ExamGecko
Home Home / Microsoft / MD-102

Microsoft MD-102 Practice Test - Questions Answers, Page 12

Question list
Search
Search

List of questions

Search

Related questions











HOTSPOT

You use Microsoft Endpoint Manager to manage Windows 10 devices.

You are designing a reporting solution that will provide reports on the following:

Compliance policy trends

Trends in device and user enrolment

App and operating system version breakdowns of mobile devices

You need to recommend a data source and a data visualization tool for the design.

What should you recommend? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.


Question 111
Correct answer: Question 111

Explanation:

Reference:

https://docs.microsoft.com/en-us/mem/intune/developer/reports-nav-create-intune-reports

https://docs.microsoft.com/en-us/mem/intune/developer/reports-proc-get-a-link-powerbi

Your network contains an Active Directory domain. The domain contains 2,000 computers that run Windows 10. You implement hybrid Azure AD and Microsoft Intune.

You need to automatically register all the existing computers to Azure AD and enroll the computers in Intune. The solution must minimize administrative effort.

What should you use?

A.

an Autodiscover address record

A.

an Autodiscover address record

Answers
B.

a Group Policy object (GPO)

B.

a Group Policy object (GPO)

Answers
C.

an Autodiscover service connection point (SCP)

C.

an Autodiscover service connection point (SCP)

Answers
D.

a Windows Autopilot deployment profile

D.

a Windows Autopilot deployment profile

Answers
Suggested answer: D

HOTSPOT

You have two computers that run Windows 10. The computers are enrolled in Microsoft Intune as shown in the following table.

Windows 10 update rings are defined in Intune as shown in the following table.

You assign the update rings as shown in the following table.

What is the effect of the configurations on Computer1 and Computer2? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.


Question 113
Correct answer: Question 113

Explanation:

Computer1 and Computer2 are members of Group1. Ring1 is applied to Group1.

Note: The term "Exclude" is misleading. It means that the ring is not applied to that group, rather than that group being blocked.

Reference:

https://docs.microsoft.com/en-us/windows/deployment/update/waas-wufb-intune

https://allthingscloud.blog/configure-windows-update-business-using-microsoft-intune/

HOTSPOT

You have 200 computers that run Windows 10. The computers are joined to Microsoft Azure Active Directory (Azure AD) and enrolled in Microsoft Intune.

You need to configure an Intune device configuration profile to meet the following requirements:

Prevent Microsoft Office applications from launching child processes.

Block users from transferring files over FTP.

Which two settings should you configure in Endpoint protection? To answer, select the appropriate settings in the answer area.

NOTE: Each correct selection is worth one point.


Question 114
Correct answer: Question 114

Explanation:

Reference:

https://docs.microsoft.com/en-us/intune/endpoint-protection-windows-10

You have a Microsoft 365 tenant that contains the objects shown in the following table.

You are creating a compliance policy named Compliance1.

Which objects can you specify in Compliance1 as additional recipients of noncompliance notifications?

A.

Group3 and Group4 only

A.

Group3 and Group4 only

Answers
B.

Group3, Group4, and Admin1 only

B.

Group3, Group4, and Admin1 only

Answers
C.

Group1, Group2, and Group3 only

C.

Group1, Group2, and Group3 only

Answers
D.

Group1, Group2, Group3, and Group4 only

D.

Group1, Group2, Group3, and Group4 only

Answers
E.

Group1, Group2, Group3, Group4, and Admin1

E.

Group1, Group2, Group3, Group4, and Admin1

Answers
Suggested answer: C

Explanation:

Reference:

https://www.ravenswoodtechnology.com/microsoft-intune-compliance-notifications/

https://docs.microsoft.com/en-us/microsoft-365/admin/create-groups/compare-groups?view=o365-worldwide

HOTSPOT

You have an Azure Active Directory (Azure AD) tenant named contoso.com that contains a user named User1. User1 has a user principal name (UPN) of user1 @contoso.com.

You join a Windows 10 device named Client1 to contoso.com.

You need to add User1 to the local Administrators group of Client1.

How should you complete the command? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.


Question 116
Correct answer: Question 116

You have a Microsoft 365 subscription.

You need provide a user the ability to disable Security defaults and principle of least privilege.

Which role should you assign to the user?

A.

Global Administrator

A.

Global Administrator

Answers
B.

Conditional Access Administrator

B.

Conditional Access Administrator

Answers
C.

Security Administrator

C.

Security Administrator

Answers
D.

Intune Administrator

D.

Intune Administrator

Answers
Suggested answer: B

Explanation:

To enable or disable security defaults in your directory, sign in to the Azure portal as a security administrator, Conditional Access administrator, or global administrator.

Note: Conditional Access Administrator

Users with this role have the ability to manage Azure Active Directory Conditional Access settings.

Reference: https://docs.microsoft.com/en-us/azure/active-directory/fundamentals/conceptfundamentals-security-defaults

HOTSPOT

In Microsoft Intune, you have the device compliance policies shown in the following table.

The Intune compliance policy settings are configured as shown in the following exhibit.

On June 1, you enroll Windows 10 devices in Intune as shown in the following table.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.


Question 118
Correct answer: Question 118

Explanation:

Device 1 is Windows 10 - and policy 1 is for Windows 8. Default compliance for devices without a policy is not compliant so first 2 questions are NO.

Then the third device has 2 policies, the first one is compliant and the second policy is not compliant but the device is not marked as non-compliant due to the fact that mark device as non-compliant is set to 10 days. This means that the machine will be compliant until june 10th.

Source:

Mark device non-compliant: By default, this action is set for each compliance policy and has a schedule of zero (0) days, marking devices as noncompliant immediately.

When you change the default schedule, you provide a grace period in which a user can remediate issues or become compliant without being marked as non-compliant.

This action is supported on all platforms supported by Intune.

https://docs.microsoft.com/en-us/mem/intune/protect/actions-for-noncompliance

You have a Microsoft 365 subscription that contains a user named User1 and uses Microsoft Intune Suite.

You use Microsoft Intune to manage devices that run Windows 11.

User1 provides remote support for 75 devices in the marketing department.

You need to add User1 to the Remote Desktop Users group on each marketing department device.

What should you configure?

A.

an app configuration policy

A.

an app configuration policy

Answers
B.

a device compliance policy

B.

a device compliance policy

Answers
C.

an account protection policy

C.

an account protection policy

Answers
D.

a device configuration profile

D.

a device configuration profile

Answers
Suggested answer: D

You have a Microsoft 365 subscription that uses Microsoft Intune Suite.

You use Microsoft Intune to deploy and manage Windows devices.

You have 100 devices from users that left your company.

You need to repurpose the devices for new users by removing all the data and applications installed by the previous users. The solution must minimize administrative effort.

What should you do?

A.

Deploy a new configuration profile to the devices.

A.

Deploy a new configuration profile to the devices.

Answers
B.

Perform a Windows Autopilot reset on the devices.

B.

Perform a Windows Autopilot reset on the devices.

Answers
C.

Perform an in-place upgrade on the devices.

C.

Perform an in-place upgrade on the devices.

Answers
D.

Perform a clean installation of Windows 11 on the devices.

D.

Perform a clean installation of Windows 11 on the devices.

Answers
Suggested answer: B
Total 301 questions
Go to page: of 31