You manage a Microsoft Entra ID tenant named corp.litware.com. The tenant contains the following:
* An administrative unit named AU1.
* A security group named Group1.
* A security group named Group2 that is a nested member of Group1.
* Standard internal member users and B2B guest users.
You need to configure the tenant to satisfy the following security and administration requirements:
1. Only the users in Group1 and Group2 must be permitted to use Self-Service Password Reset (SSPR).
2. Internal member users must be able to invite guest users, but B2B guest users must be blocked from inviting other guest users.
3. Guest invitations must be permitted only to the partner.com domain.
Which three actions should you perform? Each correct answer presents part of the solution.
- AConfigure the Self-Service Password Reset enabled scope to Selected and specify Group1.
- Create a new flat security group containing all direct members of Group1 and Group2, and configure the Self-Service Password Reset enabled scope to Selected targeting the new group.Answer
- In the External collaboration settings, set the Guest invite restrictions to Member users and users assigned to specific admin roles can invite guest users.Answer
- DAdd Group1 and Group2 to AU1, and configure the Self-Service Password Reset enabled scope to target AU1.
- In the External collaboration settings, select Allow invitations only to the specified domains under Collaboration restrictions, and add partner.com to the list of domains.Answer