Microsoft 365 Administrator Expert MS-102 Practice Question

Contoso has enabled self-service password reset (SSPR) for all Microsoft Entra ID users. Security policy states that users must be able to reset their passwords only when they are connected from the company's public IP address ranges. Other sign-in activities must remain unaffected. As a Microsoft 365 administrator, which configuration should you implement to enforce this requirement?

  • Configure a custom banned password list in Microsoft Entra Password Protection that includes the corporate IP address ranges.

  • Create an Identity Protection sign-in risk policy that requires users to be on a compliant device before resetting passwords.

  • Create a Conditional Access policy that targets the self-service password reset action and allows access only from a named location containing the corporate IP ranges.

  • Add the corporate IP ranges to the tenant's MFA trusted IPs list and enable SSPR only for users inside the trusted network.

Microsoft 365 Administrator Expert MS-102
Implement and manage Microsoft Entra identity and access
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot