Entra Flashcards

(50 cards)

1
Q

What is Microsoft Entra?

A

Microsoft Entra is a family of identity and network access products that implements a Zero Trust security strategy and creates a trust fabric.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are the four maturity stages of secure end-to-end access in Microsoft Entra?

A
  • Establishing Zero Trust access controls
  • Securing access for employees
  • Securing access for customers
  • Securing access in any cloud
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is Microsoft Entra ID?

A

Microsoft Entra ID is a cloud-based identity and access management service that secures users, devices, apps, and resources.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What services does Microsoft Entra Domain Services provide?

A
  • Group policy
  • Lightweight Directory Access Protocol (LDAP)
  • Kerberos/NTLM authentication
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is the purpose of Microsoft Entra Private Access?

A

Microsoft Entra Private Access secures access to private apps and resources, allowing remote users to connect without a VPN.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What does Microsoft Entra Internet Access secure?

A

Microsoft Entra Internet Access secures access to internet resources, including SaaS apps and Microsoft 365 apps.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is Microsoft Entra ID Governance?

A

Microsoft Entra ID Governance automates access requests, assignments, and reviews, protecting critical assets through identity lifecycle management.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What does Microsoft Entra ID Protection do?

A

Microsoft Entra ID Protection detects and reports identity-based risks and enables risk-based Conditional Access policies.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is Microsoft Entra Verified ID?

A

Microsoft Entra Verified ID is a credential verification service based on decentralized identities (DIDs) for information verification.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is the function of Microsoft Entra External ID?

A

Microsoft Entra External ID allows external identities to safely access business resources and manage customer identity and access management.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is Microsoft Entra Workload ID?

A

Microsoft Entra Workload ID is the identity and access management solution for workload identities such as applications and services.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is the Microsoft Entra admin center?

A

The Microsoft Entra admin center is a web-based portal for administrators to configure and manage Microsoft Entra products.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is the Microsoft Graph API?

A

The Microsoft Graph API is used to automate administrative tasks in Microsoft Entra, including license deployments and user lifecycle management.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is the primary replica in Microsoft Entra architecture?

A

The primary replica receives all writes for its partition and ensures geo-redundant durability of writes by replicating to secondary replicas.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What is the role of secondary replicas in Microsoft Entra?

A

Secondary replicas service all directory reads and are located in geographically distributed datacenters.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is scalability in the context of Microsoft Entra?

A

Scalability is the ability of a service to expand to meet increasing performance demands, achieved through partitioning and replication.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

What defines availability in Microsoft Entra ID?

A

Availability defines the ability of a system to perform uninterrupted, with services quickly shifting traffic across multiple datacenters.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

True or False: Each directory partition in Microsoft Entra ID has a highly available primary replica.

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

What is data durability in Microsoft Entra ID?

A

Data durability ensures a write is durably committed to at least two datacenters before acknowledgment, preventing data loss.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

What is the Recovery Time Objective (RTO) for Microsoft Entra ID?

A

Zero Recovery Time Objective (RTO) for token issuance and directory reads, with about 5 minutes RTO for directory writes.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

What does Microsoft Entra ID use for backup?

A

Microsoft Entra ID implements daily backups and soft deletes to restore data if there’s a service-wide issue.

22
Q

What is the target time for detecting customer issues in Microsoft Entra ID?

A

The target time for detecting customer issues is less than 5 minutes.

23
Q

What is multifactor authentication (MFA) in Microsoft Entra?

A

MFA uses admin-approved methods to safeguard access to data and applications.

24
Q

What is Conditional Access in Microsoft Entra?

A

Conditional Access implements automated access-control decisions based on user conditions for cloud apps.

25
What is Single Sign-On (SSO) in Microsoft Entra ID?
SSO enables user access to apps and resources with one sign-in, eliminating the need to reenter credentials.
26
What does Active Directory Federation Services (AD FS) do?
AD FS migrates user authentication from federation to cloud using pass-through authentication or password hash sync.
27
What feature does Microsoft Entra application proxy provide?
Microsoft Entra application proxy enables access to on-premises applications without VPNs or DMZs.
28
What does seamless single sign-on (Seamless SSO) do?
Seamless SSO allows users to sign in on corporate devices without needing passwords or usernames.
29
What is the Joiner-Mover-Leaver (JML) process in Microsoft Entra ID Governance?
The JML process maps employee lifecycle actions to IT actions such as Create, Enable, and Disable.
30
What is Microsoft Entra ID Governance?
Create identity governance and enhance business processes that rely on identity data.
31
What does the Joiner-Mover-Leaver (JLM) process manage?
New Hire, Terminate, Transfer.
32
What is the purpose of Microsoft Entra B2B collaboration?
Improve external-user collaboration with secure access to applications.
33
What are the benefits of using Microsoft Entra ID Governance?
* Improve productivity * Strengthen security * Meet compliance and regulatory requirements.
34
What is Privileged Identity Management (PIM)?
Manage, control, and monitor access within your Microsoft Entra organization.
35
What is required to use Privileged Identity Management?
Microsoft Entra ID P2 or Microsoft Entra ID Governance license.
36
What capabilities does Privileged Identity Management provide?
* Just-in-time privileged access * Time-bound access * Role activation approval * Multifactor authentication enforcement.
37
What is the principle of least privilege?
Assign users the role with the least privileges necessary to perform their tasks.
38
What can access reviews in Microsoft Entra do?
* Schedule regular reviews * Track reviews for insights * Delegate reviews to specific admins.
39
What are the key benefits of enabling access reviews?
* Control collaboration * Manage risk * Address compliance and governance * Reduce cost.
40
What does identity and access management involve?
Ability to manage the lifecycle of identities and their entitlements.
41
What is the role of Microsoft Entra Connect in hybrid identity?
Synchronize user accounts that employees use to sign in to their desktops.
42
What are the three authentication methods for achieving hybrid identity?
* Password hash synchronization (PHS) * Pass-through authentication (PTA) * Federation (AD FS).
43
What is password hash synchronization?
Synchronizes a hash of a user's password from on-premises Active Directory to Microsoft Entra.
44
What are the benefits of password hash synchronization?
* Improve user productivity * Reduce helpdesk costs.
45
What does hybrid identity enable?
A common user identity for authentication and authorization to all resources.
46
What is the purpose of synchronization in hybrid identity?
Ensure identity information for on-premises users and groups matches the cloud.
47
Fill in the blank: Microsoft Entra Connect plays a key role in the _______ process.
provisioning
48
What should organizations do to address synchronization issues?
Identify and resolve synchronization issues in the on-premises environment.
49
What is a recommended strategy for sync failover?
Deploy Microsoft Entra Connect Server(s) in Staging Mode.
50
True or False: Privileged Identity Management (PIM) allows unlimited resource management.
False