70-346 Exam - Managing Office 365 Identities and Requirements

certleader.com

Q1. Your company has 100 user mailboxes. The company purchases a subscription to Office 365 for professionals and small businesses. You need to enable the Litigation Hold feature for each mailbox. 

What should you do first? 

A. Purchase a subscription to Office 365 for midsize business and enterprises. 

B. Enable audit logging for all of the mailboxes. 

C. Modify the default retention policy. 

D. Create a service request. 

Answer:

Q2. HOTSPOT 

A company deploys an Office 365 tenant. 

You prepare to use the bulk add tool to add users to Office 365. 

You need to prepare a file to use with the bulk add tool. 

Which fields must you include in the file? To answer, drag the appropriate response to each field. Each response may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.

Answer:  

Q3. A company has an Office 365 tenant. 

You must retrieve mailbox diagnostic data. 

You need to provide a report with this data for all users. 

Which report solution should you choose? 

A. Office 365 admin center 

B. downloadable spreadsheet 

C. reporting Windows PowerShell cmdlets 

D. REST reporting web service 

Answer:

Explanation: The Office 365 Reporting web service enables developers to integrate 

information on email and spam, antivirus activity, compliance status, and Lync Online 

activities into their custom service reporting applications and web portals. 

Incorrect: 

Not A: Office 365 admin center provide predefined charts and lists reports. 

Not B: Detailed, flexible analysis of historical and live service data, for example in Microsoft 

Excel-based score-cards. 

Not C: reporting Windows PowerShell cmdlets: Precise data for periodically generated 

reports in script-based IT maintenance tools. 

Reference: Office 365 Reporting web service 

https://msdn.microsoft.com/en-us/library/office/jj984325.aspx 

Q4. DRAG DROP 

Contoso, Ltd. has an Office 365 tenant. The company has two servers named Server1 and Server2 that run Windows 2012 R2 Server. The servers are not joined to the contoso.com domain. Server2 is deployed to the perimeter network. You install Secure Sockets Layer (SSL) certificates on both servers. 

You deploy internal and external firewalls. All firewalls allow HTTPS traffic. 

You must deploy single sign-on (SSO) and Active Directory Federation Services (AD FS). 

You need to install and configure all AD FS components in the environment. 

Which four actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. 

Answer:  

Q5. Your company has an Office 365 subscription. You need to add the label "External" to the subject line of each email message received by your organization from an external sender. 

What should you do? 

A. From the Exchange Control Panel, add a MailTip. 

B. From the Forefront Online Protection Administration Center, set the footer for outbound email. 

C. Run the Enable-InboxRule cmdlet. 

D. From the Exchange Control Panel, run the New Rule wizard. 

Answer:

Explanation: 

Option B also will do if that mentions "Inbound email". But here it says outbound email, so D is the current answer. 

Q6. A company has an Office 365 tenant that has an Enterprise E1 subscription. The company has offices in several different countries. 

You need to restrict Office 365 services for existing users by location. 

Which Windows PowerShell cmdlet should you run? 

A. Set-MsolUser 

B. Redo-MsolProvisionUser 

C. Set-MsolUserLicense 

D. Set-MsolUserPrincipalName 

E. Convert-MsolFederatedUser 

F. Set-MailUser 

G. Set-LinkedUser 

H. New-MsolUser 

Answer:

Explanation: 

The Set-MsolUser cmdlet is used to update a user object. 

Example: The following command sets the location (country) of this user. The country must be a two-letter ISO code. This can be set for synced users as well as managed users. Set-MsolUser -UserPrincipalName user@contoso.com -UsageLocation "CA" 

Note: Some organizations may want to create policies that limit access to Microsoft Office 365 services, depending on where the client resides. Active Directory Federation Services (AD FS) 2.0 provides a way for organizations to configure these types of policies. Office 365 customers using Single Sign-On (SSO) who require these policies can now use client access policy rules to restrict access based on the location of the computer or device that is making the request. Customers using Microsoft Online Services cloud User IDs cannot implement these restrictions at this time. 

Reference: Limiting Access to Office 365 Services Based on the Location of the Client 

https://technet.microsoft.com/en-us/library/hh526961(v=ws.10).aspx 

Reference: Set-MsolUser 

https://msdn.microsoft.com/en-us/library/azure/dn194136.aspx 

Q7. A company has an Office 365 tenant that has an Enterprise E1 subscription. You configure the policies required for self-service password reset. 

You need to ensure that all existing users can perform self-service password resets. 

Which Windows PowerShell cmdlet should you run? 

A. Set-MsolUser 

B. Redo-MsolProvisionUser 

C. Set-MsolUserLicense 

D. Set-MsolUserPrincipalName 

E. Convert-MsolFederatedUser 

F. Set-MailUser 

G. Set-LinkedUser 

H. New-MsolUser 

Answer:

Explanation: 

Self-service password reset with on-premises write-back is a Premium-only feature. 

Example: 

The following command adds the Office 365 for enterprises license to the user. 

Set-MsolUserLicense -UserPrincipalName user@contoso.com -AddLicenses 

"Contoso:ENTERPRISEPACK" 

Note: The Set-MsolUserLicense cmdlet can be used to adjust the licenses for a user. This can include adding a new license, removing a license, updating the license options, or any combination of these actions. 

Reference: Set-MsolUserLicense 

https://msdn.microsoft.com/en-us/library/azure/dn194094.aspx

Q8. DRAG DROP 

You implement Office 365 for an organization. 

You must create the correct DNS entries needed to configure Office 365. 

Which DNS entries should you create? To answer, drag the appropriate DNS record type to the correct purpose. Each DNS record type may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. 

Answer:  

Q9. You are the Office 365 administrator for your company. 

Users report that they cannot sign in to Lync from their mobile devices, but they are able to 

send and receive Lync messages by using their laptop computers. 

You need to troubleshoot the issue. 

What should you do? 

A. From the Office 365 message center, confirm Lync settings. 

B. Use the Microsoft Connectivity Analyzer tool to confirm settings. 

C. Confirm Lync user licenses for the affected users. 

D. From the Lync admin center, verify the external access settings. 

Answer:

Q10. DRAG DROP 

An organization plans to deploy an Office 365 tenant. The company has two servers named SERVER1 and SERVER2. SERVER1 is a member server of the Active Directory forest that you are synchronizing. SERVER2 is a standalone server. Both servers run Windows Server 2012. 

You need to use the Windows Azure Active Directory Sync tool to provision users. 

Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. 

Answer: