Winter Sale- Special Discount Limited Time 65% Offer - Ends in 0d 00h 00m 00s - Coupon code: netdisc

Microsoft MD-102 Endpoint Administrator Exam Practice Test

Page: 1 / 30
Total 302 questions

Endpoint Administrator Questions and Answers

Question 1

You need to recommend a solution to meet the device management requirements.

What should you include in the recommendation? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Question # 1

Options:

Question 2

You need to meet the technical requirements for Windows AutoPilot.

Which two settings should you configure from the Azure Active Directory blade? To answer, select the appropriate settings in the answer area.

NOTE: Each correct selection is worth one point.

Question # 2

Options:

Question 3

What should you upgrade before you can configure the environment to support co-management?

Options:

A.

the domain functional level

B.

Configuration Manager

C.

the domain controllers

D.

Windows Server Update Services (WSUS)

Question 4

You need to resolve the performance issues in the Los Angeles office.

How should you configure the update settings? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Question # 4

Options:

Question 5

You need to capture the required information for the sales department computers to meet the technical

requirements.

Which Windows PowerShell command should you run first?

Options:

A.

Install-Module WindowsAutoPilotIntune

B.

Install-Script Get-WindowsAutoPilotInfo

C.

Import-AutoPilotCSV

D.

Get-WindowsAutoPilotInfo

Question 6

You need to meet the OOBE requirements for Windows AutoPilot.

Which two settings should you configure from the Azure Active Directory blade? To answer, select the appropriate settings in the answer area.

NOTE: Each correct selection is worth one point.

Question # 6

Options:

Question 7

What should you use to meet the technical requirements for Azure DevOps?

Options:

A.

An app protection policy

B.

Windows Information Protection (WIP)

C.

Conditional access

D.

A device configuration profile

Question 8

You need to meet the device management requirements for the developers.

What should you implement?

Options:

A.

folder redirection

B.

Enterprise State Roaming

C.

home folders

D.

known folder redirection in Microsoft OneDrive

Question 9

What should you configure to meet the technical requirements for the Azure AD-joined computers?

Options:

A.

Windows Hello for Business from the Microsoft Intune blade in the Azure portal.

B.

The Accounts options in an endpoint protection profile.

C.

The Password Policy settings in a Group Policy object (GPO).

D.

A password policy from the Microsoft Office 365 portal.

Question 10

You need to prepare for the deployment of the Phoenix office computers.

What should you do first?

Options:

A.

Generalize the computers and configure the Mobility (MDM and MAM) settings from the Azure Active Directory admin center.

B.

Extract the hardware ID information of each computer to a CSV file and upload the file from the Microsoft Intune blade in the Azure portal.

C.

Extract the hardware ID information of each computer to an XML file and upload the file from the Devices settings in Microsoft Store for Business.

D.

Extract the serial number information of each computer to a CSV file and upload the file from the Microsoft Intune blade in the Azure portal.

Question 11

You need a new conditional access policy that has an assignment for Office 365 Exchange Online.

You need to configure the policy to meet the technical requirements for Group4.

Which two settings should you configure in the policy? To answer, select the appropriate settings in the answer area.

NOTE: Each correct selection is worth one point.

Question # 11

Options:

Question 12

You need to meet the requirements for the MKG department users.

What should you do?

Options:

A.

Assign the MKG department users the Purchaser role in Microsoft Store for Business

B.

Download the APPX file for App1 from Microsoft Store for Business

C.

Add App1 to the private store

D.

Assign the MKG department users the Basic Purchaser role in Microsoft Store for Business

E.

Acquire App1 from Microsoft Store for Business

Question 13

You are evaluating which devices are compliant.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.

Question # 13

Options:

Question 14

You need to prepare for the deployment of the Phoenix office computers.

What should you do first?

Options:

A.

Extract the hardware ID information of each computer to a CSV file and upload the file from the Devices settings in Microsoft Store for Business.

B.

Generalize the computers and configure the Mobility (MDM and MAM) settings from the Azure Active

Directory blade in the Azure portal.

C.

Generalize the computers and configure the Device settings from the Azure Active Directory blade in the Azure portal.

D.

Extract the hardware ID information of each computer to an XLSX file and upload the file from the Devices settings in Microsoft Store for Business.

Question 15

You need to meet the technical requirements for the LEG department computers.

Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

Question # 15

Options:

Question 16

You need to meet the technical requirements for the new HR department computers.

How should you configure the provisioning package? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Question # 16

Options:

Question 17

You need to meet the technical requirements for the IT department.

What should you do first?

Options:

A.

From the Azure Active Directory blade in the Azure portal, enable Seamless single sign-on.

B.

From the Configuration Manager console, add an Intune subscription.

C.

From the Azure Active Directory blade in the Azure portal, configure the Mobility (MDM and MAM) settings.

D.

From the Microsoft Intune blade in the Azure portal, configure the Windows enrollment settings.

Question 18

You need to meet the technical requirements for the iOS devices.

Which object should you create in Intune?

Options:

A.

A compliance policy

B.

An app protection policy

C.

A Deployment profile

D.

A device configuration profile

Question 19

To which devices do Policy1 and Policy2 apply? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Question # 19

Options:

Question 20

What is the maximum number of devices that User1 and User2 can enroll in Intune? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Question # 20

Options:

Question 21

User1 and User2 plan to use Sync your settings.

On which devices can the users use Sync your settings? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Question # 21

Options:

Question 22

You implement Boundary1 based on the planned changes.

Which devices have a network boundary of 192.168.1.0/24 applied?

Options:

A.

Device2 only

B.

Device3 only

C.

Device 1. Device2. and Device5 only

D.

Device 1, Device2, Device3, and Device4 only

Question 23

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.

Question # 23

Options:

Question 24

You have the on-premises servers shown in the following table.

Question # 24

You have a Microsoft 365 E5 subscription that contains Android and iOS devices. All the devices are managed by using Microsoft Intune.

You need to implement Microsoft Tunnel for Intune. The solution must minimize the number of open firewall ports.

To which server can you deploy a Tunnel Gateway server, and which inbound ports should be allowed on the server to support Microsoft Tunnel connections? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Question # 24

Options:

Question 25

You have a Microsoft 365 subscription that contains 1,000 iOS devices. The devices are enrolled in Microsoft Intune as follows:

• Two hundred devices are enrolled by using the Intune Company Portal.

• Eight hundred devices are enrolled by using Apple Automated Device Enrollment (ADE).

You create an iOS/iPadOS software updates policy named Policy 1 that is configured to install iOS/iPadOS 15.5.

How many iOS devices will Policy1 update, and what should you configure to ensure that only iOS/iPadOS 15.5 is installed? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Question # 25

Options:

Question 26

You have a Microsoft 365 subscription that uses Microsoft Intune and contains the users shown in the following table.

Question # 26

You create a policy set named Set1 as shown in the exhibit. (Click the Exhibit tab.)

Question # 26

You enroll devices in Intune as shown in the following table.

Question # 26

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.

Question # 26

Options:

Question 27

You have a Microsoft 365 E5 subscription and 100 unmanaged iPad devices.

You need to deploy a specific iOS update to the devices. Users must be prevented from manually installing a more recent version of iOS.

Which two actions should you perform? Each correct answer presents part of the solution.

NOTE: Each correct selection is worth one point.

Options:

A.

Enroll the devices in Microsoft Intune by using the Intune Company Portal.

B.

Create a compliance policy.

C.

Enroll the devices in Microsoft Intune by using Apple Business Manager.

D.

Create an iOS app provisioning profile.

E.

Create a device configuration profile.

Question 28

You have 200 computers that run Windows 10. The computers are joined to Azure AD and enrolled in Microsoft Intune. You need to set a custom image as the wallpaper and sign-in screen.

Which two settings should you configure in the Device restrictions configuration profile? To answer, select the appropriate settings in the answer area.

NOTE: Each correct selection is worth one point.

Question # 28

Options:

Question 29

Your company has a Remote Desktop Gateway (RD Gateway).

You have a server named Server1 that is accessible by using Remote Desktop Services (RDS) through the RD Gateway.

You need to configure a Remote Desktop connection to connect through the gateway.

Which setting should you configure?

Options:

A.

Connect from anywhere

B.

Server authentication

C.

Connection settings

D.

Local devices and resources

Question 30

You are creating a device configuration profile in Microsoft Intu

You need to configure specific OMA-URI settings in the profile.

Which profile type template should you use?

Options:

A.

Device restrictions (Windows 10 Team)

B.

Identity protection

C.

Custom

D.

Device restrictions

Question 31

You have a Microsoft Deployment Toolkit (MDT) deployment share named DS1.

in the Out-of-Box Drivers node, you create folders that contain drivers for different hardware models.

You need to configure the Inject Drivers MDT task to use PnP detection to install the drivers for one of the hardware models.

What should you do first?

Options:

A.

Import an OS package.

B.

Create a selection profile.

C.

Add a Gather task to the task sequence.

D.

Add a Validate task to the task sequence.

Question 32

You have a Microsoft 365 E5 subscription.

You create an app protection policy for Android devices named Policy1 as shown in the following exhibit.

Question # 32

Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.

NOTE: Each correct selection is worth one point.

Question # 32

Options:

Question 33

Your network contains an Active Directory domain. The domain contains 1.000 computers that run Windows 11.

You need to configure the Remote Desktop settings of all the computers. The solution must meet the following requirements:

• Prevent the sharing of clipboard contents.

• Ensure that users authenticate by using Network Level Authentication (NLA).

Which two nodes of the Group Policy Management Editor should you use? To answer, select the appropriate nodes in the answer area. NOTE: Each correct selection is worth one point.

Question # 33

Options:

Question 34

You have a Microsoft 365 subscription.

You have 10 computers that run Windows 10 and are enrolled in mobile device management (MDM).

You need to deploy the Microsoft 36S Apps for enterprise suite to all the computers.

What should you do?

Options:

A.

From the Microsoft Intune admin center, create a Windows 10 device profile.

B.

From Azure AD, add an app registration.

C.

From Azure AD. add an enterprise application.

D.

From the Microsoft Intune admin center, add an app.

Question 35

You have the MDM Security Baseline profile shown in the MDM exhibit. (Click the MDM tab.)

Question # 35You have the ASR Endpoint Security profile shown in the ASR exhibit. (Click the ASR tab.)

Question # 35

You plan to deploy both profiles to devices enrolled in Microsoft Intune. You need to identify how the following settings will be configured on the devices:

• Block Office applications from creating executable content

• Block Win32 API calls from Office macro

Currently, the settings are disabled locally on each device.

What are the effective settings on the devices? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Question # 35

Options:

Question 36

You have a Microsoft 36S subscription, use Microsoft Intune. and have the users shown in the following table.

Question # 36

You create a policy set named Set1 as shown in the exhibit. (Click the Exhibit tab.)

Question # 36

Users have enrolled devices in Intune as shown in the following table.

Question # 36

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth on* point.

Question # 36

Options:

Question 37

You have a Microsoft 365 tenant that uses Microsoft Intune to manage the devices shown in the following table.

Question # 37

You need to deploy a compliance solution that meets the following requirements:

• Marks the devices as Not Compliant if they do not meet compliance policies

• Remotely locks noncompliant devices

What is the minimum number of compliance policies required, and which devices support the remote lock action? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Question # 37

Options:

Question 38

You have a Microsoft Deployment Toolkit (MDT) deployment share named DS1.

You import a Windows 11 image to DS1.

You have an executable installer for an application named App1.

You need to ensure that App1 will be installed for all the task sequences that deploy the image.

Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

Question # 38

Options:

Question 39

You have a Microsoft 365 E5 subscription and use Microsoft Intune. The subscription contains a Microsoft Entra tenant that syncs with an on-premises Active Directory Domain Services (AD DS) domain. The tenant has Windows Local Administrator Password Solution (Windows LAPS) enabled.

You have the Windows devices shown in the following table.

Question # 39

You have an Endpoint security policy that is configured as shown in the following table.

Question # 39

For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.

Question # 39

Options:

Question 40

You have a Microsoft 365 E5 subscription that contains the devices shown in the following table.

Question # 40

All devices have Microsoft Edge installed.

From the Microsoft Intune admin center, you create a Microsoft

You need to apply Edge1 to all the supported devices.

To which devices should you apply Edge1?

Options:

A.

Device1 only

B.

Device1 and Device2 only

C.

Device1, Device2, and Device3 only

D.

Device1, Device2, and Device4 only

E.

Device1, Device2, Device3, and Device4

Question 41

You have 200 computers that run Windows 10 and are joined to an Active Directory domain.

You need to enable Windows Remote Management (WinRM) on all the computers by using Group Policy.

Which three actions should you perform? Each correct answer presents part of the solution.

NOTE: Each correct selection is worth one point.

Options:

A.

Enable the Allow Remote Shell access setting.

B.

Enable the Allow remote server management through WinRM setting.

C.

Set the Startup Type of the Windows Remote Management (WS-Management) service to Automatic.

D.

Enable the Windows Defender Firewall: Allow inbound Remote Desktop exceptions setting.

E.

Set the Startup Type of the Remote Registry service to Automatic

F.

Enable the Windows Defender Firewall: Allow inbound remote administration exception setting.

Question 42

You have an Azure AD group named Group1. Group! contains two Windows 10 Enterprise devices named Device1 and Device2. You create a device configuration profile named Profile1. You assign Profile! to Group1. You need to ensure that Profile! applies to Device1 only. What should you modify in Profile 1?

Options:

A.

Assignments

B.

Settings

C.

Scope (Tags)

D.

Applicability Rules

Question 43

You have a Microsoft 365 subscription. The subscription contains 500 computers that run Windows 11 and are enrolled in Microsoft Intune. You need to manage the deployment of monthly security updates. The solution must meet the following requirements:

• Updates must be deployed to a group of test computers for quality assurance.

• Updates must be deployed automatically 15 days after the quality assurance testing.

What should you create in the Microsoft Intune admin center?

Options:

A.

a device Configuration profile

B.

an update ring

C.

a feature update policy

D.

a security baseline

Question 44

You manage 1,000 computers that run Windows 10. All the computers are enrolled in Microsoft Intune. You manage the servicing channel settings of the computers by using Intune.

You need to review the servicing status of a computer.

What should you do?

Options:

A.

From Software updates, view the Per update ring deployment state.

B.

From Software updates, view the audit logs.

C.

From Device configuration - Profiles, view the device status.

D.

From Device compliance, view the device compliance.

Question 45

Your network contains an Active Directory domain named adatum.com. The domain contains two computers named Computer1 and Computer2 that run Windows 10. Remote Desktop is enabled on Computer2.

The domain contains the user accounts shown in the following table.

Question # 45

Computer2 contains the local groups shown in the following table.

Question # 45

The relevant user rights assignments for Computed are shown in the following table.

Question # 45

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.

Question # 45

Options:

Question 46

You have a Hyper-V host. The host contains virtual machines that run Windows 10 as shown in following table.

Question # 46

Which virtual machines can be upgraded to Windows 11?

Options:

A.

VM1 only

B.

VM2 only

C.

VM2 and VM3 only

D.

VM1.VM2. andVM3

Page: 1 / 30
Total 302 questions