Exams > Microsoft > MS-100: Microsoft 365 Identity and Services
MS-100: Microsoft 365 Identity and Services
Page 11 out of 40 pages Questions 101-110 out of 397 questions
Question#101

You need to consider the underlined segment to establish whether it is accurate.
You have been tasked with deploying a Windows 10 Enterprise image to a large number of Windows 8.1 devices. These devices are joined to an Active Directory domain.
You use the in-place upgrade Windows 10 deployment method for the task.
Select `No adjustment required` if the underlined segment is accurate. If the underlined segment is inaccurate, select the accurate option.
What should you recommend?

  • A. No adjustment required.
  • B. Windows Autopilot
  • C. Windows Update
  • D. Azure AD Connect
Discover Answer Hide Answer

Answer: A
References:
https://docs.microsoft.com/en-us/microsoft-365/enterprise/windows10-infrastructure

Question#102

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements.
Your company currently has an on-premises Active Directory forest.
You have been tasked with assessing the application of Microsoft 365 and the utilization of an authentication strategy.
You have been informed that the authentication strategy should permit sign in via smart card-based certificates, and also permitting the use of SSO to connect to on-premises and Microsoft 365 services.
Solution: You recommend the use of pass-through authentication and seamless SSO with password hash synchronization as the authentication strategy.
Does the solution meet the goal?

  • A. Yes
  • B. No
Discover Answer Hide Answer

Answer: B

Question#103

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements.
Your company currently has an on-premises Active Directory forest.
You have been tasked with assessing the application of Microsoft 365 and the utilization of an authentication strategy.
You have been informed that the authentication strategy should permit sign in via smart card-based certificates, and also permitting the use of SSO to connect to on-premises and Microsoft 365 services.
Solution: You recommend the use of password hash synchronization and seamless SSO as the authentication strategy.
Does the solution meet the goal?

  • A. Yes
  • B. No
Discover Answer Hide Answer

Answer: B

Question#104

Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements.
Your company currently has an on-premises Active Directory forest.
You have been tasked with assessing the application of Microsoft 365 and the utilization of an authentication strategy.
You have been informed that the authentication strategy should permit sign in via smart card-based certificates, and also permitting the use of SSO to connect to on-premises and Microsoft 365 services.
Solution: You recommend the use of federation with Active Directory Federation Services (AD FS) as the authentication strategy.
Does the solution meet the goal?

  • A. Yes
  • B. No
Discover Answer Hide Answer

Answer: A
References:
https://docs.microsoft.com/en-us/azure/security/azure-ad-choose-authn

Question#105

Your company's Microsoft Azure Active Directory (Azure AD) tenant includes four users. Three of the users are each configured with the Password administrator,
Security administrator, and the User administrator roles respectively. The fourth user has no role configured.
Which of the following are the users that are able to reset the password of the fourth user?

  • A. The users with the Password administrator and the User administrator roles.
  • B. The users with the Security administrator and the User administrator roles.
  • C. The users with the Password administrator and the Security administrator roles.
  • D. The user with the Password administrator role only.
Discover Answer Hide Answer

Answer: A
References:
https://docs.microsoft.com/en-us/azure/active-directory/users-groups-roles/directory-assign-admin-roles

Question#106

Your network contains an Active Directory domain that spans a number of cities and a multitude of users.
After acquiring Microsoft 365, you intend to deploy quite a few Microsoft 365 services.
You want to make sure that pass-through authentication and seamless SSO can be used in your environment. You also decide that Azure AD Connect won't be configured to be in staging mode.
With regards to redundancy limits, which of the following is the maximum amount of servers that can run Azure AD Connect?

  • A. 1
  • B. 3
  • C. 5
  • D. 7
Discover Answer Hide Answer

Answer: A

Question#107

Your network contains an Active Directory domain that spans a number of cities and a multitude of users.
After acquiring Microsoft 365, you intend to deploy quite a few Microsoft 365 services.
You want to make sure that pass-through authentication and seamless SSO can be used in your environment. You also decide that Azure AD Connect won't be configured to be in staging mode.
With regards to redundancy limits, which of the following is the most amount of servers that can run standalone Authentication Agents?

  • A. 7
  • B. 9
  • C. 11
  • D. 13
Discover Answer Hide Answer

Answer: C

Question#108

Your company's Microsoft Azure Active Directory (Azure AD) tenant includes four users that are configured with the Privileged role administrator, the User administrator, the Security administrator, and the Billing administrator roles respectively.
A security group has been included in the tenant for the purpose of managing administrative accounts.
Which of the four roles can be used to create a guest user account?

  • A. The Privileged role administrator role.
  • B. The User administrator role.
  • C. The Security administrator role.
  • D. The Billing administrator role.
Discover Answer Hide Answer

Answer: B
References:
https://docs.microsoft.com/en-us/azure/active-directory/users-groups-roles/directory-assign-admin-roles

Question#109

Your company's Microsoft Azure Active Directory (Azure AD) tenant includes four users that are configured with the Privileged role administrator, the User administrator, the Security administrator, and the Billing administrator roles respectively.
A security group has been included in the tenant for the purpose of managing administrative accounts.
Which of the four roles can be used to add a user with the Security administrator role to the security group?

  • A. The Privileged role administrator role.
  • B. The User administrator role.
  • C. The Security administrator role.
  • D. The Billing administrator role.
Discover Answer Hide Answer

Answer: B
References:
https://docs.microsoft.com/en-us/azure/active-directory/users-groups-roles/directory-assign-admin-roles

Question#110

Your company has an Active Directory domain as well as a Microsoft Azure Active Directory (Azure AD) tenant.
After configuring directory synchronization for all users in the organization, you configure a number of new user accounts to be created automatically.
You want to run a command to make sure that the new user accounts synchronize to Azure AD in the shortest time required.
Which of the following is the command that you should use?

  • A. New-ADSyncRule
  • B. Set-ADSyncSchedulerConnectorOverride
  • C. Start-ADSyncSyncCycle
  • D. Set-ADSyncSchema
Discover Answer Hide Answer

Answer: C
References:
https://blogs.technet.microsoft.com/rmilne/2014/10/01/how-to-run-manual-dirsync-azure-active-directory-sync-updates/

chevron rightPrevious Nextchevron right