Free IDENTITY-AND-ACCESS-MANAGEMENT-DESIGNER Exam Braindumps (page: 18)

Page 18 of 59

How should an Architectforce users to authenticate with Two-factor Authentication (2FA) for Salesforce only when not connected to an internal company network?

  1. Use Custom Login Flows with Apex to detect the user's IP address and prompt for 2FA if needed.
  2. Add the list of company's network IP addresses to the Login Range list under 2FA Setup.
  3. Use an Apex Trigger on the UserLogin object to detect the user's IP address and prompt for 2FA if needed.
  4. Apply the "Two-factor Authentication for User Interface Logins" permissionand Login IP Ranges for all Profiles.

Answer(s): A



Universal Containers has multiple Salesforce instances where users receive emails from different instances. Users should be logged into the correct Salesforce instance authenticated by their IdP when clicking on an email link to a Salesforce record.

Whatshould be enabled in Salesforce as a prerequisite?

  1. My Domain
  2. External Identity
  3. Identity Provider
  4. Multi-Factor Authentication

Answer(s): A



A real estate company wants to provide its customers a digital space to design their interior decoration options. To simplify the registration to gain access to the community site (built in Experience Cloud), the CTO has requested that the IT/Development team provide the option for customers to use their existing social-media credentials to register and access.

The IT lead has approached the Salesforce Identity and Access Management (IAM) architect for technical direction on implementing the social sign-on (for Facebook, Twitter, and a new provider that supports standard OpenID Connect (OIDC)).

Which two recommendations should the Salesforce IAM architect make to the IT Lead?

Choose 2 answers

  1. Use declarative registration handler process builder/flow to create, update users and contacts.
  2. Authentication provider configuration is required each social sign-on providers;and enable Authentication providers in
    community.
  3. For supporting OIDC it is necessary to enable Security Assertion Markup Language (SAML) with Just-in-Time provisioning (JIT) and OAuth 2.0.
  4. Apex coding skills are needed for registration handler to create and update users.

Answer(s): B,D



Universal Containers (UC) built an integration for their employees to post, view, and vote for ideas in Salesforce from an internal Company portal. When ideasare posted in Salesforce, links to the ideas are created in the company portal pages as part of the integration process. The Company portal connects to Salesforce using OAuth. Everything is working fine, except when users click on links to existing ideas,they are always taken to the Ideas home page rather than the specific idea, after authorization.
Which OAuth URL parameter can be used to retain the original requested page so that a user can be redirected correctly after OAuth authorization?

  1. Redirect_uri
  2. State
  3. Scope
  4. Callback_uri

Answer(s): A



Page 18 of 59



Post your Comments and Discuss Salesforce IDENTITY-AND-ACCESS-MANAGEMENT-DESIGNER exam with other Community members:

Hetain commented on September 07, 2022
Just domenated the exam today. This is f***king awesome. I cannot thank you guys enough.
UNITED STATES
upvote

Bryce commented on September 05, 2022
This is an absoulte must-have exam question bank. The questions are from the real exam.
UNITED STATES
upvote

Lisa commented on August 21, 2022
Good questions for practice.
UNITED STATES
upvote

Johnny commented on July 06, 2021
Thank you for the great service and this amazing braindumps.
UNITED KINGDOM
upvote

Bernard commented on April 13, 2021
Software is good but needs some UI/UX improvement. For example under Settings where you select between Simulator or Study mode is hard to notice as they look like tabs. A side for that content looks well formatted and valid.
UNITED STATES
upvote