Microsoft MS-900 Exam Practice Questions (P. 3)
- Full Access (473 questions)
- Six months of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #21
Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements.
You have recently made use of Windows Autopilot to deploy Windows 10 devices in your company's environment.
You have been asked to make sure that data that stored in OneDrive for Business is available to users from remote locations.
Solution: You enable Microsoft Azure AD multi-factor authentication for the users.
Does the solution meet the goal?
You have recently made use of Windows Autopilot to deploy Windows 10 devices in your company's environment.
You have been asked to make sure that data that stored in OneDrive for Business is available to users from remote locations.
Solution: You enable Microsoft Azure AD multi-factor authentication for the users.
Does the solution meet the goal?
- AYes
- BNoMost Voted
Correct Answer:
B
B

Enabling Microsoft Azure AD multi-factor authentication (MFA) enhances security by requiring multiple forms of verification. However, it does not impact the availability of data stored on OneDrive for Business from remote locations. The solution's focus should instead be on ensuring proper access permissions and possibly utilizing features like OneDrive Files On-Demand for remote data access.
send
light_mode
delete
Question #22
Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements.
You have recently made use of Windows Autopilot to deploy Windows 10 devices in your company's environment.
You have been asked to make sure that data that stored in OneDrive for Business is available to users from remote locations.
Solution: You enroll the devices in Microsoft Intune.
Does the solution meet the goal?
You have recently made use of Windows Autopilot to deploy Windows 10 devices in your company's environment.
You have been asked to make sure that data that stored in OneDrive for Business is available to users from remote locations.
Solution: You enroll the devices in Microsoft Intune.
Does the solution meet the goal?
- AYes
- BNoMost Voted
Correct Answer:
B
B

The chosen solution of enrolling devices in Microsoft Intune does not address the primary requirement of ensuring remote data access from OneDrive for Business directly. While Intune handles device and application management well, it does not by its own nature set up or guarantee data access from OneDrive. For fulfilling the specified requirement, configuring devices with Azure Active Directory, which supports authentication and thus facilitated data access, might be more effective. Therefore the stated solution does not meet the goal fully in the context of ensuring remote OneDrive for Business accessibility.
send
light_mode
delete
Question #23
Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements.
You have recently made use of Windows Autopilot to deploy Windows 10 devices in your company's environment.
You have been asked to make sure that data that stored in OneDrive for Business is available to users from remote locations.
Solution: You inform users that they should use their Microsoft Azure AD credentials to sign in to their devices.
Does the solution meet the goal?
You have recently made use of Windows Autopilot to deploy Windows 10 devices in your company's environment.
You have been asked to make sure that data that stored in OneDrive for Business is available to users from remote locations.
Solution: You inform users that they should use their Microsoft Azure AD credentials to sign in to their devices.
Does the solution meet the goal?
- AYesMost Voted
- BNo
Correct Answer:
A
A

For ensuring that data stored in OneDrive for Business is accessible from remote locations after utilizing Windows Autopilot, signing in with Microsoft Azure AD credentials is fundamental. It establishes that users authenticate using a trusted identity, which is crucial for accessing corporate resources like OneDrive securely. However, remember that while this step is necessary, it's usually part of broader access configurations, such as setting up VPNs or direct internet access, to fully enable remote access to services like OneDrive for Business.
send
light_mode
delete
Question #24
Your company makes use of Microsoft 365 in their environment.
You have been tasked with making sure that admin roles are protected. The feature you use should achieve this by requiring approvals.
Which of the following is a feature you should use?
You have been tasked with making sure that admin roles are protected. The feature you use should achieve this by requiring approvals.
Which of the following is a feature you should use?
- AMobile application protection policy.
- BMicrosoft Azure AD Identity Protection.
- CMicrosoft Azure AD Privilege Identity Protection.Most Voted
- DMicrosoft Azure AD Conditional Access.
Correct Answer:
B
References:
https://docs.microsoft.com/en-us/azure/active-directory/identity-protection/overview
B
References:
https://docs.microsoft.com/en-us/azure/active-directory/identity-protection/overview
send
light_mode
delete
Question #25
Your company makes use of Microsoft 365 in their environment.
You have been tasked with making sure that members of the Global Administrators group are protected. The feature you use should achieve this by making use of dynamic risk profiles.
Which of the following is a feature you should use?
You have been tasked with making sure that members of the Global Administrators group are protected. The feature you use should achieve this by making use of dynamic risk profiles.
Which of the following is a feature you should use?
- AMobile application protection policy.
- BDevice configuration policy.
- CMicrosoft Azure AD Privilege Identity Protection.
- DMicrosoft Azure AD Conditional Access.Most Voted
Correct Answer:
C
References:
https://docs.microsoft.com/en-us/azure/active-directory/privileged-identity-management/pim-configure
C
References:
https://docs.microsoft.com/en-us/azure/active-directory/privileged-identity-management/pim-configure
send
light_mode
delete
Question #26
Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements.
You have been tasked with deploying Microsoft 365 for your company in a hybrid configuration.
You want to make sure that a smart card can be used by staff for authentication purposes.
Solution: You configure the use of password hash synchronization with single-on as the hybrid identity solution.
Does the solution meet the goal?
You have been tasked with deploying Microsoft 365 for your company in a hybrid configuration.
You want to make sure that a smart card can be used by staff for authentication purposes.
Solution: You configure the use of password hash synchronization with single-on as the hybrid identity solution.
Does the solution meet the goal?
- AYes
- BNoMost Voted
Correct Answer:
B
B

When configuring a hybrid deployment of Microsoft 365 and aiming to use smart cards for authentication, password hash synchronization with single sign-on isn't the right solution. Instead, utilizing Active Directory Federation Services (AD FS) is necessary. AD FS supports external identity providers, including those required for smart card authentication. Therefore, the recommended approach for meeting this specific requirement would involve AD FS setup rather than relying solely on password hash synchronization for hybrid environments.
send
light_mode
delete
Question #27
Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements.
You have been tasked with deploying Microsoft 365 for your company in a hybrid configuration.
You want to make sure that a smart card can be used by staff for authentication purposes.
Solution: You configure the use of pass-through authentication and single sign-on as the hybrid identity solution.
Does the solution meet the goal?
You have been tasked with deploying Microsoft 365 for your company in a hybrid configuration.
You want to make sure that a smart card can be used by staff for authentication purposes.
Solution: You configure the use of pass-through authentication and single sign-on as the hybrid identity solution.
Does the solution meet the goal?
- AYes
- BNoMost Voted
Correct Answer:
B
B

Correct, option B is accurate because a smart card authentication method typically needs federation with services like Active Directory Federation Services (ADFS). The provided solution using pass-through authentication and single sign-on, although common for hybrid setups, doesn't directly support smart card authentications as needed in this specific scenario. To effectively implement smart card authentication, leveraging federation technology that supports such protocols is essential.
send
light_mode
delete
Question #28
Note: The question is included in a number of questions that depicts the identical set-up. However, every question has a distinctive result. Establish if the solution satisfies the requirements.
You have been tasked with deploying Microsoft 365 for your company in a hybrid configuration.
You want to make sure that a smart card can be used by staff for authentication purposes.
Solution: You configure the use of Active Directory Federation Services (AD FS) as the hybrid identity solution.
Does the solution meet the goal?
You have been tasked with deploying Microsoft 365 for your company in a hybrid configuration.
You want to make sure that a smart card can be used by staff for authentication purposes.
Solution: You configure the use of Active Directory Federation Services (AD FS) as the hybrid identity solution.
Does the solution meet the goal?
- AYesMost Voted
- BNo
Correct Answer:
A
A

Configuring AD FS (Active Directory Federation Services) in a Microsoft 365 hybrid setup is an effective solution for enabling smart card authentication. AD FS facilitates both Single Sign-On (SSO) and federated authentication, which includes smart card authentication methods. Properly set up AD FS allows users to authenticate their identity using smart cards securely, complying seamlessly with advanced security protocols for accessing Microsoft 365 resources in hybrid environments. This meets the needs adequately for organizations aiming for secure and reliable user authentication mechanisms.
send
light_mode
delete
Question #29
You need to consider the underlined segment to establish whether it is accurate.
To retrieve data for employees who request personal data under General Data Protection Regulation (GDPR) guidelines, you have to create a GDPR assessment.
Select `No adjustment required` if the underlined segment is accurate. If the underlined segment is inaccurate, select the accurate option.
What should you do?
To retrieve data for employees who request personal data under General Data Protection Regulation (GDPR) guidelines, you have to create a GDPR assessment.
Select `No adjustment required` if the underlined segment is accurate. If the underlined segment is inaccurate, select the accurate option.
What should you do?
- ANo adjustment required
- Bmobile application protection policy
- Cdevice configuration policy
- Ddata subject request caseMost Voted
Correct Answer:
D
References:
https://docs.microsoft.com/en-us/microsoft-365/compliance/gdpr-dsr-office365
D
References:
https://docs.microsoft.com/en-us/microsoft-365/compliance/gdpr-dsr-office365
send
light_mode
delete
Question #30
You need to consider the underlined segment to establish whether it is accurate.
You are a Microsoft 365 administrator for a company whose employees are allowed to access corporate information located in the cloud via their personal devices.
You have been tasked with making sure that employees are prohibited from copying this information to their personal OneDrive folders.
You should make use of Intune App Protection.
Select `No adjustment required` if the underlined segment is accurate. If the underlined segment is inaccurate, select the accurate option.
You are a Microsoft 365 administrator for a company whose employees are allowed to access corporate information located in the cloud via their personal devices.
You have been tasked with making sure that employees are prohibited from copying this information to their personal OneDrive folders.
You should make use of Intune App Protection.
Select `No adjustment required` if the underlined segment is accurate. If the underlined segment is inaccurate, select the accurate option.
- ANo adjustment requiredMost Voted
- BInformation Rights Management
- CMicrosoft Azure AD Privilege Identity Protection
- DMicrosoft Azure AD Identity Protection
Correct Answer:
A
References:
https://docs.microsoft.com/en-us/intune/app-protection-policy
A
References:
https://docs.microsoft.com/en-us/intune/app-protection-policy
send
light_mode
delete
All Pages