Microsoft Azure Security Engineer Associate AZ-500 Practice Question
You are registering a custom web API named api1 in Microsoft Entra ID for the contoso.com tenant. The API must be callable by client applications that reside in other Azure AD tenants. You expose a delegated permission scope named access_as_user. To ensure those external client applications can obtain OAuth 2.0 tokens for this scope, which additional setting should you configure on the api1 app registration?
Change Supported account types to "Accounts in any organizational directory (Any Azure AD tenant)".
Add a client secret to the app registration and share it with the external developers.
Mark the access_as_user scope as "admin consent required".
Enable the AllowPublicClient setting on the Authentication blade.
For a resource application to issue tokens to clients from other Azure AD tenants it must be configured as a multi-tenant app. This is done by setting Supported account types to Accounts in any organizational directory (Any Azure AD tenant). Adding a client secret is not required for a resource API, requiring admin consent does not make the app multi-tenant, and AllowPublicClient applies only to public client apps, not to web APIs.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What does 'Supported account types' mean in Microsoft Entra ID app registration?
Open an interactive chat with Bash
What is admin consent and when is it needed?
Open an interactive chat with Bash
What is OAuth 2.0 and how does it work in Microsoft Entra ID?
Open an interactive chat with Bash
Microsoft Azure Security Engineer Associate AZ-500
Secure identity and access
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .