HOTSPOT Your company has a Microsoft 365 tenant. All users have computers that run Windows 10 and are joined to the Azure Active Directory (Azure AD) tenant. The company subscribes to a third-party cloud service named Service1. Service1 supports Azure AD authentication and authorization based on OAuth. Service1 is published to the Azure AD gallery. You need to recommend a solution to ensure that the users can connect to Service1 without being prompted for authentication. The solution must ensure that the users can access Service1 only from Azure AD-joined computers. The solution must minimize administrative effort. What should you recommend for each requirement? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
Q: 13
Your Answer
Discussion
Makes sense to use an enterprise application for SSO, and Conditional Access is the quickest way to lock it down to joined devices. Pretty standard flow for Azure AD integrated SaaS. Not 100% sure if anything else might work but this combo matches MS best practices.
Enterprise application in Azure AD and Conditional Access policy. Nice, pretty clear-cut scenario here.
Be respectful. No spam.
Question 13 of 35
