Salesforce Certified Identity and Access Management Designer Exam Practice Questions (P. 5)
- Full Access (60 questions)
- Six months of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #21
Universal Containers (UC) has a custom, internal-only, mobile billing application for users who are commonly out of the office. The app is configured as a Connected App in Salesforce. Due to the nature of this app, UC would like to take the appropriate measures to properly secure access to the app.
Which two solutions should be recommended? (Choose two.)
Which two solutions should be recommended? (Choose two.)
- AUse Google Authenticator as an additional part of the login process.
- BRequire High Assurance sessions in order to use the Connected App.
- CDisallow the use of Single Sign-on for any users of the mobile app.
- DSet Login IP Ranges to the internal network for all of the app users’ Profiles.
Correct Answer:
AB
AB
send
light_mode
delete
Question #22
Universal Containers (UC) wants to integrate a web application with Salesforce. The UC team has implemented the OAuth Web-Server Authentication Flow for authentication purposes.
Which two considerations should an Architect point out to UC? (Choose two.)
Which two considerations should an Architect point out to UC? (Choose two.)
- AThe flow will NOT provide an OAuth Refresh Token back to the server.
- BThe web application should be hosted on a secure server.
- CThe flow involves passing the user credentials back and forth.
- DThe web server must be able to protect consumer secret.
Correct Answer:
BD
BD
send
light_mode
delete
Question #23
A group of users try to access one of Universal Containers’ Connected Apps and receive the following error message: “Failed: Not approved for access.”
What is the probable cause of this issue?
What is the probable cause of this issue?
- AThe Salesforce Administrators have revoked the OAuth authorization.
- BThe Connected App setting “All users may self-authorize” is enabled.
- CThe use of High Assurance sessions are required for the Connected App.
- DThe users do NOT have the correct permission set assigned to them.Most Voted
Correct Answer:
D
D
send
light_mode
delete
Question #24
Universal Containers (UC) is building a custom Innovation platform on their Salesforce instance. The Innovation platform will be written completely in Apex and Visualforce and will use custom objects to store the data. UC would like all users to be able to access the system without having to log in with Salesforce credentials. UC will utilize a third-party IdP using SAML SSO.
What is the recommended Salesforce license type for all of the UC employees?
What is the recommended Salesforce license type for all of the UC employees?
- ASalesforce Platform license
- BExternal Identity license
- CIdentity license
- DSalesforce license
Correct Answer:
A
A
send
light_mode
delete
Question #25
Universal Containers wants to build a custom mobile app connecting to Salesforce using OAuth, and would like to restrict the types of resources mobile users can access.
What OAuth feature of Salesforce should be used to achieve the goal?
What OAuth feature of Salesforce should be used to achieve the goal?
send
light_mode
delete
All Pages