Free MD-101 Exam Braindumps (page: 37)

Page 36 of 105

HOTSPOT (Drag and Drop is not supported)
You have unrooted devices enrolled in Microsoft Intune as shown in the following table.


The devices are members of a group named Group1.
In Intune, you create a device compliance location that has the following configurations:
-Name: Network1
-IPv4 range: 192.168.0.0/16

In Intune, you create a device compliance policy for the Android platform. The policy has following configurations:

-Name: Policy1
-Device health: Rooted devices: Block
-Locations: Location: Network1
-Mark device noncompliant: Immediately
-Assigned: Group1

In Intune device compliance policy has the following configurations:

-Mark devices with no compliance policy assigned as: Compliant
-Enhanced jailbreak detection: Enabled
-Compliance status validity period (days): 20

For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Hot Area:

  1. See Explanation section for answer.

Answer(s): A

Explanation:


Reference:

https://docs.microsoft.com/en-us/intune/device-compliance-get-started



You have an Azure Active Directory (Azure AD) tenant named adatum.com. The tenant contains Windows 10 devices that are enrolled in Microsoft Intune.

You create an Azure Log Analytics workspace and add the Device Health Solution to the workspace.
You need to create a custom device configuration profile that will enroll the Windows 10 devices in Device Health.

Which OMA-URI should you add to the profile?

  1. ./Vendor/MSFT/DMClient/Provider/MS DM Server/Push
  2. ./Vendor/MSFT/DMClient/Provider/MS DM Server/CommercialID
  3. ./Vendor/MSFT/DMClient/Provider/MS DM Server/ManagementServerAddressList
  4. ./Vendor/MSFT/DMClient/Provider/MS DM Server/Push/ChannelURI

Answer(s): B


Reference:

https://allthingscloud.blog/monitor-windows-10-updates-for-intune-mdm-enrolled-devices/



HOTSPOT (Drag and Drop is not supported)
You have 100 computers that run Windows 10. The computers are joined to Microsoft Azure Active Directory (Azure AD) and enrolled in Microsoft Intune.

You need to configure the following device restrictions:

-Block users from browsing to suspicious websites.
-Scan all scripts loaded into Microsoft Edge.

Which two settings should you configure in Device restrictions? To answer, select the appropriate settings in the answer area.

NOTE: Each correct selection is worth one point.
Hot Area:

  1. See Explanation section for answer.

Answer(s): A

Explanation:


Reference:

https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-smartscreen/windows-defender-smartscreen-overview



HOTSPOT (Drag and Drop is not supported)
You have computers that run Windows 10 as shown in the following table.


Computer2 and Computer3 are enrolled in Microsoft Intune.
In a Group Policy object (GPO) linked to the domain, you enable the Computer Configuration/Administrative

Templates/Windows Components/Search/Allow Cortana setting.

In an Intune device configuration profile, you configure the following:

-Device/Vendor/MSFT/Policy/Config/ControlPolicyConflict/MDMWinsOverGP to a value of 1
-Experience/AllowCortana to a value of 0.

Each of the following statement, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Hot Area:

  1. See Explanation section for answer.

Answer(s): A

Explanation:


Reference:

https://blogs.technet.microsoft.com/cbernier/2018/04/02/windows-10-group-policy-vs-intune-mdm-policy-who-wins/






Post your Comments and Discuss Microsoft MD-101 exam with other Community members:

MD-101 Discussions & Posts