Free Certified Identity and Access Management Architect Exam Braindumps (page: 21)

Page 20 of 62

Universal containers (UC) has a mobile application that calls the salesforce REST API. In order to prevent users from having to enter their credentials every time they use the app, UC has enabled the use of refresh Tokens as part of the salesforce connected App and updated their mobile app to take advantage of the refresh token. Even after enabling the refresh token, Users are still complaining that they have to enter their credentials once a day. What is the most likely cause of the issue?

  1. The Oauth authorizations are being revoked by a nightly batch job.
  2. The refresh token expiration policy is set incorrectly in salesforce
  3. The app is requesting too many access Tokens in a 24-hour period
  4. The users forget to check the box to remember their credentials.

Answer(s): B



Universal containers (UC) wants users to authenticate into their salesforce org using credentials stored in a custom identity store. UC does not want to purchase or use a third-party Identity provider. Additionally, UC is extremely wary of social media and does not consider it to be trust worthy. Which two options should an architect recommend to UC? Choose 2 answers

  1. Use a professional social media such as LinkedIn as an Authentication provider
  2. Build a custom web page that uses the identity store and calls frontdoor.jsp
  3. Build a custom Web service that is supported by Delegated Authentication.
  4. Implement the Openid protocol and configure an Authentication provider

Answer(s): C,D



Universal containers uses an Employee portal for their employees to collaborate. employees access the portal from their company's internal website via SSO. It is set up to work with Active Directory. What is the role of Active Directory in this scenario?

  1. Identity store
  2. Authentication store
  3. Identity provider
  4. Service provider

Answer(s): C



Universal containers (UC) wants to implement a partner community. As part of their implementation, UC would like to modify both the Forgot password and change password experience with custom branding for their partner community users. Which 2 actions should an architect recommend to UC? Choose 2 answers

  1. Build a community builder page for the change password experience and Custom Visualforce page for the Forgot password experience.
  2. Build a custom visualforce page for both the change password and Forgot password experiences.
  3. Build a custom visualforce page for the change password experience and a community builder page for the Forgot password experience.
  4. Build a community builder page for both the change password and Forgot password experiences.

Answer(s): B,C






Post your Comments and Discuss Salesforce Certified Identity and Access Management Architect exam with other Community members:

Certified Identity and Access Management Architect Discussions & Posts