AZ-104 · Practice set 5 of 7
Microsoft Entra Users and External Identities: 10 practice questions
10 free AZ-104 practice questions on Microsoft Entra Users and External Identities, with an explanation for every answer. Untimed. The full mock exam and the timed version are in the app.
-
Question 1 of 10
Which Microsoft Entra admin center action starts creation of a cloud user?
- AGroups > New group starts group creation.
- BOpen Directory + Subscription, select a directory, and then choose Switch.
- COpen Users, select New user, and then select Create new user.
- DOpen Deleted users, select Restore user, and then confirm the dialog.
Show the answer
User creation begins from the Users surface; the other paths manage groups, deleted accounts, or directory context.
Next → 1 / 10 -
Question 2 of 10
Which field is part of the Microsoft Entra user creation form?
- AUser principal name
- BDirectory source
- CUser Type column
- DGroup membership type
Show the answer
User principal name is entered on the user creation form; the alternatives describe group configuration or identity classification.
Next → 2 / 10 -
Question 3 of 10
Which source is shown for a Microsoft Entra guest user?
- AInvited user source
- BUser Administrator
- CMicrosoft Entra ID
- DWindows Server AD
Show the answer
A guest identity represents someone outside the organization and is classified with Invited user as its source.
Next → 3 / 10 -
Question 4 of 10
A user originates in on-premises Active Directory and is synchronized to Microsoft Entra ID. Which identity classification and source apply?
- ACloud identity with External Microsoft Entra directory as its source
- BGuest user with Invited user as its source
- CDirectory-synchronized identity with Windows Server AD as its source
- DCloud identity with Microsoft Entra ID as its source
Show the answer
Origin in on-premises Active Directory defines a directory-synchronized identity and produces Windows Server AD as the displayed source.
Next → 4 / 10 -
Question 5 of 10
What happens to a user account during the first 30 days after deletion?
- AIt is permanently deleted but can be recreated with all prior properties.
- BIt remains active for 30 days.
- CIt becomes a guest account and keeps access until an invitation expires.
- DIt remains suspended and can be restored with all its properties.
Show the answer
The deleted-user window preserves the suspended object and its properties for restoration; permanent deletion begins after that window.
Next → 5 / 10 -
Keep the ones you got wrong
In the app, every question you miss comes back exactly when you’re about to forget it.
-
Question 6 of 10
Where can an administrator correct a user's usage location before assigning a license?
- AOn the user's Properties tab in the Microsoft Entra admin center
- BIn the Deleted users restoration dialog in the Microsoft Entra admin center
- CIn the Directory + Subscription panel as the directory source
- DIn the group's Membership type setting in the Microsoft Entra admin center
Show the answer
Usage location is a user profile property and should reflect the user's actual location before licensing.
Next → 6 / 10 -
Question 7 of 10
How should an administrator begin an operation that applies to several users in the All users list?
- ASelect the check boxes for the required users in the list.
- BSwitch directories once for every user included in the operation.
- COpen one user's page and add the other users as properties.
- DMove the users to Deleted users and restore them together.
Show the answer
List check boxes provide the multi-user selection surface, whereas opening a user page scopes management to that individual.
Next → 7 / 10 -
Question 8 of 10
A contractor uses an account outside your organization, needs temporary access to your resources, and must lose all that access when the engagement ends. Which user-object approach fits?
- AUse a guest user and remove the guest account when the engagement ends.
- BUse a cloud administrator account and clear its usage location when work ends.
- CUse a permanently deleted user and restore it whenever the contractor returns.
- DUse a synchronized user, then stop synchronization.
Show the answer
Guest users represent identities outside the organization and removing the guest account removes its resource access when collaboration ends.
Next → 8 / 10 -
Question 9 of 10
A user was deleted 20 days ago, its existing properties must be preserved, and creating a replacement account is unacceptable. What should the administrator do?
- ACreate a replacement cloud user.
- BWait for permanent deletion and then restore the original user object.
- CSelect the account under Deleted users and restore the user.
- DCreate a guest account and copy the deleted user's prior access manually.
Show the answer
At day 20 the account is inside the 30-day suspended window, so restoration recovers the original object together with its properties.
Next → 9 / 10 -
Question 10 of 10
An administrator is currently viewing directory A, must update several users in directory B, and must avoid changing similarly named users in A. Which sequence meets both constraints?
- ASwitch to directory B, open one user page, and manage every matching user there.
- BOpen All users in directory A, select the names, and then switch to directory B.
- CSwitch to directory B, open All users, and select the required user check boxes.
- DStay in directory A, open one user page, and select users from both directories.
Show the answer
The admin center works in one directory at a time, so directory context must change first; list check boxes then provide multi-user selection.
Next → 10 / 10 -
You’ve finished this set
That’s 10 questions on Microsoft Entra Users and External Identities. In the app the ones you miss come back exactly when you’re about to forget them.
The whole course, on your phone
Lessons you can read, audio you can listen to on the way to work, and practice that remembers what you got wrong.