Free IDENTITY-AND-ACCESS-MANAGEMENT-DESIGNER Exam Braindumps (page: 12)

Page 11 of 59

Universal Containers (UC) rolling out a new Customer Identity and AccessManagement Solution will be built on top of their existing Salesforce instance.

Several service providers have been setup and integrated with Salesforce using OpenlD Connect to allow for a seamless single sign-on experience. UC has a requirement to limituser access to only a subset of service providers per customer type.

Which two steps should be done on the platform to satisfy the requirement?

Choose 2 answers

  1. Manage which connected apps a user has access to by assigning authentication providers to the users profile.
  2. Assign the connected app to the customer community, and enable the users profile in the Community settings.
  3. Use Profiles and Permission Sets to assign user access to Admin Pre-Approved Connected Apps.
  4. Set each of the Connected Appaccess settings to Admin Pre-Approved.

Answer(s): C,D



Universal Containers (UC) is implementing Salesforce and would like to establish SAML SSO for its users to log in. UC stores its corporate user identities in a Custom Database. The UC IT Manager has heard good things about Salesforce Identity Connect as an Idp, and would like to understand what limitations they may face if they decided to use Identity Connect in their current environment.
What limitation Should an Architect inform the IT Manager about?

  1. Identity Connect will not support user provisioning in UC's current environment.
  2. Identity Connectwill only support Idp-initiated SAML flows in UC's current environment.
  3. Identity Connect will only support SP-initiated SAML flows in UC's current environment.
  4. Identity connect is not compatible with UC's current identity environment.

Answer(s): A



Universal Containers (UC) has decided to use Salesforce as an Identity Provider for multiple external applications. UC wants to use the salesforce App Launcher to control the Apps that are available to individual users.
Which threesteps are required to make this happen?

  1. Add each connected App to the App Launcher with a Start URL.
  2. Set up an Auth Provider for each External Application.
  3. Set up Salesforce as a SAML Idp with My Domain.
  4. Set up Identity Connect to Synchronizeuser data.
  5. Create a Connected App for each external application.

Answer(s): A,C,E



Universal containers(UC) has a customer Community that uses Facebook for authentication. UC would like to ensure that changes in the Facebook profile are reflected on the appropriate customer Community user. How can this requirement be met?

  1. Use the updateuser() method on the registration handler class.
  2. Use SAML just-in-time provisioning between Facebook and Salesforce
  3. Use information in the signed requestthat is received from Facebook.
  4. Develop a schedule job that calls out to Facebook on a nightly basis.

Answer(s): A






Post your Comments and Discuss Salesforce IDENTITY-AND-ACCESS-MANAGEMENT-DESIGNER exam with other Community members:

IDENTITY-AND-ACCESS-MANAGEMENT-DESIGNER Discussions & Posts