer
Suggested Answer: C

Contribute your Thoughts:

0/2000 characters
Yolando
3 months ago
AD FS relying party trust could be a good alternative as well.
upvoted 0 times
...
Keith
3 months ago
Wait, can they really access resources like that? Sounds risky.
upvoted 0 times
...
Johnetta
3 months ago
I’m not so sure about that, wouldn’t an organization relationship work too?
upvoted 0 times
...
Aretha
4 months ago
Definitely option A, makes the most sense!
upvoted 0 times
...
Dorinda
4 months ago
A forest trust would let them use their existing credentials.
upvoted 0 times
...
Willodean
4 months ago
I feel like the AD FS relying party trust option could work, but I need to double-check how that integrates with Azure AD.
upvoted 0 times
...
Tammara
4 months ago
I practiced a similar question about guest accounts, but I don't think using MIM for guest accounts is the best solution here.
upvoted 0 times
...
Erasmo
4 months ago
I'm not entirely sure, but I think configuring an organization relationship between the Office 365 tenants could help with access too.
upvoted 0 times
...
Tori
5 months ago
I remember we discussed the importance of using existing credentials for external users, so I think a forest trust might be the right approach.
upvoted 0 times
...
Terrilyn
5 months ago
This is a good opportunity to showcase my knowledge of Azure AD and identity management. I'll need to carefully evaluate each option to recommend the best solution.
upvoted 0 times
...
Sage
5 months ago
I'm feeling pretty confident about this one. I think the key is to set up the right trust relationships between the two organizations.
upvoted 0 times
...
Craig
5 months ago
Okay, I think I've got a handle on this. I'll need to focus on ensuring the Fabrikam developers can access the Contoso resources using their existing credentials.
upvoted 0 times
...
Alaine
5 months ago
Hmm, I'm a bit confused by the different identity infrastructures involved. I'll need to make sure I understand how they all fit together.
upvoted 0 times
...
Gwenn
5 months ago
This looks like a tricky one. I'll need to carefully read through the details and think through the different options.
upvoted 0 times
...
Royce
5 months ago
Hmm, I remember learning about JeOS in class, but I'm drawing a blank on the specific components. I'll have to think this through carefully.
upvoted 0 times
...
Nadine
10 months ago
Haha, imagine if they tried to set up a forest trust. That would be like trying to untangle a ball of yarn with your eyes closed!
upvoted 0 times
Jenise
9 months ago
D: Configure an organization relationship between the Office 365 tenants of Fabrikam and Contoso.
upvoted 0 times
...
Kristeen
10 months ago
C: Configure an AD FS relying party trust between the fabrikam and Contoso AD FS infrastructures.
upvoted 0 times
...
Joni
10 months ago
B: In the Azure AD tenant of Contoso, use MIM to create guest accounts for the Fabrikam developers.
upvoted 0 times
...
Van
10 months ago
A: Configure a forest trust between the on-premises Active Directory forests of Contoso and Fabrikam.
upvoted 0 times
...
...
Clorinda
10 months ago
Hmm, I'm leaning more towards B. Configuring an organization relationship between the Office 365 tenants might be a simpler solution than dealing with AD FS. Plus, it would allow for easier collaboration between the two companies.
upvoted 0 times
...
Vonda
10 months ago
I'm not sure about that. Wouldn't it be easier to just create guest accounts for the Fabrikam developers in the Contoso Azure AD tenant? That way, they can use their existing credentials without any complex setup.
upvoted 0 times
Frederica
9 months ago
User 2
upvoted 0 times
...
Roselle
10 months ago
User 1
upvoted 0 times
...
...
Stefany
11 months ago
I think the answer is D. Configuring an AD FS relying party trust between the Fabrikam and Contoso AD FS infrastructures will allow the Fabrikam developers to use their existing credentials to access resources in the Contoso Azure subscription.
upvoted 0 times
Darrel
9 months ago
Yes, it would definitely simplify things for both Contoso and Fabrikam.
upvoted 0 times
...
Alethea
10 months ago
That makes sense. It would streamline the access process for the Fabrikam developers.
upvoted 0 times
...
Kandis
10 months ago
Configuring an AD FS relying party trust between the Fabrikam and Contoso AD FS infrastructures will allow the Fabrikam developers to use their existing credentials to access resources in the Contoso Azure subscription.
upvoted 0 times
...
Dewitt
10 months ago
I think the answer is D.
upvoted 0 times
...
...
Lili
11 months ago
I'm not sure about that. Maybe we should consider option D) Configure an AD FS relying party trust between the Fabrikam and Contoso AD FS infrastructures for better security.
upvoted 0 times
...
Ilene
11 months ago
I agree with Gracia. Setting up a forest trust would allow seamless access for the Fabrikam developers using their existing credentials.
upvoted 0 times
...
Gracia
11 months ago
I think we should go with option A) Configure a forest trust between the on-premises Active Directory forests of Contoso and Fabrikam.
upvoted 0 times
...

Save Cancel