70-346 Exam - Managing Office 365 Identities and Requirements

certleader.com

Q1. DRAG DROP 

Fabrikam has the Office 365 Enterprise E3 plan. 

You must add the domain name fabrikam.com to the Office 365 tenant. You need to confirm ownership of the domain. 

Which DNS record types should you use? To answer, drag the appropriate DNS record type to the correct location or locations in the answer area. Each DNS record type may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. 

Answer:  

Q2. You plan to deploy an Office 365 tenant to multiple offices around the country. 

You need to modify the users and groups who are authorized to administer the Rights Management service. 

Which Windows PowerShell cmdlet should you run? 

A. Add-MsolGroupMember 

B. Get-AadrmRoleBasedAdministrator 

C. Remove-AadrmRoleBasedAdministrator 

D. Enable-AadrmSuperUserFeature 

Answer:

Q3. You are the Office 365 administrator for your company. You prepare to install Active Directory Federation Services (AD FS). 

You need to open the correct port between the AD FS proxy server and the AD FS federation server. 

Which port should you open? 

A. TCP 80 

B. TCP 135 

C. TCP 389 

D. TCP 443 

E. TCP 636 

F. TCP 1723 

Answer:

Q4. You are the Office 365 administrator for your company. A user named User1 from a partner organization is permitted to sign in and use the Office 365 services. User1 reports that the password expires in ten days. You must set the password to never expire. Changes must NOT impact any other accounts. 

You need to update the password policy for the user. 

Which Windows PowerShell cmdlet should you run? 

A. Set-MsolPasswordPolicy 

B. Set-MsolPartnerlnformation 

C. Set-MsolUser 

D. Set-MsolUserPassword 

Answer:

Explanation:

Reference: 

http://onlinehelp.microsoft.com/en-ca/office365-enterprises/hh534387.aspx 

Q5. You have an Office 365 tenant that uses an Enterprise E3 subscription. You have two 

servers in a perimeter network that have the Active Directory Federation Services (AD FS) 

proxy role service installed. A federation server farm is located behind a firewall. 

You need to ensure that the AD FS proxies can communicate with the federation server 

farm. 

Which two name resolution strategies can you use? Each correct answer presents a 

complete solution. 

A. HOSTS file on the proxy servers 

B. DNS server in the perimeter network 

C. LMHOSTS file on the proxy servers 

D. LMHOSTS file on the federation servers 

E. HOSTS file on the federation servers 

Answer: A,B 

Explanation: Configure Name Resolution for a Federation Server Proxy in a DNS Zone That Serves Only the Perimeter Network So that name resolution can work successfully for a federation server in an Active Directory Federation Services (AD FS) scenario in which one or more Domain Name System (DNS) zones serve only the perimeter network, the following tasks must be completed: 

*The hosts file on the federation server proxy must be updated to add the IP address of afederation server. 

*DNS in the perimeter network must be configured to resolve all client requests for the ADFS host name to the federation server proxy. To do this, you add a host (A) resource record to perimeter DNS for the federation server proxy. 

Reference: Configure Name Resolution for a Federation Server Proxy in a DNS Zone That Serves Only the Perimeter Network 

https://technet.microsoft.com/en-us/library/dd807045.aspx 

Q6. A company deploys an Office 365 tenant in a hybrid configuration with Exchange Server 2013. 

Office 365 users cannot see free/busy information that is published from the on-premises Exchange Server. In addition, Exchange Server users cannot see free/busy information that is published from Office 365. 

You need to troubleshoot why users cannot access free/busy information from both Office 365 and Exchange Server 2013. 

Which tool should you run? 

A. The Hybrid Configuration wizard 

B. The Remote Connectivity Analyzer with the Exchange Server tab selected 

C. The Microsoft Connectivity Analyzer Tool 

D. The Remote Connectivity Analyzer with the Office 365 tab selected 

Answer:

Q7. A company with 75,000 employees has an Office 365 tenant. 

You need to install the Azure Active Directory Synchronization (AAD Sync) tool by using the least amount of administrative effort. 

Which versions of each product should you implement? (Select three) 

Select three. 

A. .Net 3.5 

B. Net 4.0 

C. .Net 4.5 

D. .Net 4.5.1 

E. PowerShell (PS1) 

F. PowerShell (PS2) 

G. PowerShell (PS3) 

H. PowerShell (PS4) 

I. SQL Server Express 

J. SQL Server 2008 

K. SQL Server 2012 

L. SQL Server 2014 

Answer: D,F,L 

Explanation: * The following components need to be installed: 

Net 4.5.1 

PowerShell (PS3 or better is required) 

*Azure AD Sync requires a SQL Server database to store identity data. By default a SQLExpress LocalDB (a light version of SQL Server Express) is installed and the service account for the service is created on the local machine. SQL Server Express has a 10GB size limit that enables you to manage approximately 

100.000 objects. This is fine for the scenario in this question. 

If you need to manager a higher volume of directory objects, you need to point the installation process to a different version of SQL Server..AAD Sync supports all flavors of Microsoft SQL Server from SQL Server 2008 to SQL Server 2014. 

Reference: Install the Azure Active Directory Sync Service 

https://msdn.microsoft.com/en-us/library/azure/dn757602.aspx 

Q8. You are the Office 365 administrator for your company.

Users report that they have received significantly more spam messages over the past 

month than they normally receive. 

You need to analyze trends for the email messages received over the past 60 days. 

From the Office 365 admin center, what should you view? 

A. The Mail protection reports 

B. The Mailbox content search and hold report 

C. Messages on the Message center page 

D. The Office 365 Malware detections in sent mail report 

Answer:

Q9. A company has an Office 365 tenant and uses Exchange Online and Skype for Business Online. User1 is scheduling a Skype meeting with User2. User 1 is not able to see availability information for User2. 

You need to troubleshoot the issue. 

What should you use?

A. Microsoft Lync Connectivity Analyzer Tool 

B. OCSLogger 

C. ClsController 

D. Remote Connectivity Analyzer 

Answer:

Explanation: 

Centralized Logging Service (CLS) is a new feature in Lync Server 2013. It provides a mechanism to enable/disable logging across all Lync servers in a deployment from a single interface and to search the resulting logs from the same interface. 

You specify what should be logged based on the scenario you want to investigate. The scenarios supported are AlwaysOn, MediaConnectivity, ApplicationSharing, AudioVideoConferencingIssue, HybridVoice, IncomingAndOutgoingCall, VoiceMail, IMAndPresence, AddressBook, DeviceUpdate, LYSSAndUCS, CLS, SP, WAC, UserReplicator, HostedMigration, MonitoringAndArchiving, LILRLegacy, LILRLYSS, MeetingJoin, RGS, CPS, XMPP and CAA. 

Reference: Centralized Logging Service in Skype for Business 2015 

https://technet.microsoft.com/en-us/library/jj688145.aspx 

Q10. A company has an Office 365 tenant. You plan to distribute the Office 365 ProPlus client to users. 

The client machines do not normally have Internet access. 

You need to activate the Office 365 ProPlus installations and ensure that the licenses remain active. 

What should you do? 

A. Connect the client computer to the Internet once to activate the Office 365 ProPlus client, and once every 90 days after that. 

B. Connect the client computer to the Internet once to activate the Office 365 ProPlus client, and once every 30 days after that. 

C. Connect the client computer to the Internet only once to activate the Office 365 ProPlus client. 

D. Connect the client computer to the Internet once to activate the Office 365 ProPlus client, and once every 180 days after that. 

E. Connect the client computer to the Internet once to activate the Office 365 ProPlus client, and once every 365 days after that. 

Answer:

Explanation: 

After you've verified the user is assigned a license, you should check that Office 365 ProPlus is activated. Activation usually occurs during initial installation. The computer has to connect to the Internet at least once every 30 days for Office 365 ProPlus to remain activated. 

Reference: Troubleshooting tips for Office 365 ProPlus 

https://technet.microsoft.com/en-us/library/gg702620.aspx