Month End Sale Limited Time Flat 70% Discount offer - Ends in 0d 00h 00m 00s - Coupon code: 70spcl

Google ChromeOS-Administrator Professional ChromeOS Administrator Exam Exam Practice Test

Page: 1 / 12
Total 117 questions

Professional ChromeOS Administrator Exam Questions and Answers

Question 1

What are two methods for signing in to a Chrome OS device? Choose 2 answers

Options:

A.

SMS code sent to mobile phone

B.

Single sign-on

C.

Google Friend Connect

D.

Facebook Connect

Question 2

What format of certificate encoding is incompatible with ChromeOS devices?

Options:

A.

PEM

B.

CER

C.

DER

D.

CRT

Question 3

A user has left the organization. What should you do to maintain the device enrollment status and policies but wipe the user's data when reassigning the device?

Options:

A.

Delete the user

B.

Factory reset the device

C.

Remove force re-enrollment

D.

Clear user profiles

Question 4

What are the steps to enroll a previously used, non-managed ChromeOS device in your domain?

Options:

A.

Reboot the ChromeOS device, and at the login screen, press CTRL+ALT+M to enroll it.

B.

Powerwash the ChromeOS device, complete the out-of-box experience (OOBE), and before signing in, press CTRL+ALT+E to enroll it.

C.

Use the Chrome Recovery Utility with a USB Flash drive to reimage the device's OS. Then, after completing the OOBE, press CTRL+ALT+M to enroll the Chromebook.

D.

Switch the ChromeOS device to developer mode, wipe the device, and switch back to normal mode. Then, after completing the OOBE, press CTRL+ALT+E to enroll the ChromeOS device.

Question 5

To use Verified Access in your organization, you need to have a Chrome extension that calls Verified Access API on the client devices. Where can you go to get this extension?

Options:

A.

Google Play Store

B.

Independent software vendor (ISV) or Google Verified Access API

C.

Independent software vendor (ISV) repository

D.

Software API Key store

Question 6

As a ChromeOS Administrator, you are tasked with blocking incognito mode in the ChromeOS Browser. How would you prevent users from using incognito mode?

Options:

A.

Navigate to "Users & Browser Security Settings" and set the "Disallow incognito mode" policy.

B.

Go to "User & Browser Settings" to restrict sign-in to pattern and "Disallow incognito mode."

C.

From "Device Settings", change Kiosk settings to "Disallow incognito mode."

D.

In "Enrollment Settings", disable verified access and incognito mode for content protection.

Question 7

You are enrolling several devices to send to a remote location. How can you ensure that these devices will automatically connect to the wireless network at the remote location when powered on for the first time?

Options:

A.

Add the wireless network credentials to the "Networks" section in the Admin console ensuring that they are applied to the ChromeOS devices By Device

B.

Use the Google Zero-Touch Enrollment (ZTE) process and generate the provisioning token by clicking on the 'Enroll device' button in the Admin console ‘’Devices’’ page

C.

During the enrollment process add the wireless credentials manually to each device in the Admin console ensuring that they are applied to ChromeOS devices By User

D.

Add the wireless network credentials to the 'Networks" section in the Admin console ensuring that they are applied to the ChromeOS devices By User

Question 8

A customer deploys a large number of ChromeOS devices and would like to start the process of turning on Zero-Touch Enrollment (ZTE) to streamline their deployment process. As an administrator, what would be required to enable ZTE?

Options:

A.

Identify OU to place devices during enrollment

B.

Grant partner admin access

C.

Create a pre-provisioning token

D.

Create a zero-touch token

Question 9

As an administrator, you would like the ability to see and test upcoming changes to the Google Admin console. How would an admin get access to pre-release features and upcoming ChromeOS device management changes to the Admin console?

Options:

A.

Enroll in the ChromeOS Factory Software Platform

B.

Join the Chrome Enterprise BETA Testing

C.

Register for the Chrome Enterprise Trusted Tester Program

D.

Create a ChromeQS Developer Account

Question 10

Which site isolation policy will enable site isolation for your entire organization?

Options:

A.

SitePerProcess

B.

IsolateOfigins

C.

IsolatePerProcess

D.

SiteOrigins

Question 11

Your organization's security protocols require you to ensure that any unattended devices log the user out after 24 hours. You have 1000 ChromeOS devices to manage. How would you Implement this with the least amount of admin effort?

Options:

A.

Enable the 'User and Browser Settings" and update 'Maximum user session length* to any time up to 24 hours

B.

Create a corporate policy stating (he users are to manually sign out after the end of every shift

C.

You can remotely access each device and sign out of the user account using Chrome Remote Desktop

D.

Force-install a custom app to each device in question that notifies the user that they need to sign out of their device after 24 hours

Question 12

Your company's network team reports Wi-Fi issues with certain ChromeOS devices. To troubleshoot, you will reproduce the problem but also need to collect network logs. How are you going to proceed?

Options:

A.

From the Chrome Browser, use the "chrome://system" page and check the "wifi_status_no_anonymize" attribute

B.

From chrome://network, use the "Network Logs" tab, select the "Wi-fi debug" mode, then export the "system_logs.txt" file and all log files collected by debugd

C.

From chrome://network, use the "Network Logs" tab, select the "Wi-Fi debug" mode, open a new tab and reproduce the issue. Once completed, go back to the original tab, then export the "system_logs.txt" file and all log files collected by debugd

D.

From chrome://network, use the "Network Logs" tab and select the policies.json, all logs files collected by debugd, and all Chrome log files

Question 13

Your leadership team would like to verify that all ChromeOS devices are restarted to apply the new update as quickly as possible. You have 2000 devices and your Admin console is configured with automatic updates enabled. What can you do to ensure the restart with the least amount of admin effort?

Options:

A.

In the Admin console, in ‘Device Settings', under ‘AutoUpdate Settings', configure ‘Device Updates" to ‘Allow updates'

B.

In ‘User and Browser Settings’, under ‘Chrome Updates”, configure “Relaunch Notifications’ to “Force relaunch after a period" and enter a time period in hours

C.

Ask Human Resources to create and send out a company memo asking everyone to restart their devices within 24 hours

D.

Manually connect to each device using Chrome Remote Desktop and restart the device

Question 14

A customer is setting up a new Google tenant. You have been tasked with creating the organization unit structure for the Google Admin console. Following Google best practices, how should you set up the new organization units?

Options:

A.

Recreate the same OU structure as the current LDAP implementation

B.

Combine Devices and Users into single OUs to avoid operational overhead

C.

Follow a hierarchical OU structure

D.

Use shortest possible names for OUs to avoid confusion

Question 15

Within what time frame does the ChromeOS Flex upgrade transfer program support reusing Chrome Education/Enterprise Upgrades?

Options:

A.

3 years

B.

6 months

C.

1 year

D.

2 years

Question 16

Your organization has automatic ChromeOS updates implemented. Your CTO would like to review the documentation on what changes each new version has. How would you assist your CTO in accomplishing this goal?

Options:

A.

Open Chrome and enter chrome://updates in the address bar

B.

Search YouTube for Chrome Update stories

C.

Direct your CTO to the “Chrome Release Notes Support" page

D.

Have your CTO start a Google Chrome Support ticket

Question 17

As your organization’s administrator, you want to assign a delegated admin custom role in order to perform a limited set of ChromeOS device management tasks only for the Marketing organizational unit. What should you do?

Options:

A.

Create and assign a super admin role

B.

Create and assign a custom role with "Chrome Management permissions" for the root OU

C.

Create and assign a custom role with "Chrome Management permissions" for the Marketing devices OU

D.

Create and assign a custom role with "Chrome Management permissions" for the Marketing Users OU

Question 18

What are two reasons that Chromebooks never experienced a ransomware attack?

(Choose 2 answers)

Options:

A.

All applications run in a sandbox

B.

Automatic virus scanning keeps them safe

C.

Users are not able to download software

D.

All web traffic is SSL inspected

E.

Devices go through a Verified Boot process

Question 19

Your team has members that work remotely. Your CTO would like to verify that your fleet of ChromeOS devices remains managed by corporate policy even after a device wipe. What would you configure to complete this objective?

Options:

A.

Set the setting "Powerwash" to "Do not allow powerwash to be triggered"

B.

Create strict password rules

C.

Edit the setting "Verified Access" to "Require verified mode for boot for verified access"

D.

Set up the Admin console to force the device to automatically re-enroll after wiping

Question 20

After deploying your Android VPN client, you want to enforce always-on VPN. Where is this configured?

Options:

A.

Network settings - Always-on VPN

B.

User settings - Always-on VPN

C.

Device settings - Always-on VPN

D.

via JSON configuration with the deployed application

Question 21

An admin is setting up third-party SSO for their organization as the super admin. When they test with their account, they do not see the SSO screen.

What is causing this behavior?

Options:

A.

SSO settings are misconfigured

B.

The account is in the wrong OrgUnit

C.

Third-party SSO is not enabled

D.

Super admin bypassed the thud-patty

Question 22

A new startup company wants to order Chromebooks for their developers. They will use virtual machines on these Chromebooks for development tasks.

Which minimum configuration should an admin recommend?

Options:

A.

Intel i3, 4GB RAM and 128 GB SSD

B.

Intel i5, 8GB RAM and 128 GB SSD

C.

Intel i3, 16GB RAM and 256 GB SSD

D.

Intel i7, 8GB RAM and 256 GB SSD

Question 23

Which feature of the Google Admin console allows you to restrict devices from remembering user passwords?

Options:

A.

Password Manager

B.

Security Token Removal

C.

Enrollment Permissions

D.

WebAuthn

Question 24

A school wants all new Chromebooks to be enrolled through zero-touch enrollment (ZTE) in their parent organization unit. An admin needs to create tokens.

Where will the admin go to generate the enrollment tokens for Chromebooks?

Options:

A.

Devices > Chrome > Enroll

B.

Devices > Chrome > Connectors

C.

Devices > Chrome > Settings

D.

Devices > Chrome > Devices > Enroll

Question 25

Your security department wants to mitigate the risk of data loss in the case of stolen equipment. As a ChromeOS Administrator, you want to ensure that your ChromeOS devices will be able to stay enterprise-managed. What should you do?

Options:

A.

Add a disabled device return instruction message.

B.

Enable the Autocomplete domain feature.

C.

Force devices to automatically re-enroll after wiping.

D.

Allow users into your organization to enroll new or re-enroll existing devices.

Question 26

Help Desk administrators need a limited set of privileges to perform actions in the Google Admin console. How should an administrator grant these permissions while conforming to the practice of least privilege?

Options:

A.

Create a Service Desk Group and add Service Desk admins to the group

B.

Create a new custom admin role and assign

C.

Grant service desk administrators the Services Admin Role

D.

Allow Help Desk administrators full access to manage users

Question 27

Your network administrator wants to block Google services traffic. What is the result?

Options:

A.

Google Search will not work

B.

Chrome devices will crash

C.

Chrome devices will not be able to reach Google

D.

Nothing This isn't an issue

Question 28

How would you deploy a Progressive Web Application to all managed user accounts?

Options:

A.

Force-install the Progressive Web Application URL in the "Chrome Apps & extensions" page

B.

Set up Chrome Imprivata shared apps & extensions to force-install the Progressive Web Application URL

C.

Go to "User & Browser Settings" and add the Progressive Web Application URL in the "Legacy Browser Support" site list

D.

Open "Additional Google services" to force-install the Progressive Web Application URL

Question 29

The security team is requiring Wi-Fi connectivity to be disabled on ChromeOS devices. Using the Google Admin console, how would you configure ChromeOS devices to block all WI-FI connectivity and hide the WI-FI Icon?

Options:

A.

Configure "Restricted Wi-Fi Networks "

B.

Prevent WiMax connectivity

C.

Remove Wi-Fi from "Enabled network interfaces "

D.

Restrict 'Auto Connecting" to Wi-Fi

Question 30

You need to create a recovery image on a USB stick. Which two steps should you take?

(Choose 2 answers)

Options:

A.

Go to google.com/chromebooks

B.

Install Chrome Recovery Utility and download the image for the correct device model to a USB stick.

C.

Go to Chrome Web Store on a Chrome device

D.

Go to Google Play store

E.

Go to Device Settings.

Question 31

As the ChromeOS Administrator, you have been given previously used devices by another organization that have been used, but do not know the current management state of the devices. When are yourequired to wipe a device before enrolling it?

(Choose 2 answers)

Options:

A.

When the device has been purchased from an authorized reseller.

B.

When the device has been previously enrolled in a different domain.

C.

When the device has been sitting in a warehouse for more than 90 days.

D.

When the device has been signed in to by a user before enrolling it.

E.

When a replacement device is sent from an OEM to replace a defective device.

Question 32

One of the employees of the organization you're managing is leaving, and you want to prepare the device they've been using for adoption by a new user. What is the recommended action you need to take through the Admin console to remove any previous user data from the machine?

Options:

A.

Deprovision the device, reset it, and then finally re-enroll it

B.

Enable forced-reenrollment on the device OU and then factory reset the device

C.

Delete the user from the Admin console and powerwash the machine

D.

Select “Reset" on the devices overview page, and then ‘Clear User Profiles."

Question 33

What is a best practice for admin accounts on the Google Admin console?

Options:

A.

Super Admins should be used for all changes to the domain

B.

Group Admins should have 2FA enabled only if given security policy controls

C.

Super Admins should use a separate user account tor day-to-day activities

D.

Group Admins should have access to multiple groups

Question 34

You want to restrict who can sign in to a managed device during working hours. Which two settings do you need to use?

Choose 2 answers

Options:

A.

Single sign-on IdP redirection

B.

Device oft hours

C.

User Data (Ephemera))

D.

Family Link accounts

Question 35

What is needed for an admin to remote desktop to a user or managed guest session devices with the Admin console?

Options:

A.

The user must accept the connection request

B.

The user must share the session pin with the admin

C.

Both the admin and the remote device must be on the same network

D.

The admin must be in the same OU as the remote device

Page: 1 / 12
Total 117 questions