Free Certified Identity and Access Management Architect Exam Braindumps (page: 16)

Page 15 of 62

Containers (UC) has implemented SAML-based single Sign-on for their Salesforce application and is planning to provide access to Salesforce on mobile devices using the Salesforce1 mobile app. UC wants to ensure that Single Sign-on is used for accessing the Salesforce1 mobile App. Which two recommendations should the Architect make? Choose 2 Answers

  1. Configure the Embedded Web Browser to use My Domain URL.
  2. Configure the Salesforce1 App to use the MY Domain URL.
  3. Use the existing SAML-SSO flow along with User Agent Flow.
  4. Use the existing SAML SSO flow along with Web Server Flow.

Answer(s): B,C



Universal Containers (UC) has implemented SAML-based SSO solution for use with their multi-org Salesforce implementation, utilizing one of the orgs as the Identity Provider. One user is reporting that they can log in to the Identity Provider org but get a generic SAML error message when accessing the other orgs. Which two considerations should the architect review to troubleshoot the issue? Choose 2 answers

  1. The Federation ID must be a valid Salesforce Username
  2. The Federation ID must is case sensitive
  3. The Federation ID must be in the form of an email address.
  4. The Federation ID must be populated on the user record.

Answer(s): B,D



Universal Containers (UC) wants to integrate a third-party Reward Calculation system with Salesforce to calculate Rewards. Rewards will be calculated on a schedule basis and update back into Salesforce. The integration between Salesforce and the Reward Calculation System needs to be secure. Which are two recommended practices for using OAuth flow in this scenario. choose 2 answers

  1. OAuth Refresh Token Flow
  2. OAuth Username-Password Flow
  3. OAuth SAML Bearer Assertion Flow
  4. OAuth JWT Bearer Token Flow

Answer(s): C,D



Which two are valid choices for digital certificates when setting up two-way SSL between Salesforce and an external system. Choose 2 answers

  1. Use a trusted CA-signed certificate for salesforce and a trusted CA-signed cert for the external system
  2. Use a trusted CA-signed certificate for salesforce and a self-signed cert for the external system
  3. Use a self-signed certificate for salesforce and a self-signed cert for the external system
  4. Use a self-signed certificate for salesforce and a trusted CA-signed cert for the external system

Answer(s): C,D






Post your Comments and Discuss Salesforce Certified Identity and Access Management Architect exam with other Community members:

Certified Identity and Access Management Architect Discussions & Posts