Microsoft SC-300 Exam (page: 6)
Microsoft Identity and Access Administrator
Updated on: 25-Dec-2025

Viewing Page 6 of 83

You have 2,500 users who are assigned Microsoft Office 365 Enterprise E3 licenses. The licenses are assigned to individual users.
From the Groups blade in the Azure Active Directory admin center, you assign Microsoft 365 Enterprise E5 licenses to the users.
You need to remove the Office 365 Enterprise E3 licenses from the users by using the least amount of administrative effort.
What should you use?

  1. the Administrative units blade in the Azure Active Directory admin center
  2. the Set-AzureAdUser cmdlet
  3. the Groups blade in the Azure Active Directory admin center
  4. the Set-MsolUserLicense cmdlet

Answer(s): D

Explanation:

The Set-MsolUserLicense cmdlet updates the license assignment for a user. This can include adding a new license, removing a license, updating the license options, or any combination of these actions.
Note:
There are several versions of this question in the exam. The question has two possible correct answers:
1. the Licenses blade in the Azure Active Directory admin center
2. the Set-MsolUserLicense cmdlet
Other incorrect answer options you may see on the exam include the following:
- the Identity Governance blade in the Azure Active Directory admin center
- the Set-WindowsProductKey cmdlet
- the Set-AzureAdGroup cmdlet


Reference:

https://docs.microsoft.com/en-us/powershell/module/msonline/set-msoluserlicense?view=azureadps-1.0



You have a Microsoft Entra tenant named contoso.com that contains an enterprise application named App1.
A contractor uses the credentials of user1@outlook.com.
You need to ensure that you can provide the contractor with access to App1. The contractor must be able to authenticate as user1@outlook.com.
What should you do?

  1. Implement Microsoft Entra Connect sync.
  2. Add a custom domain name to contoso.com.
  3. Implement Microsoft Entra Application Proxy.
  4. Run the New-MgInvitation cmdlet.

Answer(s): D



HOTSPOT (Drag and Drop is not supported)
You have an Azure Active Directory (Azure AD) tenant and an Azure web app named App1.
You need to provide guest users with self-service sign-up for App1. The solution must meet the following requirements:
-Guest users must be able to sign up by using a one-time password.
-The users must provide their first name, last name, city, and email address during the sign-up process.
What should you configure in the Azure Active Directory admin center for each requirement? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Hot Area:

  1. See Explanation section for answer.

Answer(s): A

Explanation:


Reference:

https://docs.microsoft.com/en-us/azure/active-directory/external-identities/identity-providers https://docs.microsoft.com/en-us/azure/active-directory/external-identities/self-service-sign-up-overview



You have an Azure Active Directory (Azure AD) Azure AD tenant.
You need to bulk create 25 new user accounts by uploading a template file.
Which properties are required in the template file?

  1. displayName, identityIssuer, usageLocation, and userType
  2. accountEnabled, givenName, surname, and userPrincipalName
  3. accountEnabled, displayName, userPrincipalName, and passwordProfile
  4. accountEnabled, passwordProfile, usageLocation, and userPrincipalName

Answer(s): C


Reference:

https://docs.microsoft.com/en-us/azure/active-directory/enterprise-users/users-bulk-add



Your network contains an on-premises Active Directory domain that syncs to an Azure Active Directory (Azure AD) tenant.
Users sign in to computers that run Windows 10 and are joined to the domain.
You plan to implement Azure AD Seamless Single Sign-On (Azure AD Seamless SSO).
You need to configure the Windows 10 computers to support Azure AD Seamless SSO.
What should you do?

  1. Configure Sign-in options from the Settings app.
  2. Enable Enterprise State Roaming.
  3. Modify the Intranet Zone settings.
  4. Install the Azure AD Connect Authentication Agent.

Answer(s): C


Reference:

https://docs.microsoft.com/en-us/azure/active-directory/hybrid/how-to-connect-sso-quick-start



Viewing Page 6 of 83



Share your comments for Microsoft SC-300 exam with other users:

siva 5/17/2023 12:32:00 AM

very helpfull
Anonymous


Jorn 7/13/2023 5:05:00 AM

relevant questions
UNITED KINGDOM