Free Certified Identity and Access Management Architect Exam Braindumps (page: 22)

Page 21 of 62

Universal containers (UC) has implemented SAML SSO to enable seamless access across multiple applications. UC has regional salesforce orgs and wants it's users to be able to access them from their main Salesforce org seamless. Which action should an architect recommend?

  1. Configure the main salesforce org as an Authentication provider.
  2. Configure the main salesforce org as the Identity provider.
  3. Configure the regional salesforce orgs as Identity Providers.
  4. Configure the main Salesforce org as a service provider.

Answer(s): B



Universal Containers (UC) is both a Salesforce and Google Apps customer. The UC IT team would like to manage the users for both systems in a single place to reduce administrative burden. Which two optimal ways can the IT team provision users and allow Single Sign-on between Salesforce and Google Apps? Choose 2 answers

  1. Build a custom app running on Heroku as the Identity Provider that can sync user information between Salesforce and Google Apps.
  2. Use a third-party product as the Identity Provider for both Salesforce and Google Apps and manage the provisioning from there.
  3. Use Identity Connect as the Identity Provider for both Salesforce and Google Apps and manage the provisioning from there.
  4. Use Salesforce as the Identity Provider and Google Apps as a Service Provider and configure User Provisioning for Connected Apps.

Answer(s): B,D



Which three are capabilities of SAML-based Federated authentication? Choose 3 answers

  1. Trust relationships between Identity Provider and Service Provider are required.
  2. SAML tokens can be in XML or JSON format and can be used interchangeably.
  3. Web applications with no passwords are more secure and stronger against attacks.
  4. Access tokens are used to access resources on the server once the user is authenticated.
  5. Centralized federation provides single point of access, control and auditing.

Answer(s): A,D,E



Universal Containers (UC) uses Salesforce to allow customers to keep track of the order status. The customers can log in to Salesforce using external authentication providers, such as Facebook and Google. UC is also leveraging the App Launcher to let customers access an of platform application for generating shipping labels. The label generator application uses OAuth to provide users access. What license type should an Architect recommend for the customers?

  1. Customer Community license
  2. Identity license
  3. Customer Community Plus license
  4. External Identity license

Answer(s): B






Post your Comments and Discuss Salesforce Certified Identity and Access Management Architect exam with other Community members:

Certified Identity and Access Management Architect Discussions & Posts