MS-100 Exam - Microsoft 365 Identity and Services

certleader.com

MS-100 Exam Dumps for Microsoft certification, Real Success Guaranteed with Updated MS-100 Exam Questions. 100% PASS MS-100 Microsoft 365 Identity and Services exam Today!

Free MS-100 Demo Online For Microsoft Certifitcation:

NEW QUESTION 1
You are evaluating the required processes for Project1.
You need to recommend which DNS record must be created before you begin the project. Which DNS record should you recommend?

  • A. mail exchanger (MX)
  • B. alias (CNAME)
  • C. host (A)
  • D. host (AAA)

Answer: A

NEW QUESTION 2
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your network contains an Active Directory forest. You deploy Microsoft 365.
You plan to implement directory synchronization.
You need to recommend a security solution for the synchronized identities. The solution must meet the following requirements:
MS-100 dumps exhibit Users must be able to authenticate successfully to Microsoft 365 services if Active Directory becomes unavailable.
MS-100 dumps exhibit Users passwords must be 10 characters or more.
Solution: Implement password hash synchronization and configure password protection in the Azure AD tenant.
Does this meet the goal?

  • A. Yes
  • B. No

Answer: B

NEW QUESTION 3
Your network contains an on-premises Active Directory domain that is synced to Microsoft Azure Active Directory (Azure AD) as shown in the following exhibit.
MS-100 dumps exhibit
An on-premises Active Directory user account named Allan Yoo is synchronized to Azure AD. You view Allan’s account from Microsoft 365 and notice that his username is set to Allan@contoso.onmicrosoft.com.
For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.
MS-100 dumps exhibit

    Answer:

    Explanation: MS-100 dumps exhibit

    NEW QUESTION 4
    Your network contains two Active Directory forests. Each forest contains two domains. All client computers run Windows 10 and are domain-joined.
    You plan to configure Hybrid Azure AD join for the computers. You create Microsoft Azure Active Directory (Azure AD) tenant.
    You need to ensure that the computers can discover the Azure AD tenant. What should you create?

    • A. a new computer account for each computer
    • B. a new service connection point (SCP) for each domain
    • C. a new trust relationship for each forest
    • D. a new service connection point (SCP) for each forest

    Answer: D

    Explanation: References:
    https://docs.microsoft.com/en-us/azure/active-directory/devices/hybrid-azuread-join-manual

    NEW QUESTION 5
    You have a Microsoft 365 subscription.
    Your company deploys an Active Directory Federation Services (AD FS) solution. You need to configure the environment to audit AD FS user authentication.
    Which two actions should you perform? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.

    • A. From all the AD FS servers, run audltpol.exe.
    • B. From all the domain controllers, run the set-AdminAuditLogConfig cmdlet and specify the –LogiLevel parameter.
    • C. On a domain controller install Azure AD Connect Health for AD DS.
    • D. From the Azure AO Connect server, run the Register-AzureADCConnectHealthSyncAgent cmdlet.
    • E. On an server, install Azure AD Connect Health (or AD FS.

    Answer: DE

    NEW QUESTION 6
    Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
    After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
    Your network contains an Active Directory forest. You deploy Microsoft 365.
    You plan to implement directory synchronization.
    You need to recommend a security solution for the synchronized identities. The solution must meet the following requirements:
    MS-100 dumps exhibit Users must be able to authenticate successfully to Microsoft 365 services if Active Directory becomes unavailable.
    MS-100 dumps exhibit Users passwords must be 10 characters or more.
    Solution: Implement pass-through authentication and configure password protection in the Azure AD tenant.
    Does this meet the goal?

    • A. Yes
    • B. No

    Answer: B

    NEW QUESTION 7
    You are configuring an enterprise application named TestApp in Microsoft Azure as shown in the following exhibit.
    MS-100 dumps exhibit
    Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
    NOTE: Each correct selection is worth one point.
    MS-100 dumps exhibit

      Answer:

      Explanation: References:
      https://docs.microsoft.com/en-us/azure/active-directory/manage-apps/application-proxy-configure-hard-coded-li

      NEW QUESTION 8
      Your company has a Microsoft 365 subscription. All identities are managed in the cloud. The company purchases a new domain name.
      You need to ensure that all new mailboxes use the new domain as their primary email address. What are two possible ways to achieve the goal? Each correct answer presents a complete solution. NOTE: Each correct selection is worth one point.

      • A. From Microsoft Exchange Online PowerShell, run the Update-EmailAddressPolicy policy command.
      • B. From the Exchange admin center, click mail flow, and then configure the email address policies.
      • C. From the Microsoft 365 admin center, click Setup, and then configure the domains.
      • D. From Microsoft Exchange Online PowerShell, run the Set-EmailAddressPolicy policy command.
      • E. From the Azure Active Directory admin center, configure the custom domain names.

      Answer: BD

      NEW QUESTION 9
      Your network contains an Active Directory domain named contoso.com. All users authenticate by using a third-party authentication solution.
      You purchase Microsoft 365 and plan to implement several Microsoft 365 services. You need to recommend an identity strategy that meets the following requirements:
      MS-100 dumps exhibit Provides seamless SSO
      MS-100 dumps exhibit Minimizes the number of additional servers required to support the solution
      MS-100 dumps exhibit Stores the passwords of all the users in Microsoft Azure Active Directory (Azure AD)
      MS-100 dumps exhibit Ensures that all the users authenticate to Microsoft 365 by using their on-premises user account You are evaluating the implementation of federation.
      Which two requirements are met by using federation? Each correct answer presents a complete solution. NOTE: Each correct selection is worth one point.

      • A. minimizes the number of additional servers required to support the solution
      • B. provides seamless SSO
      • C. stores the passwords of all the users in Azure AD
      • D. ensures that all the users authenticate to Microsoft 365 by using their on-premises user account.

      Answer: BD

      NEW QUESTION 10
      You have a Microsoft 365 Enterprise subscription.
      You create a password policy as shown in the following exhibit.
      MS-100 dumps exhibit
      Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
      NOTE: Each correct selection is worth one point.
      MS-100 dumps exhibit

        Answer:

        Explanation: References:
        https://docs.microsoft.com/en-us/azure/active-directory/authentication/concept-password-ban-bad

        NEW QUESTION 11
        Your network contains an Active Directory forest. The forest contains two domains named contoso.com and adatum.com.
        Your company recently purchased a Microsoft 365 subscription. You deploy a federated identity solution to the environment.
        You use the following command to configure contoso.com for federation. Convert-MsolDomaintoFederated –DomainName contoso.com
        In the Microsoft 365 tenant, an administrator adds and verifies the adatum.com domain name. You need to configure the adatum.com Active Directory domain for federated authentication.
        Which two actions should you perform before you run the Azure AD Connect wizard? Each correct answer presents part of the solution.
        NOTE: Each correct selection is worth one point.

        • A. From Windows PowerShell, run the Convert-MsolDomaintoFederated–DomainName contoso.com –SupportMultipleDomain command.
        • B. From Windows PowerShell, run the New-MsolFederatedDomain–SupportMultipleDomain -DomainName contoso.com command.
        • C. From Windows PowerShell, run the New-MsolFederatedDomain-DomainName adatum.com command.
        • D. From Windows PowerShell, run the Update-MSOLFederatedDomain–DomainName contoso.com –SupportMultipleDomain command.
        • E. From the federation server, remove the Microsoft Office 365 relying party trust.

        Answer: AE

        NEW QUESTION 12
        You company has a Microsoft Azure Active Directory (Azure AD) tenant that contains the users shown in the following table.
        The tenant includes a security group named Admin1. Admin1 will be used to manage administrative accounts. You need to identify which users can perform the following administrative tasks:
        MS-100 dumps exhibit Create guest user accounts.
        MS-100 dumps exhibit Add User3 to Admin1.
        Which users should you identify for each task? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
        MS-100 dumps exhibit

          Answer:

          Explanation: References:
          https://docs.microsoft.com/en-us/azure/active-directory/users-groups-roles/directory-assign-admin-roles

          NEW QUESTION 13
          You have several Microsoft SharePoint document libraries in your on-premises environment. You have a Microsoft 365 tenant that has directory synchronization implemented.
          You plan to move all the document libraries to SharePoint Online.
          You need to recommend a migration strategy for the document libraries.
          Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
          MS-100 dumps exhibit

            Answer:

            Explanation: References:
            https://docs.microsoft.com/en-us/sharepointmigration/how-to-use-the-sharepoint-migration-tool

            NEW QUESTION 14
            You create a Microsoft 365 Enterprise subscription. You assign licenses for all products to all users.
            You need to ensure that all Microsoft Office 365 ProPlus installations occur from a network share. The solution must prevent the users from installing Office 365 ProPlus from the Internet.
            Which three actions should you perform? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.

            • A. From your computer, run setup.exe /download downloadconfig.xml.
            • B. Create an XML download file.
            • C. From the Microsoft 365 admin center, deactivate the Office 365 licenses for all the users.
            • D. From each client computer, run setup.exe /configure installconfig.xml.
            • E. From the Microsoft 365 admin center, configure the Software download settings.

            Answer: BDE

            Explanation: References:
            https://docs.microsoft.com/en-us/deployoffice/overview-of-the-office-2021-deployment-tool#download-the-inst

            NEW QUESTION 15
            You have a Microsoft 365 subscription that contains a Microsoft Azure Active Directory (Azure AD) tenant named contoso.com. The tenant includes a user named User1
            You enable Azure AD Identity Protection.
            You need to ensure that User1 can review the list in Azure AD Identity Protection of users nagged for risk. The solution must use the principle of least privilege.
            To which role should you add User1?

            • A. Security reader
            • B. Compliance administrator
            • C. Reports reader
            • D. Global administrator

            Answer: A

            NEW QUESTION 16
            Your network contains an Active Directory domain and a Microsoft Azure Active Directory (Azure AD) tenant.
            You implement directory synchronization for all 10.000 users in the organization. You automate the creation of 100 new user accounts.
            You need to ensure that the new user accounts synchronize to Azure AD as quickly as possible Which command should you run? To answer, select the appropriate options in the answer area. NOTE: Each correct select ion is worth one point.
            MS-100 dumps exhibit

              Answer:

              Explanation: MS-100 dumps exhibit

              Thanks for reading the newest MS-100 exam dumps! We recommend you to try the PREMIUM Dumpscollection MS-100 dumps in VCE and PDF here: http://www.dumpscollection.net/dumps/MS-100/ (57 Q&As Dumps)