MD-102 Exam - Endpoint Administrator

certleader.com

Master the MD-102 Endpoint Administrator content and be ready for exam day success quickly with this Passleader MD-102 exams. We guarantee it!We make it a reality and give you real MD-102 questions in our Microsoft MD-102 braindumps.Latest 100% VALID Microsoft MD-102 Exam Questions Dumps at below page. You can use our Microsoft MD-102 braindumps and pass your exam.

Also have MD-102 free dumps questions for you:

NEW QUESTION 1

You implement Boundary1 based on the planned changes.
Which devices have a network boundary of 192.168.1.0/24 applied?

  • A. Device2 only
  • B. Device3 only
  • C. Device 1. Device2. and Device5 only
  • D. Device 1, Device2, Device3, and Device4 only

Answer: D

Explanation:
Reference:
https://docs.microsoft.com/en-us/mem/intune/configuration/network-boundary-windows

NEW QUESTION 2

Which devices are registered by using the Windows Autopilot deployment service?

  • A. Device1 only
  • B. Device3 only
  • C. Device1 and Device3 only
  • D. Device1, Device2, and Device3

Answer: C

Explanation:
Scenario: Windows Autopilot Configuration Assignments
Included groups: Group1
Excluded groups: Group2 Device1 is member of Group1.
Device2 is member of Group1 and member of Group2. Device3 is member of Group1.
Group1 and Group2 have a Membership type of Assigned.
Exclusion takes precedence over inclusion in the following same group type scenarios. Reference: https://learn.microsoft.com/en-us/mem/intune/apps/apps-inc-exl-assignments

NEW QUESTION 3

In Microsoft Intune, you have the device compliance policies shown in the following table.
MD-102 dumps exhibit
The Intune compliance policy settings are configured as shown in the following exhibit.
MD-102 dumps exhibit
On June 1, you enroll Windows 10 devices in Intune as shown in the following table.
MD-102 dumps exhibit
For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.
MD-102 dumps exhibit


Solution:
Device 1 is Windows 10 - and policy 1 is for Windows 8. Default compliance for devices without a policy is not compliant so first 2 questions are NO.
Then the third device has 2 policies, the first one is compliant and the second policy is not compliant but the device is not marked as non-compliant due to the fact that mark device as non-compliant is set to 10 days. This means that the machine will be compliant until june 10th.
Source:
Mark device non-compliant: By default, this action is set for each compliance policy and has a schedule of zero (0) days, marking devices as noncompliant immediately.
When you change the default schedule, you provide a grace period in which a user can remediate issues or become compliant without being marked as non-compliant.
This action is supported on all platforms supported by Intune. https://docs.microsoft.com/en-us/mem/intune/protect/actions-for-noncompliance

Does this meet the goal?
  • A. Yes
  • B. Not Mastered

Answer: A

NEW QUESTION 4

You have a Microsoft 365 subscription that uses Microsoft Intune Suite. You use Microsoft Intune to manage Windows 11 devices.
You need to implement passwordless authentication that requires users to use number matching Which authentication method should you use?

  • A. Microsoft Authenticator
  • B. voice calls
  • C. FI002 security keys
  • D. text messages

Answer: A

NEW QUESTION 5

You have a Windows 11 capable device named Device1 that runs the 64-bit version of Windows 10 Enterprise and has Microsoft Office 2019 installed. You have the Windows 11 Enterprise images shown in the following table.
MD-102 dumps exhibit
Which images can be used to perform an in-place upgrade of Device1?

  • A. image1 only
  • B. lmage2only
  • C. Image1 and Image2

Answer: B

NEW QUESTION 6

You have a Microsoft 365 E5 subscription that contains 150 hybrid Azure AD joined Windows devices. All the devices are enrolled in Microsoft Intune. You need to configure Delivery Optimization on the devices to meet the following requirements:
• Allow downloads from the internet and from other computers on the local network.
• Limit the percentage of used bandwidth to 50. What should you use?

  • A. a configuration profile
  • B. a Windows Update for Business Group Policy setting
  • C. a Microsoft Peer-to-Peer Networking Services Group Policy setting
  • D. an Update ring for Windows 10 and later profile

Answer: A

Explanation:
A configuration profile is the correct answer because it allows you to configure Delivery Optimization settings for Windows devices in Intune. You can specify the download mode, bandwidth limit, caching options, and more. A configuration profile is a template that contains one or more settings that you can apply to groups of devices. References:
MD-102 dumps exhibit Windows 10 Delivery Optimization settings for Intune - Microsoft Intune | Microsoft Learn
MD-102 dumps exhibit Delivery Optimization settings in Microsoft Intune

NEW QUESTION 7

You have a server named Server1 and computers that run Windows 8.1. Server1 has the Microsoft Deployment Toolkit (MDT) installed.
You plan to upgrade the Windows 8.1 computers to Windows 10 by using the MDT deployment wizard. You need to create a deployment share on Server1.
What should you do on Server1, and what are the minimum components you should add to the MDT deployment share? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
MD-102 dumps exhibit


Solution:
Box 1: Install the Windows Deployment Services role. Install and initialize Windows Deployment Services (WDS) On the server:
Open an elevated Windows PowerShell prompt and enter the following command: Install-WindowsFeature -Name WDS -IncludeManagementTools
WDSUTIL /Verbose /Progress /Initialize-Server /Server:MDT01 /RemInst:"D:\RemoteInstall" WDSUTIL /Set-Server /AnswerClients:All
Box 2: Windows 10 image and task sequence only Create the reference image task sequence
In order to build and capture your Windows 10 reference image for deployment using MDT, you will create a task sequence.
Reference:
https://docs.microsoft.com/en-us/windows/deployment/deploy-windows-mdt/prepare-for-windows-deployment
https://docs.microsoft.com/en-us/windows/deployment/deploy-windows-mdt/create-a-windows-10-reference-im

Does this meet the goal?
  • A. Yes
  • B. Not Mastered

Answer: A

NEW QUESTION 8

You have a Microsoft 365 subscription that contains 500 Android Enterprise devices. All the devices are enrolled in Microsoft Intune.
You need to deliver bookmarks to the Chrome browser on the devices What should you create?

  • A. a compliance policy
  • B. a configuration profile
  • C. an app protection policy
  • D. an app configuration policy

Answer: D

NEW QUESTION 9

Your network contains an on-premises Active Directory domain and an Azure AD tenant.
The Default Domain Policy Group Policy Object (GPO) contains the settings shown in the following table.
MD-102 dumps exhibit
Which device configuration profile type template should you use?

  • A. Administrative Templates
  • B. Endpoint protection
  • C. Device restrictions
  • D. Custom

Answer: A

Explanation:
To configure the settings shown in the table, you need to use the Administrative Templates device configuration profile type template. This template allows you to configure hundreds of settings that are also available in Group Policy. You can use this template to configure settings such as password policies, account lockout policies, and audit policies. References:
https://docs.microsoft.com/en-us/mem/intune/configuration/administrative-templates-windows

NEW QUESTION 10

You need to recommend a solution to meet the device management requirements.
What should you include in the recommendation? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
MD-102 dumps exhibit


Solution:
Reference:
https://github.com/MicrosoftDocs/IntuneDocs/blob/master/intune/app-protection-policy.md
https://docs.microsoft.com/en-us/azure/information-protection/configure-usage-rights#do-not-forward-option-fo

Does this meet the goal?
  • A. Yes
  • B. Not Mastered

Answer: A

NEW QUESTION 11

You have an Azure AD tenant named contoso.com.
You have a workgroup computer named Computer! that runs Windows 11. You need to add Computer1 to contoso.com.
What should you use?

  • A. dsreecmd.exe
  • B. Computer Management
  • C. netdom.exe
  • D. the Settings app

Answer: A

NEW QUESTION 12

Your network contains an Active Directory domain named contoso.com. The domain contains two computers named Computer! and Computer2 that run Windows 10. On Computer1, you need to run the
Invoke-Command cmdlet to execute several PowerShell commands on Computed. What should you do first?

  • A. On Computed, run the Enable-PSRemoting cmdlet.
  • B. On Computed, add Computer! to the Remote Management Users group.
  • C. From Active Directory, configure the Trusted for Delegation setting for the computer account of Computed.
  • D. On Computer1, run the HcK-PSSession cmdlet.

Answer: C

NEW QUESTION 13

You have 200 computers that run Windows 10. The computers are joined to Microsoft Azure Active Directory (Azure AD) and enrolled in Microsoft Intune.
You need to configure an Intune device configuration profile to meet the following requirements:
MD-102 dumps exhibit Prevent Microsoft Office applications from launching child processes.
MD-102 dumps exhibit Block users from transferring files over FTP.
Which two settings should you configure in Endpoint protection? To answer, select the appropriate settings in the answer area.
NOTE: Each correct selection is worth one point.
MD-102 dumps exhibit


Solution:
A screenshot of a computer Description automatically generated
References:
https://docs.microsoft.com/en-us/intune/endpoint-protection-windows-10

Does this meet the goal?
  • A. Yes
  • B. Not Mastered

Answer: A

NEW QUESTION 14

You have a Microsoft 365 subscription.
You plan to use Windows Autopilot to provision 25 Windows 11 devices. You need to configure the Out-of-box experience (OOBE) settings.
What should you create in the Microsoft Intune admin center?

  • A. an enrollment status page (ESP)
  • B. a deployment profile
  • C. a compliance policy
  • D. a PowerShell script
  • E. a configuration profile

Answer: B

NEW QUESTION 15

You have an Azure AD tenant and 100 Windows 10 devices that are Azure AD joined and managed by using Microsoft Intune.
You need to configure Microsoft Defender Firewall and Microsoft Defender Antivirus on the devices. The solution must minimize administrative effort.
Which two actions should you perform? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.

  • A. To configure Microsoft Defender Antivirus, create a Group Policy Object (GPO) and configure the Windows Defender Antivirus settings.
  • B. To configure Microsoft Defender Firewall, create a device configuration profile and configure the Device restrictions settings.
  • C. To configure Microsoft Defender Antivirus, create a device configuration profile and configure the Endpoint protection settings.
  • D. To configure Microsoft Defender Antivirus, create a device configuration profile and configure the Device restrictions settings.
  • E. To configure Microsoft Defender Firewall, create a device configuration profile and configure the Endpoint protection settings.
  • F. To configure Microsoft Defender Firewall, create a Group Policy Object (GPO) and configure Windows Defender Firewall with Advanced Security.

Answer: CE

Explanation:
To configure Microsoft Defender Firewall and Microsoft Defender Antivirus on Azure AD joined devices that are managed by Intune, you need to create a device configuration profile and configure the Endpoint protection settings. You can use this profile to configure various settings for firewall and antivirus protection on the devices. References:
https://docs.microsoft.com/en-us/mem/intune/protect/endpoint-protection-windows-10

NEW QUESTION 16

You have a Microsoft 365 subscription that uses Microsoft Intune.
You plan to use Windows Autopilot to provision 25 Windows 11 devices. You need to meet the following requirements during device provisioning:
• Display the progress of app and profile deployments.
• Join the devices to Azure AD.
What should you configure to meet each requirement? To answer drag the appropriate settings to the correct requirements. Each setting may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
NOTE: Each correct selection is worth one point.
MD-102 dumps exhibit


Solution:
MD-102 dumps exhibit

Does this meet the goal?
  • A. Yes
  • B. Not Mastered

Answer: A

NEW QUESTION 17

Your company has an Azure AD tenant named contoso.com that contains several Windows 10 devices. When you join new Windows 10 devices to contoso.com, users are prompted to set up a four-digit pin. You need to ensure that the users are prompted to set up a six-digit pin when they join the Windows 10
devices to contoso.com.
Solution: From the Microsoft Entra admin center, you modify the User settings and the Device settings. Does this meet the goal?

  • A. Yes
  • B. No

Answer: B

NEW QUESTION 18

What is the maximum number of devices that User1 and User2 can enroll in Intune? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
MD-102 dumps exhibit


Solution:
MD-102 dumps exhibit

Does this meet the goal?
  • A. Yes
  • B. Not Mastered

Answer: A

NEW QUESTION 19

You have an Azure Active Directory Premium Plan 2 subscription that contains the users shown in the following table.
MD-102 dumps exhibit
You purchase the devices shown in the following table.
MD-102 dumps exhibit
You configure automatic mobile device management (MDM) and mobile application management (MAM) enrollment by using the following settings:
MD-102 dumps exhibit MDM user scope: Group1
MD-102 dumps exhibit MAM user scope: Group2
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
MD-102 dumps exhibit


Solution:
Reference: https://docs.microsoft.com/en-us/mem/intune/enrollment/android-enroll https://powerautomate.microsoft.com/fr-fr/blog/mam-flow-mobile/

Does this meet the goal?
  • A. Yes
  • B. Not Mastered

Answer: A

NEW QUESTION 20
......

100% Valid and Newest Version MD-102 Questions & Answers shared by Thedumpscentre.com, Get Full Dumps HERE: https://www.thedumpscentre.com/MD-102-dumps/ (New 318 Q&As)