Free IDENTITY-AND-ACCESS-MANAGEMENT-DESIGNER Exam Braindumps (page: 33)

Page 33 of 59

Universal Containers (UC) has a desktop application to collect leads for marketing campaigns. UC wants to extend this application to integrate with Salesforce to create leads. Integration between the desktop application and Salesforce should be seamless.
What Authorization flow should the Architect recommend?

  1. JWT Bearer Token Flow
  2. Web Server Authentication Flow
  3. User Agent Flow
  4. Username and Password Flow

Answer(s): C



Northern Trail Outfitters manages application functional permissions centrally as Active Directory groups. The CRM_Superllser and CRM_Reportmg_SuperUser groupsshould respectively give the user the SuperUser and Reportmg_SuperUser permission set in Salesforce. Salesforce is the service provider to a Security Assertion Markup Language (SAML) identity provider.

Mow should an identity architect ensure the ActiveDirectory groups are reflected correctly when a user accesses Salesforce?

  1. Use the Apex Just-in-Time handler to query standard SAML attributes and set permission sets.
  2. Use the Apex Just-m-Time handler to query custom SAML attributes and set permissionsets.
  3. Use a login flow to query custom SAML attributes and set permission sets.
  4. Use a login flow to query standard SAML attributes and set permission sets.

Answer(s): B



Universal Containers (UC) has a Customer Community that uses Facebook for of authentication. UC would like to ensure that changes in the Facebook profile are 65. reflected on the appropriate Customer Community user. How can this requirementbe met?

  1. Use SAML Just-In-Time Provisioning between Facebook and Salesforce.
  2. Use information in the Signed Request that is received from Facebook.
  3. Develop a scheduled job that calls out to Facebook on a nightly basis.
  4. Use the updateUser() method on the Registration Handler class.

Answer(s): D



Northern Trail Outfitters recently acquired a company. Each company will retain its Identity Provider (IdP). Both companies rely extensively on Salesforce processes that send emails to users to take specific actions in Salesforce.

How should the combined companys' employees collaborate in a single Salesforce org, yet authenticate to the appropriate IdP?

  1. Configure unique MyDomains for each company and have generated links use the appropriate MyDomam in the URL.
  2. Have generated links append a querystnng parameter indicating the IdP. The login service will redirect to the appropriate IdP.
  3. Have generated links be prefixed with the appropriate IdP URL to invoke an IdP-initiated Security AssertionMarkup Language flow when clicked.
  4. Enable each IdP as a login option in the MyDomain Authentication Service settings. Users will then click on the appropriate IdP button.

Answer(s): D



Page 33 of 59



Post your Comments and Discuss Salesforce IDENTITY-AND-ACCESS-MANAGEMENT-DESIGNER exam with other Community members:

Hetain commented on September 07, 2022
Just domenated the exam today. This is f***king awesome. I cannot thank you guys enough.
UNITED STATES
upvote

Bryce commented on September 05, 2022
This is an absoulte must-have exam question bank. The questions are from the real exam.
UNITED STATES
upvote

Lisa commented on August 21, 2022
Good questions for practice.
UNITED STATES
upvote

Johnny commented on July 06, 2021
Thank you for the great service and this amazing braindumps.
UNITED KINGDOM
upvote

Bernard commented on April 13, 2021
Software is good but needs some UI/UX improvement. For example under Settings where you select between Simulator or Study mode is hard to notice as they look like tabs. A side for that content looks well formatted and valid.
UNITED STATES
upvote