Free MS-100 Exam Braindumps (page: 35)

Page 35 of 98

Your company has 10,000 users who access all applications from an on-premises data center. You plan to create a Microsoft 365 subscription and to migrate data to the cloud.
You plan to implement directory synchronization.
User accounts and group accounts must sync to Microsoft Azure Active Directory (Azure AD) successfully.
You discover that several user accounts fail to sync to Azure AD.
You need to resolve the issue as quickly as possible.
What should you do?

  1. From Active Directory Administrative Center, search for all the users, and then modify the properties of the user accounts.
  2. Run id x.exe, and then click Complete.
  3. From Windows PowerShell, run the Start-AdSyncCycle "PolicyType Delta command.
  4. Run id x.exe, and then click Edit.

Answer(s): D

Explanation:

IdFix is used to perform discovery and remediation of identity objects and their attributes in an on-premises Active Directory environment in preparation for migration to Azure Active Directory. IdFix is intended for the Active Directory administrators responsible for directory synchronization with Azure Active Directory.


Reference:

https://docs.microsoft.com/en-us/o ce365/enterprise/prepare-directory-attributes-for-synch-with-id x



Your network contains an Active Directory forest. The forest contains two domains named contoso.com and adatum.com.
Your company recently purchased a Microsoft 365 subscription.
You deploy a federated identity solution to the environment.
You use the following command to con gure contoso.com for federation.
Convert-MsolDomaintoFederated `"DomainName contoso.com
In the Microsoft 365 tenant, an administrator adds and veri es the adatum.com domain name. You need to con gure the adatum.com Active Directory domain for federated authentication. Which two actions should you perform before you run the Azure AD Connect wizard? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.

  1. From Windows PowerShell, run the Convert-MsolDomaintoFederated "DomainName contoso.com "SupportMultipleDomain command.
  2. From Windows PowerShell, run the New-MsolFederatedDomain "SupportMultipleDomain -DomainName contoso.com command.
  3. From Windows PowerShell, run the New-MsolFederatedDomain -DomainName adatum.com command.
  4. From Windows PowerShell, run the Update-MSOLFederatedDomain "DomainName contoso.com "SupportMultipleDomain command.
  5. From the federation server, remove the Microsoft O ce 365 relying party trust.

Answer(s): A,E

Explanation:

When the Convert-MsolDomaintoFederated "DomainName contoso.com command was run, a relying party trust was created.
Adding a second domain (adatum.com in this case) will only work if the SupportMultipleDomain switch was used when the initial federation was con gured by running the Convert-MsolDomaintoFederated "DomainName contoso.com command.
Therefore, we need to start again by removing the relying party trust then running the Convert-MsolDomaintoFederated command again with the SupportMultipleDomain switch.



You have a Microsoft 365 subscription that contains a Microsoft Azure Active Directory (Azure AD) tenant named contoso.com. The tenant includes a user named
User1.
You enable Azure AD Identity Protection.
You need to ensure that User1 can review the list in Azure AD Identity Protection of users agged for risk. The solution must use the principle of least privilege.
To which role should you add User1?

  1. Compliance administrator
  2. Global administrator
  3. Owner
  4. Security administrator

Answer(s): D

Explanation:

Either one of the following three roles can review the list in Azure AD Identity Protection of users agged for risk:
Security Administrator
Global Administrator
Security Reader
Using the principle of least privilege, we should add User1 to the Security Administrator role.
Note:
There are several versions of this question in the exam. The question has three possible correct answers:
1. Security Reader
2. Security Administrator
Global Administrator
Other incorrect answer options you may see on the exam include the following:
1. Service Administrator.
2. Reports Reader
3. User Administrator


Reference:

https://docs.microsoft.com/en-us/azure/active-directory/reports-monitoring/concept-risky-sign-ins https://docs.microsoft.com/en- us/azure/active-directory/reports-monitoring/concept-risky-sign-ins



SIMULATION
Please wait while the virtual machine loads. Once loaded, you may proceed to the lab section. This may take a few minutes, and the wait time will not be deducted from your overall test time.
When the Next button is available, click it to access the lab section. In this section, you will perform a set of tasks in a live environment. While most functionality will be available to you as it would be in a live environment, some functionality (e.g., copy and paste, ability to navigate to external websites) will not be possible by design.
Scoring is based on the outcome of performing the tasks stated in the lab. In other words, it doesn't matter how you accomplish the task, if you successfully perform it, you will earn credit for that task.
Labs are not timed separately, and this exam may have more than one lab that you must complete. You can use as much time as you would like to complete each lab. But, you should manage your time appropriately to ensure that you are able to complete the lab(s) and all other sections of the exam in the time provided.
Please note that once you submit your work by clicking the Next button within a lab, you will NOT be able to return to the lab.
You may now click next to proceed to the lab.

Lab information
Use the following login credentials as needed:
To enter your username, place your cursor in the Sign in box and click on the username below. To enter your password, place your cursor in the Enter password box and click on the password below.
Microsoft 365 Username:
admin@admin.onmicrosoft.com
Microsoft 365 Password: xxxxxxxxxx
If the Microsoft 365 portal does not load successfully in the browser, press CTRL-K to reload the portal in a new browser tab.
The following information is for technical support purposes only:

Lab Instance: 111111111
You need to modify Christie Cline to meet the following requirements:
Christie Cline must be able to view the service dashboard and the Microsoft O ce 365 Message center.
Christie Cline must be able to create Microsoft support requests.
The solution must use the principle of least privilege.

  1. See explanation below.

Answer(s): A

Explanation:

You need to assign Christie the 'Service Support Admin' role.
1. In the Microsoft 365 Admin Center, click 'Roles'.
2. Scroll down to the Service Support Admin role and click on the role name.
3. Click the 'Assigned Admins' link.
4. Click the 'Add' button.
5. Start typing the name Christie then select her account when it appears.
6. Click Save.
References:
https://docs.microsoft.com/en-US/azure/active-directory/users-groups-roles/directory-assign-admin-roles


Reference:

References:
https://docs.microsoft.com/en-US/azure/active-directory/users-groups-roles/directory-assign-admin-roles



Page 35 of 98



Post your Comments and Discuss Microsoft MS-100 exam with other Community members:

Elan commented on March 05, 2024
Nice to see this kind of websites. thanks
BAHRAIN
upvote

SYED NASEEMUDDIN commented on December 14, 2023
i need the 100 question and answer.
SAUDI ARABIA
upvote

Rotciv commented on June 13, 2023
MS-100 exam written and passed! I like the application as well
SOUTH AFRICA
upvote

Murchu commented on March 14, 2023
This dump was a lifesaver and gave me the confidence I needed to pass my exam.
UNITED STATES
upvote

George commented on March 02, 2022
My 4th purchase from this site and I have passed all my exams.
UNITED STATES
upvote

Rohit commented on February 28, 2021
The content of this study guide is very helpful. I really appreicate the free test engine. The Xengine App provided for free is a lifesaver.
INDIA
upvote

Hizkia commented on April 20, 2020
Very professional team. The support replied and answered my questions in less than 2 hours. Pretty impressed!
FRANCE
upvote