Free preview mode

Enjoy the free questions and consider upgrading to gain full access!

MS-100Free trialFree trial

By microsoft
Aug, 2025

Verified

25Q per page

Question 51

HOTSPOT -
You need to meet the technical requirements for the user licenses.
Which two properties should you configure for each user? To answer, select the appropriate properties in the answer area.
NOTE: Each correct selection is worth one point.
Hot Area:

Image 1

Question 52

To which Azure AD role should you add User4 to meet the security requirement?

  • A: Password administrator
  • B: Global administrator
  • C: Security administrator
  • D: Privileged role administrator

Question 53

HOTSPOT -
You need to meet the security requirements for User3. The solution must meet the technical requirements.
What should you do? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Hot Area:

Image 1

Question 54

You need to assign User2 the required roles to meet the security requirements and the technical requirements.
To which two roles should you assign User2? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.

  • A: the Exchange View-only Organization Management role
  • B: the Microsoft 365 Records Management role
  • C: the Exchange Online Help Desk role
  • D: the Microsoft 365 Security Reader role
  • E: the Exchange Online Compliance Management role

Question 55

HOTSPOT -
You need to create the UserLicenses group. The solution must meet the security requirements.
Which group type and control method should you use? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Hot Area:

Image 1

Question 56

Which role should you assign to User1?

  • A: Security Administrator
  • B: Records Management
  • C: Security Reader
  • D: Hygiene Management

Question 57

HOTSPOT -
You need to ensure that Admin4 can use SSPR.
Which tool should you use, and which action should you perform? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Hot Area:

Image 1

Question 58

You need to configure Azure AD Connect to support the planned changes for the Montreal Users and Seattle Users OUs.
What should you do?

  • A: From PowerShell, run the Start-ADSyncCycle cmdlet.
  • B: From the Microsoft Azure Active Directory Connect wizard, select Manage federation.
  • C: From PowerShell, run the Add-ADSyncConnectorAttributeInclusion cmdlet.
  • D: From the Microsoft Azure Active Directory Connect wizard, select Customize synchronization options.

Question 59

You need to meet the security requirement for Group1.
What should you do?

  • A: Configure all users to sign in by using multi-factor authentication.
  • B: Modify the properties of Group1.
  • C: Assign Group1 a management role.
  • D: Modify the Password reset properties of the Azure AD tenant.

Question 60

You need to meet the security requirement for the vendors.
What should you do?

  • A: From the Azure portal, add an identity provider.
  • B: From Azure Cloud Shell, run the New-AzureADUser cmdlet and specify the ג€"UserPrincipalName parameter.
  • C: From Azure Cloud Shell, run the Set-AzureADUserExtension cmdlet.
  • D: From the Azure portal, create guest accounts.

Question 61

You need to meet the security requirement for the vendors.
What should you do?

  • A: From Azure Cloud Shell, run the Set-MsolUserPrincipalName and specify the ג€"tenantID parameter.
  • B: From Azure Cloud Shell, run the Set-AzureADUserExtension cmdlet.
  • C: Azure Cloud Shell, run the New-AzureADUser cmdlet and specify the ג€"UserPrincipalName parameter.
  • D: From Azure Cloud Shell, run the New-AzureADMSInvitation cmdlet and specify the ג€"InvitedUserEmailAddress parameter.

Question 62

HOTSPOT -
You create the Microsoft 365 tenant.
You implement Azure AD Connect as shown in the following exhibit.

Image 1

Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
NOTE: Each correct selection is worth one point.
Hot Area:

Image 2

Question 63

You need to meet the application requirement for App1.
Which three actions should you perform? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.

  • A: From the Azure Active Directory admin center, configure the application URL settings.
  • B: From the Azure Active Directory admin center, add an enterprise application.
  • C: On an on-premises server, download and install the Microsoft AAD Application Proxy connector.
  • D: On an on-premises server, install the Hybrid Configuration wizard.
  • E: From the Microsoft 365 admin center, configure the Software download settings.

Question 64

You need to ensure that all the sales department users can authenticate successfully during Project1 and Project2.
Which authentication strategy should you implement for the pilot projects?

  • A: password hash synchronization and seamless SSO
  • B: pass-through authentication
  • C: password hash synchronization
  • D: pass-through authentication and seamless SSO

Question 65

HOTSPOT -
You are evaluating the use of multi-factor authentication (MFA).
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Hot Area:

Image 1

Question 66

You need to configure just in time access to meet the technical requirements.
What should you use?

  • A: access reviews
  • B: entitlement management
  • C: Azure Active Directory (Azure AD) Privileged Identity Management (PIM)
  • D: Azure Active Directory (Azure AD) Identity Protection

Question 67

You need to configure Microsoft Teams to support the technical requirements for collaborating with ADatum.
What should you configure in the Microsoft Teams admin center?

  • A: meeting policies
  • B: messaging policies
  • C: guest access
  • D: external access

Question 68

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your company has a Microsoft Office 365 tenant.
You suspect that several Office 365 features were recently updated.
You need to view a list of the features that were recently updated in the tenant.
Solution: You use the View service requests option in the Microsoft 365 admin center.
Does this meet the goal?

  • A: Yes
  • B: No

Question 69

Your company has a Microsoft 365 subscription. All identities are managed in the cloud.
The company purchases a new domain name.
You need to ensure that all new mailboxes use the new domain as their primary email address.
What are two possible ways to achieve the goal? Each correct answer presents a complete solution.
NOTE: Each correct selection is worth one point.

  • A: Run the Update-EmailAddressPolicy Windows PowerShell command
  • B: From the Exchange admin center, select mail flow, and then configure the email address policies.
  • C: From the Microsoft 365 admin center, select Setup, and then configure the domains.
  • D: Run the Set-EmailAddressPolicy Windows PowerShell command.
  • E: From the Azure Active Directory admin center, configure the custom domain names.

Question 70

Your company has a Microsoft Azure Active Directory (Azure AD) tenant named contoso.com that includes the users shown in the following table.

Image 1

Group2 is a member of Group1.
You assign a Microsoft Office 365 Enterprise E3 license to Group1.
How many Office 365 E3 licenses are assigned?

  • A: 1
  • B: 2
  • C: 3
  • D: 4

Question 71

You have a Microsoft 365 subscription.
A new corporate security policy states that you must automatically send DLP incident reports to the users in the legal department.
You need to schedule the email delivery of the reports. The solution must ensure that the reports are sent as frequently as possible.
How frequently can you schedule the delivery of the reports?

  • A: hourly
  • B: monthly
  • C: weekly
  • D: daily

Question 72

Your company has a Microsoft 365 subscription.
You need to identify all the users in the subscription who are licensed for Microsoft Office 365 through a group membership. The solution must include the name of the group used to assign the license.
What should you use?

  • A: the Licenses blade in the Azure portal
  • B: Reports in the Microsoft 365 admin center
  • C: Active users in the Microsoft 365 admin center
  • D: Reports in Security & Compliance admin center

Question 73

Your company has a Microsoft 365 subscription.
You upload several archive PST files to Microsoft 365 by using the Microsoft 365 compliance center.
A month later, you attempt to run an import job for the PST files.
You discover that the PST files were deleted from Microsoft 365.
What is the most likely cause of the files being deleted? More than one answer choice may achieve the goal. Select the BEST answer.

  • A: The PST files were corrupted and deleted by Microsoft 365 security features.
  • B: PST files are deleted automatically from Microsoft 365 after 30 days.
  • C: The size of the PST files exceeded a storage quota and caused the files to be deleted.
  • D: Another administrator deleted the PST files.

Question 74

Your company has a main office and 20 branch offices in North America and Europe. Each branch connects to the main office by using a WAN link. All the offices connect to the Internet and resolve external host names by using the main office connections.
You plan to deploy Microsoft 365 and to implement a direct Internet connection in each office.
You need to recommend a change to the infrastructure to provide the quickest possible access to Microsoft 365 services.
What is the best recommendation to achieve the goal? More than one answer choice may achieve the goal. Select the BEST answer.

  • A: For all the client computers in the branch offices, modify the MTU setting by using a Group Policy object (GPO).
  • B: In each branch office, deploy a proxy server that has user authentication enabled.
  • C: In each branch office, deploy a firewall that has packet inspection enabled.
  • D: In the branch offices, configure name resolution so that all queries for external host names are redirected to public DNS servers directly.

Question 75

Your network contains an Active Directory forest named adatum.local. The forest contains 500 users and uses adatum.com as a UPN suffix.
You deploy a Microsoft 365 tenant.
You implement directory synchronization and sync only 50 support users.
You discover that five of the synchronized users have usernames that use a UPN suffix of onmicrosoft.com.
You need to ensure that all synchronized identities retain the UPN set in their on-premises user account.
What should you do?

  • A: From the Microsoft 365 admin center, add adatum.com as a custom domain name.
  • B: From Windows PowerShell, run the Set-ADDomain ג€"AllowedDNSSuffixes adatum.com command.
  • C: From Active Directory Users and Computers, modify the UPN suffix of the five user accounts.
  • D: From the Microsoft 365 admin center, add adatum.local as a custom domain name.
Page 3 of 18 • Questions 51-75 of 426

Free preview mode

Enjoy the free questions and consider upgrading to gain full access!