Microsoft MD-102 Test Engine Dumps Training With 354 Questions
MD-102 Questions Pass on Your First Attempt Dumps for Microsoft 365 Certified Certified
Microsoft MD-102 Exam Syllabus Topics:
| Topic | Details |
|---|---|
| Topic 1 |
|
| Topic 2 |
|
| Topic 3 |
|
| Topic 4 |
|
NEW QUESTION # 159
You have a Microsoft 365 E5 subscription and 25 Apple iPads.
You need to enroll the iPads in Microsoft Intune by using the Apple Configurator enrollment method.
What should you do first?
- A. Configure an Apple MDM push certificate.
- B. Add your user account as a device enrollment manager (DEM).
- C. Upload a file that has the device identifiers for each iPad.
- D. Modify the enrollment restrictions.
Answer: A
Explanation:
Reference:
https://www.manageengine.com/mobile-device-management/help/enrollment/mdm_creating_apns_certificate.htm Prerequisites for iOS enrollment Before you can enable iOS devices, complete the following steps: Make sure your device is eligible for Apple device enrollment. Set up Intune - These steps set up your Intune infrastructure. In particular, device enrollment requires that you set your MDM authority. Get an Apple MDM Push certificate - Apple requires a certificate to enable management of iOS and macOS devices.
https://docs.microsoft.com/en-gb/intune/enrollment/apple-mdm-push-certificate-get
NEW QUESTION # 160
You have a Microsoft 365 subscription that uses Microsoft Intune Suite.
You use Microsoft Intune to manage devices.
You have the devices shown in the following table.
Which devices can be changed to Windows 11 Enterprise by using subscription activation?
- A. Device3 only
- B. Device 1 and Device2 only
- C. Device1, Device2, and Device3
- D. Device2 and Device3 only
Answer: A
NEW QUESTION # 161
Case Study 1 - Litware inc
General Overview
Litware, Inc. is an international manufacturing company that has 3,000 employees. The company has sales, marketing, research, human resources (HR), development, and IT departments.
Litware has two main offices in New York and Los Angeles. Litware has five branch offices in Asia.
Existing Environment
Current Business Model
The Los Angeles office has 500 developers. The developers work flexible hours ranging from 11 AM to 10 PM.
Litware has a Microsoft Endpoint Configuration Manager deployment.
During discovery, the company discovers a process where users are emailing bank account information of its customers to internal and external recipients.
Current Environment
The network contains an Active Directory domain that is synced to Microsoft Azure Active Directory (Azure AD). The functional level of the forest and the domain is Windows Server 2012 R2. All domain controllers run Windows Server 2012 R2.
Litware has the computers shown in the following table.
The development department uses projects in Azure DevOps to build applications. Most of the employees in the sales department are contractors. Each contractor is assigned a computer that runs Windows 10. At the end of each contract, the computer is assigned to different contractor.
Currently, the computers are re-provisioned manually by the IT department.
Problem Statements
Litware identifies the following issues on the network:
- Employees in the Los Angeles office report slow Internet performance when updates are downloading. The employees also report that the updates frequently consume considerable resources when they are installed. The Update settings are configured as shown in the Updates exhibit. (Click the Updates button.)
- Management suspects that the source code for the proprietary applications in Azure DevOps in being shared externally.
- Re-provisioning the sales department computers is too time consuming.
Requirements
Business Goals
Litware plans to transition to co-management for all the company-owned Windows 10 computers.
Whenever possible, Litware wants to minimize hardware and software costs.
Device Management Requirements
Litware identifies the following device management requirements:
- Prevent the sales department employees from forwarding email that contains bank account information.
- Ensure that Microsoft Edge Favorites are accessible from all computers to which the developers sign in.
- Prevent employees in the research department from copying patented information from trusted applications to untrusted applications.
Technical Requirements
Litware identifies the following technical requirements for the planned deployment:
- Re-provision the sales department computers by using Windows AutoPilot.
- Ensure that the projects in Azure DevOps can be accessed from the corporate network only.
- Ensure that users can sign in to the Azure AD-joined computers by using a PIN. The PIN must expire every 30 days.
- Ensure that the company name and logo appears during the Out of Box Experience (OOBE) when using Windows AutoPilot.
Hotspot Question
You need to resolve the performance issues in the Los Angeles office.
How should you configure the update settings? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation:
The Los Angeles office has 500 developers. The developers work flexible hours ranging from 11 AM to 10 PM.
NEW QUESTION # 162
You have a Microsoft Entra tenant named contoso.com.
You manage devices by using Microsoft Intune. Automatic Intune enrollment is disabled.
Users report that they must enter the mobile device management (MDM) server address during device enrollment.
To reduce user interaction during device enrollment, you plan to create the following CNAME DNS hostname records:
EnterpriseEnrollment.contoso.com
EnterpriseRegistration.contoso.com
You need to configure a fully qualified domain name (FQDN) for each CNAME record to redirect enrollment requests to the Intune servers.
How should you configure each FQDN? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
NEW QUESTION # 163
You have a Microsoft 365 E5 subscription.
All Windows devices are enrolled in Microsoft Intune.
You need to create an app protection policy named Policy1 and apply Policy1 to the devices.
What can you protect by using Policy1?
- A. Microsoft Outlook
- B. Microsoft Edge
- C. Microsoft OneDrive
- D. Microsoft Teams
Answer: B
Explanation:
https://learn.microsoft.com/en-us/mem/intune/apps/app-protection-policy-settings-windows
NEW QUESTION # 164
Your company uses Microsoft Intune to manage devices.
You need to ensure that only Android devices that use Android work profiles can enroll in intune.
Which two configurations should you perform in the device enrollment restrictions? Each correct answer presents part of the solution.
NOTE Each correct selection is worth one point.
- A. From Platform Settings, set Android Enterprise (work profile) to Allow.
- B. From Platform Settings, set Android device administrator to Block.
- C. From Platform Settings, set Android device administrator Personally Owned to Block.
- D. From Platform Settings, set Android device administrator Personally Owned to Allow
Answer: A,C
Explanation:
To ensure that only Android devices that use Android work profiles can enroll in Intune, you need to perform two configurations in the device enrollment restrictions. First, you need to set Android device administrator Personally Owned to Block. This prevents users from enrolling personal Android devices that use device administrator mode. Second, you need to set Android Enterprise (work profile) to Allow. This allows users to enroll corporate-owned or personal Android devices that use work profiles. References:
https://docs.microsoft.com/en-us/mem/intune/enrollment/enrollment-restrictions-set
NEW QUESTION # 165
You have a Microsoft 365 subscription and use Microsoft Intune.
You have the Endpoint Privilege Management (EPM) elevation settings policy shown in the following exhibit.
No EPM elevation rules policies are configured.
Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation:
NEW QUESTION # 166
You have a Microsoft 365 subscription.
You use Microsoft Intune to manage devices.
You need to assess device performance during startup and identify any device models that take longer than average to start.
What should you use to assess the device performance, and which portal should you use? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation:
NEW QUESTION # 167
You have a Microsoft 365 subscription that includes Microsoft Intune. The subscription contains corporate- owned, fully managed Android Enterprise devices.
You plan to deploy a configuration profile that will have a device restrictions profile type named Profile1.
Profile1 will assign maintenance windows for system updates.
What should you configure from the Configuration settings for Profile1?
- A. Device experience
- B. Power Settings
- C. General
- D. Connectivity
Answer: C
NEW QUESTION # 168
Your network contains an Active Directory domain named contoso.com. The domain contains a computer named Computer1 that runs Windows 10. You have the groups shown in the following table.
Which groups can you add to Group4?
- A. Group2 and Group3 only
- B. Group1, Group2, and Group3
- C. Group1 and Group2 only
- D. Group2only
Answer: A
NEW QUESTION # 169
You have a Microsoft 365 subscription that contains 1,000 Android devices enrolled in Microsoft Intune.
You create an app configuration policy that contains the following settings:
- Device enrollment type: Managed devices
- Profile Type: All Profile Types
- Platform: Android Enterprise
Which two types of apps can be associated with the policy? Each correct answer presents a complete solution.
NOTE: Each correct selection is worth one point.
- A. Built-in Android app
- B. Web link
- C. Android Enterprise system app
- D. Managed Google Play store app
- E. Android store app
Answer: C,D
Explanation:
https://learn.microsoft.com/en-us/mem/intune/apps/app-configuration-policies-use-android
NEW QUESTION # 170
You have a Microsoft 365 subscription that uses Microsoft Intune Suite. You use Microsoft Intune to manage devices.
You need to review the startup times and restart frequencies of the devices. What should you use?
- A. Endpoint analytics
- B. Microsoft Defender for Endpoint
- C. Azure Monitor
- D. intune Data Warehouse
Answer: A
Explanation:
Endpoint analytics is a feature of Microsoft Intune that provides insights into the performance and health of devices. You can use endpoint analytics to review the startup times and restart frequencies of the devices, as well as other metrics such as sign-in times, battery life, app reliability, and software inventory.References:https://docs.microsoft.com/en-us/mem/analytics/overview
NEW QUESTION # 171
In Microsoft Intune, you have the device compliance policies shown in the following table.
The Intune compliance policy settings are configured as shown in the following exhibit.
On June 1, you enroll Windows 10 devices in Intune as shown in the following table.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation:
Device 1 is Windows 10 - and policy 1 is for Windows 8. Default compliance for devices without a policy is not compliant so first 2 questions are NO.
Then the third device has 2 policies, the first one is compliant and the second policy is not compliant but the device is not marked as non-compliant due to the fact that mark device as non-compliant is set to 10 days. This means that the machine will be compliant until june 10th.
Source:
Mark device non-compliant: By default, this action is set for each compliance policy and has a schedule of zero (0) days, marking devices as noncompliant immediately.
When you change the default schedule, you provide a grace period in which a user can remediate issues or become compliant without being marked as non-compliant.
This action is supported on all platforms supported by Intune.
https://docs.microsoft.com/en-us/mem/intune/protect/actions-for-noncompliance
NEW QUESTION # 172
Which devices are registered by using the Windows Autopilot deployment service?
- A. Device1 only
- B. Device1, Device2, and Device3
- C. Device1 and Device3 only
- D. Device3 only
Answer: C
Explanation:
Scenario: Windows Autopilot Configuration
Assignments
Included groups: Group1
Excluded groups: Group2
Device1 is member of Group1.
Device2 is member of Group1 and member of Group2.
Device3 is member of Group1.
Group1 and Group2 have a Membership type of Assigned.
Exclusion takes precedence over inclusion in the following same group type scenarios.
NEW QUESTION # 173
You have a Microsoft 365 E5 subscription that contains 10 Android Enterprise devices. Each device has a corporate-owned work profile and is enrolled in Microsoft Intune.
You need to configure the devices to run a single app in kiosk mode.
Which Configuration settings should you modify in the device restrictions profile?
- A. Users and Accounts
- B. General
- C. System security
- D. Device experience
Answer: D
Explanation:
To configure the devices to run a single app in kiosk mode, you need to modify the Device experience settings in the device restrictions profile. You can specify the app package name and activity name for the app that you want to run in kiosk mode. References: https://docs.microsoft.com/en-us/mem/intune/configuration
/device-restrictions-android-for-work#device-experience
NEW QUESTION # 174
You have a computer named Computer1 that runs Windows 11.
A user named User1 plans to use Remote Desktop to connect to Computer1.
You need to ensure that the device of User1 is authenticated before the Remote Desktop connection is established and the sign in page appears.
What should you do on Computer1?
- A. Turn on Reputation-based protection
- B. Enable Network Level Authentication (NLA)
- C. Turn on Network Discovery
- D. Configure the Remote Desktop Configuration service
Answer: B
NEW QUESTION # 175
You have a Microsoft Intune subscription.
You have devices enrolled in intune as shown in the following table.
An app named App1 is installed on each device.
What is the minimum number of app configuration policies required to manage Appl ?
- A. 0
- B. 1
- C. 2
- D. 3
- E. 4
Answer: E
Explanation:
The correct answer is B because you need to create two app configuration policies for managed devices, one for iOS/iPadOS devices and one for Android devices1. App configuration policies let you customize the settings of apps for iOS/iPadOS or Android devices1. The settings are assigned to user groups and applied when the app runs1. The app developer or supplier provides the configuration settings (keys and values) that are exposed to Intune1. You can't use a single app configuration policy for both iOS/iPadOS and Android devices because they have different configuration settings2. Reference: 1: App configuration policies for Microsoft Intune | Microsoft Learn https://learn.microsoft.com/en-us/mem/intune/apps/app-configuration-policies-overview 2: Add app configuration policies for managed iOS/iPadOS devices | Microsoft Learn https://learn.microsoft.com/en-us/mem/intune/apps/app-configuration-policies-use-ios
NEW QUESTION # 176
You have computer that run Windows 10 and connect to an Azure Log Analytics workspace. The workspace is configured to collect all available events from Windows event logs.
The computers have the logged events shown in the following table.
Which events are collected in the Log Analytics workspace?
- A. 2 and 3 only
- B. 1 and 3 only
- C. 1, 2, 3, and 4
- D. 1, 2, and 4 on
- E. 1 only
Answer: C
Explanation:
All events from Windows event logs are collected in the Log Analytics workspace, regardless of the event level or source. Therefore, events 1, 2, 3, and 4 are all collected in the workspace. References: https://docs.
microsoft.com/en-us/azure/azure-monitor/agents/data-sources-windows-events
NEW QUESTION # 177
You have the Windows 10 devices shown in the following table.
You plan to upgrade the devices to Windows 11 Enterprise.
On which devices can you perform a direct in-place upgrade to Windows 11 Enterprise?
- A. Device1, Device2. Device3. and Devke4 only
- B. Device1. Device3, and Devtce4 only
- C. Device 3 and Device 4 only
- D. Device3 only
- E. Device2. Device3. and Devtce4 only
Answer: C
Explanation:
https://learn.microsoft.com/en-us/windows/deployment/upgrade/windows-upgrade-paths https://learn.microsoft.com/en-us/windows/deployment/upgrade/windows-edition-upgrades
NEW QUESTION # 178
Hotspot Question
Your network contains an Active Directory domain. The domain contains 1,000 computers that run Windows 11.
You need to configure the Remote Desktop settings of all the computers. The solution must meet the following requirements:
- Prevent the sharing of clipboard contents.
- Ensure that users authenticate by using Network Level Authentication
(NLA).
Which two nodes of the Group Policy Management Editor should you use? To answer, select the appropriate nodes in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation:
From GPO (Allow users to connect remotely by using Remote Desktop Services):
You can limit which clients are able to connect remotely by using Remote Desktop Services by configuring the policy setting at Computer Configuration\Administrative Templates\Windows Components\Remote Desktop Services\Remote Desktop Session Host\Security\Require user authentication for remote connections by using Network Level authentication.
NEW QUESTION # 179
Drag and Drop Question
Your company has a Microsoft Azure Active Directory (Azure AD) tenant. The company uses Microsoft Intune to manage iOS, Android, and Windows 10 devices.
The company plans to purchase 1,000 iOS devices. Each device will be assigned to a specific user.
You need to ensure that the new iOS devices are enrolled automatically in Intune when the assigned user signs in for the first time.
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
Answer:
Explanation:
Explanation:
Step 1: Add a Device Enrollment (DEP) token.
Get an Apple Automated Device Enrollment token.
Before you can enroll iOS/iPadOS devices with ADE, you need an ADE token (.p7m) file from Apple. This token lets Intune sync information about ADE devices that your corporation owns. It also allows Intune to upload enrollment profiles to Apple and to assign devices to those profiles.
Step 2: Create an Apple enrollment profile.
You can create an enrollment profile for ADE devices. A device enrollment profile defines the settings applied to a group of devices during enrollment. There's a limit of 1,000 enrollment profiles per ADE token.
Step 3: Assign an enrollment profile
Assign an enrollment profile to devices.
Before devices can be enrolled, you need to assign an enrollment program profile to them.
Reference:
https://docs.microsoft.com/en-us/intune/device-enrollment-program-enroll-ios
NEW QUESTION # 180
You have an Azure AD tenant named contoso.com that contains the devices shown in the following table.
The tenant contains the Azure AD groups shown in the following table.
You add an Autopilot deployment profile as shown in the following exhibit.
You have an Azure AD tenant named contoso.com that contains the devices shown in the following table.
The tenant contains the Azure AD groups shown in the following table.
Answer:
Explanation:
Explanation:
NEW QUESTION # 181
You create a Windows Autopilot deployment profile.
You need to configure the profile settings to meet the following requirements:
Automatically enroll new devices and provision system apps without requiring end-user authentication.
Include the hardware serial number in the computer name.
Which two settings should you configure? To answer, select the appropriate settings in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Reference:
https://docs.microsoft.com/en-us/mem/autopilot/profiles
NEW QUESTION # 182
......
MD-102 Practice Test Pdf Exam Material: https://www.topexamcollection.com/MD-102-vce-collection.html
MD-102 Answers MD-102 Free Demo Are Based On The Real Exam: https://drive.google.com/open?id=17PNWgvRemIEsr-q3zxkTli7b0TFwS9FF

