MD-101 Dumps To Pass Microsoft Exam in 24 Hours - TestKingFree [Q78-Q102]

Share

MD-101 Dumps To Pass Microsoft Exam in 24 Hours - TestKingFree

Buy Latest MD-101 Exam Q&A PDF - One Year Free Update

NEW QUESTION # 78
Note: This question is part of a series of questions that present the same scenario. Each question in the
series contains a unique solution that might meet the stated goals. Some question sets might have more
than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these
questions will not appear in the review screen.
You have a computer named Computer1 that runs Windows 10.
You save a provisioning package named Package1 to a folder named C:\Folder1.
You need to apply Package1 to Computer1.
Solution: From the Settings app, you select Access work or school, and then you select Add or remove a
provisioning package.
Does this meet the goal?

  • A. Yes
  • B. No

Answer: A

Explanation:
Explanation
To install a provisioning package, navigate to Settings > Accounts > Access work or school > Add or remove
a provisioning package > Add a package, and select the package to install.
Reference:
https://docs.microsoft.com/en-us/windows/configuration/provisioning-packages/provisioning-apply-package


NEW QUESTION # 79
You have an Azure Active Directory (Azure AD) tenant named contoso.com that contains a user named
User1. User1 has a user principal name (UPN) of user1 @contoso.com.
You join a Windows 10 device named Client1 to contoso.com.
You need to add User1 to the local Administrators group of Client1.
How should you complete the command? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation
Box 1: net localgroup
Add user to group from command line (CMD)
Windows provides command line utilities to manager user groups. In this post, learn how to use the command
net localgroup to add user to a group from command prompt'
For example to add a user 'John' to administrators group, we can run the below command.
net localgroup administrators John /add
Box 2: Contoso
The domain of the user is Contoso.
Reference: https://www.windows-commandline.com/add-user-to-group-from-command-line/


NEW QUESTION # 80
Your company has several Windows 10 devices that are enrolled in Microsoft Inline.
You deploy a new computer named Computer1 that runs Windows 10 and is in a workgroup.
You need to enroll Computer1 in Intune.
Solution: From Computer1, you sign in to https://portal.azure.com and use the Windows enrollment blade.
Does this meet the goal?

  • A. No
  • B. Yes

Answer: A

Explanation:
Use MDM enrolment.
MDM only enrollment lets users enroll an existing Workgroup, Active Directory, or Azure Active directory joined PC into Intune. Users enroll from Settings on the existing Windows PC.
Reference:
https://docs.microsoft.com/en-us/mem/intune/enrollment/windows-enrollment-methods


NEW QUESTION # 81
You are evaluating which devices are compliant.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation


NEW QUESTION # 82
You network contains an Active Directory domain. The domain contains 200 computers that run Windows
8.1. You have a Microsoft Azure subscription.
You plan to upgrade the computers to Windows 10.
You need to generate an Upgrade Readiness report for the computers.
What should you do? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation


NEW QUESTION # 83
You have a Microsoft 365 subscription.
You need to configure access to Microsoft Office 365 for unmanaged devices. The solution must meet the following requirements:
* Allow only the Microsoft Intune Managed Browser to access Office 365 web interfaces.
* Ensure that when users use the Intune Managed Browser to access Office 365 web interfaces, they can only copy data to applications that are managed by the company.
Which two settings should you configure from the Microsoft Intune blade? To answer, select the appropriate settings in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation:
References:
https://docs.microsoft.com/en-us/intune/app-configuration-managed-browser#application-protection-policies-for-protected-browsers


NEW QUESTION # 84
You have a Microsoft Intune subscription.
You create the Windows Autopilot deployment profile-shown in the following exhibit.

Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation

References:
https://docs.microsoft.com/en-us/windows/deployment/windows-autopilot/user-driven


NEW QUESTION # 85
You use the Antimalware Assessment solution in Microsoft Azure Log Analytics.
From the Protection Status dashboard, you discover the computers shown in the following table.

You verify that both computers are connected to the network and running.
What is a possible cause of the issue on each computer? To answer, drag the appropriate causes to the correct computers. Each cause may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Reference:
https://docs.microsoft.com/ga-ie/azure/security-center/security-center-install-endpoint-protection


NEW QUESTION # 86
You are configuring an SSTP VPN.
When you attempt to connect to the VPN, you receive the message shown in the exhibit. (Click the Exhibit tab.)

What should you do to ensure that you can connect to the VPN?

  • A. Change the VPN type
  • B. Generate a computer certificate from the root certification authority (CA)
  • C. Install the root certificate

Answer: B


NEW QUESTION # 87
You need to meet the OOBE requirements for Windows AutoPilot.
Which two settings should you configure from the Azure Active Directory blade? To answer, select the appropriate settings in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Reference:
https://blogs.msdn.microsoft.com/sgern/2018/10/11/intune-intune-and-autopilot-part-3-preparing-your-environment/
https://blogs.msdn.microsoft.com/sgern/2018/11/27/intune-intune-and-autopilot-part-4-enroll-your-first-device/


NEW QUESTION # 88
You have an Azure Active Directory (Azure AD) tenant named Contoso.com contains the device shown in the following table.

All devices contains an app named App1 and are enrolled in Microsoft Intune.
You need to prevent users from copying data from App1 and pasting the data into other apps.
Which type of policy and how policies should you create in intune, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:


NEW QUESTION # 89
You have a Microsoft Azure Active Directory (Azure AD) tenant named contoso.com that contains the users shown in the following table.

You have a computer named Computer1 that runs Windows 10. Computer1 is in a workgroup and has the local users shown in the following table.

UserA joins Computer1 to Azure AD by using [email protected].
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation
Box 1: No
Users may join devices to Azure AD: This setting enables you to select the users who can register their devices as Azure AD joined devices. The default is All.
Box 2: Yes
[email protected] is an Azure AD security administrator
Security Administrator
Users with this role have permissions to manage security-related features in the Microsoft 365 Defender portal, Azure Active Directory Identity Protection, Azure Active Directory Authentication, Azure Information Protection, and Office 365 Security & Compliance Center.
This includes:
* Microsoft Defender for Endpoint
Assign roles
Manage machine groups
Configure endpoint threat detection and automated remediation
View, investigate, and respond to alerts
View machines/device inventory
Box 3: No
[email protected] is an Azure AD Cloud device administrator.
Cloud Device Administrator
Users in this role can enable, disable, and delete devices in Azure AD and read Windows 10 BitLocker keys (if present) in the Azure portal. The role does not grant permissions to manage any other properties on the device.
Reference:
https://docs.microsoft.com/en-us/azure/active-directory/devices/device-management-azure-portal#configure-dev
https://docs.microsoft.com/en-us/azure/active-directory/roles/permissions-reference#security-administrator


NEW QUESTION # 90
Your network contains an Active Directory domain named contoso.com.
You create a provisioning package named Package1 as shown in the following exhibit.

What is the maximum number of devices on which you can run Package1 successfully?

  • A. 0
  • B. 1
  • C. 2
  • D. unlimited

Answer: D


NEW QUESTION # 91
Your company has a Microsoft Azure Active Directory (Azure AD) tenant.
The company uses Microsoft Intune to manage iOS, Android, and Windows 10 devices.
The company plans to purchase 1,000 iOS devices. Each device will be assigned to a specific user.
You need to ensure that the new iOS devices are enrolled automatically in Intune when the assigned user signs in for the first time.
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

Answer:

Explanation:

Explanation

Reference:
https://docs.microsoft.com/en-us/intune/device-enrollment-program-enroll-ios


NEW QUESTION # 92
Note: This question is part of a series of questions that present the same scenario. Each question in the
series contains a unique solution that might meet the stated goals. Some question sets might have more
than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these
questions will not appear in the review screen.
Your company uses Windows Update for Business.
The research department has several computers that have specialized hardware and software installed.
You need to prevent the video drivers from being updated automatically by using Windows Update.
Solution: From the Device Installation and Restrictions settings in a Group Policy object (GPO), you enable
Prevent installation of devices using drivers that match these device setup classes, and then you enter the
device GUID.
Does this meet the goal?

  • A. No
  • B. Yes

Answer: A

Explanation:
Explanation
References:
https://www.stigviewer.com/stig/microsoft_windows_server_2012_member_server/2013-07-25/finding/WN12-C


NEW QUESTION # 93
You have a Microsoft Deployment Toolkit (MDT) deployment share named Share1.
You add Windows 10 images to Share1 as shown in the following table.

Which images can be used in the Standard Client Task Sequence, and which images can be used in the Standard Client Upgrade Task Sequence?
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation
Box 1: Image1, Image2, Image3, Image4, and Image5.
All images.
Standard Client Task Sequence
Standard Client task sequence. The most frequently used task sequence. Used for creating reference images and for deploying clients in production.
Box 2: Image1, Image2, Image3, and Image4 only.
Exclude image5 with applications.
Standard Client Upgrade Task Sequence
Standard Client Upgrade task sequence. A simple task sequence template used to perform an in-place upgrade from Windows 7, Windows 8, or Windows 8.1 directly to Windows 10, automatically preserving existing data, settings, applications, and drivers.
Reference:
https://docs.microsoft.com/en-us/windows/deployment/deploy-windows-mdt/get-started-with-the-microsoft-depl


NEW QUESTION # 94
Your company uses Microsoft Intune to manage Windows 10, Android, and iOS devices.
Several users purchase new iPads and Android devices.
You need to tell the users how to enroll their device in Intune.
What should you instruct the users to use for each device? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation:
The Intune Company Portal app is used to enroll Android, iOS, macOS, and Windows devices References:
https://docs.microsoft.com/en-us/intune-user-help/enroll-device-android-company-portal
https://docs.microsoft.com/en-us/intune-user-help/enroll-your-device-in-intune-ios
https://docs.microsoft.com/en-us/intune-user-help/enroll-your-device-in-intune-macos-cp


NEW QUESTION # 95
You have devices enrolled in Microsoft Intune as shown in the following table.

You create an app protection policy named Policy1 that has the following settings:
* Platform: Windows 10
* Protected apps: App1
* Exempt apps: App2
* Network boundary: Cloud resources, IPv4 ranges
You assign Policy1 to Group1 and Group2. You exclude Group3 from Policy1.
Which devices will apply Policy1?

  • A. Device1, Device4, and Device5 only
  • B. Device1, Device2, Device4, and Device5
  • C. Device4 and Device5 only
  • D. Device1, Device3, Device4 and Device5

Answer: B

Explanation:
Explanation
Policy1 is applied to all devices in Group1 and Group2. It is not applied to any devices in Group3, unless those devices are also members of Group1 or Group2.
Note: The phrase "You exclude Group3 from Policy1" is misleading. It means that Policy1 is not applied to Group3, rather than Group3 being blocked.


NEW QUESTION # 96
You use the Microsoft Deployment Toolkit (MDT) to deploy Windows 10.
You create a new task sequence by using the Standard Client Task Sequence template to deploy Windows 10 Enterprise to new computers. The computers have a single hard disk.
You need to modify the task sequence to create a system volume and a data volume.
Which phase should you modify in the task sequence?

  • A. Preinstall
  • B. Postinstall
  • C. State Restore
  • D. Initialization

Answer: A

Explanation:
Reference:
https://www.prajwaldesai.com/create-extra-partition-in-mdt/


NEW QUESTION # 97
You need to recommend a solution to meet the device management requirements.
What should you include in the recommendation? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation

Reference:
https://github.com/MicrosoftDocs/IntuneDocs/blob/master/intune/app-protection-policy.md
https://docs.microsoft.com/en-us/azure/information-protection/configure-usage-rights#do-not-forward-option-for


NEW QUESTION # 98
You need to recommend a solution to meet the device management requirements.
What should you include in the recommendation? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Reference:
https://github.com/MicrosoftDocs/IntuneDocs/blob/master/intune/app-protection-policy.md
https://docs.microsoft.com/en-us/azure/information-protection/configure-usage-rights#do-not-forward-option-for-emails


NEW QUESTION # 99
Your network contains an on-premises Active Directory domain that contains the locations shown in the
following table.

In Microsoft Intune, you enroll the Windows 10 devices shown in the following table.

You have a Delivery Optimization device configuration profile applied to all the devices. The profile is
configured as shown in the following exhibit.

From which devices can Device1 and Device2 get updates? To answer, select the appropriate options in the
answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation
Table Description automatically generated

Reference:
https://docs.microsoft.com/en-us/mem/intune/configuration/delivery-optimization-settings
https://docs.microsoft.com/en-us/windows/deployment/update/waas-delivery-optimization-reference#select-the-s


NEW QUESTION # 100
Your company has a Microsoft Azure Active Directory (Azure AD) tenant named contoso.com. All users have computers that run Windows 10. The computers are joined to Azure AD and managed by using Microsoft Intune.
You need to ensure that you can centrally monitor the computers by using Windows Analytics.
What should you create in Intune?

  • A. a device compliance policy
  • B. an update policy
  • C. a device configuration profile
  • D. a conditional access policy

Answer: C

Explanation:
References:
https://www.scconfigmgr.com/2019/03/27/windows-analytics-onboarding-with-intune/


NEW QUESTION # 101
Your network contains an Active Directory domain named constoso.com that is synced to Microsoft Azure Active Directory (Azure AD). All computers are enrolled in Microsoft Intune.
The domain contains the computers shown in the following table.

You are evaluating which Intune actions you can use to reset the computers to run Windows 10 Enterprise with the latest update.
Which computers can you reset by using each action? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation

Reference:
https://docs.microsoft.com/en-us/intune/device-fresh-start
https://docs.microsoft.com/en-us/intune/devices-wipe


NEW QUESTION # 102
......


Prior Knowledge Required

Those planning to take MD-101 don’t need to meet any mandatory prerequisites but still must be able to set up, implement, protect, and supervise client apps & devices in a business setting. They also have to know how to work efficiently with access, policies, applications, updates, and identity. Furthermore, those sitting for this test should be excellent at setting up, implementing, and monitoring Windows 10 gadgets, as well as non-Windows technologies and devices. Familiarity with Microsoft 365 workloads is required too.

 

Download the Latest MD-101 Dump - 2023 MD-101 Exam Question Bank: https://www.testkingfree.com/Microsoft/MD-101-practice-exam-dumps.html

Latest Microsoft MD-101 Certification Practice Test Questions: https://drive.google.com/open?id=1Qazmfu5-BEIsqgkUPRa7v4LMjmfXebim