Free IDENTITY-AND-ACCESS-MANAGEMENT-DESIGNER Exam Braindumps (page: 9)

Page 8 of 59

Universal containers (UC) would like to enable SSO between their existing Active Directory infrastructure and salesforce. The it team prefers to manage all users in Active Directory and would like to avoid doing any initial setup of users in salesforce directly, including the correct assignment of profiles, roles and groups.
Which two optimal solutions should UC use to provision users in salesforce? Choose 2 answers

  1. Use the salesforce REST API to sync users from active directoryto salesforce
  2. Use an app exchange product to sync users from Active Directory to salesforce.
  3. Use Active Directory Federation Services to sync users from active directory to salesforce.
  4. Use Identity connect to sync users from Active Directory to salesforce

Answer(s): B,D



Universal containers (UC) has implemented a multi-org strategy and would like to centralize the management of their salesforce user profiles.
What should the architect recommend to allow salesforce profiles to be managed from a central system of record?

  1. Implement jit provisioning on the SAML IDP that will pass the profile id in each assertion.
  2. Create an apex scheduled job in one org that will synchronize the other orgs profile.
  3. Implement Delegated Authentication that will update the user profiles as necessary.
  4. Implement an Oauthjwt flow to pass the profile credentials between systems.

Answer(s): A



Uwversal Containers (UC) is building a custom employeehut) application on Amazon Web Services (AWS) and would like to store their users' credentials there. Users will also need access to Salesforce for internal operations. UC has tasked an identity architect with evaluating Afferent solutions for authentication and authorization between AWS and Salesforce.

How should an identity architect configure AWS to authenticate and authorize Salesforce users?

  1. Configure the custom employee app as a connected app.
  2. Configure AWS as an OpenID Connect Provider.
  3. Create a custom external authentication provider.
  4. Develop a custom Auth server in AWS.

Answer(s): B



which three are features of federated Single Sign-on solutions? Choose 3 answers

  1. It federates credentials control to authorized applications.
  2. It establishes trust between Identity store and service provider.
  3. It solves all identity and access management problems.
  4. It improves affiliated applications adoption rates.
  5. It enables quick and easy provisioning and deactivating of users.

Answer(s): B,C,E






Post your Comments and Discuss Salesforce IDENTITY-AND-ACCESS-MANAGEMENT-DESIGNER exam with other Community members:

IDENTITY-AND-ACCESS-MANAGEMENT-DESIGNER Discussions & Posts