MD-101-Questions - PowerPoint PPT Presentation

About This Presentation
Title:

MD-101-Questions

Description:

Your company Windows 10 computers that are enrolled in Microsoft Intune. – PowerPoint PPT presentation

Number of Views:4
Slides: 28
Provided by: alexablis0
Tags:

less

Transcript and Presenter's Notes

Title: MD-101-Questions


1
MD-101 Managing Modern Desktops Version
1.0 Topic 1, Deploy and Update Operating Systems
  • QUESTION NO 1
  • Note The question is included in a number of
    questions that depicts the identical set-up.
    However, every question has a distinctive result.
    Establish if the solution satisfies the
    requirements.
  • Your company Windows 10 computers that are
    enrolled in Microsoft Intune. You make use of
    Intune to manage the servicing channel settings
    of all company computers.
  • You receive an enquiry regarding the servicing
    status of a specific computer. You need to
    review the necessary policy report.
  • Solution You navigate to device status via
    Device configuration.
  • Does the solution meet the goal?
  • Yes
  • No
  • Answer B References
  • https//docs.microsoft.com/en-us/intune/windows-up
    date-compliance-reports

QUESTION NO 2 Note The question is included in
a number of questions that depicts the identical
set-up. However, every question has a
distinctive result. Establish if the solution
satisfies the requirements.
2
  • Your company Windows 10 computers that are
    enrolled in Microsoft Intune. You make use of
    Intune to manage the servicing channel settings
    of all company computers.
  • You receive an enquiry regarding the servicing
    status of a specific computer. You need to
    review the necessary policy report.
  • Solution You navigate to the audit logs via
    Software updates. Does the solution meet the
    goal?
  • Yes
  • No
  • Answer B References
  • https//docs.microsoft.com/en-us/intune/windows-up
    date-compliance-reports
  • QUESTION NO 3
  • You have been tasked with reusing a Windows 10
    computer that was assigned to a user who is no
    longer with the company.
  • The computer will be assigned to a new user. You
    plan to make use of Windows AutoPilot to
    redeploy the computer.
  • Which of the following actions should you take
    FIRST?
  • Reset the computer.
  • Wipe the computer.
  • Create a HTML file containing the computer info.
  • Create a CSV file containing the computer info.
  • Answer D References
  • https//docs.microsoft.com/en-us/intune/enrollment
    -autopilot https//docs.microsoft.com/en-us/windo
    ws/deployment/windows-autopilot/windows-
  • autopilot-reset

3
QUESTION NO 4 DRAG DROP Your company has a
number of Windows 7 computers that you want to
upgrade to Windows 10. The computers all have a
single MBR disk, and a disabled TPM chip. Also,
the computers have hardware virtualization
disabled, Data Execution Prevention (DEP)
enabled, and UEFI firmware running in BIOS
mode. You have been tasked with making sure that
Secure Boot can be used by the computers. Which
of the following actions should you take? (Choose
two.) Answer by dragging the correct options
from the list to the answer area. Answer
ltmapgtltm x1"36" x2"256" y1"98" y2"169" ss"0"
a"0" /gtltm x1"35" x2"255" y1"175" y2"236"
ss"0" a"0" /gtltm x1"36" x2"256" y1"243"
y2"307" ss"0" a"0" /gtltm x1"36" x2"256"
y1"312" y2"383" ss"0" a"0" /gtltm x1"319"
x2"531" y1"99" y2"167" ss"1" a"0" /gtltm
x1"320" x2"529" y1"178" y2"252" ss"1" a"0"
/gtltc start"0" stop"0" /gtltc start"2" stop"1"
/gtlt/mapgt References https//docs.microsoft.com/e
n-us/windows-hardware/manufacture/desktop/boot-to-
uefi- mode-or-legacy-bios-mode QUESTION NO
5 Your company has an Active Directory domain
that includes a large number of Windows 10
computers. You have recently configured hybrid
Microsoft Azure Active Directory (Azure AD) and
Microsoft Intune in the environment. You want to
make sure that all the current computers are
automatically registered to Azure AD, as well as
enrolled in Intune. The strategy that you employ
should reduce the administrative effort required
to achieve your goal. Which of the following
actions should you take?
4
  • You should make use of Windows Reset.
  • You should make use of a Windows AutoPilot
    deployment profile.
  • You should make use of a n Autodiscover service
    connection point (SCP).
  • You should make use of a device configuration
    profile.
  • Answer B References
  • https//techcommunity.microsoft.com/t5/Windows-IT-
    Pro-Blog/Windows-Autopilot-Hybrid-
    Azure-AD-join-and-automatic/ba-p/286126
  • QUESTION NO 6
  • You need to consider the underlined segment to
    establish whether it is accurate.
  • You have recently created a provisioning package
    that uses CompRAND1 as the device name.
  • You will be able to successfully run the package
    on as much as 5 devices.
  • Select No adjustment required if the underlined
    segment is accurate. If the underlined segment
    is inaccurate, select the accurate option.
  • No adjustment required
  • 10
  • 15
  • 20
  • Answer B Explanation
  • The device name uses a single random number
    (applied by RAND1). This allows for 10 unique
    values (0 9).

QUESTION NO 7 Your company has an Active
Directory domain, named weylandindustries.com.
the domain is synced to Microsoft Azure Active
Directory (Azure AD) and all company computers
have been enrolled in Microsoft Intune.
5
  • You are preparing to perform a Wipe action on
    certain company devices.
  • Which of the following operating systems support
    the Wipe action? (Choose all that apply.)
  • Windows Vista
  • Windows 8.1
  • Windows 10
  • iOS
  • Answer B, C References
  • https//docs.microsoft.com/en-us/intune/devices-wi
    pe
  • QUESTION NO 8
  • Your company has an Active Directory domain,
    named weylandindustries.com. the domain is
    synced to Microsoft Azure Active Directory (Azure
    AD) and all company computers have been enrolled
    in Microsoft Intune.
  • You are preparing to perform a Fresh Start action
    on certain company devices.
  • Which of the following operating systems support
    the Fresh Start action? (Choose all that apply.)
  • Windows Vista
  • Windows 8.1
  • Windows 10
  • iOS
  • Answer C References
  • https//docs.microsoft.com/en-us/intune/device-fre
    sh-start

QUESTION NO 9
6
  • Your company has a number of Windows 10 Microsoft
    Azure Active Directory (Azure AD) joined
    workstations. These workstations have been
    enrolled in Microsoft Intune.
  • You have been tasked with making sure that the
    has self-service password reset enabled on the
    logon screen. You have navigated to the Microsoft
    Intune blade.
  • Which of the following is the setting you should
    configure?
  • The Device configuration settings.
  • The Device compliance settings
  • The Windows AutoPilot deployment settings
  • The App protection settings
  • Answer A References
  • https//docs.microsoft.com/en-us/azure/active-dire
    ctory/authentication/tutorial-sspr-
  • windows
  • QUESTION NO 10
  • You need to consider the underlined segment to
    establish whether it is accurate.
  • Your companys Microsoft Azure subscription
    includes an Azure Log Analytics workspace.
  • After deploying a new Windows 10 computer, which
    belongs to a workgroup, you are tasked with
    making sure that you are able to utilize Log
    Analytics to query events from the new computer.
  • You configure the new computers commercial ID.
  • Select No adjustment required if the underlined
    segment is accurate. If the underlined segment
    is inaccurate, select the accurate option.
  • What should you do on Computer1?
  • No adjustment required.
  • install the Azure Diagnostic extension on the new
    computer
  • install the Dependency agent on the new computer
  • install the Microsoft Monitoring Agent on the new
    computer

7
Answer D References https//docs.microsoft.com/
en-us/azure/azure-monitor/platform/agent-windows
  • QUESTION NO 11
  • You need to consider the underlined segment to
    establish whether it is accurate.
  • After installing a feature update on a Windows 10
    computer, you have 7 days to roll back the
    update
  • Select No adjustment required if the underlined
    segment is accurate. If the underlined segment
    is inaccurate, select the accurate option.
  • No adjustment required.
  • 10
  • 90
  • 30
  • Answer B Explanation
  • Microsoft has changed the time period associated
    with operating system rollbacks with
  • Windows 10 version 1607, decreasing it to 10
    days. Previously, Windows 10 had a 30-day
    rollback period.
  • References
  • https//redmondmag.com/articles/2016/08/04/microso
    ft-shortens-windows-10-rollback- period.aspx

QUESTION NO 12 Your company has a Microsoft 365
subscription configured for their environment.
All devices in the environment have Windows 10
installed. You have been instructed to make sure
that users are not allowed to enroll devices in
the Windows Insider Program.
8
  • To achieve your goal, you access Microsoft 365
    Device Management.
  • Which of the following actions should you take?
  • You should configure a Windows 10 security
    baseline.
  • You should configure an app protection policy.
  • You should configure device restriction policy.
  • You should configure a Windows 10 update ring.
  • Answer D

Topic 2, Policies and Profiles
  • QUESTION NO 13
  • Note The question is included in a number of
    questions that depicts the identical set-up.
    However, every question has a distinctive result.
    Establish if the solution satisfies the
    requirements.
  • Your company has a hybrid configuration of
    Microsoft Azure Active Directory (Azure AD). Your
    company also has a Microsoft 365 subscription.
  • After creating a conditional access policy for
    Microsoft Exchange Online, you are tasked with
    configuring the policy to block access to
    Exchange Online. However, the policy should allow
    access for hybrid Azure AD-joined devices
  • Solution You should configure the Device
    platforms settings. Does the solution meet the
    goal?
  • Yes
  • No
  • Answer B References
  • https//docs.microsoft.com/en-us/azure/active-dire
    ctory/conditional-
  • access/conditionsdevice-state

9
  • QUESTION NO 14
  • Note The question is included in a number of
    questions that depicts the identical set-up.
    However, every question has a distinctive result.
    Establish if the solution satisfies the
    requirements.
  • Your company has a hybrid configuration of
    Microsoft Azure Active Directory (Azure AD). Your
    company also has a Microsoft 365 subscription.
  • After creating a conditional access policy for
    Microsoft Exchange Online, you are tasked with
    configuring the policy to block access to
    Exchange Online. However, the policy should allow
    access for hybrid Azure AD-joined devices
  • Solution You should configure the Client apps
    settings. Does the solution meet the goal?
  • Yes
  • No
  • Answer B References
  • https//docs.microsoft.com/en-us/azure/active-dire
    ctory/conditional-
  • access/conditionsdevice-state

QUESTION NO 15 Note The question is included
in a number of questions that depicts the
identical set-up. However, every question has a
distinctive result. Establish if the solution
satisfies the requirements. Your company has a
hybrid configuration of Microsoft Azure Active
Directory (Azure AD). Your company also has a
Microsoft 365 subscription. After creating a
conditional access policy for Microsoft Exchange
Online, you are tasked with configuring the
policy to block access to Exchange Online.
However, the policy should allow access for
hybrid Azure AD-joined devices
10
  • Solution You should configure the Device state
    settings.
  • Does the solution meet the goal?
  • Yes
  • No
  • Answer A References
  • https//docs.microsoft.com/en-us/azure/active-dire
    ctory/conditional-
  • access/conditionsdevice-state
  • QUESTION NO 16
  • Your company makes use of Microsoft Intune to
    manage computers.
  • You have been tasked with configuring Windows
    Hello for Business. You are preparing to create
    an Intune profile to achieve your goal.
  • Which of the following is an operating system
    that supports Windows Hello for Business?
  • Windows Vista
  • Windows 8.1
  • Windows 10
  • macOS
  • Answer C References
  • https//docs.microsoft.com/en-us/intune/protect/id
    entity-protection-windows-settings

QUESTION NO 17 Your company has a large number
of Android and iOS devices, which are enrolled in
Intune. You are preparing to deploy new Intune
policies will apply to devices, based on the
version of Android or iOS that is being run.
11
  • You are required to make sure that the policies
    are able to target the devices according to your
    plan.
  • Which of the following actions should you take?
  • You should start by accessing Intune and
    configuring corporate device identifiers.
  • You should start by accessing Microsoft Azure
    Active Directory (Azure AD) and configuring
    Device settings.
  • You should start by accessing Microsoft Azure
    Active Directory (Azure AD) and configuring
    Application settings.
  • You should start by creating a distribution
    group.
  • Answer B References
  • https//docs.microsoft.com/en-us/intune/compliance
    -policy-create-android
  • https//docs.microsoft.com/en-us/intune/compliance
    -policy-create-ios
  • QUESTION NO 18
  • You need to consider the underlined segment to
    establish whether it is accurate.
  • Your company has Microsoft Azure Active Directory
    (Azure AD) joined Windows 10 Pro computers that
    have been enrolled in Microsoft Intune.
  • You have been tasked with making sure that the
    computers are upgraded to Windows 10 Enterprise.
  • You start by configuring a device enrollment
    policy in Intune.
  • Select No adjustment required if the underlined
    segment is accurate. If the underlined segment
    is inaccurate, select the accurate option.
  • What should you configure in Intune?
  • No adjustment required
  • an app protection policy
  • a Windows AutoPilot deployment profile
  • A device configuration profile

12
References https//blogs.technet.microsoft.com/s
kypehybridguy/2018/09/21/intune-upgrade-
windows-from-pro-to-enterprise-automatically/
  • QUESTION NO 19
  • Your company has a Microsoft 365 subscription.
  • You have enrolled all the company computers in
    Microsoft Intune.
  • You have been tasked with making sure that
    Microsoft Exchange Online is only accessible
    from known locations.
  • Which of the following actions should you take?
  • You should create a device configuration profile.
  • You should create a device compliance policy.
  • You should create a Windows AutoPilot deployment
    profile.
  • You should create a conditional access policy.
  • Answer D
  • QUESTION NO 20
  • Your company has a Microsoft 365 subscription.
  • You have enrolled all the company computers in
    Microsoft Intune.
  • You have been tasked with making sure that
    devices with a high Windows Defender Advanced
    Threat Protection (Windows Defender ATP) risk
    score are locked.
  • Which of the following actions should you take?
  • You should create a device configuration profile.
  • You should create a device compliance policy.
  • You should create a Windows AutoPilot deployment
    profile.
  • You should create a conditional access policy.

13
  • Answer B
  • References https//github.com/MicrosoftDocs/Intu
    neDocs/blob/master/intune/advanced-threat-
    protection.md
  • QUESTION NO 21
  • Your company plans to deploy tablets to 50
    meeting rooms.
  • The tablets run Windows 10 and are managed by
    using Microsoft Intune. The tablets have an
    application named App1.
  • You need to configure the tablets so that any
    user can use App1 without having to sign in.
    Users must be prevented from using other
    applications on the tablets.
  • Which device configuration profile type should
    you use?
  • Kiosk
  • Endpoint protection
  • Identity protection
  • Device restrictions

QUESTION NO 22 All of your companys devices
are managed via Microsoft Intune. conditional
access is used to prevent devices that are not
compliant with company security policies, from
accessing Microsoft 365 services. You need to
access Device compliance to view the
non-compliant devices. Where should you access
Device compliance from?
14
  • System Center Configuration Manager
  • Windows Defender Security Center.
  • The Intune admin center.
  • The Azure Active Directory admin center.
  • Answer C
  • QUESTION NO 23
  • You manage a large number of Windows 10
    computers.
  • You have been tasked with creating a provisioning
    package that will allow you to remove the
    Microsoft News and the Xbox Microsoft Store apps,
    as well as add a VPN connection to the company
    network.
  • Which of the following are the customization
    settings you should configure?
  • Connections and Personalization
  • ConnectivityProfiles and Policies
  • Connections and Policies
  • ConnectivityProfiles and Personalization
  • Answer B References
  • https//docs.microsoft.com/en-us/windows/configura
    tion/wcd/wcd-connectivityprofiles
  • https//docs.microsoft.com/en-us/windows/client-ma
    nagement/mdm/policy-configuration-
    service-providerapplicationmanagement-application
    restrictions
  • https//docs.microsoft.com/en-us/windows/configura
    tion/wcd/wcd-policies
  • QUESTION NO 24

15
  • You should create a device configuration profile
    via Intune.
  • You should create a device compliance policy via
    Intune.
  • You should create a Windows AutoPilot deployment
    profile via Intune.
  • You should create an app configuration policy via
    Intune.
  • Answer A References
  • https//www.scconfigmgr.com/2019/03/27/windows-ana
    lytics-onboarding-with-intune/
  • QUESTION NO 25
  • Your company has a number of Windows 10 Microsoft
    Azure Active Directory (Azure AD) joined
    workstations. These workstations have been
    enrolled in Microsoft Intune.
  • You are creating a device configuration profile
    for the workstations. You have been informed
    that a custom image should be displayed on the
    sign-in screen.
  • Which of the following is a Device restriction
    setting that should be configured?
  • Locked screen experience
  • Personalization
  • Display
  • General
  • Answer A Explanation
  • Sign-in screen, or Locked screen, image is set
    under Locked screen experience
  • References
  • https//docs.microsoft.com/en-us/intune/device-res
    trictions-windows-10

QUESTION NO 26 Your company has a number of
Windows 10 Microsoft Azure Active Directory
(Azure AD) joined workstations. These
workstations have been enrolled in Microsoft
Intune.
16
  • You are creating a device configuration profile
    for the workstations. You have been informed
    that a custom image should be displayed as the
    Desktop background picture.
  • Which of the following is a Device restriction
    setting that should be configured?
  • Locked screen experience
  • Personalization
  • Display
  • General
  • Answer B Explanation
  • Wallpaper image, or Desktop background picture,
    URL is set under Personalization.
  • References
  • https//docs.microsoft.com/en-us/intune/device-res
    trictions-windows-10
  • QUESTION NO 27
  • Your company has a large number of Windows 10
    workstations that are managed via Microsoft
    Intune.
  • Delivery Optimization is not being used for
    Windows updates at present.
  • You want to make sure that Delivery Optimization
    is configured for all of the workstations. Which
    of the following actions should you take?
  • You should create a device configuration profile
    via Intune.
  • You should create a device compliance policy via
    Intune.
  • You should create a Windows AutoPilot deployment
    profile via Intune.
  • You should create a conditional access policy via
    Intune.
  • Answer A References
  • https//docs.microsoft.com/en-us/intune/delivery-o
    ptimization-windows

17
Topic 3, Manage and Protect Devices
  • QUESTION NO 28
  • Your companys environment includes the
    following
  • Microsoft Azure Active Directory (Azure AD)
  • Microsoft 365
  • Microsoft Intune
  • Azure Information Protection.
  • A new security policy declares that enrollment
    for private devices in Intune is not required.
    However, to access corporate email information,
    users have to make use of a PIN for
    authentication purposes. Also, users are able to
    access corporate cloud services from their
    private iOS and Android devices. Furthermore, the
    copying corporate email information to a cloud
    storage service should not be allowed, unless
    users are copying the information to Microsoft
    OneDrive for Business.
  • You have to make sure that security policy is
    enforced. Which of the following actions should
    you take?
  • You should create a data loss prevention (DLP)
    policy.
  • You should create a device enrollment policy.
  • You should create an app protection policy.
  • You should create a Windows AutoPilot deployment
    profile.
  • Answer C References
  • https//docs.microsoft.com/en-us/intune/app-protec
    tion-policy

QUESTION NO 29 Note The question is included
in a number of questions that depicts the
identical set-up. However, every question has a
distinctive result. Establish if the solution
satisfies the requirements. Your company has a
number of Windows 10 Microsoft Azure Active
Directory (Azure AD) joined workstations. These
workstations have been enrolled in Microsoft
Intune.
18
  • You have been tasked with making sure that the
    workstations are only able to run applications
    that you have explicitly permitted.
  • Solution You make use of Windows Defender
    Antivirus. Does the solution meet the goal?
  • Yes
  • No
  • Answer B
  • QUESTION NO 30
  • Note The question is included in a number of
    questions that depicts the identical set-up.
    However, every question has a distinctive result.
    Establish if the solution satisfies the
    requirements.
  • Your company has a number of Windows 10 Microsoft
    Azure Active Directory (Azure AD) joined
    workstations. These workstations have been
    enrolled in Microsoft Intune.
  • You have been tasked with making sure that the
    workstations are only able to run applications
    that you have explicitly permitted.
  • Solution You make use of Windows Defender
    SmartScreen. Does the solution meet the goal?
  • Yes
  • No
  • Answer B

QUESTION NO 31 Note The question is included
in a number of questions that depicts the
identical set-up. However, every question has a
distinctive result. Establish if the solution
satisfies the requirements.
19
  • Your company has a number of Windows 10 Microsoft
    Azure Active Directory (Azure AD) joined
    workstations. These workstations have been
    enrolled in Microsoft Intune.
  • You have been tasked with making sure that the
    workstations are only able to run applications
    that you have explicitly permitted.
  • Solution You make use of Windows Defender
    Application Guard. Does the solution meet the
    goal?
  • Yes
  • No
  • Answer A References
  • https//docs.microsoft.com/en-us/windows/security/
    threat-protection/device-
  • guard/introduction-to-device-guard-virtualization-
    based-security-and-windows-defender-
    application-control
  • QUESTION NO 32
  • You are currently making use of the Antimalware
    Assessment solution in Microsoft Azure Log
    Analytics.
  • You have accessed the Protection Status dashboard
    and find that there is a device that has no real
    time protection.
  • Which of the following could be a reason for this
    occurring?
  • Windows Defender has been disabled.
  • You need to install the Azure Diagnostic
    extension.
  • Windows Defender Credential Guard is incorrectly
    configured.
  • Windows Defender System Guard is incorrectly
    configured.
  • Answer A References
  • https//docs.microsoft.com/ga-ie/azure/security-ce
    nter/security-center-install-endpoint- protection

20
  • QUESTION NO 33
  • You are currently making use of the Antimalware
    Assessment solution in Microsoft Azure Log
    Analytics.
  • You have accessed the Protection Status dashboard
    and find that there is a device that is not
    reporting.
  • Which of the following could be a reason for this
    occurring?
  • Windows Defender System Guard is incorrectly
    configured.
  • You need to install the Azure Diagnostic
    extension.
  • Windows Defender Application Guard is incorrectly
    configured.
  • The Microsoft Malicious Software Removal tool is
    installed.
  • Answer C References
  • https//docs.microsoft.com/ga-ie/azure/security-ce
    nter/security-center-install-endpoint-
    protection
  • QUESTION NO 34
  • You need to consider the underlined segment to
    establish whether it is accurate.

21
References https//docs.microsoft.com/en-us/windo
ws/security/identity-protection/credential-
guard/credential-guard-requirements
  • QUESTION NO 35
  • You manage one hundred Microsoft Azure Active
    Directory (Azure AD) joined Windows 10 devices.
  • You want to make sure that users are unable to
    join their home PCs to Azure AD. Which of the
    following actions should you take?
  • You should configure the Enrollment restriction
    settings via the Device enrollment blade in the
    Intune admin center.
  • You should configure the Enrollment restriction
    settings via the Security Compliance admin
    center.
  • You should configure the Enrollment restriction
    settings via the Azure Active Directory admin
    center.
  • You should configure the Enrollment restriction
    settings via the Windows Defender Security
    Center.
  • Answer A References
  • https//docs.microsoft.com/en-us/intune/enrollment
    -restrictions-set

Topic 4, Manage Apps and Data
QUESTION NO 36 You need to consider the
underlined segment to establish whether it is
accurate. To enable sideloading in Windows 10,
you should navigate to the For developers setting
via Update Security in the Settings app.
22
  • Select No adjustment required if the underlined
    segment is accurate. If the underlined segment
    is inaccurate, select the accurate option.
  • No adjustment required.
  • Widows Insider
  • Delivery Optimization
  • Activation
  • Answer A References
  • https//www.windowscentral.com/how-enable-windows-
    10-sideload-apps-outside-store
    https//docs.microsoft.com/en-us/windows/applicati
    on-management/sideload-apps-in-
  • windows-10
  • QUESTION NO 37
  • You need to consider the underlined segment to
    establish whether it is accurate.
  • To enable sideload a LOB application in Windows
    10, you should run the Install-Package cmdlet.
  • Select No adjustment required if the underlined
    segment is accurate. If the underlined segment
    is inaccurate, select the accurate option.
  • No adjustment required.
  • Install-PackageProvider
  • Save-Package
  • Add-AppxPackage
  • Answer D References
  • https//docs.microsoft.com/en-us/windows/applicati
    on-management/sideload-apps-in-
  • windows-10

QUESTION NO 38
23
  • Note The question is included in a number of
    questions that depicts the identical set-up.
    However, every question has a distinctive result.
    Establish if the solution satisfies the
    requirements.
  • Your companys environment includes a Microsoft
    365 subscription.
  • Users in the companys sales division have
    personal iOS or Android devices that are enrolled
    in Microsoft Intune. New users are added to the
    sales division on a monthly basis.
  • After a mobile application is created for users
    in the sales division, you are instructed to make
    sure that the application can only be downloaded
    by the sales division users
  • Solution You start by adding the application to
    Microsoft Store for Business. Does the solution
    meet the goal?
  • Yes
  • No
  • Answer B
  • QUESTION NO 39
  • Note The question is included in a number of
    questions that depicts the identical set-up.
    However, every question has a distinctive result.
    Establish if the solution satisfies the
    requirements.

24
B. No Answer B
  • QUESTION NO 40
  • Note The question is included in a number of
    questions that depicts the identical set-up.
    However, every question has a distinctive result.
    Establish if the solution satisfies the
    requirements.
  • Your companys environment includes a Microsoft
    365 subscription.
  • Users in the companys sales division have
    personal iOS or Android devices that are enrolled
    in Microsoft Intune. New users are added to the
    sales division on a monthly basis.
  • After a mobile application is created for users
    in the sales division, you are instructed to make
    sure that the application can only be downloaded
    by the sales division users
  • Solution You start by adding the application to
    Intune. Does the solution meet the goal?
  • Yes
  • No
  • Answer A References
  • https//docs.microsoft.com/en-us/intune/apps-add
  • QUESTION NO 41

25
  • Which of the following is the WIP protection mode
    that you should use?
  • Block
  • Silent
  • Off
  • Allow Overrides
  • Answer B References
  • https//docs.microsoft.com/en-us/windows/security/
    information-protection/windows-
    information-protection/create-wip-policy-using-int
    une
  • QUESTION NO 42
  • Your company has an Active Directory domain,
    named weylandindustries.com, and a Microsoft
    Office 365 subscription. The domain is also
    synced to Microsoft Azure Active Directory
    (Azure AD).
  • All company computers are domain-joined, and are
    running the most recent Microsoft OneDrive sync
    client.
  • You are currently configuring OneDrive group
    policy settings.
  • Which of the following is the setting that will
    minimize the disk space consumed by a user
    profile, when enabled?
  • OneDrive Files On-Demand
  • Silently move known folders to OneDrive
  • Prompt users to move Windows known folders to
    OneDrive
  • Silently configure OneDrive using the primary
    Windows account
  • Answer A Explanation
  • OneDrive Files On-Demand enables users to view,
    search for, and interact with files stored in
  • OneDrive from within File Explorer without
    downloading them and taking up space on the
    local hard drive.
  • References

26
https//docs.microsoft.com/en-us/onedrive/plan-one
drive-enterprise
  • QUESTION NO 43
  • You manage your companys Microsoft 365
    subscription.
  • You are tasked with creating an app protection
    policy for the Microsoft Outlook app on iOS
    devices that are not enrolled in Microsoft 365
    Device Management.
  • You have to make sure that the policy is
    configured to prohibit the users from using the
    Outlook app if the operating system version is
    less than 12.0.0. you also have to make sure
    that an alphanumeric passcode is required for
    users to access the Outlook app
  • Which of the following is policy settings that
    you should configure? (Choose two)
  • Conditional launch
  • Data transfer exemptions
  • Data protection
  • Access requirements
  • Answer A, D References
  • https//docs.microsoft.com/en-us/intune/app-protec
    tion-policy-settings-ios
  • QUESTION NO 44
  • You are responsible for your companys Microsoft
    365 environment, with co-management enabled.
  • All company computers have been deployed via
    Microsoft Deployment Toolkit (MDT) , and have
    Windows 10 installed.
  • You have been tasked devising a strategy for
    deploying Microsoft Office 365 ProPlus to new
    computers. You have to make sure that most recent
    version is installed at all times, while also
    reducing the effort required to meet the
    prerequisites.
  • Which of the following actions should you take?
  • You should make use of Windows Deployment
    Services (WDS).
  • You should make use of the Microsoft Deployment
    Toolkit

27
C. You should make use of the Office Deployment
Tool (ODT). D. You should make use of a Windows
Configuration Designer provisioning
package Answer C References https//docs.micros
oft.com/en-us/deployoffice/overview-of-the-office-
2016-deployment- tool
Write a Comment
User Comments (0)
About PowerShow.com