It is more faster and easier to pass the Microsoft MD-101 exam by using Tested Microsoft Managing Modern Desktops (beta) questuins and answers. Immediate access to the Improved MD-101 Exam and find the same core area MD-101 questions with professionally verified answers, then PASS your exam with a high score now.
Free demo questions for Microsoft MD-101 Exam Dumps Below:
NEW QUESTION 1
Your company has a Microsoft 365 subscription.
The company uses Microsoft Intune to manage all devices.
The company uses conditional access to restrict access to Microsoft 365 services for devices that do not comply with the company’s security policies.
You need to identify which devices will be prevented from accessing Microsoft 365 services.
What should you use?
- A. The Device Health solution in Windows Analytics.
- B. Windows Defender Security Center.
- C. The Device compliance blade in the Intune admin center.
- D. The Conditional access blade in the Azure Active Directory admin center.
Answer: C
NEW QUESTION 2
Your network contains an Active Directory named contoso.com. The domain contains two computers named Computer1 and Computer2 that run Windows 10.
Folder Redirection is configured for a domain user named User1. The AppDataRoaming folder and the Desktop folder are redirected to a network share.
User1 signs in to Computer1 and performs the following tasks:
Configures screen saver to start after five minutes of inactivity
Modifies the default save location for Microsoft Word
Creates a file named File1.docx on the desktop
Modifies the desktop background
You need to identify what will be retained when User1 signs in to Computer2. What should you identify?
- A. File1.docx and the desktop background only
- B. File1.docx, the screen saver settings, the desktop background, and the default save location for Word
- C. File1.docx only
- D. File1.docx, the desktop background, and the default save location for Word only
Answer: B
Explanation:
Reference:
https://docs.microsoft.com/en-us/windows-server/storage/folder-redirection/folder-redirection-rup-overview
NEW QUESTION 3
You have computers that run Windows 10 as shown in the following table.
Computer2 and Computer3 are enrolled in Microsoft Intune.
In a Group Policy object (GPO) linked to the domain, you enable the Computer Configuration/Administrative Templates/Windows Components/Search/Allow Cortana setting.
In an Intune device configuration profile, you configure the following:
Device/Vendor/MSFT/Policy/Config/ControlPolicyConflict/MDMWinsOverGP to a value of 1
Experience/AllowCortana to a value of 0.
Each of the following statement, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.
- A. Mastered
- B. Not Mastered
Answer: A
Explanation:
Reference:
https://blogs.technet.microsoft.com/cbernier/2021/04/02/windows-10-group-policy-vs-intune-mdm-policy-who-
NEW QUESTION 4
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You need to ensure that feature and quality updates install automatically during a maintenance window. Solution: From the Maintenance Scheduler settings, you configure Automatic Maintenance Activation Boundary.
Does this meet the goal?
- A. Yes
- B. No
Answer: B
Explanation:
Reference:
https://docs.microsoft.com/en-us/sccm/sum/deploy-use/automatically-deploy-software-updates
NEW QUESTION 5
Your company has a main office and six branch offices. The branch offices connect to the main office by using a WAN link. All offices have a local Internet connection and a Hyper-V host cluster.
The company has a Microsoft System Center Configuration Manager deployment. The main office is the primary site. Each branch has a distribution point. All computers that run Windows 10 are managed by using both Configuration Manager and Microsoft Intune.
You plan to deploy the latest build of Microsoft Office 365 ProPlus to all the computers.
You need to minimize the amount of network traffic on the company’s Internet links for the planned deployment.
What should you include in the deployment plan?
- A. From Intune, configure app assignments for the Office 365 ProPlus suite.In each office, copy the Office 365 distribution files to a Microsoft Deployment Toolkit (MDT) deploymentshare.
- B. From Intune, configure app assignments for the Office 365 ProPlus suite.In each office, copy the Office 365 distribution files to a Configuration Manager distribution point.
- C. From Configuration Manager, create an application deployment.Copy the Office 365 distribution files to a Configuration Manager cloud distribution point.
- D. From Configuration Manager, create an application deployment.In each office, copy the Office 365 distribution files to a Configuration Manager distribution point.
Answer: D
Explanation:
Reference:
https://docs.microsoft.com/en-us/deployoffice/deploy-office-365-proplus-with-system-center-configurationmana
NEW QUESTION 6
You need to meet the OOBE requirements for Windows AutoPilot.
Which two settings should you configure from the Azure Active Directory blade? To answer, select the appropriate settings in the answer area.
NOTE: Each correct selection is worth one point.
- A. Mastered
- B. Not Mastered
Answer: A
Explanation:
Reference:
https://blogs.msdn.microsoft.com/sgern/2021/10/11/intune-intune-and-autopilot-part-3-preparing-your-environm https://blogs.msdn.microsoft.com/sgern/2021/11/27/intune-intune-and-autopilot-part-4-enroll-your-first-device/
NEW QUESTION 7
Your company has computers that run Windows 8.1, Windows 10, or macOS. The company uses Microsoft Intune to manage the computers.
You need to create an Intune profile to configure Windows Hello for Business on the computers that support it.
Which platform type and profile type should you use? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
- A. Mastered
- B. Not Mastered
Answer: A
Explanation:
Reference:
https://docs.microsoft.com/en-us/intune/endpoint-protection-configure
NEW QUESTION 8
Your company has an infrastructure that has the following:
A Microsoft 365 tenant
An Active Directory forest
Microsoft Store for Business
A Key Management Service (KMS) server
A Windows Deployment Services (WDS) server
A Microsoft Azure Active Directory (Azure AD) Premium tenant The company purchases 100 new computers that run Windows 10.
You need to ensure that the new computers are joined automatically to Azure AD by using Windows AutoPilot.
What should you use? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
- A. Mastered
- B. Not Mastered
Answer: A
Explanation:
Reference:
https://docs.microsoft.com/en-us/intune/enrollment-autopilot
NEW QUESTION 9
You have 200 computers that run Windows 10. The computers are joined to Microsoft Azure Active Directory (AD) and enrolled in Microsoft Intune.
You need to enable self-service password reset on the sign-in screen. Which settings should you configure from the Microsoft Intune blade?
- A. Device configuration
- B. Device compliance
- C. Device enrollment
- D. Conditional access
Answer: A
Explanation:
References:
https://docs.microsoft.com/en-us/azure/active-directory/authentication/tutorial-sspr-windows
NEW QUESTION 10
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You need to ensure that feature and quality updates install automatically during a maintenance window. Solution: From the Windows Update settings, you enable Configure Automatic Updates, select 4-Auto download and schedule the install, and then enter a time.
Does this meet the goal?
- A. Yes
- B. No
Answer: B
Explanation:
Reference:
https://docs.microsoft.com/en-us/sccm/sum/deploy-use/automatically-deploy-software-updates
NEW QUESTION 11
Your company has a Microsoft 365 subscription.
All the users in the finance department own personal devices that run iOS or Android. All the devices are enrolled in Microsoft Intune.
The finance department adds new users each month.
The company develops a mobile application named App1 for the finance department users. You need to ensure that only the finance department users can download App1.
What should you do first?
- A. Add App1 to Intune.
- B. Add App1 to a Microsoft Deployment Toolkit (MDT) deployment share.
- C. Add App1 to Microsoft Store for Business.
- D. Add App1 to the vendor stores for iOS and Android applications.
Answer: A
Explanation:
Reference:
https://docs.microsoft.com/en-us/intune/apps-add
NEW QUESTION 12
You need to meet the technical requirements for the IT department. What should you do first?
- A. From the Azure Active Directory blade in the Azure portal, enable Seamless single sign-on.
- B. From the Configuration Manager console, add an Intune subscription.
- C. From the Azure Active Directory blade in the Azure portal, configure the Mobility (MDM and MAM) settings.
- D. From the Microsoft Intune blade in the Azure portal, configure the Windows enrollment settings.
Answer: C
Explanation:
Reference:
https://docs.microsoft.com/en-us/sccm/comanage/tutorial-co-manage-clients
NEW QUESTION 13
Your company purchases new computers that run Windows 10. The computers have cameras that support Windows Hello for Business.
You configure the Windows Hello for Business Group Policy settings as shown in the following exhibit.
What are two valid methods a user can use to sign in? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.
- A. Facial recognition
- B. A smartwatch that is Bluetooth-enabled
- C. A PIN
- D. A USB key
Answer: AC
Explanation:
Reference:
https://community.windows.com/en-us/stories/windows-sign-in-options https://fossbytes.com/how-to-unlock-windows-10/
NEW QUESTION 14
You need to recommend a solution to meet the device management requirements.
What should you include in the recommendation? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
- A. Mastered
- B. Not Mastered
Answer: A
Explanation:
Reference:
https://github.com/MicrosoftDocs/IntuneDocs/blob/master/intune/app-protection-policy.md https://docs.microsoft.com/en-us/azure/information-protection/configure-usage-rights#do-not-forward-option-fo
NEW QUESTION 15
Your company uses Microsoft Intune.
More than 500 Android and iOS devices are enrolled in the Intune tenant.
You plan to deploy new Intune policies. Different policies will apply depending on the version of Android or iOS installed on the device.
You need to ensure that the policies can target the devices based on their version of Android or iOS. What should you configure first?
- A. Corporate device identifiers in Intune
- B. Device settings in Microsoft Azure Active Directory (Azure AD)
- C. Device categories in Intune
- D. Groups that have dynamic membership rules in Microsoft Azure Active Directory (Azure AD)
Answer: B
Explanation:
Reference:
https://docs.microsoft.com/en-us/intune/compliance-policy-create-android https://docs.microsoft.com/en-us/intune/compliance-policy-create-ios
NEW QUESTION 16
You have a shared computer that runs Windows 10. The computer is infected with a virus.
You discover that a malicious TTF font was used to compromise the computer. You need to prevent this type of threat from affecting the computer in the future. What should you use?
- A. Windows Defender Exploit Guard
- B. Windows Defender Application Guard
- C. Windows Defender Credential Guard
- D. Windows Defender System Guard
- E. Windows Defender SmartScreen
Answer: A
Explanation:
Reference:
https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-exploit-guard/windowsd
NEW QUESTION 17
Your network contains an Active Directory domain that is synced to Microsoft Azure Active Directory (Azure AD).
You have a Microsoft 365 subscription.
You create a conditional access policy for Microsoft Exchange Online.
You need to configure the policy to prevent access to Exchange Online unless is connecting from a device that is hybrid Azure AD-joined.
Which settings should you configure?
- A. Locations
- B. Device platforms
- C. Sign-in risk
- D. Device state
Answer: D
Explanation:
Reference:
https://docs.microsoft.com/en-us/azure/active-directory/conditional-access/conditions#device-state
NEW QUESTION 18
Your network contains an Active Directory domain named contoso.com. The domain contains 200 computers that run Windows 10.
Folder Redirection for the Desktop folder is configured as shown in the following exhibit.
The target is set to Server1.
You plan to use known folder redirection in Microsoft OneDrive for Business.
You need to ensure that the desktop content of users remains on their desktop when you implement known folder redirection.
Which two actions should you perform? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.
- A. Clear the Grant the user exclusive rights to Desktop check box.
- B. Change the Policy Removal setting.
- C. Disable Folder Redirection.
- D. Clear the Move the contents of Desktop to the new location check box.
Answer: AB
Explanation:
References:
https://docs.microsoft.com/en-us/onedrive/redirect-known-folders
NEW QUESTION 19
You need to meet the technical requirements for the new HR department computers.
How should you configure the provisioning package? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
- A. Mastered
- B. Not Mastered
Answer: A
Explanation:
Reference:
https://docs.microsoft.com/en-us/windows/configuration/wcd/wcd-accounts
NEW QUESTION 20
Your company uses Microsoft Intune to manage devices. You need to ensure that only Android devices that use Android work profiles can enroll in Intune.
Which two configurations should you perform in the device enrollment restrictions? Each correct answer presents part of the solution.
NOTE: each correct selection is worth one point.
- A. From Select platforms, set Android work profile to Allow.
- B. From Configure platforms, set Android Personally Owned to Block.
- C. From Configure platforms, set Android Personally Owned to Allow.
- D. From Select platforms, set Android to Block.
Answer: AD
Explanation:
https://docs.microsoft.com/en-us/InTune/enrollment-restrictions-set
NEW QUESTION 21
Your network contains an Active Directory domain named contoso.com.
You create a provisioning package named Package1 as shown in the following exhibit.
What is the maximum number of devices on which you can run Package1 successfully?
- A. 1
- B. 10
- C. 25
- D. unlimited
Answer: D
NEW QUESTION 22
Your company has a computer named Computer1 that runs Windows 10. Computer1 was used by a user who left the company.
You plan to repurpose Computer1 and assign the computer to a new user. You need to redeploy Computer1 by using Windows AutoPilot.
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
- A. Mastered
- B. Not Mastered
Answer: A
Explanation:
Reference:
https://docs.microsoft.com/en-us/intune/enrollment-autopilot
https://docs.microsoft.com/en-us/windows/deployment/windows-autopilot/windows-autopilot-reset
NEW QUESTION 23
......
Recommend!! Get the Full MD-101 dumps in VCE and PDF From Dumpscollection, Welcome to Download: http://www.dumpscollection.net/dumps/MD-101/ (New 97 Q&As Version)