MS-102 Practice Question: Implement and manage Microsoft Entra identity and access
Network Topology
You run the Azure CLI command shown in the exhibit. What does the output represent?
⚠ Common exam trap
Many exam-takers confuse the Microsoft Graph application ID with the SharePoint Online application ID because both start with `00000003`, but the middle segment differs (`-0000-0000-c000-` vs `-0000-0ff1-ce00-`), and Microsoft deliberately tests this subtle distinction.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
The application ID for Microsoft Graph
The Azure CLI command `az ad sp show --id 00000003-0000-0000-c000-000000000000` retrieves the service principal for the Microsoft Graph API. The GUID `00000003-0000-0000-c000-000000000000` is the well-known application ID for Microsoft Graph in Microsoft Entra ID (formerly Azure AD). This ID is used to grant permissions and consent for Microsoft Graph API access.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
The application ID for Microsoft Entra ID
Why it's wrong here
The GUID shown in the exhibit is 00000003-0000-0000-c000-000000000000, which is the well-known application ID for Microsoft Graph, not Microsoft Entra ID. Microsoft Entra ID uses a different fixed app ID, 00000002-0000-0000-c000-000000000000 (historically the Microsoft Entra ID Graph service principal), to identify its directory service. Using this GUID to reference Entra ID would resolve to the Microsoft Graph service principal instead, which is a separate API and permission model.
- ✗
The application ID for Exchange Online
Why it's wrong here
Exchange Online has its own workload-specific application ID, 00000002-0000-0ff1-ce00-000000000000, whose service principal defines scopes such as EWS and Exchange Admin APIs. The exhibit's GUID contains an all-zero segment where Exchange Online uses the 0ff1 workload identifier, so it does not match Exchange Online's app ID. This command returns the Microsoft Graph service principal, not the Exchange Online service principal, even though Microsoft Graph can also read Exchange-related data through its own permissions.
- ✗
The application ID for SharePoint Online
Why it's wrong here
SharePoint Online is a distinct workload application with app ID 00000003-0000-0ff1-ce00-000000000000, which shares the leading 00000003 segment with Microsoft Graph but diverges in the 0ff1 segment. The GUID in the exhibit is 00000003-0000-0000-c000-000000000000, where the zero-filled second segment and c000 value are reserved for Microsoft Graph. Therefore, this is not SharePoint Online's application ID, and running the command targets Graph's service principal, not SharePoint's.
- ✓
The application ID for Microsoft Graph
Why this is correct
The application ID 00000003-0000-0000-c000-000000000000 is the fixed, well-known application ID for Microsoft Graph. This ID is present in every Microsoft Entra ID tenant as the Microsoft Graph service principal and is used by Azure CLI commands to inspect its roles, permission scopes, and other configuration. It is not tied to any single workload like Exchange or SharePoint; it represents the unified Microsoft Graph API across all Microsoft 365 services.
Go deeper
Related to this question
About these practice questions
Courseiva writes every MS-102 question from scratch — 712 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This MS-102 practice question is part of Courseiva's free Microsoft certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the MS-102 exam.