Free preview mode

Enjoy the free questions and consider upgrading to gain full access!

MS-101Free trialFree trial

By microsoft
Aug, 2025

Verified

25Q per page

Question 51

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your network contains an on-premises Active Directory domain. The domain contains 2,000 computers that run Windows 8.1 and have applications installed as shown in the following table.

Image 1

You enroll all the computers in Upgrade Readiness.
You need to ensure that App1 and App2 have an UpgradeDecision status of Ready to upgrade.
Solution: You set the ReadyForWindows status of App1 to Highly adopted.
Does this meet the goal?

  • A: Yes
  • B: No

Question 52

HOTSPOT -
You have 100 computers that run Windows 8.1 and are enrolled in Upgrade Readiness.
Two of the computers are configured as shown in the following table.

Image 1

From Upgrade Readiness, you view the applications shown in the following table.

Image 2

You enroll a computer named Computer3 in Upgrade Readiness. Computer3 has the following configurations:
✑ 8 GB of memory
✑ 64-bit architecture
✑ An application named App3 installed
App3 is installed on Computer3 only.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Hot Area:

Image 3

Question 53

Your network contains an on-premises Active Directory domain that syncs to Azure Active Directory (Azure AD).
The domain contains two servers named Server1 and Server2 that run Windows Server 2016. Server1 has the File Server Resource Manager role service installed.
You need to configure Server1 to use the Azure Rights Management (Azure RMS) connector.
You install the Microsoft Management connector on Server1.
What should you do next on Server1?

  • A: Run the GenConnectorConfig.ps1 script.
  • B: Configure the URL of the AIPMigrated group.
  • C: Enable BitLocker Drive Encryption (BitLocker).
  • D: Install a certification authority (CA).

Question 54

Your company has a Microsoft Azure Active Directory (Azure AD) tenant named contoso.com.
You sign up for Microsoft Store for Business.
The tenant contains the users shown in the following table.

Image 1

Microsoft Store for Business has the following Shopping behavior settings:
✑ Make everyone a Basic Purchaser is set to Off.
✑ Allow app requests is set to On.
You need to identify which users can add apps to the Microsoft Store for Business private store.
Which users should you identify?

  • A: User1 and User2 only
  • B: User3 only
  • C: User1 only
  • D: User3 and User4 only

Question 55

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your network contains an on-premises Active Directory domain. The domain contains 2,000 computers that run Windows 8.1 and have applications installed as shown in the following table.

Image 1

You enroll all the computers in Upgrade Readiness.
You need to ensure that App1 and App2 have an UpgradeDecision status of Ready to upgrade.
Solution: You set the importance status of App2 to Low install count.
Does this meet the goal?

  • A: Yes
  • B: No

Question 56

You have two conditional access policies named Policy1 and Policy2.
Policy1 has the following settings:
✑ Assignments:

  • Users and groups: User1
  • Cloud apps or actions: Office 365 Exchange Online
  • Conditions: 0 conditions selected
    ✑ Access controls:
  • Grant: Grant access
  • Session: 0 controls selected
    ✑ Enable policy: On
    Policy2 has the following settings:
    ✑ Assignments:
  • Users and groups: User1
  • Cloud apps or actions: Office 365 Exchange Online
  • Conditions: 0 conditions selected
    ✑ Access controls:
  • Grant: Block access
  • Session: 0 controls selected
    ✑ Enable policy: On
    You need to ensure that User1 can access Microsoft Exchange Online only from devices that are marked as compliant.
    What should you do?
  • A: Modify the Grant settings of Policy2.
  • B: Disable Policy2.
  • C: Modify the Conditions settings of Policy2.
  • D: Modify the Grant settings of Policy1.

Question 57

You have a Microsoft 365 E5 subscription that uses an Azure Active Directory (Azure AD) tenant named contoso.com.
You need to ensure that users can enroll devices in Microsoft Endpoint Manager without manually entering the address of Microsoft Endpoint Manager.
Which two DNS records should you create? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.

  • A: a CNAME record for AutoDiscover.contoso.com
  • B: a CNAME record for EnterpriseEnrollment.contoso.com
  • C: a TXT record for EnterpriseRegistration.contoso.com
  • D: an SRV record for _SIP._TLS.contoso.com
  • E: an SRV record for _SIPfederationTLS.contoso.com
  • F: a CNAME record for EnterpriseRegistration.contoso.com
  • G: a TXT record for EnterpriseEnrollment.contoso.com

Question 58

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your network contains an on-premises Active Directory domain. The domain contains domain controllers that run Windows Server 2019. The functional level of the forest and the domain is Windows Server 2012 R2.
The domain contains 100 computers that run Windows 10 and a member server named Server1 that runs Windows Server 2012 R2.
You plan to use Server1 to manage the domain and to configure Windows 10 Group Policy settings.
You install the Group Policy Management Console (GPMC) on Server1.
You need to configure the Windows Update for Business Group Policy settings on Server1.
Solution: You raise the forest functional level to Windows Server 2016. You copy the Group Policy Administrative Templates from a Windows 10 computer to the
Netlogon share on all the domain controllers.
Does this meet the goal?

  • A: Yes
  • B: No

Question 59

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your network contains an Active Directory domain named contoso.com that is synced to Microsoft Azure Active Directory (Azure AD).
You manage Windows 10 devices by using Microsoft System Center Configuration Manager (Current Branch).
You configure pilot co-management.
You add a new device named Device1 to the domain. You install the Configuration Manager client on Device1.
You need to ensure that you can manage Device1 by using Microsoft Intune and Configuration Manager.
Solution: You add Device1 to an Active Directory group.
Does this meet the goal?

  • A: Yes
  • B: No

Question 60

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your network contains an on-premises Active Directory domain. The domain contains domain controllers that run Windows Server 2019. The functional level of the forest and the domain is Windows Server 2012 R2.
The domain contains 100 computers that run Windows 10 and a member server named Server1 that runs Windows Server 2012 R2.
You plan to use Server1 to manage the domain and to configure Windows 10 Group Policy settings.
You install the Group Policy Management Console (GPMC) on Server1.
You need to configure the Windows Update for Business Group Policy settings on Server1.
Solution: You copy the Group Policy Administrative Templates from a Windows 10 computer to Server1.
Does this meet the goal?

  • A: Yes
  • B: No

Question 61

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your network contains an on-premises Active Directory domain. The domain contains domain controllers that run Windows Server 2019. The functional level of the forest and the domain is Windows Server 2012 R2.
The domain contains 100 computers that run Windows 10 and a member server named Server1 that runs Windows Server 2012 R2.
You plan to use Server1 to manage the domain and to configure Windows 10 Group Policy settings.
You install the Group Policy Management Console (GPMC) on Server1.
You need to configure the Windows Update for Business Group Policy settings on Server1.
Solution: You upgrade Server1 to Windows Server 2019.
Does this meet the goal?

  • A: Yes
  • B: No

Question 62

You have a hybrid Azure Active Directory (Azure AD) tenant and a Microsoft Endpoint Configuration Manager deployment.
You have the devices shown in the following table.

Image 1

You plan to enable co-management.
You need to identify which devices support co-management without requiring the installation of additional software.
Which devices should you identify?

  • A: Device1 only
  • B: Device2 only
  • C: Device3 only
  • D: Device2 and Device3 only
  • E: Device1, Device2, and Device3

Question 63

HOTSPOT -
You have a Microsoft 365 subscription that contains the users shown in the following table.

Image 1

You configure an Enrollment Status Page profile as shown in the following exhibit.

Image 2

You assign the policy to Group1.
You purchase the devices shown in the following table.

Image 3

For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Hot Area:

Image 4

Question 64

HOTSPOT -
You have an Azure Active Directory (Azure AD) tenant named contoso.com that contains the users shown in the following table.

Image 1

You integrate Microsoft Intune and contoso.com as shown in the following exhibit.

Image 2

You purchase a Windows 10 device named Device1.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Hot Area:

Image 3

Question 65

HOTSPOT -
You have an Azure subscription and an on-premises Active Directory domain. The domain contains 50 computers that run Windows 10.
You need to centrally monitor System log events from the computers.
What should you do? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Hot Area:

Image 1

Question 66

HOTSPOT -
You have a Microsoft 365 subscription that contains the users in the following table.

Image 1

In Microsoft Endpoint Manager, you create two device type restrictions that have the settings shown in the following table.

Image 2

In Microsoft Endpoint Manager, you create three device limit restrictions that have the settings shown in the following table.

Image 3

For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Hot Area:

Image 4

Question 67

DRAG DROP -
You have a Microsoft 365 E5 subscription.
Several users have iOS devices.
You plan to enroll the iOS devices in Microsoft Endpoint Manager.
You need to ensure that you can create an iOS/iPadOS enrollment profile in Microsoft Endpoint Manager.
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
Select and Place:

Image 1

Question 68

HOTSPOT -
You have a Microsoft 365 E5 tenant that contains the users shown in the following table.

Image 1

The tenant contains the devices shown in the following table.

Image 2

You have the apps shown in the following table.

Image 3

You plan to use Microsoft Endpoint Manager to manage the apps for the users.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Hot Area:

Image 4

Question 69

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your network contains an on-premises Active Directory domain. The domain contains domain controllers that run Windows Server 2019. The functional level of the forest and the domain is Windows Server 2012 R2.
The domain contains 100 computers that run Windows 10 and a member server named Server1 that runs Windows Server 2012 R2.
You plan to use Server1 to manage the domain and to configure Windows 10 Group Policy settings.
You install the Group Policy Management Console (GPMC) on Server1.
You need to configure the Windows Update for Business Group Policy settings on Server1.
Solution: You raise the domain functional level to Windows Server 2019. You copy the Group Policy Administrative Templates from a Windows 10 computer to the
Netlogon share on all the domain controllers.
Does this meet the goal?

  • A: Yes
  • B: No

Question 70

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your network contains an Active Directory domain named contoso.com that is synced to Microsoft Azure Active Directory (Azure AD).
You manage Windows 10 devices by using Microsoft System Center Configuration Manager (Current Branch).
You configure pilot co-management.
You add a new device named Device1 to the domain. You install the Configuration Manager client on Device1.
You need to ensure that you can manage Device1 by using Microsoft Intune and Configuration Manager.
Solution: You unjoin Device1 from the Active Directory domain.
Does this meet the goal?

  • A: Yes
  • B: No

Question 71

You have a Microsoft 365 E5 subscription.
You plan to deploy 100 new Windows 10 devices.
You need to identify the appropriate version of Windows 10 for the new devices. The version must meet the following requirements:
✑ Be serviced for a minimum of 24 months.
Support Microsoft Application Virtualization (App-V).

Image 1

Which version should you identify?

  • A: Windows 10 Pro, version 1909
  • B: Windows 10 Pro, version 2004
  • C: Windows 10 Enterprise, version 1909
  • D: Windows 10 Enterprise, version 2004

Question 72

HOTSPOT -
You have a Microsoft 365 E5 tenant that contains two users named User1 and User2 and the groups shown in the following table.

Image 1

You have a Microsoft Intune enrollment policy that has the following settings:
✑ MDM user scope: Some

  • Groups: Group1
    ✑ MAM user scope: Some
  • Groups: Group2
    You purchase the devices shown in the following table.
Image 2

For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Hot Area:

Image 3

Question 73

HOTSPOT -
You have a Microsoft 365 tenant that contains devices enrolled in Microsoft Intune. The devices are configured as shown in the following table.

Image 1

You plan to perform the following device management tasks in Microsoft Endpoint Manager:
Deploy a VPN connection by using a VPN device configuration profile.

Image 2

✑ Configure security settings by using an Endpoint Protection device configuration profile.
You need to identify which devices will support the management tasks.
What should you identify? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Hot Area:

Image 3

Question 74

DRAG DROP -
You have a Microsoft 365 E5 tenant that contains 500 Android devices enrolled in Microsoft Intune.
You need to use Microsoft Endpoint Manager to deploy a managed Google Play app to the devices.
Which four actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
Select and Place:

Image 1

Question 75

You have a Microsoft 365 E5 tenant that contains four devices enrolled in Microsoft Intune as shown in the following table.

Image 1

You plan to deploy Microsoft 365 Apps for enterprise by using Microsoft Endpoint Manager.
To which devices can you deploy Microsoft 365 Apps for enterprise?

  • A: Device1 only
  • B: Device1 and Device3 only
  • C: Device2 and Device4 only
  • D: Device1, Device2, and Device3 only
  • E: Device1, Device2, Device3, and Device4
Page 3 of 18 • Questions 51-75 of 449

Free preview mode

Enjoy the free questions and consider upgrading to gain full access!