Courseiva

MS-900 Describe cloud concepts Practice Question

Drag and drop the steps to configure a Microsoft 365 group expiration policy in the Microsoft Entra ID admin center into the correct order.

Drag or tap steps into the slots.

Steps
Order
1Step 1
2Step 2
3Step 3
4Step 4
5Step 5

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

Sign in to the Microsoft Entra ID admin center, then navigate to Groups > Expiration, then configure the expiration policy settings, then save the policy.

To configure a Microsoft 365 group expiration policy, you must first sign in to the Microsoft Entra ID admin center, then navigate to Groups > Expiration, configure the desired expiration settings, and finally save the policy. This sequence ensures proper access and application of the configuration.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✓

    Sign in to the Microsoft Entra ID admin center, then navigate to Groups > Expiration, then configure the expiration policy settings, then save the policy.

    Why this is correct

    The proper sequence begins with signing in to the Microsoft Entra ID admin center (https://aad.portal.azure.com) using an account with sufficient privileges, such as a Global Administrator or User Administrator. After authentication, you navigate to the Groups blade and select the Expiration section, which holds the Microsoft 365 group expiration policy settings. You then configure parameters like group lifetime and notification contacts, and finally save the policy to persist and enforce those settings. This order is required because the expiration settings are only available within that specific blade, and saving without configuring would not apply any intended changes.

  • ✗

    Sign in to the Microsoft Entra ID admin center, then configure the expiration policy settings, then navigate to Groups > Expiration, then save the policy.

    Why it's wrong here

    The expiration policy configuration controls are not accessible immediately after signing in; they are only rendered when you first navigate to Groups > Expiration. The Microsoft Entra ID admin center's home page does not display expiration settings, and attempting to configure a policy that hasn't been selected would be impossible in the UI. The policy blade must be open before any fields or toggles are available. Without this navigation step, there is nothing to configure, so the sequence is invalid.

  • ✗

    Sign in to the Microsoft Entra ID admin center, then navigate to Groups > Expiration, then save the policy, then configure the expiration policy settings.

    Why it's wrong here

    This option fails because you cannot save a policy before configuring its settings; the Save button only persists the current state of the blade, which would be the default expiration settings or your previously unmodified values. In the Microsoft Entra ID admin center, the Expiration blade loads with default values (e.g., 365 days, no notifications) and saving immediately would enforce those defaults, not any intended custom policy. You must first adjust the expiration period, email notifications, and who receives them, then save to commit your changes. Saving out of order makes the configuration step irrelevant.

  • ✗

    Navigate to Groups > Expiration, then sign in to the Microsoft Entra ID admin center, then configure the expiration policy settings, then save the policy.

    Why it's wrong here

    This option is invalid because navigating to Groups > Expiration requires an authenticated session in the Microsoft Entra ID admin center; without signing in first, the portal will redirect you to the sign-in page and the Expiration blade will not load. Microsoft Entra ID admin center enforces conditional access and role-based authentication, so you cannot access any management blade, including expiration policies, anonymously. Even if you had a direct URL, the portal's security layer intercepts the request and demands credentials. Therefore, the sign-in must occur before any navigation or configuration steps.

About these practice questions

One of 794 original MS-900 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This MS-900 practice question is part of Courseiva's free Microsoft certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the MS-900 exam.