Free IDENTITY-AND-ACCESS-MANAGEMENT-DESIGNER Exam Braindumps (page: 6)

Page 5 of 59

Universal containers (UC) has implemented SAML SSO to enable seamless access across multiple applications. UC has regional salesforce orgs and wants it's users to be able to access them from their main Salesforce org seamless.
Which action should an architect recommend?

  1. Configure the main salesforce org as an Authentication provider.
  2. Configure the main salesforce org as the Identity provider.
  3. Configure the regional salesforce orgs as Identity Providers.
  4. Configure the main Salesforce org as a service provider.

Answer(s): B



How should an identity architect automate provisioning and deprovisioning of users into Salesforce from an external system?

  1. Call SOAP API upsertQ on user object.
  2. Use Security Assertion Markup Language Just-in-Time (SAML JIT) on incoming SAML assertions.
  3. Run registration handler on incoming OAuth responses.
  4. Call OpenID Connect (OIDC)-userinfo endpoint with a valid access token.

Answer(s): B



Universal containers (UC) has an e-commerce website while customers can buy products, make payments, and managetheir accounts. UC decides to build a customer Community on Salesforce and wants to allow the customers to access the community for their accounts without logging in again. UC decides to implement ansp-Initiated SSO using a SAML- BASED complaint IDP. In this scenario where salesforce is the service provider, which two activities must be performed in salesforce to make sp-Initiated SSO work? Choose 2 answers

  1. Configure SAML SSO settings.
  2. Configure Delegated Authentication
  3. Create a connected App
  4. Setup my domain

Answer(s): A,D



A global company is using the Salesforce Platform as an IdentityProvider and needs to integrate a third-party application with its Experience Cloud customer portal.

Which two features should be utilized to provide users with login and identity services for the third-party application?

Choose 2 answers

  1. Use the App Launcher with single sign-on (SSO).
  2. External a Data source with Named Principal identity type.
  3. Use a connected app.
  4. Use Delegated Authentication.

Answer(s): A,C






Post your Comments and Discuss Salesforce IDENTITY-AND-ACCESS-MANAGEMENT-DESIGNER exam with other Community members:

IDENTITY-AND-ACCESS-MANAGEMENT-DESIGNER Discussions & Posts