Free IDENTITY-AND-ACCESS-MANAGEMENT-DESIGNER Exam Braindumps (page: 7)

Page 7 of 59

An Identity and Access Management (IAM) Architect is recommending Identity Connect to integrate Microsoft ActiveDirectory (AD) with Salesforce for user provisioning, deprovisioning and single sign-on (SSO).

Which feature of Identity Connect is applicable for this scenano?

  1. When Identity Connect is in place, if a user is deprovisioned in an on-premise AD, the user's Salesforce session Is revoked
    Immediately.
  2. If the number of provisioned users exceeds Salesforce licence allowances, identity Connect will start disabling the existing
    Salesforce users in First-in, First-out (FIFO) fashion.
  3. Identity Connect can bedeployed as a managed package on salesforce org, leveraging High Availability of Salesforce Platform
    out-of-the-box.
  4. When configured, Identity Connect acts as an identity provider to both Active Directory and Salesforce, thus providing SSO as a
    defaultfeature.

Answer(s): A



Universal Containers (UC) would like to enableself-registration for their Salesforce Partner Community Users. UC wants to capture some custom data elements from the partner user, and based on these data elements, wants to assign the appropriate Profile and Account values.

Which two actions should theArchitect recommend to UC1

Choose 2 answers

  1. Configure Registration for Communities to use a custom Visualforce Page.
  2. Modify the SelfRegistration trigger to assign Profile and Account.
  3. Modify the CommunitiesSelfRegController to assign the Profile and Account.
  4. Configure Registration for Communities to use a custom Apex Controller.

Answer(s): A,C



Universal containers (UC) employees have salesforce access from restricted ip ranges only, to protect against unauthorised access. UC wants to rollout the salesforce1 mobile app and make it accessible from any location.
Which two options should an architect recommend? Choose 2 answers

  1. Relax the ip restriction in the connect app settings for the salesforce1 mobile app
  2. Use login flow to bypass ip range restriction for the mobile app.
  3. Relax the ip restriction with a second factor in the connect app settings for salesforce1 mobile app
  4. Removeexisting restrictions on ip ranges for all types of user access.

Answer(s): A,B



Northern Trail Outfitters (NTO) uses a Security Assertion Markup Language (SAML)-based Identity Provider (idP) to authenticate employeesto all systems. The IdP authenticates users against a Lightweight Directory Access Protocol (LDAP) directory and has access to user information. NTO wants to minimize Salesforce license usage since only a small percentage of users need Salesforce.

What isrecommended to ensure new employees have immediate access to Salesforce using their current IdP?

  1. Install Salesforce Identity Connect to automatically provision new users in Salesforce the first time they attempt to login.
  2. Build an integration that queries LDAP periodically and creates new active users in Salesforce.
  3. Configure Just-in-Time provisioning using SAML attributes to create new Salesforce users as necessary when a new user
    attempts to login to Salesforce.
  4. Build an integration that queries LDAP and creates new inactive users in Salesforce and use a login flow to activate the user at
    first login.

Answer(s): C



Page 7 of 59



Post your Comments and Discuss Salesforce IDENTITY-AND-ACCESS-MANAGEMENT-DESIGNER exam with other Community members:

Hetain commented on September 07, 2022
Just domenated the exam today. This is f***king awesome. I cannot thank you guys enough.
UNITED STATES
upvote

Bryce commented on September 05, 2022
This is an absoulte must-have exam question bank. The questions are from the real exam.
UNITED STATES
upvote

Lisa commented on August 21, 2022
Good questions for practice.
UNITED STATES
upvote

Johnny commented on July 06, 2021
Thank you for the great service and this amazing braindumps.
UNITED KINGDOM
upvote

Bernard commented on April 13, 2021
Software is good but needs some UI/UX improvement. For example under Settings where you select between Simulator or Study mode is hard to notice as they look like tabs. A side for that content looks well formatted and valid.
UNITED STATES
upvote