Welcome to TestSimulate

Pass Your Next Certification Exam Fast!

Everything you need to prepare, learn & pass your certification exam easily.

365 days free updates. First attempt guaranteed success.

Changing the Concept of MD-101 Exam Preparation 2023 [Q95-Q116]

Share

Changing the Concept of MD-101 Exam Preparation 2023

Getting MD-101 Certification Made Easy! Get professional help from our MD-101 Dumps PDF


Microsoft MD-101 (Managing Modern Desktops) exam is a certification exam that validates the skills and knowledge of IT professionals who are responsible for managing, configuring, and securing modern desktops and devices in an enterprise environment. MD-101 exam is part of the Microsoft 365 Certified: Modern Desktop Administrator Associate certification, which is designed to equip IT professionals with the expertise to manage and deploy Windows 10, Office 365, and other Microsoft technologies.


Microsoft MD-101 exam is designed to test the candidates' ability to manage and deploy Windows 10 devices, migrate and configure user data, manage policies and profiles, and deploy and manage applications. MD-101 exam also covers the management of security and compliance in a Windows 10 environment, including the implementation of device protection, data loss prevention, and threat mitigation measures.

 

NEW QUESTION # 95
You have a Microsoft Azure Active Directory (Azure AD) tenant. All corporate devices are enrolled in Microsoft Intune.
You have a web-based application named App1 that uses Azure AD to authenticate.
You need to prompt all users of App1 to agree to the protection of corporate data when they access App1 from both corporate and non-corporate devices.
What should you configure?

  • A. Terms of use in Conditional access
  • B. an Endpoint protection profile in Device configuration
  • C. Terms and Conditions in Device enrollment
  • D. Notifications in Device compliance

Answer: A

Explanation:
References:
https://docs.microsoft.com/en-us/azure/active-directory/conditional-access/terms-of-use


NEW QUESTION # 96
You have a Microsoft Deployment Toolkit (MDT) deployment share that has a path of D:\MDTShare.
You need to add a feature pack to the boot image.
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

Answer:

Explanation:

1 - Modify the Windows PE properties of the deployment share.
2 - Copy the feature pack to D:\MDTShare\Tools\x86
3 - Update the deployment share.
Reference:
https://docs.microsoft.com/en-us/windows/deployment/deploy-windows-mdt/deploy-a-windows-10-image-using-mdt


NEW QUESTION # 97
Your network contains an Active Directory domain. The domain contains computers that run Windows 10 and are enrolled in Microsoft Intune. Updates are deployed by using Windows Update for Business.
Users in a group named Group1 must meet the following requirements:
* Update installations must occur any day only between 00:00 and 05:00.
* Updates must be downloaded from Microsoft and from other company computers that already downloaded the updates.
You need to configure the Windows 10 Update Rings in Intune to meet the requirements.
Which two settings should you modify? To answer, select the appropriate settings in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Reference:
https://github.com/MicrosoftDocs/IntuneDocs/blob/master/intune/windows-update-settings.md
https://docs.microsoft.com/en-us/intune/delivery-optimization-windows#move-from-existing-update-rings-to-delivery-optimization


NEW QUESTION # 98
Your company has a Microsoft 365 subscription.
The company uses Microsoft Intune to manage all devices.
The company uses conditional access to restrict access to Microsoft 365 services for devices that do not comply with the company's security policies.
You need to identify which devices will be prevented from accessing Microsoft 365 services.
What should you use?

  • A. The Conditional access blade in the Azure Active Directory admin center.
  • B. The Device tab in Desktop Analytics.
  • C. The Device compliance blade in the Microsoft Endpoint Manager admin center.
  • D. Windows Defender Security Center.

Answer: C


NEW QUESTION # 99
You have the devices shown in the following table.

You plan to implement Desktop Analytics.
You need to identify which devices support the following:
* Compatibility insights
* App usage insights
Which devices should you identify? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation
Graphical user interface, text, application Description automatically generated

Reference:
https://docs.microsoft.com/en-us/mem/configmgr/desktop-analytics/compat-assessmenthttps://docs.microsoft.com
https://azure.microsoft.com/en-us/updates/application-insights-adds-support-for-ios-and-android-apps-improved-


NEW QUESTION # 100
Your company has several Windows 10 devices that are enrolled in Microsoft Inline.
You deploy a new computer named Computer1 that runs Windows 10 and is in a workgroup.
You need to enroll Computer1 in Intune.
Solution: From the Settings app on Computer1, you use the Connect to work or school account settings.
Does this meet the goal?

  • A. Yes
  • B. No

Answer: B

Explanation:
Explanation
Use MDM enrolment.
MDM only enrollment lets users enroll an existing Workgroup, Active Directory, or Azure Active directory
joined PC into Intune. Users enroll from Settings on the existing Windows PC.
References:
https://docs.microsoft.com/en-us/mem/intune/enrollment/windows-enrollment-methods


NEW QUESTION # 101
You have a Microsoft 365 subscription.
You need to configure access to Microsoft Office 365 for unmanaged devices. The solution must meet the following requirements:
* Allow only the Microsoft Intune Managed Browser to access Office 365 web interfaces.
* Ensure that when users use the Intune Managed Browser to access Office 365 web interfaces, they can only copy data to applications that are managed by the company.
Which two settings should you configure from the Microsoft Intune blade? To answer, select the appropriate settings in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation

References:
https://docs.microsoft.com/en-us/intune/app-configuration-managed-browser#application-protection-policies-for


NEW QUESTION # 102
Note: This question is part of a series of questions that present the same scenario. Each question in the
series contains a unique solution that might meet the stated goals. Some question sets might have more
than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these
questions will not appear in the review screen.
Your company uses Windows Update for Business.
The research department has several computers that have specialized hardware and software installed.
You need to prevent the video drivers from being updated automatically by using Windows Update.
Solution: From the Settings app, you clear the Give me updates for other Microsoft products when I
update Windows check box.
Does this meet the goal?

  • A. Yes
  • B. No

Answer: B

Explanation:
Explanation
References:
https://www.stigviewer.com/stig/microsoft_windows_server_2012_member_server/2013-07-25/finding/WN12-C


NEW QUESTION # 103
You have 200 computers that run Windows 10.
You need to create a provisioning package to configure the following tasks:
Remove the Microsoft News and the Xbox Microsoft Store apps.
Add a VPN connection to the corporate network.
Which two customizations should you configure? To answer, select the appropriate customizations in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation:
References:
https://docs.microsoft.com/en-us/windows/configuration/wcd/wcd-connectivityprofiles
https://docs.microsoft.com/en-us/windows/client-management/mdm/policy-configuration-service-provider#applicationmanagement-applicationrestrictions
https://docs.microsoft.com/en-us/windows/configuration/wcd/wcd-policies


NEW QUESTION # 104
You have a Microsoft Intune subscription.
You create the Windows Autopilot deployment profile-shown in the following exhibit.

Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

References:
https://docs.microsoft.com/en-us/windows/deployment/windows-autopilot/user-driven


NEW QUESTION # 105
Your company has a main office and six branch offices. The branch offices connect to the main office by using a WAN link. All offices have a local Internet connection and a Hyper-V host cluster.
The company has a Microsoft System Center Configuration Manager deployment. The main office is the primary site. Each branch has a distribution point. All computers that run Windows 10 are managed by using both Configuration Manager and Microsoft Intune.
You plan to deploy the latest build of Microsoft Office 365 ProPlus to all the computers.
You need to minimize the amount of network traffic on the company's Internet links for the planned deployment.
What should you include in the deployment plan?

  • A. From Intune, configure app assignments for the Office 365 ProPlus suite.
    In each office, copy the Office 365 distribution files to a Microsoft Deployment Toolkit (MDT) deployment share.
  • B. From Intune, configure app assignments for the Office 365 ProPlus suite.
    In each office, copy the Office 365 distribution files to a Configuration Manager distribution point.
  • C. From Configuration Manager, create an application deployment.
    In each office, copy the Office 365 distribution files to a Configuration Manager distribution point.
  • D. From Configuration Manager, create an application deployment.
    Copy the Office 365 distribution files to a Configuration Manager cloud distribution point.

Answer: C

Explanation:
Reference:
https://docs.microsoft.com/en-us/deployoffice/deploy-office-365-proplus-with-system-center-configurationmana


NEW QUESTION # 106
You have a Microsoft 365 subscription.
Users have iOS devices that are not enrolled in Microsoft 365 Device Management.
You create an app protection policy for the Microsoft Outlook app as shown in the exhibit. (Click the Exhibit tab.)

You need to configure the policy to meet the following requirements:
Prevent the users from using the Outlook app if the operating system version is less than 12.0.0.
Require the users to use an alphanumeric passcode to access the Outlook app.
What should you configure in an app protection policy for each requirement? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Reference:
https://docs.microsoft.com/en-us/intune/app-protection-policy-settings-ios


NEW QUESTION # 107
Your network contains an Active Directory domain that is synced to Microsoft Azure Active Directory
(Azure AD). The domain contains 500 laptops that run Windows 8.1 Professional. The users of the laptops
work from home.
Your company uses Microsoft Intune, the Microsoft Deployment Toolkit (MDT), and Windows
Configuration Designer to manage client computers.
The company purchases 500 licenses for Windows 10 Enterprise.
You verify that the hardware and applications on the laptops are compatible with Windows 10.
The users will bring their laptop to the office, where the IT department will deploy Windows 10 to the
laptops while the users wait.
You need to recommend a deployment method for the laptops that will retain their installed applications.
The solution must minimize how long it takes to perform the deployment.
What should you include in the recommendation?

  • A. Windows AutoPilot
  • B. an in-place upgrade
  • C. a clean installation by using a Windows Configuration Designer provisioning package
  • D. a clean installation and the User State Migration Tool (USMT)

Answer: B

Explanation:
Explanation/Reference:
References:
https://docs.microsoft.com/en-us/windows/deployment/windows-10-deployment-scenarios#in-place-
upgrade


NEW QUESTION # 108
Your company has computers that run Windows 10. The employees at the company use the computers.
You plan to monitor the computers by using the Update Compliance solution.
You create the required resources in Azure.
You need to configure the computers to send enhanced Update Compliance data.
Which two Group Policy settings should you configure? To answer, select the appropriate settings in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Reference:
https://docs.microsoft.com/en-us/windows/deployment/update/update-compliance-configuration-manual


NEW QUESTION # 109
Your network contains an Active Directory domain. Active Directory is synced with Microsoft Azure Active Directory (Azure AD).
There are 500 domain-joined computers that run Windows 10. The computers are joined to Azure AD and enrolled in Microsoft Intune.
You plan to implement Windows Defender Exploit Guard.
You need to create a custom Windows Defender Exploit Guard policy, and then distribute the policy to all the computers.
What should you do? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation:
References:
https://docs.microsoft.com/en-us/intune/endpoint-protection-windows-10
https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-exploit-guard/enable-exploit-protection


NEW QUESTION # 110
To which devices do Policy1 and Policy2 apply? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Reference:
https://docs.microsoft.com/en-us/intune/device-profile-assign


NEW QUESTION # 111
Your network contains an on-premises Active Directory domain named contoso.com that syncs to Azure Active Directory (Azure AD).
You have the Windows 10 devices shown in the following table.

You need to ensure that you can use co-management to manage all the Windows 10 devices.
Which two actions should you perform? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.

  • A. Install the Endpoint Configuration Manager agent on Device1 and Device3.
  • B. Join Device2, Device3, and Device5 to the domain.
  • C. Enroll Device4 and Device5 in Intune.
  • D. Join Device 1, Device2, and Device4 to Azure AD.
  • E. Unjoin Device3, Device5, and Device6 from Azure AD, and then register the devices in Azure AD.

Answer: A,C

Explanation:
Explanation
Co-management enables you to concurrently manage Windows 10 devices by using both Configuration Manager and Microsoft Intune.
Co-management requires Configuration Manager version 1710 or later and enrollment in Microsoft Intune.
Windows 10 devices must be hybrid Azure AD joined.
Reference:
https://docs.microsoft.com/en-us/mem/configmgr/comanage/overview


NEW QUESTION # 112
You have a hybrid deployment of Azure Active Directory (Azure AD) that contains 50 Windows 10 devices. All the devices are enrolled in Microsoft Endpoint Manager.
You discover that Group Policy settings override the settings configured in Microsoft Endpoint Manager policies.
You need to ensure that the settings configured in Microsoft Endpoint Manager override the Group Policy settings.
What should you do?

  • A. From Group Policy Management Editor, configure the User Configuration settings in the Default Domain Policy
  • B. From the Microsoft Endpoint Manager admin center, create an Administrative Templates device profile
  • C. From Group Policy Management Editor, configure the Computer Configuration settings in the Default Domain Policy
  • D. From the Microsoft Endpoint Manager admin center, create a custom device profile

Answer: D

Explanation:
Reference:
https://uem4all.com/2018/04/02/windows-10-group-policy-vs-intune-mdm-policy-who-wins/


NEW QUESTION # 113
You have a Microsoft 365 subscription that contains the computers shown in the following table.

You plan to use Windows Autopilot.
You need to ensure that the computers support automatic registration in Windows Autopilot.
What should you do for each computer? To answer, select the appropriate options in the answer area.

Answer:

Explanation:

Explanation
Box 1: Join the computer to Azure AD.
You can deploy hybrid Azure AD-joined devices by using Intune and Windows Autopilot.
Box 2: Upgrade the operating system to Windows 10 Enterprise
The device to be enrolled must follow these requirements:
Use Windows 11 or Windows 10 version 1809 or later.
Reference: https://docs.microsoft.com/en-us/mem/autopilot/windows-autopilot-hybrid


NEW QUESTION # 114
What is the maximum number of devices that User1 and User2 can enroll in Intune? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:


NEW QUESTION # 115
Your network contains an Active Directory domain named contoso.com that syncs to Azure Active Directory (Azure AD). The domain contains the users shown in the following table.

Enterprise State Roaming is enabled for User2.
You have the computers shown in the following table.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:


NEW QUESTION # 116
......

MD-101 Exam Crack Test Engine Dumps Training With 358 Questions: https://www.testsimulate.com/MD-101-study-materials.html