Free MS-100 pdf Files With Updated and Accurate Dumps Training [Q167-Q183]

Share

Free MS-100 pdf Files With Updated and Accurate Dumps Training

Top-Class MS-100 Question Answers Study Guide

NEW QUESTION # 167
You have three devices enrolled in Microsoft Intune as shown in the following table.

The device compliance policies in Intune are configured as shown in the following table.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation


NEW QUESTION # 168
You have a Microsoft 365 subscription and a Microsoft Azure Active Directory (Azure AD) tenant named contoso.com. Contoso.com contains the users shown in the following table.

Contoso.com is configured as shown in the following exhibit.

You need to ensure that guest users can be created in the tenant.
Which setting should you modify?

  • A. Members can invite.
  • B. Admins and users in the guest inviter role can invite.
  • C. Guest users permissions are limited.
  • D. Guests can invite.
  • E. Deny invitations to the specified domains

Answer: B

Explanation:
Explanation
The setting "Admins and users in the guest inviter role can invite" is set to No. This means that no one can create guest accounts because they cannot 'invite' guests. This setting needs to be changed to Yes to ensure that guest users can be created in the tenant.
Reference:
https://docs.microsoft.com/en-us/azure/active-directory/b2b/delegate-invitations
https://docs.microsoft.com/en-us/azure/active-directory/fundamentals/users-default-permissions


NEW QUESTION # 169
Please wait while the virtual machine loads. Once loaded, you may proceed to the lab section. This may take a few minutes, and the wait time will not be deducted from your overall test time.
When the Next button is available, click it to access the lab section. In this section, you will perform a set of tasks in a live environment. While most functionality will be available to you as it would be in a live environment, some functionality (e.g., copy and paste, ability to navigate to external websites) will not be possible by design.
Scoring is based on the outcome of performing the tasks stated in the lab. In other words, it doesn't matter how you accomplish the task, if you successfully perform it, you will earn credit for that task.
Labs are not timed separately, and this exam may have more than one lab that you must complete. You can use as much time as you would like to complete each lab. But, you should manage your time appropriately to ensure that you are able to complete the lab(s) and all other sections of the exam in the time provided.
Please note that once you submit your work by clicking the Next button within a lab, you will NOT be able to return to the lab.
You may now click next to proceed to the lab.
Lab information
Use the following login credentials as needed:
To enter your username, place your cursor in the Sign in box and click on the username below.
To enter your password, place your cursor in the Enter password box and click on the password below.
Microsoft 365 Username:
[email protected]
Microsoft 365 Password: *yfLo7Ir2&y-
If the Microsoft 365 portal does not load successfully in the browser, press CTRL-K to reload the portal in a new browser tab.
The following information is for technical support purposes only:
Lab Instance: 10811525
Your organization recently implemented a new data retention policy. The policy requires that all files stored in an employee's Microsoft OneDrive folders be retained for 60 days after the employee is terminated from the organization.
The human resources (HR) department of the organization deletes the user accounts of all terminated employees.
You need to ensure that the organization meets the requirements of the data retention policy.

Answer:

Explanation:
See explanation below.
Explanation
You need to configure the OneDrive retention period for deleted users.
1. Go to the OneDrive admin center.
2. Select Storage.
3. Set the "Days to retain files in OneDrive after a user account is marked for deletion" option to 60.
4. Click Save to save the changes.
References:
https://docs.microsoft.com/bs-latn-ba/onedrive/set-retention


NEW QUESTION # 170
Your network contains an on-premises Active Directory forest.
You are evaluating the implementation of Microsoft 365 and the deployment of an authentication strategy.
You need to recommend an authentication strategy that meets the following requirements:
Allows users to sign in by using smart card-based certificates

Allows users to connect to on-premises and Microsoft 365 services by using SSO

Which authentication strategy should you recommend?

  • A. federation with Active Directory Federation Services (AD FS)
  • B. pass-through authentication and seamless SSO
  • C. password hash synchronization and seamless SSO

Answer: A

Explanation:
Explanation/Reference:
References:
https://docs.microsoft.com/en-us/azure/security/azure-ad-choose-authn


NEW QUESTION # 171
Your network contains an on-premises Active Directory domain.
You have a Microsoft 365 subscription.
You implement a directory synchronization solution that uses pass-through authentication.
You configure Microsoft Azure Active Directory (Azure AD) smart lockout as shown in the following exhibit.

You discover that Active Directory users can use the passwords in the custom banned passwords list.
You need to ensure that banned passwords are effective for all users.
Which three actions should you perform? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.

  • A. From a domain controller, install the Azure AD Password Protection Proxy.
  • B. From all the domain controllers, install the Azure AD Password Protection DC Agent.
  • C. From a domain controller, install the Microsoft AAD Application Proxy connector.
  • D. From Active Directory, modify the Default Domain Policy.
  • E. From Custom banned passwords, modify the Enforce custom list setting.
  • F. From Password protection for Windows Server Active Directory, modify the Mode setting.

Answer: A,B,E

Explanation:
Explanation/Reference:
References:
https://docs.microsoft.com/en-us/azure/active-directory/authentication/howto-password-ban-bad-on-
premises-deploy


NEW QUESTION # 172
Your network contains an on-premises Active Directory forest named contoso.com. The forest contains the users shown in the following table.

You create an Azure Active Directory (Azure AD) tenant named fabrikam.onmicrosoft.com.
You plan to sync the users in the forest to fabrikam.onmicrosoft.com by using Azure AD Connect.
Which username will be assigned to User1 and User2 in Azure AD after the synchronization? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:


NEW QUESTION # 173
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your company has 3,000 users. All the users are assigned Microsoft 365 E3 licenses.
Some users are assigned licenses for all Microsoft 365 services. Other users are assigned licenses for only certain Microsoft 365 services.
You need to determine whether a user named User1 is licensed for Exchange Online only.
Solution: You run the Get-MsolAccountSkucmdlet.
Does this meet the goal?

  • A. Yes
  • B. No

Answer: B

Explanation:
Explanation
Explanation:
The Get-MsolAccountSku cmdlet returns all the SKUs that the company owns. It does not tell you which licenses are assigned to users.
Reference:
https://docs.microsoft.com/en-us/powershell/module/msonline/get-msolaccountsku?view=azureadps-1.0


NEW QUESTION # 174
Your on-premises network contains the web applications shown in the following table.

You purchase Microsoft 365, and then implement directory synchronization.
You plan to publish the web applications.
You need to ensure that all the applications are accessible by using the My Apps portal. The solution must minimize administrative effort.
What should you do first?

  • A. Deploy one conditional access policy.
  • B. Create a site-to-site VPN from Microsoft Azure to the on-premises network.
  • C. Deploy one Application Proxy connector.
  • D. Create four application registrations.

Answer: C

Explanation:
The Application Proxy connector is what connects the on-premises environment to the Azure Application Proxy.
Application Proxy is a feature of Azure AD that enables users to access on-premises web applications from a remote client. Application Proxy includes both the Application Proxy service which runs in the cloud, and the Application Proxy connector which runs on an on-premises server. Azure AD, the Application Proxy service, and the Application Proxy connector work together to securely pass the user sign-on token from Azure AD to the web application.
Reference:
https://docs.microsoft.com/en-us/azure/active-directory/manage-apps/application-proxy
https://docs.microsoft.com/en-us/azure/active-directory/manage-apps/application-proxy-connectors


NEW QUESTION # 175
You have a Microsoft 365 tenant that contains the users shown in the following table.

Microsoft Exchange Online has the mail flow rules shown in the following table

Rule1 has the following settings:

Answer:

Explanation:

Explanation


NEW QUESTION # 176
You need to meet the security requirements for User3. The solution must meet the technical requirements.
What should you do? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Reference:
https://docs.microsoft.com/en-us/office365/SecurityCompliance/eop/feature-permissions-in-eop


NEW QUESTION # 177
Please wait while the virtual machine loads. Once loaded, you may proceed to the lab section. This may take a few minutes, and the wait time will not be deducted from your overall test time.
When the Next button is available, click it to access the lab section. In this section, you will perform a set of tasks in a live environment. While most functionality will be available to you as it would be in a live environment, some functionality (e.g., copy and paste, ability to navigate to external websites) will not be possible by design.
Scoring is based on the outcome of performing the tasks stated in the lab. In other words, it doesn't matter how you accomplish the task, if you successfully perform it, you will earn credit for that task.
Labs are not timed separately, and this exam may have more than one lab that you must complete. You can use as much time as you would like to complete each lab. But, you should manage your time appropriately to ensure that you are able to complete the lab(s) and all other sections of the exam in the time provided.
Please note that once you submit your work by clicking the Next button within a lab, you will NOT be able to return to the lab.
You may now click next to proceed to the lab.
Lab information
Use the following login credentials as needed:
To enter your username, place your cursor in the Sign in box and click on the username below.
To enter your password, place your cursor in the Enter password box and click on the password below.
Microsoft 365 Username: [email protected]
Microsoft 365 Password: m3t^We$Z7&xy
If the Microsoft 365 portal does not load successfully in the browser, press CTRL-K to reload the portal in a new browser tab.
The following information is for technical support purposes only:
Lab Instance: 11440873

You need to create a SharePoint site named Project1. Users from your organization must be able to share content from the site to external users.
To answer, sign in to the Microsoft 365 portal.

Answer:

Explanation:
See explanation below
Explanation:
You need to create a SharePoint site and configure the sharing settings.
1. Go to the SharePoint Admin Center.
2. In the left navigation pane, expand Sites then select 'Active Sites'.
3. Click on the '+ Create' link to add a new site.
4. Select 'Other Options' then 'Team Site' for the template.
5. Give the site the name 'Project1'.
6. In the 'Primary Administrator' field, start typing 'admin' then select the [email protected] account when it appears.
7. Click Finish to create the site.
8. In the Active Sites list, select the Project1 site.
9. Click the Sharing link at the top of the sites list.
10. Under 'External Sharing', select 'Anyone'.
11. Click Save to save the changes.


NEW QUESTION # 178
You have a new Microsoft 365 subscription.
A user named User1 has a mailbox in Microsoft Exchange Online.
You need to log any changes to the mailbox folder permissions of User1.
Which command should you run? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

References:
https://support.microsoft.com/en-us/help/4026501/office-auditing-in-office-365-for-admins
https://docs.microsoft.com/en-us/powershell/module/exchange/mailboxes/set-mailbox?view=exchange-ps


NEW QUESTION # 179
You receive the following JSON document when you use Microsoft Graph to query the current signed-in user.

Answer:

Explanation:

Explanation


NEW QUESTION # 180
You are confirming an enterprise application named Test App in Microsoft Azur as shown in the following exhibit.

Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:


NEW QUESTION # 181
Your company has a Microsoft 365 subscription.
You need to identify all the users in the subscription who are licensed for Microsoft Office 365 through a
group membership. The solution must include the name of the group used to assign the license.
What should you use?

  • A. Active users in the Microsoft 365 admin center
  • B. the Licenses blade in the Azure portal
  • C. Report in Security & Compliance
  • D. Reports in the Microsoft 365 admin center

Answer: B


NEW QUESTION # 182
Your network contains an on-premises Active Directory domain named contoso.com.
You have a hybrid Microsoft 365 tenant that uses Microsoft Teams.
You need to ensure that audio, video, and screen sharing is prioritized over other data types across the network.
Which two actions should you perform? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.

  • A. From the Microsoft Teams admin center, configure the Media bit rate (Kbs) setting.
  • B. From Group Policy Management, configures Background Intelligent Transfer Service (BITS).
  • C. From the Microsoft Teams admin center, configure network sites.
  • D. From Group Policy Management configure Policy-based QoS
  • E. From the Microsoft Teams admin center, set Insert Quality of Service (QoS) markers for real-time media traffic to on

Answer: D,E


NEW QUESTION # 183
......

Real Updated MS-100 Questions & Answers Pass Your Exam Easily: https://www.actualcollection.com/MS-100-exam-questions.html