Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements.
Your company Windows 10 computers that are enrolled in Microsoft Intune. You make use of Intune to manage the servicing channel settings of all company computers.
You receive an enquiry regarding the servicing status of a specific computer.
You need to review the necessary policy report.
Solution: You navigate to device status via Device configuration.
Does the solution meet the goal?
Answer:
B
Note 1: Intune offers integrated report views for the Windows update ring policies you deploy. These views display details about the update ring deployment and status:
1. Sign in to Microsoft Endpoint Manager admin center.
2. Select Devices > Monitor. Then under Software updates select Per update ring deployment state and choose the deployment ring to review.
Note 2: Use the Windows 10 and later feature updates (Organizational) report
To open the Windows 10 and later feature updates report and view device details for a specific feature updates profile:
In the admin center, go to Reports > Windows updates > select the Reports tab > select Windows Feature Update Report.
Note 3: To help you monitor and troubleshoot update deployments, Intune supports the following reporting options:
Reports in Intune:
Windows 10 and later update rings ג€" Use a built-in report that's ready by default when you deploy update rings to your devices.
Windows 10 and later feature updates In public preview ג€" Use two built-in reports that work together to gain a deep picture of update status and issues.
Reference:
https://docs.microsoft.com/en-us/intune/windows-update-compliance-reports
Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements.
Your company Windows 10 computers that are enrolled in Microsoft Intune. You make use of Intune to manage the servicing channel settings of all company computers.
You receive an enquiry regarding the servicing status of a specific computer.
You need to review the necessary policy report.
Solution: You navigate to the audit logs via Software updates.
Does the solution meet the goal?
Answer:
B
Note 1: Intune offers integrated report views for the Windows update ring policies you deploy. These views display details about the update ring deployment and status:
1. Sign in to Microsoft Endpoint Manager admin center.
2. Select Devices > Monitor. Then under Software updates select Per update ring deployment state and choose the deployment ring to review.
Note 2: Use the Windows 10 and later feature updates (Organizational) report
To open the Windows 10 and later feature updates report and view device details for a specific feature updates profile:
In the admin center, go to Reports > Windows updates > select the Reports tab > select Windows Feature Update Report.
Note 3: To help you monitor and troubleshoot update deployments, Intune supports the following reporting options:
Reports in Intune:
Windows 10 and later update rings ג€" Use a built-in report that's ready by default when you deploy update rings to your devices.
Windows 10 and later feature updates In public preview ג€" Use two built-in reports that work together to gain a deep picture of update status and issues.
Reference:
https://docs.microsoft.com/en-us/intune/windows-update-compliance-reports
You have been tasked with reusing a Windows 10 computer that was assigned to a user who is no longer with the company.
The computer will be assigned to a new user. You plan to make use of Windows AutoPilot to redeploy the computer.
Which of the following actions should you take FIRST?
Answer:
D
You can perform Windows Autopilot device registration within your organization by manually collecting the hardware identity of devices (hardware hashes) and uploading this information in a comma-separated-values (CSV) file.
Reference:
https://docs.microsoft.com/en-us/mem/autopilot/add-devices
DRAG DROP -
Your company has a number of Windows 7 computers that you want to upgrade to Windows 10.
The computers all have a single MBR disk, and a disabled TPM chip. Also, the computers have hardware virtualization disabled, Data Execution Prevention (DEP) enabled, and UEFI firmware running in BIOS mode.
You have been tasked with making sure that Secure Boot can be used by the computers.
Which of the following actions should you take? Answer by dragging the correct options from the list to the answer area. Choose two.
Select and Place:
Answer:
Step 1: Convert the MBR disk to a GPT disk
If you want to ensure that your drive boots into a certain mode, use drives that you've preformatted with the GPT file format for UEFI mode, or the MBR file format for BIOS mode. When the installation starts, if the PC is booted to the wrong mode, Windows installation will fail. To fix this, restart the PC in the correct firmware mode.
Step 2: Convert the firmware from BIOS to UEFI
Reference:
https://docs.microsoft.com/en-us/windows-hardware/manufacture/desktop/boot-to-uefi-mode-or-legacy-bios-mode
Your company has an Active Directory domain that includes a large number of Windows 10 computers.
You have recently configured hybrid Microsoft Azure Active Directory (Azure AD) and Microsoft Intune in the environment.
You want to make sure that all the current computers are automatically registered to Azure AD, as well as enrolled in Intune. The strategy that you employ should reduce the administrative effort required to achieve your goal.
Which of the following actions should you take?
Answer:
B
When will Windows Autopilot support on-premises Active Directory enrollment for Windows 10 devices?
Hybrid Azure AD join.
Today [November 2018], we are excited to introduce support for Hybrid Azure AD join (on-premises AD) using Windows Autopilot user-driven mode. This capability is now available with Windows 10, version 1809 (or later).
In this mode, you can use Windows Autopilot to join a device to an on-premises Active Directory domain. Configuring this feature is very similar to the Windows
Autopilot user-driven mode process today:
1. Register the device with Windows Autopilot.
2. Create an Autopilot deployment profile specifying Hybrid Azure AD as the method in which you would like to join devices to Azure AD.
3. Install the Intune Connector for Active Directory on a computer running Windows Server 2016 (or later).
Reference:
https://techcommunity.microsoft.com/t5/Windows-IT-Pro-Blog/Windows-Autopilot-Hybrid-Azure-AD-join-and-automatic/ba-p/286126
You need to consider the underlined segment to establish whether it is accurate.
You have recently created a provisioning package that uses Comp%RAND:1% as the device name.
You will be able to successfully run the package on as much as 5 devices.
Select `No adjustment required` if the underlined segment is accurate. If the underlined segment is inaccurate, select the accurate option.
Answer:
B
The device name uses a single random number (applied by %RAND:1%). This allows for 10 unique values (0 ג€" 9).
Your company has an Active Directory domain, named weylandindustries.com. The domain is synced to Microsoft Azure Active Directory (Azure AD) and all company computers have been enrolled in Microsoft Intune.
You are preparing to perform a Wipe action on certain company devices.
Which of the following operating systems support the Wipe action? Choose all that apply.
Answer:
CD
The iOS/iPadOS, Android, and Windows 10 platforms are the only platforms currently supported for wiping corporate data from Intune managed apps.
Reference:
https://docs.microsoft.com/en-us/mem/intune/apps/apps-selective-wipe
Your company has an Active Directory domain, named weylandindustries.com. The domain is synced to Microsoft Azure Active Directory (Azure AD) and all company computers have been enrolled in Microsoft Intune.
You are preparing to perform a Fresh Start action on certain company devices.
Which of the following operating systems support the Fresh Start action? Choose all that apply.
Answer:
C
The Fresh Start device action removes any apps that are installed on a PC running Windows 10, version 1709 or later.
Reference:
https://docs.microsoft.com/en-us/intune/device-fresh-start
Your company has a number of Windows 10 Microsoft Azure Active Directory (Azure AD) joined workstations. These workstations have been enrolled in Microsoft
Intune.
You have been tasked with making sure that the has self-service password reset enabled on the logon screen. You have navigated to the Microsoft Intune blade.
Which of the following is the setting you should configure?
Answer:
A
Create a device configuration policy in Intune
1. Sign in to the Azure portal and select Intune.
2. Create a new device configuration profile by going to Device configuration > Profiles, then select + Create Profile
3. Etc.
Reference:
https://docs.microsoft.com/en-us/azure/active-directory/authentication/tutorial-sspr-windows
You need to consider the underlined segment to establish whether it is accurate.
Your company's Microsoft Azure subscription includes an Azure Log Analytics workspace.
After deploying a new Windows 10 computer, which belongs to a workgroup, you are tasked with making sure that you are able to utilize Log Analytics to query events from the new computer.
You configure the new computer's commercial ID.
Select `No adjustment required` if the underlined segment is accurate. If the underlined segment is inaccurate, select the accurate option.
What should you do on Computer1?
Answer:
D
The Azure Monitor agent (AMA) collects monitoring data from the guest operating system of Azure and hybrid virtual machines and delivers it to Azure Monitor where it can be used by different features, insights, and other services such as Microsoft Sentinel and Microsoft Defender for Cloud.
Reference:
https://docs.microsoft.com/en-us/azure/azure-monitor/agents/azure-monitor-agent-migration