mediummultiple choiceObjective-mapped

A manufacturer wants to give partner-company users access to a procurement portal. The partner wants to authenticate its own users, and the manufacturer does not want to create separate local passwords for them. What is the best solution?

Question 1mediummultiple choice
Full question →

A manufacturer wants to give partner-company users access to a procurement portal. The partner wants to authenticate its own users, and the manufacturer does not want to create separate local passwords for them. What is the best solution?

Answer choices

Why each option matters

Good practice is not just finding the correct option. The wrong answers often show the exact trap the exam wants you to fall into.

A

Distractor review

Create shared portal accounts and distribute credentials to the partner's staff.

Shared accounts make auditing difficult and create serious accountability problems. They also increase the chance of credential misuse or loss.

B

Best answer

Federate access with the partner's identity provider and map claims or attributes to portal roles.

Federation lets the partner authenticate its own users while the manufacturer trusts identity assertions from the partner identity provider. Claims or attributes can then be mapped to portal roles so access stays controlled without local password management. This is a strong fit for business-to-business access because it preserves administrative separation while still supporting centralized authorization decisions in the portal.

C

Distractor review

Issue one VPN account for the partner organization and let them share it internally.

A shared VPN account is not suitable for application access and destroys user accountability. It also does not provide role-based portal authorization.

D

Distractor review

Require each partner user to create a password directly in the procurement portal.

Local portal passwords force the manufacturer to manage external identities and offboarding manually. That adds complexity and increases the chance of stale accounts.

Common exam trap

Common exam trap: answer the scenario, not the keyword

Many certification questions include familiar terms but test a specific constraint. Read the exact wording before choosing an answer that is generally true but wrong for this case.

Technical deep dive

How to think about this question

This question should be treated as a scenario, not a definition check. Identify the problem, the constraint and the best action. Then compare each option against those facts.

KKey Concepts to Remember

  • Read the scenario before looking for a memorised answer.
  • Find the constraint that changes the correct option.
  • Eliminate answers that are true in general but not in this case.
  • Use explanations to understand the rule behind the answer.

TExam Day Tips

  • Underline the problem statement mentally.
  • Watch for words such as best, first, most likely and least administrative effort.
  • Review why wrong options are wrong, not only why the correct option is correct.

Related practice questions

Related SY0-701 practice-question pages

Use these pages to review the topic behind this question. This is how one missed question becomes focused revision.

More questions from this exam

Keep practising from the same exam bank, or move into a focused topic page if this question exposed a weak area.

FAQ

Questions learners often ask

What does this SY0-701 question test?

Read the scenario before looking for a memorised answer.

What is the correct answer to this question?

The correct answer is: Federate access with the partner's identity provider and map claims or attributes to portal roles. — Federation is the best solution because it allows the partner organization to authenticate its own users while the manufacturer trusts that identity for portal access. By mapping claims or attributes into roles, the manufacturer can grant the correct level of access without issuing local passwords to outside users. This approach reduces administrative overhead, improves accountability, and supports cleaner business-to-business identity management. Why others are wrong: A and C rely on shared credentials, which breaks accountability and is hard to govern securely. D creates separate local accounts that are harder to maintain and offboard. Federation is the only option that preserves both identity ownership and centralized portal access control.

What should I do if I get this SY0-701 question wrong?

Then try more questions from the same exam bank and focus on understanding why the wrong options are tempting.

Discussion

Loading comments…

Sign in to join the discussion.