Free Certified Identity and Access Management Architect Exam Braindumps

Universal Containers (UC) is building an integration between Salesforce and a legacy web applications using the canvas framework. The security for UC has determined that a signed request from Salesforce is not an adequate authentication solution for the Third-Party app. Which two options should the Architect consider for authenticating the third-party app using the canvas framework? Choose 2 Answers

  1. Utilize the SAML Single Sign-on flow to allow the third-party to authenticate itself against UC's IdP.
  2. Utilize Authorization Providers to allow the third-party application to authenticate itself against Salesforce as the Idp.
  3. Utilize Canvas OAuth flow to allow the third-party application to authenticate itself against Salesforce as the Idp.
  4. Create a registration handler Apex class to allow the third-party application to authenticate itself against Salesforce as the Idp.

Answer(s): A,C



Universal Containers (UC) wants to build a custom mobile app for their field reps to create orders in salesforce. After the first time the users log in, they must be able to access salesforce upon opening the mobile app without being prompted to log in again. What Oauth flows should be considered to support this requirement?

  1. Web Server flow with a Refresh Token.
  2. Mobile Agent flow with a Bearer Token.
  3. User Agent flow with a Refresh Token.
  4. SAML Assertion flow with a Bearer Token.

Answer(s): C



What item should an Architect consider when designing a Delegated Authentication implementation?

  1. The Web service should be secured with TLS using Salesforce trusted certificates.
  2. The Web service should be able to accept one to four input method parameters.
  3. The web service should use the Salesforce Federation ID to identify the user.
  4. The Web service should implement a custom password decryption method.

Answer(s): A



A group of users try to access one of Universal Containers' Connected Apps and receive the following error message: " Failed: Not approved for access." What is the most likely cause of this issue?

  1. The Connected App settings "All users may self-authorize" is enabled.
  2. The Salesforce Administrators have revoked the OAuth authorization.
  3. The Users do not have the correct permission set assigned to them.
  4. The User of High Assurance sessions are required for the Connected App.

Answer(s): C






Post your Comments and Discuss Salesforce Certified Identity and Access Management Architect exam with other Community members:

Certified Identity and Access Management Architect Discussions & Posts