Posted in Microsoft Microsoft MS-100 microsoft ms-100 dumps microsoft ms-100 pdf microsoft ms-100 practice exam microsoft ms-100 study guide Microsoft Role-based ms-100 Microsoft 365 Identity and Services

[Apr 2021] Microsoft MS-100 exam dumps and online practice questions are available from Lead4Pass

Table Of Content:

  1. Microsoft MS-100 Dumps Pdf
  2. Microsoft MS-100 Dumps Youtube
  3. Microsoft MS-100 Dumps Practice Test
  4. Microsoft Discount Code 2021

The latest updated Microsoft MS-100 exam dumps and free MS-100 exam practice questions and answers! Latest updates from Lead4Pass Microsoft MS-100 Dumps PDF and MS-100 Dumps VCE, Lead4Pass MS-100 exam questions updated and answers corrected! Get the full Microsoft MS-100 dumps from https://www.lead4pass.com/ms-100.html (VCE&PDF)

[Latest MS-100 PDF for free] Share the Microsoft MS-100 Dumps PDF for free From Lead4pass MS-100 Dumps part of the distraction collected on Google Drive shared by Lead4pass
https://drive.google.com/file/d/1Pb1o_0ZWZN44NldaLRAp2ZfVph7_HYU4/

[Latest Lead4pass MS-100 Youtube] Share the latest Microsoft MS-100 exam practice questions and answers for free from Led4Pass Dumps viewed online by Youtube Videos

The latest updated Microsoft MS-100 Exam Practice Questions and Answers Online Practice Test is free to share from Lead4Pass (Q1-Q13)

QUESTION 1
You have a Microsoft 365 subscription.
You have the devices shown in the following table. [2021.4] lead4pass ms-100 practice test q1

You need to onboard the devices to Windows Defender Advanced Threat Protection (ATP). The solution must avoid
installing software on the devices whenever possible.
Which onboarding method should you use for each operating system? To answer, drag the appropriate methods to the
correct operating systems. Each method may be used once, more than once, or not at all. You may need to drag the
split bar between panes or scroll to view content.
NOTE: Each correct selection is worth one point.
Select and Place:

[2021.4] lead4pass ms-100 practice test q1-1

Box 1:
To onboard down-level Windows client endpoints to Microsoft Defender ATP, you\\’ll need to:
Configure and update System Center Endpoint Protection clients.
Install and configure Microsoft Monitoring Agent (MMA) to report sensor data to Microsoft Defender ATP
Box 2:
For Windows 10 clients, the following deployment tools and methods are supported:
Group Policy
System Center Configuration Manager
Mobile Device Management (including Microsoft Intune)
Local script
Box 3:
Windows Server 2016 can be onboarded by using Azure Security Centre. When you add servers in the Security Centre,
the Microsoft Monitoring Agent is installed on the servers.
Reference:
https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-atp/onboard-downlevel-windowsdefender-advanced-threat-protection
https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-atp/configure-endpoints-windowsdefender-advanced-threat-protection
https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-atp/configure-server-endpointswindows-defender-advanced-threat-protection

 

QUESTION 2
SIMULATION
Please wait while the virtual machine loads. Once loaded, you may proceed to the lab section. This may take a few
minutes, and the wait time will not be deducted from your overall test time.
When the Next button is available, click it to access the lab section. In this section, you will perform a set of tasks in a
live environment. While most functionality will be available to you as it would be in a live environment, some
functionality
(e.g., copy and paste, ability to navigate to external websites) will not be possible by design.
Scoring is based on the outcome of performing the tasks stated in the lab. In other words, it doesn\\’t matters how you
accomplish the task, if you successfully perform it, you will earn credit for that task.
Labs are not timed separately, and this exam may have more than one lab that you must complete. You can use as
much time as you would like to complete each lab. But, you should manage your time appropriately to ensure that you
are
able to complete the lab(s) and all other sections of the exam in the time provided.
Please note that once you submit your work by clicking the Next button within a lab, you will NOT be able to return to
the lab.
You may now click next to proceed to the lab.
Lab information
Use the following login credentials as needed:
To enter your username, place your cursor in the Sign-in box and click on the username below.
To enter your password, place your cursor in the Enter password box and click on the password below.
Microsoft 365 Username:
[email protected]
Microsoft 365 Password: *yfLo7Ir2andyIf the Microsoft 365 portal does not load successfully in the browser, press CTRL-K to reload the portal in a new browser
tab.
The following information is for technical support purposes only:
Lab Instance: 10811525
You plan to invite several guest users to access the resources in your organization.
You need to ensure that only guests who have an email address that uses the @contoso.com suffix can connect to the
resources in your Microsoft 365 tenant.
A. See below.
Correct Answer: A
You need to add contoso.com as an allowed domain in the ‘External collaboration settings’.
1.
Go to the Azure Active Directory admin center.
2.
Select Users then select ‘User settings’.
3.
Under External Users, select the ‘Manage external collaboration settings.
4.
Under ‘Collaboration restrictions’, select the ‘Allow invitations only to the specified domains (most restrictive)’ option.
5.
Under, Target Domains, type in the domain name ‘contoso.com’
6.
Click the Save button at the top of the screen to save your changes.
References: https://docs.microsoft.com/en-us/azure/active-directory/b2b/allow-deny-list

 

QUESTION 3
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains
a unique solution that might meet the stated goals. Some question sets might have more than one correct solution,
while
others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not
appear in the review screen.
You have a Microsoft 365 subscription.
You discover that some external users accessed content on a Microsoft SharePoint site. You modify the SharePoint
sharing policy to prevent sharing outside your organization.
You need to be notified if the SharePoint policy is modified in the future.
Solution: From the Security and Compliance admin center, you create a threat management policy.
Does this meet the goal?
A. Yes
B. No
Correct Answer: A
We can create a threat management policy to alert us when the sharing policy is changed.
Create a new Alert policy > under Category select Threat Management > under `Activity is\\’ scroll down to the `Site
administration activities\\’ and select `Changed a sharing policy\\’.

 

QUESTION 4
HOTSPOT
Your network contains an on-premises Active Directory domain named contoso.com.
Your company purchases a Microsoft 365 subscription and establishes a hybrid deployment of Azure Active Directory
(Azure AD) by using password hash synchronization. Device writeback is disabled in Azure AD Connect.
You create a new user named User10 on-premises and a new user named User20 in Azure AD.
You need to identify where an administrator can reset the password of each new user.
What should you identify? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Hot Area:

[2021.4] lead4pass ms-100 practice test q4

Correct Answer:

[2021.4] lead4pass ms-100 practice test q4-1

If a user account is created in the on-premise Active Directory and synchronized to Azure Active Directory, you can
reset the password of the user account in the on-premise Active Directory only. If a user account is created in Azure
Active Directory, you can reset the password of the user account in the Azure Active Directory only.

 

QUESTION 5
Your company has a Microsoft 365 subscription.
You need to identify all the users in the subscription who are licensed for Microsoft Office 365 through a group
membership. The solution must include the name of the group used to assign the license.
What should you use?
A. the Licenses blade in the Azure portal
B. Reports in the Microsoft 365 admin center
C. Active users in the Microsoft 365 admin center
D. Reports in Security and Compliance
Correct Answer: A
In the Azure AD Admin Center, select Azure Active Directory then select Licenses to open the Licenses blade. From
there you need to click on the `Managed your purchased licenses link\\’. Select a license you want to view, for example
Office 365 E3. This will then display a list of all users with that license. In the `Assignment Paths\\’ column, it will say
`Direct\\’ for a license that has been assigned directly to a user or `Inherited (Group Name)\\’ for a license that has been
assigned through a group.
Reference: https://docs.microsoft.com/en-us/azure/active-directory/users-groups-roles/licensing-groups-assign

 

QUESTION 6
You have a Microsoft 365 subscription.
From the Security and Compliance admin center, you create a content search of all the mailboxes that contain the word
ProjectX.
You need to export the results of the content search. What do you need to download the report?
A. an export key
B. a password
C. a user certificate
D. a certification authority (CA) certificate
Correct Answer: A
When you export a report, the data is temporarily stored in a unique Azure Storage area in the Microsoft cloud before
it\\’s downloaded to your local computer. To download the report from the Azure Storage Area, you need an export key.
Reference: https://docs.microsoft.com/en-us/microsoft-365/compliance/export-a-content-search-report

 

QUESTION 7
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains
a unique solution that might meet the stated goals. Some question sets might have more than one correct solution,
while
others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not
appear in the review screen.
Your company has a Microsoft Office 365 tenant.
You suspect that several Office 365 features were recently updated.
You need to view a list of the features that were recently updated in the tenant.
Solution: You use Dashboard in Security and Compliance.
Does this meet the goal?
A. Yes
B. No
Correct Answer: B
Depending on what your organization\\’s Office 365 subscription includes, the Dashboard in Security and Compliance
includes several widgets, such as Threat Management Summary, Threat Protection Status, Global Weekly Threat
Detections, Malware, etc. It does not display a list of the features that were recently updated in the tenant so this
solution does not meet the goal.
To meet the goal, you need to use the Message center in the Microsoft 365 admin center. Reference:
https://docs.microsoft.com/en-us/microsoft-365/security/office-365-security/security-dashboard
https://docs.microsoft.com/en-us/office365/admin/manage/message-center?view=o365-worldwide

 

QUESTION 8
You have a Microsoft 365 subscription.
A new corporate security policy states that you must automatically send DLP incident reports to the users in the legal
department.
You need to schedule the email delivery of the reports. The solution must ensure that the reports are sent as frequently
as possible.
How frequently can you schedule the delivery of the reports?
A. hourly
B. monthly
C. weekly
D. daily
Correct Answer: C
From the Dashboard in the Security and Compliance center, you can view various reports including the DLP Incidents
report. From there you can configure a schedule to email the reports. In the schedule configuration, there are two
choices for the frequency: Weekly or Monthly. Therefore, to ensure that the reports are sent as frequently as possible,
you need to select Weekly.
Reference: https://docs.microsoft.com/en-us/microsoft-365/security/office-365-security/create-a-schedule-for-a-report

 

QUESTION 9
You have a Microsoft Azure Active Directory (Azure AD) tenant that contains the users shown in the following table.[2021.4] lead4pass ms-100 practice test q9

Your company uses Windows Defender Advanced Threat Protection (ATP). Windows Defender ATP contains the roles
shown in the following table.

[2021.4] lead4pass ms-100 practice test q9-1

For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct
selection is worth one point.
Hot Area:

[2021.4] lead4pass ms-100 practice test q9-2

Box 1:
Yes. User1 is in Group1 which is assigned to Role1. Device1 is in the device group named ATP1 which Group1 has
access to. Role1 gives Group1 (and User1) View Data Permission. This is enough to view Device1 in Windows Security
Center.
Box 2:
Yes. User2 is in Group2 which is assigned to Role2. Role2 gives Group2 (and User2) View Data Permission. This is
enough to sign in to Windows Security Center.
Box 3:
Yes. User3 is in Group3 which is assigned the Windows ATP Administrator role. Someone with a Microsoft Defender
ATP Global administrator role has unrestricted access to all machines, regardless of their machine group association
and
the Azure AD user groups assignments.
Reference:
https://docs.microsoft.com/en-us/windows/security/threat-protection/microsoft-defender-atp/user-roles
https://docs.microsoft.com/en-us/windows/security/threat-protection/microsoft-defender-atp/rbac

 

QUESTION 10
Your network contains an Active Directory forest. The forest contains two domains named contoso.com and
adatum.com.
Your company recently purchased a Microsoft 365 subscription.
You deploy a federated identity solution to the environment.
You use the following command to configure contoso.com for federation.
Convert-MsolDomaintoFederated ?domain name contoso.com
In the Microsoft 365 tenant, an administrator adds and verifies the adatum.com domain name.
You need to configure the adatum.com Active Directory domain for federated authentication.
Which two actions should you perform before you run the Azure AD Connect wizard? Each correct answer presents part
of the solution.
NOTE: Each correct selection is worth one point.
A. From Windows PowerShell, run the Convert-MsolDomaintoFederated?domain name contoso.com
?upportMultipleDomain command.
B. From Windows PowerShell, run the New-MsolFederatedDomain?upportMultipleDomain -DomainName contoso.com
command.
C. From Windows PowerShell, run the New-MsolFederatedDomain -DomainName adatum.com command.
D. From Windows PowerShell, run the Update-MSOLFederatedDomain?domain name contoso.com
?upportMultipleDomain command.
E. From the federation server, remove the Microsoft Office 365 relying on party trust.
Correct Answer: AE
When the Convert-MsolDomaintoFederated ?domain name contoso.com command was run, a relying party trust was
created.
Adding a second domain (adatum.com in this case) will only work if the SupportMultipleDomain switch was used when
the initial federation was configured by running the Convert-MsolDomaintoFederated ?domain name contoso.com
command.
Therefore, we need to start again by removing the relying party trust then running the Convert-MsolDomaintoFederated
command again with the SupportMultipleDomain switch.

 

QUESTION 11
You publish an enterprise application named App1 that processes financial data.
You need to ensure that access to App1 is revoked for users who no longer require viewing the processed financial
data.
What should you configure?
A. an owner
B. an app protection policy
C. an access review
D. a conditional access policy
Correct Answer: C
Reference: https://docs.microsoft.com/en-us/azure/active-directory/governance/create-access-review

 

QUESTION 12
HOTSPOT
Your company has an Azure Active Directory (Azure AD) tenant named contoso.com and a Microsoft 365 subscription.
Contoso.com contains the users shown in the following table.[2021.4] lead4pass ms-100 practice test q12

You add an enterprise application named App1 to contoso.com.
You configure the following self-service settings for App1:
Allow users to request access to this application is set to Yes.
To which group should assign users to be added is set to Group1.
Who is allowed to approve access to this application is set to User2.
Require approval before granting access to this application is set to Yes.
For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct
selection is worth one point.
Hot Area:

[2021.4] lead4pass ms-100 practice test q12-1

Correct Answer:

[2021.4] lead4pass ms-100 practice test q12-2

Box 1: Yes.
User1 can request access to App1 because “Allow users to request access to this application” is set to Yes.
Box 2: No.
User2 is an approver. If User2 requests access to App1, he will still need to approve the request before he is added to
Group1.
Box 3: Yes.
User2 can approve requests for App1 because “Who is allowed to approve access to this application” is set to User2.
Reference: https://docs.microsoft.com/en-us/azure/active-directory/manage-apps/manage-self-service-access

 

QUESTION 13
SIMULATION
Please wait while the virtual machine loads. Once loaded, you may proceed to the lab section. This may take a few
minutes, and the wait time will not be deducted from your overall test time.
When the Next button is available, click it to access the lab section. In this section, you will perform a set of tasks in a
live environment. While most functionality will be available to you as it would be in a live environment, some
functionality
(e.g., copy and paste, ability to navigate to external websites) will not be possible by design.
Scoring is based on the outcome of performing the tasks stated in the lab. In other words, it doesn\\’t matters how you
accomplish the task, if you successfully perform it, you will earn credit for that task.
Labs are not timed separately, and this exam may have more than one lab that you must complete. You can use as
much time as you would like to complete each lab. But, you should manage your time appropriately to ensure that you
are
able to complete the lab(s) and all other sections of the exam in the time provided.
Please note that once you submit your work by clicking the Next button within a lab, you will NOT be able to return to
the lab.
You may now click next to proceed to the lab.
Lab information
Use the following login credentials as needed:
To enter your username, place your cursor in the Sign inbox and click on the username below.
To enter your password, place your cursor in the Enter password box and click on the password below.
Microsoft 365 Username:
[email protected]
Microsoft 365 Password: 3andYWyjse-6-d
If the Microsoft 365 portal does not load successfully in the browser, press CTRL-K to reload the portal in a new browser
tab.
The following information is for technical support purposes only:
Lab Instance: 10887751
You need to modify Christie Cline to meet the following requirements:
Christie Cline must be able to view the service dashboard and the Microsoft Office 365 Message center.
Christie Cline must be able to create Microsoft support requests.
The solution must use the principle of least privilege.
A. See below.
Correct Answer: A
You need to assign Christie the ‘Service Support Admin’ role.
1.
In the Microsoft 365 Admin Center, click ‘Roles’.
2.
Scroll down to the Service Support Admin role and click on the role name.
3.
Click the ‘Assigned Admins’ link.
4.
Click the ‘Add’ button.
5.
Start typing the name Christie then select her account when it appears.
6.
Click Save.
References: https://docs.microsoft.com/en-US/azure/active-directory/users-groups-roles/directory-assign-admin-roles

Lead4Pass Microsoft Coupon Code 2021

Fulldumps shares the latest updated Microsoft MS-100 exam exercise questions, MS-100 dumps pdf for free.
All exam questions and answers come from the Lead4pass exam dumps shared part! Lead4pass updates throughout the year and shares a portion of your exam questions for free to help you understand the exam content and enhance your exam experience! Get the full Microsoft MS-100 exam dumps questions at https://www.lead4pass.com/ms-100.html (pdf&vce)

ps.
Get free Microsoft MS-100 dumps PDF online: https://drive.google.com/file/d/1Pb1o_0ZWZN44NldaLRAp2ZfVph7_HYU4/

Posted in Microsoft Microsoft MS-100 microsoft ms-100 dumps microsoft ms-100 pdf microsoft ms-100 practice exam microsoft ms-100 study guide microsoft press ms-100 Microsoft Role-based ms-100 Microsoft 365 Identity and Services

[Jan 2021] Microsoft MS-100 exam dumps and online practice questions are available from Lead4Pass

The latest updated Microsoft MS-100 exam dumps and free MS-100 exam practice questions and answers! Latest updates from Lead4Pass Microsoft MS-100 Dumps PDF and MS-100 Dumps VCE, Lead4Pass MS-100 exam questions updated and answers corrected!
Get the full Microsoft MS-100 dumps from https://www.lead4pass.com/ms-100.html (VCE&PDF)

Exam MS-100: Microsoft 365 Identity and Services – website: https://docs.microsoft.com/en-us/learn/certifications/exams/ms-100

Latest MS-100 PDF for free

Share the Microsoft MS-100 Dumps PDF for free From Lead4pass MS-100 Dumps part of the distraction collected on Google Drive shared by Lead4pass
https://drive.google.com/file/d/13LVi5CAbTzWlIKyiysNRs0p6oEVsY4Fw/

Latest Lead4pass MS-100 Youtube

Share the latest Microsoft MS-100 exam practice questions and answers for free from Led4Pass Dumps viewed online by Youtube Videos

The latest updated Microsoft MS-100 Exam Practice Questions and Answers Online Practice Test is free to share from Lead4Pass (Q1-Q13)

QUESTION 1
HOTSPOT
Your network contains an Active Directory domain named fabrikam.com. The domain contains the objects shown in the
following table.[2021.1] lead4pass ms-100 practice test q1

You are configuring synchronization between fabrikam.com and a Microsoft Azure Active Directory (Azure AD) tenant.
You configure the Domain/OU Filtering settings in Azure AD Connect as shown in the Domain/OU Filtering exhibit.
(Click the Domain/OU Filtering tab.)

[2021.1] lead4pass ms-100 practice test q1-1

You configure the Filtering settings in Azure AD Connect as shown in the Filtering exhibit. (Click the Filtering tab.)

[2021.1] lead4pass ms-100 practice test q1-2

For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Hot Area:

[2021.1] lead4pass ms-100 practice test q1-3

Correct Answer:

[2021.1] lead4pass ms-100 practice test q1-4

Box 1: No
The filtering is configured to synchronize Group2 and OU2 only. The effect of this is that only members of Group2 who
are in OU2 will be synchronized.
User2 is in Group2. However, the User2 account object is in OU1 so User2 will not synchronize to Azure AD.
Box 2: Yes
Group2 is in OU2 so Group2 will synchronize to Azure AD. However, only members of the group who are in OU2 will
synchronize. Members of Group2 who are in OU1 will not synchronize.
Box 3: Yes
User3 is in Group2 and in OU2. Therefore, User3 will synchronize to Azure AD.
References:
https://docs.microsoft.com/en-us/azure/active-directory/hybrid/how-to-connect-sync-configure-filtering#group-basedfiltering

 

QUESTION 2
Your company has a Microsoft 365 tenant.
You plan to allow users from the engineering department to enroll their mobile device in mobile device management
(MDM).
The device type restrictions are configured as shown in the following table.

[2021.1] lead4pass ms-100 practice test q2

The device limit restrictions are configured as shown in the following table.

[2021.1] lead4pass ms-100 practice test q2-1

What is the effective configuration for the members of the Engineering group? To answer, select the appropriate options
in the answer area. NOTE: Each correct selection is worth one point.
Hot Area:

[2021.1] lead4pass ms-100 practice test q2-2

Correct Answer:

[2021.1] lead4pass ms-100 practice test q2-3

When multiple policies are applied to groups that users are a member of, only the highest priority (lowest number) policy
applies.
In this case, the Engineering users are assigned two device type policies (the default policy and the priority 2 policy).
The priority 2 policy has a higher priority than the default policy so the Engineers’ allowed platform is Android only.
The engineers have two device limit restrictions policies applied to them. The priority1 policy is a higher priority than the
priority2 policy so the priority1 policy device limit (15) applies.
Reference:
https://docs.microsoft.com/en-us/intune/enrollment/enrollment-restrictions-set

 

QUESTION 3
You have a Microsoft 365 subscription.
You add a domain named contoso.com.
When you attempt to verify the domain, you are prompted to send a verification email to [email protected]
You need to change the email address used to verify the domain.
What should you do?
A. From the domain registrar, modify the contact information of the domain
B. Add a TXT record to the DNS zone of the domain
C. Modify the NS records for the domain
D. From the Microsoft 365 admin center, change the global administrator of the Microsoft 365 subscription
Correct Answer: A
The email address that is used to verify that you own the domain is the email address listed with the domain registrar for
the registered contact for the domain.
Reference: https://docs.microsoft.com/en-us/microsoft-365/admin/setup/add-domain?view=o365-worldwide

 

QUESTION 4
Your company has a Microsoft Azure Active Directory (Azure AD) directory tenant named contoso.onmicrosoft.com.
All users have client computers that run Windows 10 Pro and are joined to Azure AD.
The company purchases a Microsoft 365 E3 subscription.
You need to upgrade all the computers to Windows 10 Enterprise. The solution must minimize administrative effort.
You assign licenses from the Microsoft 365 admin center.
What should you do next?
A. Add a custom domain name to the subscription.
B. Deploy Windows 10 Enterprise by using Windows Autopilot.
C. Create a provisioning package and then deploy the package to all the computers.
D. Instruct all the users to log off of their computer, and then to log in again.
Correct Answer: B
With Windows Autopilot the user can set up pre-configure devices without the need to consult their IT administrator.
Reference: https://docs.microsoft.com/en-us/windows/deployment/windows-10-deployment-scenarios
https://docs.microsoft.com/en-us/windows/deployment/windows-autopilot/windows-autopilot

 

QUESTION 5
Your network contains an Active Directory domain named contoso.com. The domain contains the file servers shown in
the following table.[2021.1] lead4pass ms-100 practice test q5

A file named File1.abc is stored on Server1. A file named File2.abc is stored on Server2. Three apps named App1,
App2, and App3 all open files that have the .abc file extension. You implement Windows Information Protection (WIP) by
using the following configurations:
1.
Exempt apps: App2
2.
Protected apps: App1
3.
Windows Information Protection mode: Block
4.
Network boundary: IPv4 range of 192.168.1.1-192.168.1.255
You need to identify the apps from which you can open File1.abc
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Hot Area:

[2021.1] lead4pass ms-100 practice test q5-1

Box 1: Yes.
App1 is a protected app in the Windows Information Protection policy. File1 is stored on Server1 which is in the Network
Boundary defined in the policy. Therefore, you can open File1 in App1.
Box 2: Yes.
App2 is exempt from the Windows Information Protection policy. The protection mode in the policy is blocked so all apps that
are not included in the policy cannot be used to open the file… except for exempt apps. Therefore, you can open File1 in
App2.
Box 3: No.
The protection mode in the policy is blocked so all apps that are not included in the policy as protected apps or listed as
exempt from the policy cannot be used to open the file. Therefore, you cannot open the File from in App3.
References:
https://docs.microsoft.com/en-us/windows/security/information-protection/windows-information-protection/create-wippolicy-using-intune-azure

 

QUESTION 6
You have a Microsoft 365 tenant that contains Microsoft Exchange Online.
You plan to enable calendar sharing with a partner organization named adatum.com. The partner organization also has
a Microsoft 365 tenant.
You need to ensure that the calendar of every user is available to the users in adatum.com immediately.
What should you do?
A. From the Exchange admin center, create a sharing policy.
B. From the Exchange admin center, create a new organization relationship.
C. From the Microsoft 365 admin center, modify the Organization profile settings.
D. From the Microsoft 365 admin center, configure external site sharing.
Correct Answer: B
You need to set up an organizational relationship to share calendar information with an external business partner. Office
365 admins can set up an organization relationship with another Office 365 organization or with an Exchange onpremises organization.
Reference: https://docs.microsoft.com/en-us/exchange/sharing/organization-relationships/create-an-organizationrelationship

 

QUESTION 7
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains
a unique solution that might meet the stated goals. Some question sets might have more than one correct solution,
while
others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not
appear in the review screen.
Your company plans to deploy several Microsoft Office 365 services.
You need to design an authentication strategy for the planned deployment. The solution must meet the following
requirements:
1.
Users must be able to authenticate during business hours only.
2.
Authentication requests must be processed successfully if a single server fails.
3.
When the password for an on-premises user account expires, the new password must be enforced the next time the
user signs in.
4.
Users who connect to Office 365 services from domain-joined devices that are connected to the internal network must
be signed in automatically.
Solution: You design an authentication strategy that uses federation authentication by using Active Directory Federation
Services (AD FS). The solution contains two AD FS servers and two Web Application Proxies.
Does this meet the goal?
A. Yes
B. No
Correct Answer: B
This solution meets the following requirements:
1.
Users must be able to authenticate during business hours only.
2.
Authentication requests must be processed successfully if a single server fails.
3.
When the password for an on-premises user account expires, the new password must be enforced the next time the
user signs in.
The following requirement is not met:
Users who connect to Office 365 services from domain-joined devices that are connected to the internal network must
be signed in automatically.
To meet this requirement, you would need to configure a seamless Single Sign-on (SSO)
Reference:
https://docs.microsoft.com/en-us/azure/security/azure-ad-choose-authn

 

QUESTION 8
Your network contains an on-premises Active Directory domain named contoso.com that is synced to a Microsoft Azure
Active Directory (Azure AD) tenant.
The on-premises network contains a file server named Server1. Server1 has a share named Share1 that contains
company documents.
Your company purchases a Microsoft 365 subscription.
You plan to migrate data from Share1 to Microsoft 365. Only data that was created or modified during the last three
months will be migrated.
You need to identify all the files in Share1 that were modified or created during the last 90 days.
What should you use?
A. Server Manager
B. Microsoft SharePoint Migration Tool
C. Resource Monitor
D. Usage reports from the Microsoft 365 admin center
Correct Answer: B
You can use the Microsoft SharePoint Migration Tool to migrate files from a file server to SharePoint Online.
The Microsoft SharePoint Migration Tool has a number of filters you can use to define which files will be migrated. One
filter setting is “Migrate files modified after”. This setting will only migrate files modified after the selected date. The first
phase of migration is to perform a scan of the source files to create a manifest of the files that will be migrated. You
can use this manifest to identify all the files in Share1 that were modified or created during the last 90 days.
References:
https://docs.microsoft.com/en-us/sharepointmigration/spmt-settings

 

QUESTION 9
SIMULATION
Please wait while the virtual machine loads. Once loaded, you may proceed to the lab section. This may take a few
minutes, and the wait time will not be deducted from your overall test time.
When the Next button is available, click it to access the lab section. In this section, you will perform a set of tasks in a
live environment. While most functionality will be available to you as it would be in a live environment, some
functionality
(e.g., copy and paste, ability to navigate to external websites) will not be possible by design.
Scoring is based on the outcome of performing the tasks stated in the lab. In other words, it doesn\\’t matters how you
accomplish the task, if you successfully perform it, you will earn credit for that task.
Labs are not timed separately, and this exam may have more than one lab that you must complete. You can use as
much time as you would like to complete each lab. But, you should manage your time appropriately to ensure that you
are
able to complete the lab(s) and all other sections of the exam in the time provided.
Please note that once you submit your work by clicking the Next button within a lab, you will NOT be able to return to
the lab.
You may now click next to proceed to the lab.
Lab information
Use the following login credentials as needed:
To enter your username, place your cursor in the Sign inbox and click on the username below.
To enter your password, place your cursor in the Enter password box and click on the password below.
Microsoft 365 Username:
[email protected]
Microsoft 365 Password: *yfLo7Ir2andyIf the Microsoft 365 portal does not load successfully in the browser, press CTRL-K to reload the portal in a new browser
tab.
The following information is for technical support purposes only:
Lab Instance: 10811525
Your organization recently implemented a new data retention policy. The policy requires that all files stored in an
employee\\’s Microsoft OneDrive folders be retained for 60 days after the employee is terminated from the organization.
The human resources (HR) department of the organization deletes the user accounts of all terminated employees.
You need to ensure that the organization meets the requirements of the data retention policy.
A. See below.
Correct Answer: A
You need to configure the OneDrive retention period for deleted users.
1.
Go to the OneDrive admin center.
2.
Select Storage.
3.
Set the “Days to retain files in OneDrive after a user account is marked for deletion” option to 60.
4.
Click Save to save the changes.
References: https://docs.microsoft.com/bs-latn-ba/onedrive/set-retention

 

QUESTION 10
SIMULATION
Please wait while the virtual machine loads. Once loaded, you may proceed to the lab section. This may take a few
minutes, and the wait time will not be deducted from your overall test time.
When the Next button is available, click it to access the lab section. In this section, you will perform a set of tasks in a
live environment. While most functionality will be available to you as it would be in a live environment, some
functionality
(e.g., copy and paste, ability to navigate to external websites) will not be possible by design.
Scoring is based on the outcome of performing the tasks stated in the lab. In other words, it doesn\\’t matters how you
accomplish the task, if you successfully perform it, you will earn credit for that task.
Labs are not timed separately, and this exam may have more than one lab that you must complete. You can use as
much time as you would like to complete each lab. But, you should manage your time appropriately to ensure that you
are
able to complete the lab(s) and all other sections of the exam in the time provided.
Please note that once you submit your work by clicking the Next button within a lab, you will NOT be able to return to
the lab.
You may now click next to proceed to the lab.
Lab information
Use the following login credentials as needed:
To enter your username, place your cursor in the Sign inbox and click on the username below.
To enter your password, place your cursor in the Enter password box and click on the password below.
Microsoft 365 Username:
[email protected]
Microsoft 365 Password: *yfLo7Ir2andyIf the Microsoft 365 portal does not load successfully in the browser, press CTRL-K to reload the portal in a new browser
tab.
The following information is for technical support purposes only:
Lab Instance: 10811525
Your organization plans to open an office in New York, and then to add 100 users to the office. The city attribute for all
new users will be New York.
You need to ensure that all the new users in the New York office are licensed for Microsoft Office 365 automatically.
A. See below.
Correct Answer: A
You need to create a dynamic group based on the city attribute. You then need to assign a license to the group. User
accounts with the city attribute set to ‘New York’ will automatically be added to the group. Anyone who is added to the
group will automatically be assigned the license that is assigned to the group.
1.
Go to the Azure Active Directory admin center.
2.
Select Azure Active Directory then select Groups.
3.
Click on the New Group link.
4.
Give the group a name such as New York Users.
5.
Select Users as the membership type.
6.
Select ‘Add dynamic query’.
7.
Select ‘City’ in the Property drop-down box.
8.
Select ‘Equals’ in the Operator drop-down box.
9.
Enter ‘New York’ as the Value. You should see the following text in the Expression box: user. city -eq “New York”
10.
Click Save to create the group.
11.
In the Groups list, select the new group to open the properties page for the group.
12.
Select ‘Licenses’.
13.
Select the ‘+ Assignments’ link.
14.
Tick the box to select the license.
15.
Click the Save button to save the changes.
References: https://docs.microsoft.com/en-us/azure/active-directory/users-groups-roles/groups-dynamic-membership
https://docs.microsoft.com/en-us/azure/active-directory/users-groups-roles/licensing-groups-assign

 

QUESTION 11
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains
a unique solution that might meet the stated goals. Some question sets might have more than one correct solution,
while
others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not
appear in the review screen.
Your network contains an on-premises Active Directory domain named contoso.com. The domain contains the users
shown in the following table.[2021.1] lead4pass ms-100 practice test q11

The domain syncs to an Azure Active Directory (Azure AD) tenant named contoso.com as shown in the exhibit.

[2021.1] lead4pass ms-100 practice test q11-1

User2 fails to authenticate to Azure AD when signing in as [email protected]
You need to ensure that User2 can access the resources in Azure AD.
Solution: From the on-premises Active Directory domain, you assign User2 the Allow log on locally user right. You
instruct User2 to sign in as [email protected]
Does this meet the goal?
A. Yes
B. No
Correct Answer: B
This is not a permissions issue.
The on-premises Active Directory domain is named contoso.com. To enable users to sign on using a different UPN
(different domain), you need to add the domain to Microsoft 365 as a custom domain.

 

QUESTION 12
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains
a unique solution that might meet the stated goals. Some question sets might have more than one correct solution,
while
others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not
appear in the review screen.
Your network contains an on-premises Active Directory domain named contoso.com. The domain contains the users
shown in the following table.[2021.1] lead4pass ms-100 practice test q12

The domain syncs to an Azure Active Directory (Azure AD) tenant named contoso.com as shown in the exhibit.

[2021.1] lead4pass ms-100 practice test q12-1

User2 fails to authenticate to Azure AD when signing in as [email protected]
You need to ensure that User2 can access the resources in Azure AD.
Solution: From the on-premises Active Directory domain, you set the UPN suffix for User2 to @contoso.com. You
instruct User2 to sign in as [email protected]
Does this meet the goal?
A. Yes
B. No
Correct Answer: A
The on-premises Active Directory domain is named contoso.com. You can enable users to sign on using a different
UPN (different domain), by adding the domain to Microsoft 365 as a custom domain. Alternatively, you can configure the
user account to use the existing domain (contoso.com).

 

QUESTION 13
Your company has an Azure Active Directory (Azure AD) tenant named contoso.com that contains 10,000 users.
The company has a Microsoft 365 subscription.
You enable Azure Multi-Factor Authentication (MFA) for all the users in contoso.com.
You run the following query.
search “SigninLogs” | where ResultDescription == “User did not pass the MFA challenge.”
The query returns blank results.
You need to ensure that the query returns the expected results.
What should you do?
A. From the Azure Active Directory admin center, configure the diagnostics settings to archive logs to an Azure Storage
account.
B. From the Security and Compliance admin center, turn on auditing.
C. From the Security and Compliance admin center, enable Office 365 Analytics.
D. From the Azure Active Directory admin center, configure the diagnostics settings to send logs to an Azure Log
Analytics workplace.
Correct Answer: D
You can now send audit logs to Azure Log Analytics. This gives you much easier reporting on audit events and the
ability to perform queries such as the one in this question.
References: https://docs.microsoft.com/en-us/azure/active-directory/reports-monitoring/howto-integrate-activity-logs-withlog-analytics


Fulldumps shares the latest updated Microsoft MS-100 exam exercise questions, MS-100 dumps pdf, and Youtube video learning for free.
All exam questions and answers come from the Lead4pass exam dumps shared part! Lead4pass updates throughout the year and shares a portion of your exam questions for free to help you understand the exam content and enhance your exam experience!
Get the full Microsoft MS-100 exam dumps questions at https://www.lead4pass.com/ms-100.html (pdf&vce)

ps.
Get free Microsoft MS-100 dumps PDF online: https://drive.google.com/file/d/13LVi5CAbTzWlIKyiysNRs0p6oEVsY4Fw/

Posted in Microsoft Microsoft MS-100 microsoft ms-100 dumps microsoft ms-100 pdf microsoft ms-100 practice exam microsoft ms-100 study guide microsoft press ms-100 Microsoft Role-based ms-100 Microsoft 365 Identity and Services

[Otc 2020] New Microsoft MS-100 Brain dumps and online practice tests are shared from Lead4Pass (latest Updated)

The latest Microsoft MS-100 dumps by Lead4Pass helps you pass the MS-100 exam for the first time! Lead4Pass Latest Update Microsoft MS-100 VCE Dump and MS-100 PDF Dumps, Lead4Pass MS-100 Exam Questions Updated, Answers corrected! Get the latest LeadPass MS-100 dumps with Vce and PDF: https://www.lead4pass.com/ms-100.html (Q&As: 273 dumps)

[Free MS-100 PDF] Microsoft MS-100 Dumps PDF can be collected on Google Drive shared by Lead4Pass:
https://drive.google.com/file/d/1Ubgcah00q_f60KQLFu1-ZzIw7t1gpF8y/

[Lead4pass MS-100 Youtube] Microsoft MS-100 Dumps can be viewed on Youtube shared by Lead4Pass

Microsoft MS-100 Online Exam Practice Questions

QUESTION 1
Your network contains an Active Directory domain named contoso.com. The domain contains 1000 Windows 8.1
devices.
You plan to deploy a custom Windows 10 Enterprise image to the Windows 8.1 devices.
You need to recommend a Windows 10 deployment method.
What should you recommend?
A. Wipe and load refresh
B. Windows Autopilot
C. a provisioning package
D. an in-place upgrade
Correct Answer: A
To deploy a custom image, you must use the wipe and load refresh method. You cannot deploy a custom image by
using an in-place upgrade, Windows Autopilot, or a provisioning package.
Reference: https://docs.microsoft.com/en-us/windows/deployment/windows-10-deployment-scenarios

 

QUESTION 2
HOTSPOT
You need to meet the technical requirements for the user licenses.
Which two properties should you configure for each user? To answer, select the appropriate properties in the answer
area.
NOTE: Each correct selection is worth one point.
Hot Area:lead4pass ms-100 exam questions q2

Correct Answer:

lead4pass ms-100 exam questions q2-1

All new users must be assigned Office 365 licenses automatically.
To enable Microsoft 365 license assignment, the users must have a username. This is also the UPN. The users must
also have a Usage Location.

 

QUESTION 3
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains
a unique solution that might meet the stated goals. Some question sets might have more than one correct solution,
while
others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not
appear on the review screen.
You have a Microsoft 365 subscription.
You need to prevent users from accessing your Microsoft SharePoint Online sites unless the users are connected to
your on-premises network.
Solution: From the Microsoft 365 admin center, you configure the Organization profile settings.
Does this meet the goal?
A. Yes
B. No
Correct Answer: B
You need to configure a trusted location and a conditional access policy.
Conditional Access in SharePoint Online can be configured to use an IP Address white list to allow access.
Reference:
https://techcommunity.microsoft.com/t5/Microsoft-SharePoint-Blog/Conditional-Access-in-SharePoint-Online-andOneDrive-for/ba-p/46678

 

QUESTION 4
You have a Microsoft 365 Enterprise subscription.
You have a conditional access policy to force multi-factor authentication when accessing Microsoft SharePoint from a
mobile device.
You need to view which users authenticated by using multi-factor authentication.
What should you do?
A. From the Microsoft 365 admin center, view the Security and Compliance reports.
B. From the Azure Active Directory admin center, view the user sign-ins.
C. From the Microsoft 365 admin center, view the Usage reports.
D. From the Azure Active Directory admin center, view the audit logs.
Correct Answer: B
With the sign-ins activity report in the Azure portal, you can get the information you need to determine how your
environment is doing. The sign-ins report can provide you with information about the usage of managed applications
and user sign-in activities, which includes information about multi-factor authentication (MFA) usage. The MFA data
gives you insights into how MFA is working in your organization. It enables you to answer questions like:
1.
Was the sign-in challenged with MFA?
2.
How did the user complete MFA?
3.
Why was the user unable to complete MFA?
4.
How many users are challenged for MFA?
5.
How many users are unable to complete the MFA challenge?
6.
What are the common MFA issues end-users are running into?
Reference: https://docs.microsoft.com/en-us/azure/active-directory/authentication/howto-mfa-reporting

 

QUESTION 5
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains
a unique solution that might meet the stated goals. Some question sets might have more than one correct solution,
while
others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not
appear on the review screen.
Your network contains an on-premises Active Directory domain named contoso.com. The domain contains the users
shown in the following table.lead4pass ms-100 exam questions q5

The domain syncs to an Azure Active Directory (Azure AD) tenant named contoso.com as shown in the exhibit.

lead4pass ms-100 exam questions q5-1

User2 fails to authenticate to Azure AD when signing in as [email protected]
You need to ensure that User2 can access the resources in Azure AD.
Solution: From the Azure Active Directory admin center, you add fabrikam.com as a custom domain. You instruct User2
to sign in as [email protected]
Does this meet the goal?
A. Yes
B. No
Correct Answer: A
The on-premises Active Directory domain is named contoso.com. To enable users to sign on using a different UPN
(different domain), you need to add the domain to Microsoft 365 as a custom domain.

 

QUESTION 6
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains
a unique solution that might meet the stated goals. Some question sets might have more than one correct solution,
while
others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not
appear on the review screen.
Your network contains an Active Directory forest.
You deploy Microsoft 365.
You plan to implement directory synchronization.
You need to recommend a security solution for synchronized identities. The solution must meet the following
requirements:
1. Users must be able to authenticate successfully to Microsoft 365 services if Active Directory becomes unavailable.
2. User passwords must be 10 characters or more.
Solution: Implement password hash synchronization and configure password protection in the Azure AD tenant.
Does this meet the goal?
A. Yes
B. No
Correct Answer: B
This solution meets the following requirement:
Users must be able to authenticate successfully to Microsoft 365 services if Active Directory becomes unavailable. (this
is because the authentication is performed by Azure Active Directory).
This solution does not meet the following requirement:
The user’s passwords must be 10 characters or more.
To meet this requirement, you would need to configure the Default Domain Policy in the on-premise Active Directory.
Azure Password Protection can prevent users from using passwords from a `banned password\\’ list but it cannot be
configured to require that passwords must be 10 characters or more.
Reference:
https://docs.microsoft.com/en-us/azure/active-directory/hybrid/how-to-connect-password-hash-synchronization

 

QUESTION 7
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains
a unique solution that might meet the stated goals. Some question sets might have more than one correct solution,
while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not
appear on the review screen.
Your company plans to deploy several Microsoft Office 365 services.
You need to design an authentication strategy for the planned deployment. The solution must meet the following
requirements:
1.
Users must be able to authenticate during business hours only.
2.
Authentication requests must be processed successfully if a single server fails.
3.
When the password for an on-premises user account expires, the new password must be enforced the next time the
user signs in.
4.
Users who connect to Office 365 services from domain-joined devices that are connected to the internal network must
be signed in automatically.
Solution: You design an authentication strategy that uses federation authentication by using Active Directory Federation
Services (AD FS). The solution contains two AD FS servers and two Web Application Proxies.
Does this meet the goal?
A. Yes
B. No
Correct Answer: B
This solution meets the following requirements:
1.
Users must be able to authenticate during business hours only.
2.
Authentication requests must be processed successfully if a single server fails.
3.
When the password for an on-premises user account expires, the new password must be enforced the next time the
user signs in.
The following requirement is not met:
Users who connect to Office 365 services from domain-joined devices that are connected to the internal network must
be signed in automatically.
To meet this requirement, you would need to configure seamless Single Sign-on (SSO)
Reference:
https://docs.microsoft.com/en-us/azure/security/azure-ad-choose-authn

 

QUESTION 8
You have a Microsoft 365 subscription.
You plan to enable Microsoft Azure Information Protection.
You need to ensure that only the members of a group named PilotUsers can protect content.
What should you do?
A. Run the Add-AadrmRoleBaseAdministrator cmdlet.
B. Create an Azure Information Protection policy.
C. Configure the protection activation status for Azure Information Protection.
D. Run the Set-AadrmOnboardingControlPolicy cmdlet.
Correct Answer: D
If you don\\’t want all users to be able to protect documents and emails immediately by using Azure Rights
Management, you can configure user onboarding controls by using the Set-AadrmOnboardingControlPolicy
Reference: https://docs.microsoft.com/en-us/azure/information-protection/activate-service

 

QUESTION 9
Your company has a hybrid deployment of Microsoft 365.
An on-premises user named User1 is synced to Microsoft Azure Active Directory (Azure AD).
Azure AD Connect is configured as shown in the following exhibit.lead4pass ms-100 exam questions q9

Use the drop-down menus to select the answer choice that completes each statement based on the information
presented in the graphic. NOTE: Each correct selection is worth one point.
Hot Area:

lead4pass ms-100 exam questions q9-1

User1 cannot change her password from any Microsoft portals because Password Writeback is disabled in the Azure
AD Connect configuration.
If the password for User1 is changed in Active Directory, the password will be synchronized to Azure AD because
Password Synchronization is enabled in the Azure AD Connect configuration.
Reference:
https://docs.microsoft.com/en-us/azure/active-directory/hybrid/how-to-connect-install-custom

 

QUESTION 10
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains
a unique solution that might meet the stated goals. Some question sets might have more than one correct solution,
while
others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not
appear on the review screen.
You have a Microsoft 365 subscription.
You need to prevent users from accessing your Microsoft SharePoint Online sites unless the users are connected to
your on-premises network.
Solution: From the Device Management admin center, you a trusted location and compliance policy.
Does this meet the goal?
A. Yes
B. No
Correct Answer: B
You need to configure a conditional access policy, not a compliance policy.
Conditional Access in SharePoint Online can be configured to use an IP Address white list to allow access.
Reference:
https://techcommunity.microsoft.com/t5/Microsoft-SharePoint-Blog/Conditional-Access-in-SharePoint-Online-andOneDrive-for/ba-p/46678

 

QUESTION 11
Your network contains three Active Directory forests.
You create a Microsoft Azure Active Directory (Azure AD) tenant.
You plan to sync the on-premises Active Directory to Azure AD.
You need to recommend a synchronization solution. The solution must ensure that the synchronization can complete
successfully and as quickly as possible if a single server fails.
What should you include in the recommendation?
A. three Azure AD Connect sync servers and three Azure AD Connect sync servers in staging mode
B. one Azure AD Connect sync server and one Azure AD Connect sync server in staging mode
C. three Azure AD Connect sync servers and one Azure AD Connect sync server in staging mode
D. six Azure AD Connect sync servers and three Azure AD Connect sync servers in staging mode
Correct Answer: B
Azure AD Connect can be active on only one server. You can install Azure AD Connect on another server for
redundancy but the additional installation would need to be in Staging mode. An Azure AD connect installation in
Staging mode is configured and ready to go but it needs to be manually switched to Active to perform directory
synchronization.
Reference: https://docs.microsoft.com/en-us/azure/active-directory/hybrid/how-to-connect-install-custom

 

QUESTION 12
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains
a unique solution that might meet the stated goals. Some question sets might have more than one correct solution,
while
others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not
appear on the review screen.
Your network contains an Active Directory forest.
You deploy Microsoft 365.
You plan to implement directory synchronization.
You need to recommend a security solution for synchronized identities. The solution must meet the following
requirements:
1.
Users must be able to authenticate successfully to Microsoft 365 services if Active Directory becomes unavailable.
2.
User passwords must be 10 characters or more.
Solution: Implement password hash synchronization and modify the password settings from the Default Domain Policy
in Active Directory.
Does this meet the goal?
A. Yes
B. No
Correct Answer: A
This solution meets the requirements:
1.
Users must be able to authenticate successfully to Microsoft 365 services if Active Directory becomes unavailable. (this
is because the authentication is performed by Azure Active Directory).
2.
The user’s passwords must be 10 characters or more. (the Default Domain Policy in the on-premise Active Directory can be
configured to require the password length)
Reference: https://docs.microsoft.com/en-us/azure/active-directory/hybrid/how-to-connect-password-hashsynchronization

 

QUESTION 13
SIMULATION
Please wait while the virtual machine loads. Once loaded, you may proceed to the lab section. This may take a few
minutes, and the wait time will not be deducted from your overall test time.
When the Next button is available, click it to access the lab section. In this section, you will perform a set of tasks in a
live environment. While most functionality will be available to you as it would be in a live environment, some
functionality
(e.g., copy and paste, ability to navigate to external websites) will not be possible by design.
Scoring is based on the outcome of performing the tasks stated in the lab. In other words, it doesn\\’t matter how you
accomplish the task, if you successfully perform it, you will earn credit for that task.
Labs are not timed separately, and this exam may have more than one lab that you must complete. You can use as
much time as you would like to complete each lab. But, you should manage your time appropriately to ensure that you
are
able to complete the lab(s) and all other sections of the exam in the time provided.
Please note that once you submit your work by clicking the Next button within a lab, you will NOT be able to return to
the lab.
You may now click next to proceed to the lab.
Lab information
Use the following login credentials as needed:
To enter your username, place your cursor in the Sign inbox and click on the username below.
To enter your password, place your cursor in the Enter password box and click on the password below.
Microsoft 365 Username:
[email protected]
Microsoft 365 Password: 3andYWyjse-6-d
If the Microsoft 365 portal does not load successfully in the browser, press CTRL-K to reload the portal in a new browser
tab.
The following information is for technical support purposes only:
Lab Instance: 10887751
You have a user named Grady Archie. The solution must meet the following requirements:
Grady Archie must be able to add payment methods to your Microsoft Office 365 tenant.
The solution must minimize the number of licenses assigned to users.
The solution must use the principle of least privilege.
A. See below.
Correct Answer: A
You need to assign the ‘Billing Administrator’ role to Grady Archie.
1.
Go to the Azure Active Directory admin center.
2.
Select Users.
3.
Select the Grady Archie account to open the account properties page.
4.
Select ‘Assigned roles’.
5.
Click the ‘Add Assignments’ button.
6.
Select the Billing Administrator then click the Add button.
References: https://docs.microsoft.com/en-us/office365/admin/add-users/about-admin-roles?view=o365-worldwide


latest updated Microsoft MS-100 exam questions from the Lead4Pass MS-100 dumps! 100% pass the MS-100 exam! Download Lead4Pass MS-100 VCE and PDF dumps: https://www.lead4pass.com/ms-100.html (Q&As: 273 dumps)

Get free Microsoft MS-100 dumps PDF online: https://drive.google.com/file/d/1Ubgcah00q_f60KQLFu1-ZzIw7t1gpF8y/

Microsoft Dumps

Exam Name Free Online practice test Free PDF Dumps Premium Exam Dumps

Microsoft Azure

Microsoft Azure Administrator (AZ-103) (retiring August 31, 2020) Free AZ-103 practice test (Online) Free AZ-103 PDF Dumps (Download) Lead4pass AZ-103 Exam Dumps (Premium)
Microsoft Azure Administrator (AZ-104) Free AZ-104 practice test (Online) Free AZ-104 PDF Dumps (Download) Lead4pass AZ-104 Exam Dumps (Premium)
Planning and Administering Microsoft Azure for SAP Workloads (AZ-120) Free AZ-120 practice test (Online) Free AZ-120 PDF Dumps (Download) Lead4pass AZ-120 Exam Dumps (Premium)
Configuring and Operating Windows Virtual Desktop on Microsoft Azure (AZ-140) Free AZ-140 practice test (Online) Free AZ-140 PDF Dumps (Download) Lead4pass AZ-140 Exam Dumps (Premium)
Developing Solutions for Microsoft Azure (AZ-203) (retiring August 31, 2020) Free AZ-203 practice test (Online) Free AZ-203 PDF Dumps (Download) Lead4pass AZ-203 Exam Dumps (Premium)
Developing Solutions for Microsoft Azure (AZ-204) Free AZ-204 practice test (Online) Free AZ-204 PDF Dumps (Download) Lead4pass AZ-204 Exam Dumps (Premium)
Microsoft Azure IoT Developer (AZ-220) Free AZ-220 practice test (Online) Free AZ-220 PDF Dumps (Download) Lead4pass AZ-220 Exam Dumps (Premium)
Microsoft Azure Architect Technologies (AZ-300) Free AZ-300 practice test (Online) Free AZ-300 PDF Dumps (Download) Lead4pass AZ-300 Exam Dumps (Premium)
Microsoft Azure Architect Design (AZ-301) Free AZ-301 practice test (Online) Free AZ-301 PDF Dumps (Download) Lead4pass AZ-301 Exam Dumps (Premium)
Microsoft Azure Architect Technologies Exam (AZ-303) Free AZ-303 practice test (Online) Free AZ-303 PDF Dumps (Download) Lead4pass AZ-303 Exam Dumps (Premium)
Microsoft Azure Architect Design Exam (AZ-304) Free AZ-304 practice test (Online) Free AZ-304 PDF Dumps (Download) Lead4pass AZ-304 Exam Dumps (Premium)
Microsoft Azure DevOps Solutions (AZ-400) Free AZ-400 practice test (Online) Free AZ-400 PDF Dumps (Download) Lead4pass AZ-400 Exam Dumps (Premium)
Microsoft Azure Security Technologies (AZ-500) Free AZ-500 practice test (Online) Free AZ-500 PDF Dumps (Download) Lead4pass AZ-500 Exam Dumps (Premium)
Configuring and Operating a Hybrid Cloud with Microsoft Azure Stack Hub (AZ-600) Free AZ-600 practice test (Online) Free AZ-600 PDF Dumps (Download) Lead4pass AZ-600 Exam Dumps (Premium)
Microsoft Azure Fundamentals (AZ-900) Free AZ-900 practice test (Online) Free AZ-900 PDF Dumps (Download) Lead4pass AZ-900 Exam Dumps (Premium)

Microsoft Data

Designing and Implementing an Azure AI Solution (AI-100) Free AI-100 practice test (Online) Free AI-100 PDF Dumps (Download) Lead4pass AI-100 Exam Dumps (Premium)
Designing and Implementing a Microsoft Azure AI Solution (beta) (AI-102) Free AI-102 practice test (Online) Free AI-102 PDF Dumps (Download) Lead4pass AI-102 Exam Dumps (Premium)
Microsoft Azure AI Fundamentals (AI-900) Free AI-900 practice test (Online) Free AI-900 PDF Dumps (Download) Lead4pass AI-900 Exam Dumps (Premium)
Analyzing Data with Microsoft Power BI (DA-100) Free DA-100 practice test (Online) Free DA-100 PDF Dumps (Download) Lead4pass DA-100 Exam Dumps (Premium)
Designing and Implementing a Data Science Solution on Azure (DP-100) Free DP-100 practice test (Online) Free DP-100 PDF Dumps (Download) Lead4pass DP-100 Exam Dumps (Premium)
Implementing an Azure Data Solution (DP-200) Free DP-200 practice test (Online) Free DP-200 PDF Dumps (Download) Lead4pass DP-200 Exam Dumps (Premium)
Designing an Azure Data Solution (DP-201) Free DP-201 practice test (Online) Free DP-201 PDF Dumps (Download) Lead4pass DP-201 Exam Dumps (Premium)
Data Engineering on Microsoft Azure (DP-203) Free DP-203 practice test (Online) Free DP-203 PDF Dumps (Download) Lead4pass DP-203 Exam Dumps (Premium)
Administering Relational Databases on Microsoft Azure (DP-300) Free DP-300 practice test (Online) Free DP-300 PDF Dumps (Download) Lead4pass DP-300 Exam Dumps (Premium)
Microsoft Azure Data Fundamentals (DP-900) Free DP-900 practice test (Online) Free DP-900 PDF Dumps (Download) Lead4pass DP-900 Exam Dumps (Premium)

Microsoft Dynamics-365

Microsoft Dynamics 365 Customer Engagement Core (MB-200) Free MB-200 Practice Test (Online) Free MB-200 PDF Dumps (Download) Lead4pass MB-200 Exam Dumps (Premium)
Microsoft Dynamics 365 for Sales (MB-210) Free MB-210 Practice Test (Online) Free MB-210 PDF Dumps (Download) Lead4pass MB-210 Exam Dumps (Premium)
Microsoft Dynamics 365 for Marketing (MB-220) Free MB-220 Practice Test (Online) Free MB-220 PDF Dumps (Download) Lead4pass MB-220 Exam Dumps (Premium)
Microsoft Dynamics 365 for Customer Service (MB-230) Free MB-230 Practice Test (Online) Free MB-230 PDF Dumps (Download) Lead4pass MB-230 Exam Dumps (Premium)
Microsoft Dynamics 365 for Field Service (MB-240) Free MB-240 Practice Test (Online) Free MB-240 PDF Dumps (Download) Lead4pass MB-240 Exam Dumps (Premium)
Microsoft Dynamics 365 Unified Operations Core (MB-300) Free MB-300 Practice Test (Online) Free MB-300 PDF Dumps (Download) Lead4pass MB-300 Exam Dumps (Premium)
Microsoft Dynamics 365 for Finance and Operations, Financials (MB-310) Free MB-310 Practice Test (Online) Free MB-310 PDF Dumps (Download) Lead4pass MB-310 Exam Dumps (Premium)
Microsoft Dynamics 365 for Finance and Operations, Manufacturing (MB-320) Free MB-320 Practice Test (Online) Free MB-320 PDF Dumps (Download) Lead4pass MB-320 Exam Dumps (Premium)
Microsoft Dynamics 365 for Finance and Operations, Supply Chain Management (MB-330) Free MB-330 Practice Test (Online) Free MB-330 PDF Dumps (Download) Lead4pass MB-330 Exam Dumps (Premium)
Microsoft Dynamics 365 Commerce Functional Consultant (MB-340) Free MB-340 Practice Test (Online) Free MB-340 PDF Dumps (Download) Lead4pass MB-340 Exam Dumps (Premium)
Microsoft Power Apps + Dynamics 365 Developer (MB-400) Free MB-400 Practice Test (Online) Free MB-400 PDF Dumps (Download) Lead4pass MB-400 Exam Dumps (Premium)
Microsoft Dynamics 365: Finance and Operations Apps Developer (MB-500) Free MB-500 Practice Test (Online) Free MB-500 PDF Dumps (Download) Lead4pass MB-500 Exam Dumps (Premium)
Microsoft Dynamics 365 + Power Platform Solution Architect (MB-600) Free MB-600 Practice Test (Online) Free MB-600 PDF Dumps (Download) Lead4pass MB-600 Exam Dumps (Premium)
Microsoft Dynamics 365: Finance and Operations Apps Solution Architect (MB-700) Free MB-700 Practice Test (Online) Free MB-700 PDF Dumps (Download) Lead4pass MB-700 Exam Dumps (Premium)
Microsoft Dynamics 365 Business Central Functional Consultant (MB-800) Free MB-800 Practice Test (Online) Free MB-800 PDF Dumps (Download) Lead4pass MB-800 Exam Dumps (Premium)
Microsoft Dynamics 365 Fundamentals (MB-901) Free MB-901 Practice Test (Online) Free MB-901 PDF Dumps (Download) Lead4pass MB-901 Exam Dumps (Premium)
Microsoft Dynamics 365 Fundamentals Customer Engagement Apps (CRM) (MB-910) Free MB-910 Practice Test (Online) Free MB-910 PDF Dumps (Download) Lead4pass MB-910 Exam Dumps (Premium)
Microsoft Dynamics 365 Fundamentals Finance and Operations Apps (ERP) (MB-920) Free MB-920 Practice Test (Online) Free MB-920 PDF Dumps (Download) Lead4pass MB-920 Exam Dumps (Premium)

Microsoft MCSA

MCSA: Microsoft Dynamics 365 for Operations Exam Collection
Administering a SQL Database Infrastructure (70-764) Free 70-764 Practice Test (Online) Free 70-764 PDF Dumps (Download) Lead4pass 70-764 Exam Dumps (Premium)
MCSA: SQL 2016 BI Development Exam Collection
Implementing a Data Warehouse using SQL (70-767) Free 70-767 Practice Test (Online) Free 70-767 PDF Dumps (Download) Lead4pass 70-767 Exam Dumps (Premium)
Developing SQL Data Models (70-768) Free 70-768 Practice Test (Online) Free 70-768 PDF Dumps (Download) Lead4pass 70-768 Exam Dumps (Premium)
Analyzing and Visualizing Data with Microsoft Power BI (70-778) Free 70-778 practice test (Online) Free 70-778 PDF Dumps (Download) Lead4pass 70-778 Exam Dumps (Premium)
Analyzing and Visualizing Data with Microsoft Excel (70-779) Free 70-779 practice test (Online) Free 70-779 PDF Dumps (Download) Lead4pass 70-779 Exam Dumps (Premium)
MCSA: SQL 2016 Database Administration Exam Collection
Administering a SQL Database Infrastructure (70-764) Free 70-764 Practice Test (Online) Free 70-764 PDF Dumps (Download) Lead4pass 70-764 Exam Dumps (Premium)
Provisioning SQL Databases (70-765) Free 70-765 Practice Test (Online) Free 70-765 PDF Dumps (Download) Lead4pass 70-765 Exam Dumps (Premium)
MCSA: SQL 2016 Database Development Exam Collection
Querying Data with Transact-SQL (70-761) Free 70-761 Practice Test (Online) Free 70-761 PDF Dumps (Download) Lead4pass 70-761 Exam Dumps (Premium)
Developing SQL Databases (70-762) Free 70-762 Practice Test (Online) Free 70-762 PDF Dumps (Download) Lead4pass 70-762 Exam Dumps (Premium)
MCSA: SQL Server 2012 & 2014 Exam Collection
Querying Microsoft SQL Server 2012/2014 (70-461) Free 70-461 Practice Test (Online) Free 70-461 PDF Dumps (Download) Lead4pass 70-461 Exam Dumps (Premium)
Administering Microsoft SQL Server 2012/2014 Databases (70-462) Free 70-462 Practice Test (Online) Free 70-462 PDF Dumps (Download) Lead4pass 70-462 Exam Dumps (Premium)
Implementing a Data Warehouse with Microsoft SQL Server 2012/2014 (70-463) Free 70-463 Practice Test (Online) Free 70-463 PDF Dumps (Download) Lead4pass 70-463 Exam Dumps (Premium)
MCSA: Universal Windows Platform Exam Collection
Developing Mobile Apps (70-357) Free 70-357 Practice Test (Online) Free 70-357 PDF Dumps (Download) Lead4pass 70-357 Exam Dumps (Premium)
Programming in C# (70-483) Free 70-483 Practice Test (Online) Free 70-483 PDF Dumps (Download) Lead4pass 70-483 Exam Dumps (Premium)
MCSA: Web Applications Exam Collection
Programming in HTML5 with JavaScript and CSS3 (70-480) Free 70-480 Practice Test (Online) Free 70-480 PDF Dumps (Download) Lead4pass 70-480 Exam Dumps (Premium)
Developing ASP.NET MVC Web Applications (70-486) Free 70-486 Practice Test (Online) Free 70-486 PDF Dumps (Download) Lead4pass 70-486 Exam Dumps (Premium)
MCSA: Windows Server 2012 Exam Collection
Installing and Configuring Windows Server 2012 (70-410) Free 70-410 Practice Test (Online) Free 70-410 PDF Dumps (Download) Lead4pass 70-410 Exam Dumps (Premium)
MCSA: Windows Server 2016 Exam Collection
Installation, Storage, and Compute with Windows Server 2016 (70-740) Free 70-740 Practice Test (Online) Free 70-740 PDF Dumps (Download) Lead4pass 70-740 Exam Dumps (Premium)
Networking with Windows Server 2016 (70-741) Free 70-741 Practice Test (Online) Free 70-741 PDF Dumps (Download) Lead4pass 70-741 Exam Dumps (Premium)
Identity with Windows Server 2016 (70-742) Free 70-742 Practice Test (Online) Free 70-742 PDF Dumps (Download) Lead4pass 70-742 Exam Dumps (Premium)
Upgrading Your Skills to MCSA: Windows Server 2016 (70-743) Free 70-743 Practice Test (Online) Free 70-743 PDF Dumps (Download) Lead4pass 70-743 Exam Dumps (Premium)

Microsoft MCSD

MCSD: App Builder Exam Collection
Developing Microsoft Azure and Web Services (70-487) Free 70-487 Practice Test (Online) Free 70-487 PDF Dumps (Download) Lead4pass 70-487 Exam Dumps (Premium)

Microsoft MCSE

MCSE: Cloud Platform and Infrastructure Exam Collection
Securing Windows Server 2016 (70-744) Free 70-744 Practice Test (Online) Free 70-744 PDF Dumps (Download) Lead4pass 70-744 Exam Dumps (Premium)
MCSE: Data Management and Analytics Exam Collection
Developing Microsoft SQL Server Databases (70-464) Free 70-464 Practice Test (Online) Free 70-464 PDF Dumps (Download) Lead4pass 70-464 Exam Dumps (Premium)
Designing Database Solutions for Microsoft SQL Server (70-465) Free 70-465 Practice Test (Online) Free 70-465 PDF Dumps (Download) Lead4pass 70-465 Exam Dumps (Premium)
Implementing Data Models and Reports with Microsoft SQL Server (70-466) Free 70-466 Practice Test (Online) Free 70-466 PDF Dumps (Download) Lead4pass 70-466 Exam Dumps (Premium)
Designing Business Intelligence Solutions with Microsoft SQL Server (70-467) Free 70-467 Practice Test (Online) Free 70-467 PDF Dumps (Download) Lead4pass 70-467 Exam Dumps (Premium)
MCSE: Productivity Exam Collection
Deploying Enterprise Voice with Skype for Business 2015 (70-333) Free 70-333 Practice Test (Online) Free 70-333 PDF Dumps (Download) Lead4pass 70-333 Exam Dumps (Premium)
Core Solutions of Microsoft Skype for Business 2015 (70-334) Free 70-334 Practice Test (Online) Free 70-334 PDF Dumps (Download) Lead4pass 70-334 Exam Dumps (Premium)
Managing Microsoft SharePoint Server 2016 (70-339) Free 70-339 Practice Test (Online) Free 70-339 PDF Dumps (Download) Lead4pass 70-339 Exam Dumps (Premium)
Designing and Deploying Microsoft Exchange Server 2016 (70-345) Free 70-345 Practice Test (Online) Free 70-345 PDF Dumps (Download) Lead4pass 70-345 Exam Dumps (Premium)

Microsoft 365

Windows 10 (MD-100) Free MD-100 Practice Test (Online) Free MD-100 PDF Dumps (Download) Lead4pass MD-100 Exam Dumps (Premium)
Managing Modern Desktops (MD-101) Free MD-101 Practice Test (Online) Free MD-101 PDF Dumps (Download) Lead4pass MD-101 Exam Dumps (Premium)
Managing Office 365 Identities and Requirements (MS-100) Free MS-100 Practice Test (Online) Free MS-100 PDF Dumps (Download) Lead4pass MS-100 Exam Dumps (Premium)
Microsoft 365 Mobility and Security (MS-101) Free MS-101 Practice Test (Online) Free MS-101 PDF Dumps (Download) Lead4pass MS-101 Exam Dumps (Premium)
Planning and Configuring a Messaging Platform (MS-200) Free MS-200 Practice Test (Online) Free MS-200 PDF Dumps (Download) Lead4pass MS-200 Exam Dumps (Premium)
Implementing a Hybrid and Secure Messaging Platform (MS-201) Free MS-201 Practice Test (Online) Free MS-201 PDF Dumps (Download) Lead4pass MS-201 Exam Dumps (Premium)
Microsoft 365 Messaging Administrator Certification Transition (MS-202) Free MS-202 Practice Test (Online) Free MS-202 PDF Dumps (Download) Lead4pass MS-202 Exam Dumps (Premium)
Microsoft 365 Messaging (MS-203) Free MS-203 Practice Test (Online) Free MS-203 PDF Dumps (Download) Lead4pass MS-203 Exam Dumps (Premium)
Deploying Microsoft 365 Teamwork (MS-300) Free MS-300 Practice Test (Online) Free MS-300 PDF Dumps (Download) Lead4pass MS-300 Exam Dumps (Premium)
Deploying SharePoint Server Hybrid (MS-301) Free MS-301 Practice Test (Online) Free MS-301 PDF Dumps (Download) Lead4pass MS-301 Exam Dumps (Premium)
Microsoft 365 Security Administration (MS-500) Free MS-500 Practice Test (Online) Free MS-500 PDF Dumps (Download) Lead4pass MS-500 Exam Dumps (Premium)
Building Applications and Solutions with Microsoft 365 Core Services (MS-600) Free MS-600 Practice Test (Online) Free MS-600 PDF Dumps (Download) Lead4pass MS-600 Exam Dumps (Premium)
Managing Microsoft Teams (MS-700) Free MS-700 Practice Test (Online) Free MS-700 PDF Dumps (Download) Lead4pass MS-700 Exam Dumps (Premium)
Microsoft 365 Fundamentals (MS-900) Free MS-900 Practice Test (Online) Free MS-900 PDF Dumps (Download) Lead4pass MS-900 Exam Dumps (Premium)

Microsoft Power

Microsoft Power Platform App Maker (PL-100) Free PL-100 Practice Test (Online) Free PL-100 PDF Dumps (Download) Lead4pass PL-100 Exam Dumps (Premium)
Microsoft Power Platform Functional Consultant (PL-200) Free PL-200 Practice Test (Online) Free PL-200 PDF Dumps (Download) Lead4pass PL-200 Exam Dumps (Premium)
Microsoft Power Platform Developer (PL-400) Free PL-400 Practice Test (Online) Free PL-400 PDF Dumps (Download) Lead4pass PL-400 Exam Dumps (Premium)
Microsoft Power Platform Solution Architect (PL-600) Free PL-600 Practice Test (Online) Free PL-600 PDF Dumps (Download) Lead4pass PL-600 Exam Dumps (Premium)
Microsoft Power Platform Fundamentals (PL-900) Free PL-900 Practice Test (Online) Free PL-900 PDF Dumps (Download) Lead4pass PL-900 Exam Dumps (Premium)

Microsoft other

Microsoft Security Operations Analyst (SC-200) Free SC-200 Practice Test (Online) Free SC-200 PDF Dumps (Download) Lead4pass SC-200 Exam Dumps (Premium)
Microsoft Identity and Access Administrator (SC-300) Free SC-300 Practice Test (Online) Free SC-300 PDF Dumps (Download) Lead4pass SC-300 Exam Dumps (Premium)
Microsoft Information Protection Administrator (SC-400) Free SC-400 Practice Test (Online) Free SC-400 PDF Dumps (Download) Lead4pass SC-400 Exam Dumps (Premium)
Microsoft Security Compliance and Identity Fundamentals (SC-900) Free SC-900 Practice Test (Online) Free SC-900 PDF Dumps (Download) Lead4pass SC-900 Exam Dumps (Premium)
Twitter youtube FaceBook