Exam Details

  • Exam Code
    :MD-101
  • Exam Name
    :Managing Modern Desktops
  • Certification
    :Microsoft Certifications
  • Vendor
    :Microsoft
  • Total Questions
    :421 Q&As
  • Last Updated
    :Oct 30, 2023

Microsoft Microsoft Certifications MD-101 Questions & Answers

  • Question 251:

    Your network contains an Active Directory domain named contoso.com. The domain contains computers that run Windows 10 and are joined to the domain.

    The domain is synced to Microsoft Azure Active Directory (Azure AD).

    You create an Azure Log Analytics workspace and deploy the Device Health solution.

    You need to enroll the computers in Windows Analytics.

    Which Group Policy setting should you configure?

    A. Specify intranet Microsoft update service location

    B. Allow Telemetry

    C. Configure the Commercial ID

    D. Connected User Experiences and Telemetry

  • Question 252:

    You need to enable Windows Defender Credential Guard on computers that run Windows 10. What should you install on the computers?

    A. Hyper-V

    B. Windows Defender Application Guard

    C. a guarded host

    D. containers

  • Question 253:

    You have 100 devices that run Windows 10 and are joined to Microsoft Azure Active Directory (Azure AD).

    You need to prevent users from joining their home computer to Azure AD.

    What should you do?

    A. From the Device enrollment blade in the Intune admin center, modify the Enrollment restriction settings.

    B. From the Devices blade in the Azure Active Directory admin center, modify the Device settings.

    C. From the Device enrollment blade in the Intune admin center, modify the Device enrollment manages settings.

    D. From the Mobility (MDM and MAM) blade in the Azure Active Directory admin center, modify the Microsoft Intune enrollment settings.

  • Question 254:

    You have a shared computer that runs Windows 10.

    The computer is infected with a virus.

    You discover that a malicious TTF font was used to compromise the computer.

    You need to prevent this type of threat from affecting the computer in the future.

    What should you use?

    A. Windows Defender Exploit Guard

    B. Windows Defender Application Guard

    C. Windows Defender Credential Guard

    D. Windows Defender System Guard

    E. Windows Defender SmartScreen

  • Question 255:

    You have a Microsoft 365 subscription.

    You have 10 computers that run Windows 10 and are enrolled in mobile device management (MDM).

    You need to deploy the Microsoft Office 365 ProPlus suite to all the computers.

    What should you do?

    A. From the Device Management admin center, add an app.

    B. From Microsoft Azure Active Directory (Azure AD), add an app registration.

    C. From Microsoft Azure Active Directory (Azure AD), add an enterprise application.

    D. From the Device Management admin center, create a Windows 10 device profile.

  • Question 256:

    You manage a Microsoft 365 environment that has co-management enabled.

    All computers run Windows 10 and are deployed by using the Microsoft Deployment Toolkit (MDT).

    You need to recommend a solution to deploy Microsoft Office 365 ProPlus to new computers. The latest version must always be installed. The solution must minimize administrative effort.

    What is the best tool to use for the deployment? More than one answer choice may achieve the goal. Select the BEST answer.

    A. Microsoft Intune

    B. Microsoft Deployment Toolkit

    C. Office Deployment Tool (ODT)

    D. a Group Policy object (GPO)

    E. Microsoft System Center Configuration Manager

  • Question 257:

    Your company has a Microsoft 365 subscription.

    All the users in the finance department own personal devices that run iOS or Android. All the devices are enrolled in Microsoft Intune.

    The finance department adds new users each month.

    The company develops a mobile application named App1 for the finance department users.

    You need to ensure that only the finance department users can download App1.

    What should you do first?

    A. Add App1 to Intune.

    B. Add App1 to a Microsoft Deployment Toolkit (MDT) deployment share.

    C. Add App1 to Microsoft Store for Business.

    D. Add App1 to the vendor stores for iOS and Android applications.

  • Question 258:

    You have devices enrolled in Microsoft Intune as shown in the following table.

    You create an app protection policy named Policy1 that has the following settings:

    1.

    Platform: Windows 10

    2.

    Protected apps: App1

    3.

    Exempt apps: App2

    4.

    Network boundary: Cloud resources, IPv4 ranges

    You assign Policy1 to Group1 and Group2. You exclude Group3 from Policy1.

    Which devices will apply Policy1?

    A. Device1, Device2, Device4, and Device5

    B. Device1, Device4, and Device5 only

    C. Device4 and Device5 only

    D. Device1, Device3, Device4 and Device5

  • Question 259:

    Your network contains an Active Directory domain named contoso.com that syncs to Azure Active Directory (Azure AD).

    The Active Directory domain contains 200 computers that run Windows 10. The computers are managed by using Microsoft System Center Configuration Manager (Current Branch).

    You need to pilot co-management for only five of the computers.

    What should you create first?

    A. a domain local distribution group in Active Directory

    B. an Intune Connector for Active Directory

    C. a device collection in Configuration Manager

    D. a dynamic device group in Azure AD

  • Question 260:

    Your company has a main office and six branch offices. The branch offices connect to the main office by using a WAN link. All offices have a local Internet connection and a Hyper-V host cluster.

    The company has a Microsoft System Center Configuration Manager deployment. The main office is the primary site. Each branch office has a distribution point. All computers that run Windows 10 are managed by using both Configuration

    Manager and Microsoft Intune.

    You plan to deploy the latest build of Microsoft Office 365 ProPlus to all the computers.

    You need to minimize the amount of network traffic on the company's Internet links for the planned deployment.

    What should you include in the deployment plan?

    A. From Intune, configure app assignments for the Office 365 ProPlus suite. In each office, copy the Office 365 distribution files to a Microsoft Deployment Toolkit (MDT) deployment share.

    B. From Intune, configure app assignments for the Office 365 ProPlus suite. In each office, copy the Office 365 distribution files to a Configuration Manager distribution point.

    C. From Configuration Manager, create an application deployment. Copy the Office 365 distribution files to a Configuration Manager cloud distribution point.

    D. From Configuration Manager, create an application deployment. In each office, copy the Office 365 distribution files to a Configuration Manager distribution point.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Microsoft exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your MD-101 exam preparations and Microsoft certification application, do not hesitate to visit our Vcedump.com to find your solutions here.