Labour Day Special Limited Time Flat 70% Discount offer - Ends in 0d 00h 00m 00s - Coupon code: 70spcl

Microsoft MD-102 Endpoint Administrator Exam Practice Test

Page: 1 / 28
Total 282 questions

Endpoint Administrator Questions and Answers

Question 1

You have a Microsoft 365 subscription.

You plan to enable Microsoft Intune enrollment for the following types of devices:

• Existing Windows 11 devices managed by using Configuration Manager

• Personal iOS devices

The solution must minimize user disruption.

Which enrollment method should you use for each device type? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Question # 1

Options:

Question 2

You have a Microsoft 365 subscription that includes Microsoft Intune.

You have computers that run Windows 11 as shown in the following table.

Question # 2

You have the groups shown in the following table.

Question # 2

You create and assign the compliance policies shown in the following table.

Question # 2

The next day, you review the compliance status of the computers.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.

Question # 2

Options:

Question 3

Your network contains an Active Directory domain named adatum.com, a workgroup, and computers that run Windows 10. The computers are configured as shown in the following table.

Question # 3

The local Administrator accounts on Computed, Computed, and Computed have the same user name and password.

On Computed. Windows Defender Firewall is configured as shown in the following exhibit.

Question # 3

Question # 3

Options:

Question 4

You have a Microsoft 365 Business Standard subscription and 100 Windows 10 Pro devices.

You purchase a Microsoft 365 E5 subscription.

You need to upgrade the Windows 10 Pro devices to Windows 10 Enterprise. The solution must minimize administrative effort.

Which upgrade method should you use?

Options:

A.

Windows Autopilot

B.

a Microsoft Deployment Toolkit (MDT) lite-touch deployment

C.

Subscription Activation

D.

an in-place upgrade by using Windows installation media

Question 5

You use a Microsoft Intune subscription to manage iOS devices.

You configure a device compliance policy that blocks jailbroken iOS devices.

You need to enable Enhanced jailbreak detection.

What should you configure?

Options:

A.

the Compliance policy settings

B.

the device compliance policy

C.

a network location

D.

a configuration profile

Question 6

You have a Microsoft 365 tenant that contains the objects shown in the following table.

Question # 6

In the Microsoft Intune admin center, you are creating a Microsoft 365 Apps app named App1. To which objects can you assign App1?

Options:

A.

Group3 and Group4 only

B.

Admin1, Group3, and Group4 only

C.

Group1, Group3, and Group4 only

D.

Group1, Group2, Group3, and Group4 only

E.

Admin1, Group1. Group2, Group3, andGroup4

Question 7

You have 100 computers that run Windows 10. You have no servers. All the computers are joined to Microsoft Azure Active Directory (Azure AD).

The computers have different update settings, and some computers are configured for manual updates.

You need to configure Windows Update. The solution must meet the following requirements:

  • The configuration must be managed from a central location.
  • Internet traffic must be minimized.
  • Costs must be minimized.

How should you configure Windows Update? To answer, select the appropriate options in the answer area.

NOTE:Each correct selection is worth one point.

Question # 7

Options:

Question 8

You have a Microsoft 365 subscription. The subscription contains computers that run Windows 11 and are enrolled in Microsoft Intune. You need to create a compliance policy that meets the following requirements:

• Requires BitLocker Drive Encryption (BitLocker) on each device

• Requires a minimum operating system version

Which setting of the compliance policy should you configure for each requirement? To answer, drag the appropriate settings to the correct requirements. Each setting may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.

NOTE: Each correct selection is worth one point,

Question # 8

Options:

Question 9

You have an Azure AD tenant named contoso.com that contains a user named Used. User! has a user principal name (UPN) of user1@contoso.com.

You join a Windows 11 device named Client 1 to contoso.com.

You need to add User1 to the local Administrators group of Client1.

How should you complete the command? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Question # 9

Options:

Question 10

You have a Microsoft 365 subscription that uses Microsoft Intune.

You need to ensure that you can deploy apps to Android Enterprise devices.

What should you do first?

Options:

A.

Create a configuration profile.

B.

Add a certificate connector.

C.

Configure the Partner device management settings.

D.

Link your managed Google Play account to Intune.

Question 11

You have a Microsoft 365 subscription that includes Microsoft Intune.

You plan to use Windows Autopilot to deploy Windows 11 devices.

You need to meet the following requirements during Autopilot provisioning:

• Display the app and profile configuration progress.

• Block users from using the devices until all apps and profiles are installed

What should you configure?

Options:

A.

an app configuration policy

B.

an app protection policy

C.

an enrollment device platform restriction

D.

an enrollment status page

Question 12

You have a Microsoft 365 E5 subscription that contains 150 hybrid Azure AD joined Windows devices. All the devices are enrolled in Microsoft Intune. You need to configure Delivery Optimization on the devices to meet the following requirements:

• Allow downloads from the internet and from other computers on the local network.

• Limit the percentage of used bandwidth to 50.

What should you use?

Options:

A.

a configuration profile

B.

a Windows Update for Business Group Policy setting

C.

a Microsoft Peer-to-Peer Networking Services Group Policy setting

D.

an Update ring for Windows 10 and later profile

Question 13

You manage 1.000 devices by using Microsoft Intune. You review the Device compliance trends report. For how long will the report display trend data?

Options:

A.

30 days

B.

60 days

C.

90 days

D.

365 days

Question 14

You have 200 computers that run Windows 10. The computers are joined to Azure AD and enrolled in Microsoft Intune. You need to set a custom image as the wallpaper and sign-in screen.

Which two settings should you configure in the Device restrictions configuration profile? To answer, select the appropriate settings in the answer area.

NOTE: Each correct selection is worth one point.

Question # 14

Options:

Question 15

Your network contains an on-premises Active Directory domain. The domain contains two computers named Computer1 and Computer? that run Windows 10.

You install Windows Admin Center on Computer1.

You need to manage Computer2 from Computer1 by using Windows Admin Center.

What should you do on Computed?

Options:

A.

Update the TrustedHosts list

B.

Run the Enable-PSRemoting cmdlet

C.

Allow Windows Remote Management (WinRM) through the Microsoft Defender firewall.

D.

Add an inbound Microsoft Defender Firewall rule.

Question 16

You have a Microsoft 365 tenant that contains the devices shown in the following table.

Question # 16

The devices are managed by using Microsoft Intune.

You create a compliance policy named Policy1 and assign Policy1 to Group1. Policy1 is configured to mark a device as Compliant only if the device security settings match the settings specified in the policy.

You discover that devices that are not members of Group1 are shown as Compliant.

You need to ensure that only devices that are assigned a compliance policy can be shown as Compliant. All other devices must be shown as Not compliant.

What should you do from the Microsoft Intune admin center?

Options:

A.

From Device compliance, configure the Compliance policy settings.

B.

From Endpoint security, configure the Conditional access settings.

C.

From Tenant administration, modify the Diagnostic settings.

D.

From Policy1, modify the actions for noncompliance.

Question 17

You have a Microsoft 365 subscription that uses Microsoft Intune Suite.

You use Microsoft Intune to manage devices. All devices are in the same time zone.

You create an update rings policy and assign the policy to all Windows devices.

On the November 1, you pause the update rings policy.

All devices remain online.

Without further modification to the policy, on which date will the devices next attempt to update?

Options:

A.

December 1

B.

December 6

C.

November 15

D.

November 22

Question 18

You have a Microsoft 365 subscription that uses Microsoft Intune Suite.

You use Microsoft Intune to manage Windows 11 devices.

You create a new policy set named Set and add five device configuration profiles for Windows 10 and later.

You create a device compliance policy named Policy1.

You need to ensure that when users are assigned the device configuration profiles in Set1, they are always assigned Policy1 also.

What should you configure?

Options:

A.

the assignments of Policy1

B.

the Policy1 configurations

C.

the assignments of Set1

D.

the Set1 configurations

Question 19

You have a Microsoft 365 subscription that contains a user named User1.

You use Microsoft in tune to manage devices that run Windows 11.

You need to remove User1 from the local Administrators group on all enrolled devices. The solution must minimize administrative effort.

What should you configure?

Options:

A.

a device compliance policy

B.

an app configuration policy

C.

an account protection policy

Question 20

You have an on-premises server named Server! that hosts a Microsoft Deployment Toolkit (MDT) deployment share named MDT1. You need to ensure that MDT1 supports multicast deployments. What should you install on Server1?

Options:

A.

Multipath I/O (MPIO)

B.

Multipoint Connector

C.

Windows Deployment Services (WDS)

D.

Windows Server Update Services (WSUS)

Question 21

You have a Microsoft 36S subscription, use Microsoft Intune. and have the users shown in the following table.

Question # 21

You create a policy set named Set1 as shown in the exhibit. (Click the Exhibit tab.)

Question # 21

Users have enrolled devices in Intune as shown in the following table.

Question # 21

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth on* point.

Question # 21

Options:

Question 22

What should you use to meet the technical requirements for Azure DevOps?

Options:

A.

An app protection policy

B.

Windows Information Protection (WIP)

C.

Conditional access

D.

A device configuration profile

Question 23

You need to meet the technical requirements for Windows AutoPilot.

Which two settings should you configure from the Azure Active Directory blade? To answer, select the appropriate settings in the answer area.

NOTE:Each correct selection is worth one point.

Question # 23

Options:

Question 24

You need to meet the OOBE requirements for Windows AutoPilot.

Which two settings should you configure from the Azure Active Directory blade? To answer, select the appropriate settings in the answer area.

NOTE:Each correct selection is worth one point.

Question # 24

Options:

Question 25

You need to recommend a solution to meet the device management requirements.

What should you include in the recommendation? To answer, select the appropriate options in the answer area.

NOTE:Each correct selection is worth one point.

Question # 25

Options:

Question 26

What should you configure to meet the technical requirements for the Azure AD-joined computers?

Options:

A.

Windows Hello for Business from the Microsoft Intune blade in the Azure portal.

B.

The Accounts options in an endpoint protection profile.

C.

The Password Policy settings in a Group Policy object (GPO).

D.

A password policy from the Microsoft Office 365 portal.

Question 27

You need to capture the required information for the sales department computers to meet the technical

requirements.

Which Windows PowerShell command should you run first?

Options:

A.

Install-Module WindowsAutoPilotIntune

B.

Install-Script Get-WindowsAutoPilotInfo

C.

Import-AutoPilotCSV

D.

Get-WindowsAutoPilotInfo

Question 28

What should you upgrade before you can configure the environment to support co-management?

Options:

A.

the domain functional level

B.

Configuration Manager

C.

the domain controllers

D.

Windows Server Update Services (WSUS)

Question 29

You need to meet the device management requirements for the developers.

What should you implement?

Options:

A.

folder redirection

B.

Enterprise State Roaming

C.

home folders

D.

known folder redirection in Microsoft OneDrive

Question 30

You need to resolve the performance issues in the Los Angeles office.

How should you configure the update settings? To answer, select the appropriate options in the answer area.

NOTE:Each correct selection is worth one point.

Question # 30

Options:

Question 31

You need to meet the technical requirements for the iOS devices.

Which object should you create in Intune?

Options:

A.

A compliance policy

B.

An app protection policy

C.

A Deployment profile

D.

A device configuration profile

Question 32

To which devices do Policy1 and Policy2 apply? To answer, select the appropriate options in the answer area.

NOTE:Each correct selection is worth one point.

Question # 32

Options:

Question 33

You need to prepare for the deployment of the Phoenix office computers.

What should you do first?

Options:

A.

Generalize the computers and configure the Mobility (MDM and MAM) settings from the Azure Active Directory admin center.

B.

Extract the hardware ID information of each computer to a CSV file and upload the file from the Microsoft Intune blade in the Azure portal.

C.

Extract the hardware ID information of each computer to an XML file and upload the file from the Devices settings in Microsoft Store for Business.

D.

Extract the serial number information of each computer to a CSV file and upload the file from the Microsoft Intune blade in the Azure portal.

Question 34

You need a new conditional access policy that has an assignment for Office 365 Exchange Online.

You need to configure the policy to meet the technical requirements for Group4.

Which two settings should you configure in the policy? To answer, select the appropriate settings in the answer area.

NOTE:Each correct selection is worth one point.

Question # 34

Options:

Question 35

You are evaluating which devices are compliant.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE:Each correct selection is worth one point.

Question # 35

Options:

Question 36

What is the maximum number of devices that User1 and User2 can enroll in Intune? To answer, select the appropriate options in the answer area.

NOTE:Each correct selection is worth one point.

Question # 36

Options:

Question 37

You need to meet the requirements for the MKG department users.

What should you do?

Options:

A.

Assign the MKG department users the Purchaser role in Microsoft Store for Business

B.

Download the APPX file for App1 from Microsoft Store for Business

C.

Add App1 to the private store

D.

Assign the MKG department users the Basic Purchaser role in Microsoft Store for Business

E.

Acquire App1 from Microsoft Store for Business

Question 38

You need to meet the technical requirements for the LEG department computers.

Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

Question # 38

Options:

Question 39

You need to prepare for the deployment of the Phoenix office computers.

What should you do first?

Options:

A.

Extract the hardware ID information of each computer to a CSV file and upload the file from the Devices settings in Microsoft Store for Business.

B.

Generalize the computers and configure the Mobility (MDM and MAM) settings from the Azure Active

Directory blade in the Azure portal.

C.

Generalize the computers and configure the Device settings from the Azure Active Directory blade in the Azure portal.

D.

Extract the hardware ID information of each computer to an XLSX file and upload the file from the Devices settings in Microsoft Store for Business.

Question 40

You need to meet the technical requirements for the new HR department computers.

How should you configure the provisioning package? To answer, select the appropriate options in the answer area.

NOTE:Each correct selection is worth one point.

Question # 40

Options:

Question 41

You need to meet the technical requirements for the IT department.

What should you do first?

Options:

A.

From the Azure Active Directory blade in the Azure portal, enable Seamless single sign-on.

B.

From the Configuration Manager console, add an Intune subscription.

C.

From the Azure Active Directory blade in the Azure portal, configure the Mobility (MDM and MAM) settings.

D.

From the Microsoft Intune blade in the Azure portal, configure the Windows enrollment settings.

Question 42

User1 and User2 plan to use Sync your settings.

On which devices can the users use Sync your settings? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Question # 42

Options:

Page: 1 / 28
Total 282 questions