Free IDENTITY-AND-ACCESS-MANAGEMENT-DESIGNER Exam Braindumps (page: 12)

Page 12 of 59

A financial enterprise is planning to set up a user authentication mechanism to login to the Salesforce system. Due to regulatory requirements, the CIO of the company wants user administration, including passwords and authentication requests, to be managed by an external system that is only accessible via a SOAP webservice.

Which authentication mechanism should an identity architect recommend to meet the requirements?

  1. OAuth Web-Server Flow
  2. IdentityConnect
  3. Delegated Authentication
  4. Just-in-Time Provisioning

Answer(s): C



Northern TrailOutfitters (NTO) wants to improve its engagement with existing customers to boost customer loyalty. To get a better understanding of its customers, NTO establishes a single customer view including their buying behaviors, channel preferences and purchasinghistory. All of this information exists but is spread across different systems and formats.

NTO has decided to use Salesforce as the platform to build a 360 degree view. The company already uses Microsoft Active Directory (AD) to manage its users and company assets.

What should an Identity Architect do to provision, deprovision and authenticate users?

  1. Salesforce Identity is not needed since NTO uses Microsoft AD.
  2. Salesforce Identity can be included but NTO will be required to build a custom integration with Microsoft AD.
  3. Salesforce Identity is included in the Salesforce licenses so it does not need to be considered separately.
  4. A Salesforce Identity can be included but NTO will require Identity Connect.

Answer(s): D



An architect is troubleshooting some SAML-based SSO errors during testing. The Architect confirmed that all of the Salesforce SSO settings are correct.
Which two issues outside of the Salesforce SSO settings are most likely contributing to the SSO errors the Architect is encountering? Choose 2 Answers

  1. The Identity Provider is also used to SSO into five other applications.
  2. The clock on the Identity Provider server is twenty minutes behind Salesforce.
  3. The Issuer Certificate from the Identity Provider expired two weeks ago.
  4. The default language for the Identity Provider and Salesforce are Different.

Answer(s): B,C



Universal containers (UC) is concerned that having a self-registration page will provide a means for "bots" or unintended audiences to create user records, thereby consuming licences and adding dirty data.
Which two actions should UC take to prevent unauthorised form submissions during the self-registration process? Choose 2 answers

  1. Use open-ended security questions and complex password requirements
  2. Primarily use lookup and picklist fields on the self registration page.
  3. Require a captcha at the end of the self-registration process.
  4. Use hidden fields populated via java script events in the self-registration page.

Answer(s): C,D



Page 12 of 59



Post your Comments and Discuss Salesforce IDENTITY-AND-ACCESS-MANAGEMENT-DESIGNER exam with other Community members:

Hetain commented on September 07, 2022
Just domenated the exam today. This is f***king awesome. I cannot thank you guys enough.
UNITED STATES
upvote

Bryce commented on September 05, 2022
This is an absoulte must-have exam question bank. The questions are from the real exam.
UNITED STATES
upvote

Lisa commented on August 21, 2022
Good questions for practice.
UNITED STATES
upvote

Johnny commented on July 06, 2021
Thank you for the great service and this amazing braindumps.
UNITED KINGDOM
upvote

Bernard commented on April 13, 2021
Software is good but needs some UI/UX improvement. For example under Settings where you select between Simulator or Study mode is hard to notice as they look like tabs. A side for that content looks well formatted and valid.
UNITED STATES
upvote