Q: 8
A user named User1 receives an error message when attempting to access the Microsoft Defender
for Cloud Apps portal.
You need to identify the cause of the error. The solution must minimize administrative effort.
What should you use?
Options
Discussion
B. is correct. Had something like this in a mock and sign-in logs clearly showed the access failure reason for user errors. Quickest way to spot Conditional Access or auth issues. Pretty sure that's what they're after here.
B , sign-in logs are quickest for pinpointing why access failed. You'll see if User1 got blocked by CA policies, bad credentials, or missing roles. The other logs (like audit or provisioning) just won't show those direct auth failures. Seen similar advice in the official guide. Anyone disagree?
Pretty sure it's B for this scenario. Sign-in logs give the clearest info on why someone can't access a portal like Defender for Cloud Apps. Let me know if you think something else makes sense here.
B
Be respectful. No spam.