Microsoft Azure Solutions Architect Expert AZ-305 Practice Question

Contoso Ltd. has a single Active Directory forest with 40,000 employees. Azure resources span multiple subscriptions. The company currently uses AD FS for sign-in to Microsoft 365 but wants to retire the AD FS servers to reduce on-premises complexity. Requirements: retain on-premises password validation, enable Azure AD Conditional Access and MFA, and automatically provision identities to several SaaS applications. Which identity management approach should you recommend?

  • Retain the existing AD FS farm and additionally enable Password Hash Synchronization in Azure AD Connect.

  • Create a dedicated Azure AD B2C tenant and migrate all employee accounts into it.

  • Replace AD FS with Azure AD Connect Pass-through Authentication and Seamless Single Sign-On, then configure Azure AD automatic provisioning for the required SaaS applications.

  • Deploy Azure AD Domain Services in Azure and join all cloud workloads to the managed domain.

Microsoft Azure Solutions Architect Expert AZ-305
Design identity, governance, and monitoring solutions
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot