Microsoft Microsoft Certifications MD-101 Questions & Answers
Question 141:
DRAG DROP
You have an Azure Active Directory (Azure AD) tenant that syncs to an on-premises Active Directory domain.
The tenant contains computers that run Windows 10. The computers are hybrid Azure AD joined and enrolled in Microsoft Intune. The Microsoft Office settings on the computers are configured by using a Group Policy Object (GPO).
You need to migrate the GPO to Intune.
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
Select and Place:
Correct Answer:
Step 1: Create a configuration profle
Create the template
1.
Sign in to the Microsoft Endpoint Manager admin center.
You need to create a provisioning package to configure the computers to meet the following requirements:
1.
Run an interactive app.
2.
Automatically sign in by using a local user account.
3.
Prevent users from accessing the desktop and running other applications.
Which four actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
Select and Place:
Correct Answer:
Step 1: Install Windows Configuration Designer
On devices running Windows client, you can install the Windows Configuration Designer app from the Microsoft Store.
Step 2: Run the Provision kiosk devices project.
A single-app kiosk uses the Assigned Access feature to run a single app above the lock screen. When the kiosk account signs in, the app is launched automatically. The person using the kiosk cannot do anything on the device outside of the
kiosk app.
Step 3: Copy the provisioning package to each computer.
Provisioning packages can be applied to client devices during the first-run experience (out-of-box experience or "OOBE") and after ("runtime").
Step 4: Apply the provisioning package.
Apply the provisioning package to a device running Windows client.
You plan to deploy Windows 10 to the computers by performing a wipe and load installation.
You need to recommend a method to retain the user settings and the user data.
Which three actions should you recommend be performed in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
Select and Place:
Correct Answer:
Step 1: Run scanstate.exe
1.
Collect files and settings from the source computer.
2.
Back up the source computer.
3.
Close all applications.
4.
Run the ScanState command on the source computer to collect files and settings.
5.
Etc.
Step 2: Deploy Windows 10 Prepare the destination computer and restore files and settings.
Install the operating system on the destination computer.
Install all applications that were on the source computer. Although it is not always required, we recommend installing all applications on the destination computer before you restore the user state. This makes sure that migrated settings are
preserved.
Step 3: Run loadstate.exe Run the LoadState command on the destination computer. Specify the same set of .xml files that you specified when you used the ScanState command.
Your company has a Microsoft Azure Active Directory (Azure AD) tenant.
The company uses Microsoft Intune to manage iOS, Android, and Windows 10 devices.
The company plans to purchase 1,000 iOS devices. Each device will be assigned to a specific user.
You need to ensure that the new iOS devices are enrolled automatically in Intune when the assigned user signs in for the first time.
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
Select and Place:
Correct Answer:
Step 1: Add a Device Enrollment (DEP) token.
Get an Apple Automated Device Enrollment token.
Before you can enroll iOS/iPadOS devices with ADE, you need an ADE token (.p7m) file from Apple. This token lets Intune sync information about ADE devices that your corporation owns. It also allows Intune to upload enrollment profiles to
Apple and to assign devices to those profiles.
Step 2: Create an Apple enrollment profile.
You can create an enrollment profile for ADE devices. A device enrollment profile defines the settings applied to a group of devices during enrollment. There's a limit of 1,000 enrollment profiles per ADE token.
Step 3: Assign an enrollment profile
Assign an enrollment profile to devices.
Before devices can be enrolled, you need to assign an enrollment program profile to them.
Your company uses Microsoft Intune. You have a Microsoft Store for Business account.
You need to ensure that you can deploy Microsoft Store for Business apps by using Intune.
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
You use the Antimalware Assessment solution in Microsoft Azure Log Analytics.
From the Protection Status dashboard, you discover the computers shown in the following table.
You verify that both computers are connected to the network and running.
What is a possible cause of the issue on each computer? To answer, drag the appropriate causes to the correct computers. Each cause may be used once, more than once, or not at all. You may need to drag the split bar between panes or
Your company has a computer named Computer1 that runs Windows 10.
Computer1 was used by a user who left the company.
You plan to repurpose Computer1 and assign the computer to a new user. You need to redeploy Computer1 by using Windows AutoPilot.
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
Select and Place:
Correct Answer:
Step 1: Generate a CSV file that contains the computer information
You can perform Windows Autopilot device registration within your organization by manually collecting the hardware identity of devices (hardware hashes) and uploading this information in a comma-separated-values (CSV) file.
Step 2: Upload the file by using Microsoft Intune
By default, Intune only applies this profile to Windows Autopilot devices. Yes, to convert all targeted, non-auto pilot devices to Autopilot so that they can receive the profile the next time they perform a factory reset.
Step 3: Reset the computer Windows Autopilot Reset takes the device back to a business-ready state, allowing the next user to sign in and get productive quickly and simply. Specifically, Windows Autopilot Reset:
Removes personal files, apps, and settings.
Reapplies a device's original settings.
Sets the region, language, and keyboard to the original values.
Maintains the device's identity connection to Azure AD.
Maintains the device's management connection to Intune.
Your network contains an Active Directory domain that is synced to Microsoft Azure Active Directory (Azure AD). All computers are joined to the domain and registered to Azure AD.
The network contains a Microsoft System Center Configuration Manager (Current Branch) deployment that is configured for co-management with Microsoft Intune.
All the computers in the finance department are managed by using Configuration Manager. All the computers in the marketing department are managed by using Intune.
You install new computers for the users in the marketing department by using the Microsoft Deployment Toolkit (MDT).
You purchase an application named App1 that uses an MSI package.
You need to install App1 on the finance department computers and the marketing department computers.
How should you deploy App1 to each department? To answer, drag the appropriate deployment methods to the correct departments. Each deployment method may be used once, more than once, or not at all. You may need to drag the split
bat between panes or scroll to view content.
NOTE: Each correct selection is worth one point.
Select and Place:
Correct Answer:
Box 1: From Endpoint Configuration Manager, add an application
All the computers in the finance department are managed by using Endpoint Configuration Manager.
Distribute the application content.
1.
In the Configuration Manager console, choose Software Library.
2.
In the Software Library workspace, expand Applications. Then, in the list of applications, select the application.
3.
Etc.
Box 2: From Intune, add a line-of-business app
All the computers in the marketing department are managed by using Intune.
Before you can configure, assign, protect, or monitor apps, you must add them to Microsoft Intune.
You can add an app in Microsoft Intune by selecting Apps > All apps > Add. The Select app type pane is displayed and allows you to select the App type.
Note: An LOB app is one that you add from an app installation file.
You need to meet the technical requirements for the iOS devices.
Which object should you create in Intune?
A. A compliance policy
B. An app protection policy
C. A Deployment profile
D. A device configuration profile
Correct Answer: D
Scenario: Technical requirements include: Block iOS devices from sending diagnostic and usage telemetry data. Intune includes device restriction policies that help administrators control Android, iOS, macOS, and Windows devices. These restrictions let you control a wide range of settings and features to protect your organization's resources. For example, administrators can: Allow or block the device camera Control access to Google Play, app stores, viewing documents, and gaming Block built-in apps, or create a list of apps that allowed or prohibited Allow or prevent backing up files to cloud and storage accounts Set a minimum password length, and block simple passwords Reference: https://docs.microsoft.com/en-us/intune/device-restrictions-configure
Question 150:
You need to ensure that computer objects can be created as part of the Windows Autopilot deployment. The solution must meet the technical requirements. To what should you grant the right to create the computer objects?
A. Server2
B. Server1
C. GroupA
D. DC1
Correct Answer: B
Scenario:
The Intune connector for Active Directory is installed on Server1.
Contoso must meet the following technical requirements:
Users in GroupA must be able to deploy new computers.
Administrative effort must be minimized.
Note: To be clear, the entire domain join process will work without any direct connection to the on-premise network and domain controllers. The computer object is created on-premises through the Intune Connector for Active Directory
Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Microsoft exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your MD-101 exam preparations and Microsoft certification application, do not hesitate to visit our Vcedump.com to find your solutions here.