Free Certified Identity and Access Management Architect Exam Braindumps (page: 8)

Page 7 of 62

Universal Containers (UC) has an existing Salesforce org configured for SP-Initiated SAML SSO with their Idp. A second Salesforce org is being introduced into the environment and the IT team would like to ensure they can use the same Idp for new org. What action should the IT team take while implementing the second org?

  1. Use the same SAML Identity location as the first org.
  2. Use a different Entity ID than the first org.
  3. Use the same request bindings as the first org.
  4. Use the Salesforce Username as the SAML Identity Type.

Answer(s): B



Universal Containers (UC) has decided to use Salesforce as an Identity Provider for multiple external applications. UC wants to use the salesforce App Launcher to control the Apps that are available to individual users. Which three steps are required to make this happen?

  1. Add each connected App to the App Launcher with a Start URL.
  2. Set up an Auth Provider for each External Application.
  3. Set up Salesforce as a SAML Idp with My Domain.
  4. Set up Identity Connect to Synchronize user data.
  5. Create a Connected App for each external application.

Answer(s): A,C,E



An Architect has configured a SAML-based SSO integration between Salesforce and an external Identity provider and is ready to test it. When the Architect attempts to log in to Salesforce using SSO, the Architect receives a SAML error. Which two optimal actions should the Architect take to troubleshoot the issue?

  1. Ensure the Callback URL is correctly set in the Connected Apps settings.
  2. Use a browser that has an add-on/extension that can inspect SAML.
  3. Paste the SAML Assertion Validator in Salesforce.
  4. Use the browser's Development tools to view the Salesforce page's markup.

Answer(s): B,C



Universal Containers (UC) is implementing Salesforce and would like to establish SAML SSO for its users to log in. UC stores its corporate user identities in a Custom Database. The UC IT Manager has heard good things about Salesforce Identity Connect as an Idp, and would like to understand what limitations they may face if they decided to use Identity Connect in their current environment. What limitation Should an Architect inform the IT Manager about?

  1. Identity Connect will not support user provisioning in UC's current environment.
  2. Identity Connect will only support Idp-initiated SAML flows in UC's current environment.
  3. Identity Connect will only support SP-initiated SAML flows in UC's current environment.
  4. Identity connect is not compatible with UC's current identity environment.

Answer(s): A






Post your Comments and Discuss Salesforce Certified Identity and Access Management Architect exam with other Community members:

Certified Identity and Access Management Architect Discussions & Posts