Salesforce Certified Identity and Access Management Designer Exam Practice Questions (P. 4)
- Full Access (60 questions)
- Six months of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #16
Universal Containers (UC) wants to implement Delegated Authentication for a certain subset of Salesforce users.
Which three items should UC take into consideration when building the web service to handle the Delegated Authentication request? (Choose three.)
Which three items should UC take into consideration when building the web service to handle the Delegated Authentication request? (Choose three.)
- AThe web service can be written using either the SOAP or REST protocol.Most Voted
- BUC should whitelist all Salesforce IP ranges on their corporate firewall.
- CThe web service needs to include SourcelP as a method parameter.Most Voted
- DThe return type of the web service method should be a boolean value.Most Voted
- EDelegated Authentication is enabled for the System Administrator profile.
Correct Answer:
BCD
BCD
send
light_mode
delete
Question #17
Which two roles of the systems are involved in an environment where Salesforce users are enabled to access Google Apps from within Salesforce through App Launcher and Connected App setup? (Choose two.)
- ASalesforce is the Service Provider.
- BSalesforce is the Identity Provider.
- CGoogle is the Identity Provider.
- DGoogle is the Service Provider.
Correct Answer:
BD
BD
send
light_mode
delete
Question #18
An Architect has successfully configured SAML-based SSO for Universal Containers. SSO has been working for 3 months when Universal Containers manually adds a batch of new users to Salesforce. The new users receive an error from Salesforce when trying to use SSO. Existing users are still able to successfully use SSO to access Salesforce.
What is the likely cause of this behavior?
What is the likely cause of this behavior?
- AThe new users do NOT have the SSO permission enabled on their profiles.
- BThe Federation ID field on the new User records is NOT correctly set.
- CThe administrator forgot to reset the new user's Salesforce password.
- DThe My Domain capability is NOT enabled on the new user's profile.
Correct Answer:
B
B
send
light_mode
delete
Question #19
Universal Containers (UC) wants its Closed Won opportunities to be synced to a Data Warehouse in near real time. UC has implemented. Outbound Message to enable near real-time data sync. UC wants to ensure that communication between Salesforce and Target System is secure.
What Certificate is sent along with the Outbound Message?
What Certificate is sent along with the Outbound Message?
- AThe Self-Signed Certificates from the Certificate & Key Management menu.
- BThe CA-Signed Certificate from the Certificate and Key Management menu.
- CThe default Client Certificate from the Develop --> API Menu.
- DThe default Client Certificate or a Certificate from Certificate and Key Management menu.Most Voted
Correct Answer:
C
C
send
light_mode
delete
Question #20
How should an Architect automatically redirect users to the login page of the external Identity Provider when using an SP-initiated SAML flow with Salesforce as a Service Provider?
- ARemove the Login Page from the list of Authentication Services on the My Domain configuration.
- BSet the Identity Provider as default and enable the Redirect to the Identity Provider setting on the SAML Configuration.
- CUse Visualforce as the landing page for My Domain to redirect users to the Identity Provider login page.
- DEnable the Redirect to the Identity Provider setting under Authentication Services on the My Domain Configuration.
Correct Answer:
A
A
send
light_mode
delete
All Pages