Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Pass the Microsoft Microsoft 365 Certified: Endpoint Administrator Associate MD-102 Questions and answers with CertsForce

Viewing page 3 out of 6 pages
Viewing questions 21-30 out of questions
Questions # 21:

You have a Microsoft 365 E5 subscription that contains two devices named Device1 and Device2.

You manage the devices by using Microsoft Intune.

You need to use Device query to meet the following requirements:

• Identify the Windows build on a device.

• Validate whether a folder exists on the C drive of a device.

Which table should you target for each requirement? To answer, select theappropriateoptions in the answer area.

NOTE: Each correct selection is worth one point.

Question # 21


Expert Solution
Questions # 22:

What is the maximum number of devices that User1 and User2 can enroll in Intune? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Question # 22


Expert Solution
Questions # 23:

You need to meet the technical requirements for the IT department.

What should you do first?

Options:

A.

From the Azure Active Directory blade in the Azure portal, enable Seamless single sign-on.


B.

From the Configuration Manager console, add an Intune subscription.


C.

From the Azure Active Directory blade in the Azure portal, configure the Mobility (MDM and MAM) settings.


D.

From the Microsoft Intune blade in the Azure portal, configure the Windows enrollment settings.


Expert Solution
Questions # 24:

You implement the planned changes for Connection1 and Connection2

How many VPN connections will there be for User1 when the user signs in to Device 1 and Devke2? To answer select the appropriate options in the answer area.

NOTE; Each correct selection is worth one point.

Question # 24


Expert Solution
Questions # 25:

You have a Microsoft 365 subscription that contains a user named User1 and 500 Windows devices enrolled in Microsoft Intune.

You configure an attack surface reduction {ASR) rule and enable the rule in Warn mode.

User1 downloads a file named file1.exe. When User1 attempts to run file1.exe he receives a prompt that the content has been blocked. The user unblocks the content.

How much time will pass until the user is prompted next to unblock the content?

Options:

A.

10 minutes


B.

one hour


C.

24 hours


D.

one week


Expert Solution
Questions # 26:

What should you configure to meet the technical requirements for the Azure AD-joined computers?

Options:

A.

Windows Hello for Business from the Microsoft Intune blade in the Azure portal.


B.

The Accounts options in an endpoint protection profile.


C.

The Password Policy settings in a Group Policy object (GPO).


D.

A password policy from the Microsoft Office 365 portal.


Expert Solution
Questions # 27:

You need to ensure that computer objects can be created as part of the Windows Autopilot deployment. The solution must meet the technical requirements.

To what should you grant the right to create the computer objects?

Options:

A.

Server2


B.

Server1


C.

GroupA


D.

DC1


Expert Solution
Questions # 28:

You have a Microsoft 365 subscription that contains the devices shown in the following table.

Question # 28

You need to ensure that only devices running trusted firmware or operating system builds can access network resources.

Which compliance policy setting should you configure for each device? To answer, drag the appropriate settings to the correct devices. Each setting may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.

NOTE: Each correct selection is worth one point.

Question # 28


Expert Solution
Questions # 29:

You have a Microsoft 365 subscription.

You use Microsoft Intune to manage Windows 11 devices.

You need to implement Windows Local Administrator Password Solution (Windows LAPS).

What should you configure?

Options:

A.

a device compliance policy


B.

an app protection policy


C.

an account protection policy


D.

a configuration profile


Expert Solution
Questions # 30:

You have a Microsoft 365 subscription and use Microsoft Intune Suite.

You plan to use Microsoft Cloud PKI to support the signing and encryption of email messages. What should you do first?

Options:

A.

Create a device compliance policy.


B.

Create an issuing certification authority (CA).


C.

Create device configuration trusted certificate profiles.


D.

Create a root certification authority (CA).


E.

Create device configuration SCEP certificate profiles.


Expert Solution
Viewing page 3 out of 6 pages
Viewing questions 21-30 out of questions