Free MD-100 Exam Braindumps (page: 18)

Page 18 of 68

Your network contains an Active Directory domain. The domain contains computers that run Windows 10.

You need to provide a user with the ability to remotely create and modify shares on the computers. The solution must use the principle of least privilege.

To which group should you add the user?

  1. Power Users
  2. Remote Management Users
  3. Administrators
  4. Network Configuration Operators

Answer(s): C



You have a computer named Computer1 that runs Windows 10 Current branch. Computer1 belongs to a workgroup.

You run the following commands on Computer1.
New-LocalUser –Name User1 –NoPassword
Add-LocalGroupMember Users –Member User1

What is the effect of the configurations?

  1. User1 is prevented from signing in until the user is assigned additional user rights.
  2. User1 appears on the sign-in screen and can sign in without a password.
  3. User1 is prevented from signing in until an administrator manually sets a password for the user.
  4. User1 appears on the sign-in screen and must set a new password on the first sign-in attempt.

Answer(s): D

Explanation:

User1 will be prompted to change the password at first login. The message will say, “You must change your password”. You do have to set a password, even if it is a blank password before you can log in.


Reference:

https://docs.microsoft.com/en-us/powershell/module/microsoft.powershell.localaccounts/new-localuser?view=powershell-5.1



You have a computer that runs Windows 10 and is joined to Azure Active Directory (Azure AD). You attempt to open Control Panel and receive the error message shown on the following exhibit.


You need to be able to access Control Panel. What should you modify?

  1. the PowerShell execution policy
  2. the local Group Policy
  3. the Settings app
  4. a Group Policy preference

Answer(s): B


Reference:

https://windows10skill.com/this-operation-has-been-cancelled-due-to-restrictions-in-effect-on-this-pc/



Your domain contains a Computer named Computer1 that runs Windows 10. Computer1 does not have a TPM.

You need to be able to encrypt the C drive by using Bitlocker Drive Encryption (BitLocker). The solution must ensure that the recovery key is stored in Active Directory.

Which two Group Policy settings should you configure? To answer, select the appropriate settings in the answer area.

NOTE: Each correct selection is worth one point.
Hot Area:

Exhibit A:



Exhibit B:

  1. Please refer to Exhibit B for the answer.

Answer(s): A


Reference:

https://docs.microsoft.com/en-us/windows/security/information-protection/bitlocker/bitlocker-group-policy-settings#bkmk-rec1



Page 18 of 68



Post your Comments and Discuss Microsoft MD-100 exam with other Community members:

Deano commented on October 06, 2021
Helped massively with passing exams!
UNITED STATES
upvote

User commented on October 16, 2020
If you would like to prepare yourself for the exam these materials are really useful.
Anonymous
upvote

Mohammed commented on September 29, 2020
Great “cheat sheet”. Meant as a quick reference to real practice questions. It helped me a lot.
UNITED KINGDOM
upvote