SC-300 Practice Question 3462
Exam: SC-300
Domain: Plan and implement workload identities
Difficulty: easy
You want to protect corporate data by preventing non-admin users from granting consent to third-party OAuth apps requesting access to user data. Where is user consent restricted?
Answer Options
A
Set "User consent for applications" to "Do not allow user consent"
B
Delete all enterprise applications from the directory
C
Disable modern authentication tenant-wide
D
Revoke licenses from all application developers
Correct Answer
A: Set "User consent for applications" to "Do not allow user consent"
Explanation
Under Enterprise applications > Consent and permissions > User consent settings, set "User consent for applications" to "Do not allow user consent".