Certification Exam Prep Questions For (MS-100): Microsoft 365 Identity and Services


QuickStart is now offering assessment questions for (MS-100): Microsoft 365 Identity and Services. Whether you are deciding which exam to sign up for, or simply want to practice the materials necessary to complete certification for this course, we have provided a practice assessment to better aid in certification. 100% of the questions are real questions; from a recent version of the test you will take for (MS-100): Microsoft 365 Identity and Services.


Arrow
 

1

Your network is configured as an Active Directory Domain Services (AD DS) domain. Your company uses an on-premises Exchange 2007 mail solution with 3000 mailboxes. You configure Outlook Anywhere on your on-premises Exchange Server. You plan to implement an Exchange Online mail solution to replace your current mail solution. You verify your on-premises domain with Microsoft 365. You synchronize your AD DS domain with your Azure Active Directory (Azure AD) domain. You need to use Exchange Admin Center to migrate to Exchange Online. Solution: You plan to use a remote move migration (hybrid deployment). Does this solution meet the goal?

A. Yes
Correct!
B. No
Correct!
2

You use the Microsoft 365 Admin center to add a new domain to your subscription. Your company owns the domain name added. You need to configure DNS to support domain verification. Your company manages its own DNS resource records. Solution: You create a TXT resource record to verify that you own the domain. Does this solution meet the goal?

A. Yes
Correct!
B. No
Incorrect.
3

You use the Microsoft 365 Admin center to add a new domain to your subscription. Your company owns the domain name added. You need to configure DNS to support domain verification. Your company manages its own DNS resource records. Solution: You create a CNAME resource record to verify that you own the domain. Does this solution meet the goal?

A. No
Correct!
B. Yes
Incorrect.
4

You use the Microsoft 365 Admin center to add a new domain to your subscription. Your company owns the domain name added. You need to configure DNS to support domain verification. Your company manages its own DNS resource records. Solution: You create an MX resource record to verify that you own the domain. Does this solution meet the goal?

A. Yes
Correct!
B. No
Incorrect.
5

Your network includes two Active Directory Domain Services (AD DS) forest root domains. Your company plans to add an Azure Active Directory (Azure AD) tenant as shown in the exhibit. You need to develop a plan that lets you consolidate users from Companyl.com and Company2.com into the same Azure AD tenant. You plan to implement pass-through authentication (PTA). Solution: You plan to deploy two instances of Azure AD Connect. Each instance is deployed on a member server in a domain's internal network. Does this solution meet the goal?

A. No
Correct!
B. Yes
Incorrect.
6

Your network includes two Active Directory Domain Services (AD DS) forest root domains. Your company plans to add an Azure Active Directory (Azure AD) tenant as shown in the exhibit. You need to develop a plan that lets you consolidate users from Companyl.com and Company2.com into the same Azure AD tenant. You plan to implement pass-through authentication (PTA). Solution: You plan to install Azure AD Connect on a server in the perimeter network that is not joined to either domain. Does this solution meet the goal?

7

Your company has a Microsoft 365 tenant with SharePoint Online. The company wants to grant one user of a partner company temporary access to a SharePoint Online site. The user must be added to a custom group named SharePoint Reviewers. You need to configure the environment to meet these requirements. What should you do?

8

You create a Microsoft 365 subscription. You need to determine the number of licenses that are still available to be assigned to users at your company. Which PowerShell cmdlet should you run?

9

You log in to Microsoft 365 Admin Center and want to create a guest account. However, on the Guest users page, there is not an option to create a guest account. You need to create the guest account. Which two tools should you use? Each answer presents a complete solution.

10

Your network is configured as a single Active Directory Domain Services (AD DS) domain named Companyl.local. You also own the domain name Companyl.com. Your network has a writeable domain controller (DC) and a read-only domain controller (RDOC). You have an Azure Active Directory (Azure AD) tenant with the default domain companyl.onmicrosoft.com. You want to set up synchronization to synchronize the users in the Sales and Support organizational units (OUs) with Azure AD. You need to prepare for Azure AD Connect installation. What should you do first?

11

Your company has its main office in Los Angeles and a branch office in Bakersfield. Both offices are part of the same Windows Active Directory (AD) domain and are configured as separate sites. The network includes both company-owned and personal devices. Your company implements a Microsoft 365 tenant and is rolling out support for cloud-based applications to replace on-premises applications. You configure a hybrid identity with federated authentication. You deploy Intune and enroll company-owned devices. You enable Azure multi-factor authentication (MFA). As part of your initial rollout, you need to restrict access to SharePoint Online (SPO) to company-managed devices located in the Los Angeles office. Which feature should you use?

12

You manage a Microsoft 365 tenant that has Office 365 Professional Plus. You plan to use the Office Deployment Tool (ODT) to configure updates for Office. You create an XML file with the following contents: Configuration Add OfficeClientEdition="32" OfficeMgmtCOM="True" > Product ID="0365ProPlusRetair> Language ID="en-us" /> You need to ensure that users in your organization receive updates as soon as they are available. What should you do?

13

You create an Azure Active Directory (Azure AD) tenant with 100 users. You want to review the roles to which users are assigned. You need to choose the appropriate Azure service to meet this requirement. Which Azure service should you use?

A. Privileged Identity Management (PIM)
Correct!
B. Security Center
Incorrect.
C. Advisor
Incorrect.
D. Monitor
Incorrect.
14

You are the IT manager for your company, which is a payment portal service provider. The SLA for all your business partners states that you must maintain 99% uptime. Your office is located near a large river which has a tendency to flood. You need to choose an appropriate disaster recovery scheme for your company in the event that normal operation is disrupted. It is vital that all the data processing applications of the company are uninterrupted and the data is mirrored in the event that the primary servers are lost. Which of the following should you use?

A. Hot site
Correct!
B. Bare metal restore
Incorrect.
C. Cold site
Incorrect.
D. Warm site
Incorrect.
15

Your network is configured as an Active Directory Domain Services (AD DS) domain. Domain users are in organizational units (OUs) by department. You run a pilot test with Azure Active Directory (Azure AD) synchronization to include a small subset of users. You create a group named ADDPiIot and add the pilot users to the group. You install Azure AD Connect and configure filtering based on the ADDPiIot group and the Operations OU. You need to disable group filtering and configure filtering based on select OUs. You want to avoid changes to users that are already synchronized. What should you do first?

16

Your Windows Active Directory (AD) supports two forest root domains named companyl.com and companya.com. You create an Azure Active Directory (Azure AD). You run the Azure AD Connect installation wizard and configure pass-through authentication (PTA) with company1.com. You need to add synchronization for companya.com. Which two PowerShell cmdlets should you run? Each correct answer presents part of the solution

17

You help manage a Microsoft 365 tenant. An administrator provides you with the following PowerShell script: $dispName="John Doe" $roleName="SharePoint Service Administrator" Add-MsolRoleMember -RoleMemberEmailAddress (Get-MsolUser -All I Where DisplayName -eq $dispName).UserPrincipalName -RoleName $roleName You need to determine what this script does. What should you conclude?

18

You have an on-premises Active Directory (AD) domain. You implement a hybrid authentication system so that password hashes are sent to Azure Active Directory (Azure AD). Users must be able to reset their passwords by receiving a link in their email. You implement password reset with one reset method. You need to configure Azure AD to allow the password changes to be synchronized with the on-premises AD tenant. Your solution must not require you to change the existing infrastructure. What should you do?

19

Your network is configured as a hybrid identity with 500 users. All users are synched with your Azure Active Directory (Azure AD) Premium tenant. You enable Azure multi-factor authentication (MFA). You bulk enroll your users. You are tracking the impact on access to managed applications. You need to gather information about failed attempts to access the most commonly used managed applications. What should you use?

20

You create a Microsoft 365 Enterprise Premium subscription. You run the following PowerShell cmdlet: Get-MsolAccountSku I Select-Object ActiveUnits The cmdlet returns the number 0. You need to determine what this value indicates. What should you conclude?

21

Your company has a domain named measureup.com and wants to use it in its Microsoft 365 infrastructure. It wants e-mail messages to be able to be sent to users such as adam@measureup.com. The company wants Microsoft 365 to manage the required DNS records. You need to perform the necessary tasks to allow this. What two tasks should you perform? Each answer presents part of the complete solution.

22

Your network has an Active Directory Domain Services (AD DS) domain and an Azure Active Directory (Azure AD) tenant. You configure hybrid federation and use organizational unit (OU) filtering. Your company wants to change its configuration to add a second Azure AD tenant and divide synchronization between the two tenants. You modify OU filtering to remove two OUs from the current configuration. You estimate that the change should delete no more than 800 users from the current Azure AD. You need to ensure that synchronization is stopped and that you receive a warning if more than 800 users are deleted. Which two PowerShell cmdlets should you use? Each correct answer presents a complete solution.

23

Your company uses an Azure Active Directory (Azure AD) domain. You purchase an Office 365 subscription with 25 licenses. You want the 20 employees in the Marketing department to have access to the Office 365 subscription, without giving other employees in the company access. You need to configure licensing so that management is minimized. What should you do?

24

Your network is configured as a Windows Active Directory (AD) domain named CompanyA.com. Your network includes an on-premises Exchange 2007 mail server supporting 1000 users. You purchase a Microsoft 365 Enterprise E3 subscription. You plan to migrate gradually to Exchange Online. You want to migrate user inboxes, contacts. and calendar items. You need to identify the most appropriate migration path. Which migration method should you choose?

A. Hybrid
Incorrect.
B. Staged
Correct!
C. IMAP
Incorrect.
D. Cutover
Incorrect.
25

You manage a Microsoft 365 tenant and the corresponding Azure Active Directory (Azure AD) tenant. The tenant has 100 users. You plan to deploy Application Proxy in the organization. You need to determine the on-premises server requirements. Which two requirements should your server meet? Each correct answer presents part of the solution.

26

You manage a Microsoft 365 tenant for your company. You need to view all the users who are assigned the Global administrator role. Which PowerShell cmdlet should you use?

A. Get-AzRoleDefinition
Incorrect.
B. Get-MsolRoleMember
Correct!
C. Get-MsolUser
Incorrect.
D. Get-AzureADDirectoryRole
Incorrect.
27

Your network is configured with a hybrid identity. You have an Azure Active Directory (Azure AD) Premium tenant. Add on-premises users are synced with Azure AD. Your company installs cloud-based Azure Multi-Factor Authentication (MFA) to help secure access to data and applications. The company plans to use Azure MFA with RADIUS authentication. You need to ensure that your on-premises network is configured to support your existing RADIUS authentication infrastructure. You deploy and configure a Network Policy Server (NPS) in your on-premises network and register your users for MFA. What should you do next?

28

You manage a Microsoft 365 tenant that uses Exchange Online and SharePoint Online. You invite the user of a partner company to access SharePoint Online. The user accepts the invitation. a partner company to access SharePoint Online. The user accepts the invitation. You need to grant the user access to SharePoint Online and use the principle of least privilege. Which cmdlet should you use?

29

You manage a Microsoft 365 tenant. Your organization is growing, and it is difficult for you to manage the entire tenant alone. You want to provide another user with the ability to administer Exchange Online. You need to use the principle of least privilege. What should you do?

30

Your network is configured as an Active Directory Domain Services (AD DS) domain. You create an Azure Active Directory (Azure AD) tenant. You install Azure AD Connect and configure federated authentication. You plan to use Azure AD Connect Health Agent for Active Directory Federation Services (AD FS) to analyze authentication traffic and monitor performance metrics on federation servers. You download and install the Azure AD Connect Health Agent on each AD FS server and each Web Application Proxy (WAP) server. You need to finish configuring support for usage analytics. What should you do next?

PDP Url

Sample Question - Microsoft 365 Identity and Services (MS-100)


Self-Paced

Learning Style

Beginner

Difficulty

1 Hour

Course Duration

Certificate

See Sample

Buy Individually
About Individual Course:
  • Individual course plan gives you access to this course
$109.00
$109.00
/ Each

Outline

More Information

More Information
Lab Access No
Learning Style Self-Paced Learning
Difficulty Beginner
Course Duration 1 Hour
Language English

Reviews

Write Your Own Review
Only registered users can write reviews. Please Sign in or create an account

Contact A Learning Consultant


click here