Summer Sale Limited Time 75% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code = simple75

Pass the Microsoft 365 Certified: Enterprise Administrator Expert MS-102 Questions and answers with Dumpstech

Exam MS-102 Premium Access

View all detail and faqs for the MS-102 exam

Practice at least 50% of the questions to maximize your chances of passing.
Viewing page 4 out of 12 pages
Viewing questions 46-60 out of questions
Questions # 46:

HOTSPOT

You have an Azure AD tenant named contoso.com that contains the users shown in the following table.

Question # 46

Multi-factor authentication (MFA) is configured to use 131.107.5.0/24 as trusted IPs.

The tenant contains the named locations shown in the following table.

Question # 46

You create a conditional access policy that has the following configurations:

Users or workload identities assignments: All users

Cloud apps or actions assignment: App1

Conditions: Include all trusted locations

Grant access: Require multi-factor authentication

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.

Question # 46

Options:

Questions # 47:

You have a Microsoft 365 E5 subscription.

You plan to create an anti-malware policy named Policy1.

You need to ensure that Policy1 can detect malicious email messages that were already delivered to a user ' s mailbox.

What should you do in the Microsoft Defender portal?

Options:

A.

Enable zero-hour auto purge (ZAP).

B.

Modify the common attachments filter.

C.

Configure a quarantine policy.

D.

Enable enhanced filtering.

Questions # 48:

You have a Microsoft 365 E5 subscription. You are implementing Microsoft Defender for Cloud Apps. You need to ensure that you can create OAuth app policies.

Solution: You connect Microsoft 365 to Defender for Cloud Apps.

Does this meet the goal?

Options:

A.

Yes

B.

No

Questions # 49:

You have a Microsoft 365 E5 subscription that contains the devices shown in the following table.

Question # 49

You need to configure an incident email notification rule that will be triggered when an alert occurs only on a Windows 10 device. The solution must minimize administrative effort.

What should you do first?

Options:

A.

From the Microsoft 365 admin center, create a mail-enabled security group.

B.

From the Microsoft 365 Defender portal, create a device group.

C.

From the Microsoft Endpoint Manager admin center, create a device category.

D.

From the Azure Active Directory admin center, create a dynamic device group.

Questions # 50:

You have a Microsoft 365 subscription.

You need to add additional domains with the onmicrosoft.com suffix to the subscription. The additional domains must be assignable as email addresses for users.

What is the maximum number of onmicrosoft.com domains the subscription can contain?

Options:

A.

1

B.

2

C.

5

D.

10

Questions # 51:

You use Microsoft Defender for Endpoint.

You have the Microsoft Defender for Endpoint device groups shown in the following table

Question # 51

You plan to onboard computers to Microsoft Defender for Endpoint as shown in the following table.

Question # 51

Options:

Questions # 52:

Your network contains an Active Directory domain and an Azure AD tenant.

You implement directory synchronization for all 10.000 users in the organization.

You automate the creation of 100 new user accounts.

You need to ensure that the new user accounts synchronize to Azure AD as quickly as possible.

Which command should you run? To answer, select the appropriate options in the answer area.

Question # 52

Options:

Questions # 53:

You have a Microsoft 365 E5 subscription that contains the groups shown in the following table.

Question # 53

You need to create a contact named Contact1 and add Contact1 to a group.

Which two portals can you use to create Contact1, and to which groups can you add Contact1? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Question # 53

Options:

Questions # 54:

(Your network contains two on-premises Active Directory Domain Services (AD DS) forests named contoso.com and fabrikam.com that are connected by using a forest trust.

You have a Microsoft 365 E5 subscription.

You need to sync a subset of users from both forests to Microsoft Entra ID. The solution must support device objects and device writeback.

What should you use?)

Options:

A.

Microsoft Entra Cloud Sync

B.

Microsoft Entra Domain Services

C.

Microsoft Entra Connect Sync

D.

Active Directory Federation Services (AD FS)

Questions # 55:

Yout network contains an on-premises Active Directory Domain Services (AD DS) domain. The domain contains a usei named Userl.

You have a Microsoft Entra tenant that contains a user named User2.

You plan to use Microsoft Entra Cloud Sync to sync the AD DS domain and the Microsoft Entra tenant.

You need to ensure that User1 can install Microsoft Entra Cloud Sync in the domain, and User2 can configure Microsoft Entra Cloud Sync in the tenant. The solution must follow the principle of least privilege.

To which group should you add User1, and which role should you assign to User2? To answer, select the appropriate options in the answer area.

Question # 55

Options:

Questions # 56:

You have a Microsoft Azure Active Directory (Azure AD) tenant named Contoso.com.

You create a Microsoft Defender for identity instance Contoso.

The tenant contains the users shown in the following table.

Question # 56

You need to modify the configuration of the Defender for identify sensors.

Solutions: You instruct User1 to modify the Defender for identity sensor configuration.

Does this meet the goal?

Options:

A.

Yes

B.

No

Questions # 57:

You need to recommend a solution for the security administrator. The solution must meet the technical requirements.

What should you include in the recommendation?

Options:

A.

Microsoft Microsoft Entra ID (Microsoft Entra ID) Privileged Identity Management

B.

Microsoft Microsoft Entra ID (Microsoft Entra ID) Identity Protection

C.

Microsoft Microsoft Entra ID (Microsoft Entra ID) conditional access policies

D.

Microsoft Microsoft Entra ID (Microsoft Entra ID) authentication methods

Questions # 58:

You need to meet the technical requirement for the SharePoint administrator. What should you do? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.

Question # 58

Options:

Questions # 59:

You need to meet the technical requirement for large-volume document retrieval. What should you create?

Options:

A.

a data loss prevention (DLP) policy from the Security & Compliance admin center

B.

an alert policy from the Security & Compliance admin center

C.

a file policy from Microsoft Cloud App Security

D.

an activity policy from Microsoft Cloud App Security

Questions # 60:

You need to meet the technical requirement for the EU PII data.

What should you create?

Options:

A.

a retention policy from the Security & Compliance admin center.

B.

a retention policy from the Exchange admin center

C.

a data loss prevention (DLP) policy from the Exchange admin center

D.

a data loss prevention (DLP) policy from the Security & Compliance admin center

Viewing page 4 out of 12 pages
Viewing questions 46-60 out of questions