Latest [Dec 21, 2021] MD-101 Exam Questions – Valid MD-101 Dumps Pdf
MD-101 Practice Test Questions Answers Updated 265 Questions
Microsoft MD-101: Exam topics and subtopics
The exam covers different domains and each of them has subtopics, which you need to master as well. Thus, it is important to know the content of the test in detail. The sections of the Microsoft MD-101 exam content include the following:
- Deploy and Update Operating Systems (35-40%)
This domain has the highest percentage of appearing in the Microsoft MD-101 exam. This means that most of the 40-60 questions will represent this section. It covers a wide range of skills, including the upgrade of devices to Windows 10, management of updates, implementation of Windows 10 by using Windows Autopilot, management of device authentication, as well as implementation of Windows 10 by using dynamic deployment. These tasks include your full understanding of how to pilot deployment, identify downgrade and upgrade paths, perform Azure AD join, migrate user profiles, and configure an environment of Desktop Analytics. You have to know the details of managing and troubleshooting provisioning packages as well. Your skills in managing sign-on options and implementing feature updates are also important.
- Manage Profiles and Policies (25-30%)
In this area, you will be evaluated on the skills, including implementation of conditional access and compliance policies for devices, planning of co-management, management of user profiles, and configuration of device profiles. Therefore, you need to know how to perform the migration of group policy to MDM policies, configure Enterprise State Roaming in Azure AD, and implement device profiles. It is also important to understand the idea of recommending a co-management strategy, implementing Folder Redirection, and managing conditional access policies.
- Manage Apps and Data (10-15%)
This objective has the smallest amount of questions that you will face with during the exam. It covers two main subtopics, which include deploying and updating apps as well as implementing Mobile Application Management. This means that you should have the relevant skills in deploying apps by using Intune or Microsoft Store for Business, deploying Microsoft 365 Apps for Enterprise, configuring kiosk and implementing it, and managing MAM policies.
- Manage and Protect Devices (20-25%)
This topic covers the details of how to manage Intune device enrollment and inventory, monitor devices, and manage Windows Defender. These skills include the way of how you enroll non-Windows or Windows devices as well as your ability to integrate Windows Defender Application Control and your knowledge of how to work with Windows Defender extensions.
NEW QUESTION 103
You have a computer named Computer1 that runs Windows 10. Computer is used by a user named User1.
You need to ensure that when User1 opens websites from untrusted locations by using Microsoft Edge, Microsoft Edge runs in isolated container.
What should you do first?
- A. From Windows Security, configure the Virus & threat protection settings.
- B. From Windows Features, turn on Windows Defender Application Guard.
- C. From Windows Security, configure the Device security settings.
- D. From Windows Features, turn on Hyper-V Platform.
Answer: B
Explanation:
Reference:
https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-application-guard/wd-app-guard-overview
https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-application-guard/install-wd-app-guard
NEW QUESTION 104
You have computers that run Windows 10 and are configured by using Windows AutoPilot.
A user performs the following tasks on a computer named Computer1:
* Creates a VPN connection to the corporate network
* Installs a Microsoft Store app named App1
* Connects to a Wi-Fi network
You perform a Windows AutoPilot Reset on Computer1.
What will be the state of the computer when the user signs in? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Reference:
https://docs.microsoft.com/en-us/windows/deployment/windows-autopilot/windows-autopilot-reset
NEW QUESTION 105
You have 100 Windows 10 devices that are managed by using Microsoft Endpoint Manager.
You plan to sideload an app to the devices.
You need to configure Microsoft Endpoint Manager to enable sideloading.
Which device profile type and setting should you configure? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Reference:
https://docs.microsoft.com/en-us/mem/intune/configuration/device-restrictions-windows-10
NEW QUESTION 106
You have an Azure Active Directory (Azure AD) tenant named adatum.com that contains the users shown in the following table.
You configure the following device settings for the tenant:
Users may join devices to Azure AD: User1
Additional local administrators on Azure AD joined devices: None
You install Windows 10 on a computer named Computer1.
You need to identify which users can join Computer1 to adatum.com, and which users will be added to the Administrators group after joining adatum.com.
Which users should you identify? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Reference:
https://docs.microsoft.com/en-us/azure/active-directory/devices/assign-local-admin
NEW QUESTION 107
Your company has an infrastructure that has the following:
* A Microsoft 365 tenant
* An Active Directory forest
* Microsoft Store for Business
* A Key Management Service (KMS) server
* A Windows Deployment Services (WDS) server
* A Microsoft Azure Active Directory (Azure AD) Premium tenant
The company purchases 100 new computers that run Windows 10.
You need to ensure that the new computers are joined automatically to Azure AD by using Windows AutoPilot.
What should you use? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Reference:
https://docs.microsoft.com/en-us/intune/enrollment-autopilot
NEW QUESTION 108
You have computers that run Windows 10 as shown in the following table.
Computer2 and Computer3 are enrolled in Microsoft Intune.
In a Group Policy object (GPO) linked to the domain, you enable the Computer Configuration/Administrative Templates/Windows Components/Search/Allow Cortana setting.
In an Intune device configuration profile, you configure the following:
Device/Vendor/MSFT/Policy/Config/ControlPolicyConflict/MDMWinsOverGP to a value of 1 Experience/AllowCortana to a value of 0.
Each of the following statement, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Reference:
https://blogs.technet.microsoft.com/cbernier/2018/04/02/windows-10-group-policy-vs-intune-mdm-policy-who-wins/
NEW QUESTION 109
Your network contains an Active Directory domain. The domain contains 1,200 computers that run Windows
8.1.
You deploy an Upgrade Readiness solution in Microsoft Azure and configure the computers to report to Upgrade Readiness.
From Upgrade Readiness, you open a table view of the applications.
You need to filter the view to show only applications that can run successfully on Windows 10.
How should you configure the filter in Upgrade Readiness? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation
References:
https://docs.microsoft.com/en-us/windows/deployment/upgrade/upgrade-readiness-resolve-issues
NEW QUESTION 110
Your company uses Microsoft Intune to manage devices. You need to ensure that only Android devices that use Android work profiles can enroll in Intune.
Which two configurations should you perform in the device enrollment restrictions? Each correct answer presents part of the solution.
NOTE: each correct selection is worth one point.
- A. From Select platforms, set Android work profile to
- B. From Select platforms, set Android to
- C. From Configure platforms, set Android Personally Owned to
- D. From Configure platforms, set Android Personally Owned to
Answer: A,B
Explanation:
Explanation
https://docs.microsoft.com/en-us/InTune/enrollment-restrictions-set
NEW QUESTION 111
Your company uses Windows Defender Advanced Threat Protection (Windows Defender ATP). Windows Defender ATP includes the machine groups shown in the following table.
You onboard a computer to Windows Defender ATP as shown in the following exhibit.
What is the effect of the Windows Defender ATP configuration? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
NEW QUESTION 112
You have a Microsoft Azure Active Directory (Azure AD) tenant named contoso.com. All Windows 10 devices are enrolled in Microsoft Intune.
You configure the following settings in Windows Information Protection (WIP):
* Protected apps: App1
* Exempt apps: App2
* Windows Information Protection mode: Silent
App1, App2, and App3 use the same file format.
You create a file named File1 in App1.
You need to identify which apps can open File1.
What apps should you identify? To answer, select the appropriate options in the answer area, NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation
Reference:
https://docs.microsoft.com/en-us/windows/security/information-protection/windows-information-protection/crea
https://docs.microsoft.com/en-us/windows/security/information-protection/windows-information-protection/crea
NEW QUESTION 113
Your network contains an Active Directory domain that is synced to Microsoft Azure Active Directory (Azure AD).
You have a Microsoft Office 365 subscription. All computers are joined to the domain and have the latest Microsoft OneDrive sync client (OneDrive.exe) installed.
On all the computers, you configure the OneDrive settings as shown in the following exhibit.
Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation:
Box 1:
Silently move known folders to OneDrive is enabled. Known folder include:
Desktop, Documents, Pictures, Screenshots, and Camera Roll
Box 2:
OneDrive Files On-Demand enables users to view, search for, and interact with files stored in OneDrive from within File Explorer without downloading them and taking up space on the local hard drive.
References:
https://docs.microsoft.com/en-us/onedrive/redirect-known-folders
https://docs.microsoft.com/en-us/onedrive/plan-onedrive-enterprise
NEW QUESTION 114
Your network contains an Active Directory domain named contoso.com that syncs to Azure Active Directory (Azure AD).
Existing on-premises computers are managed by using Microsoft System Center Configuration Manager (Current Branch). You configure contoso.com for co-management.
You deploy 100 new devices that run Windows 10. The devices are joined to Azure AD and enrolled in Microsoft Intune.
You need to ensure that the devices are co-managed.
What should you create in Intune first?
- A. an app for the Configuration Manager client
- B. a device configuration profile
- C. a device compliance policy
- D. an app configuration policy
- E. a conditional access policy
Answer: A
Explanation:
For new internet-based devices, you need to create an app in Intune. Deploy this app to Windows 10 devices that aren't already Configuration Manager clients. This scenario is when you have new Windows 10 devices that join Azure AD and automatically enroll to Intune. You install the Configuration Manager client to reach a co-management state.
References:
https://docs.microsoft.com/en-us/configmgr/comanage/how-to-prepare-win10
NEW QUESTION 115
Your network contains an Active Directory domain named contoso.com. The domain contains 500 computers that run Windows 7. Some of the computers are used by multiple users.
You plan to refresh the operating system of the computers to Windows 10.
You need to retain the personalization settings to applications before you refresh the computers. The solution must minimize network bandwidth and network storage space.
Which command should you run on the computer? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation
References:
https://docs.microsoft.com/en-us/windows/deployment/usmt/usmt-scanstate-syntax#how-to-use-ui-and-ue
NEW QUESTION 116
You have an Azure Active Directory (Azure AD) tenant named adatum.com The tenant contains Windows 10 devices that are enrolled in Microsoft Intune.
You create an Azure Log Analytics workspace and add the Device Health solution to the workspace.
You need to create a custom device configuration profile that will enroll the Windows 10 devices in Device Health.
Which OMA-URI should you add to the profile?
- A. ./Vendor/MSFT/DMClient/Provider/MS DM Server/ManagementServerAddressList
- B. ./Vendor/MSFT/DMClient/Provider/MS DM Server/Push
- C. ./Vendor/MSFT/DMClient/Provider/MS DM Server/Push/ChannelURI
- D. ./Vendor/MSFT/DMClient/Provider/MS DM Server/CommercialID
Answer: D
Explanation:
Explanation
References:
https://allthingscloud.blog/monitor-windows-10-updates-for-intune-mdm-enrolled-devices/
NEW QUESTION 117
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your company has an Azure Active Directory (Azure AD) tenant named contoso.com and a Microsoft Intune subscription.
Contoso.com contains a user named [email protected].
You have a computer named Computer1 that runs Windows 8.1.
You need to perform an in-place upgrade of Computer1 to Windows 10.
Solution: You start Computer1 from the Windows 10 installation media and use the Install option.
Does this meet the goal?
- A. No
- B. Yes
Answer: A
NEW QUESTION 118
Your company has a computer named Computer1 that runs Windows 10.
Computer1 was used by a user who left the company.
You plan to repurpose Computer1 and assign the computer to a new user. You need to redeploy Computer1 by using Windows AutoPilot.
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
Answer:
Explanation:
Explanation
Reference:
https://docs.microsoft.com/en-us/intune/enrollment-autopilot
https://docs.microsoft.com/en-us/windows/deployment/windows-autopilot/windows-autopilot-reset
NEW QUESTION 119
Your company has a computer named Computer1 that runs Windows 10 Pro.
The company develops a proprietary Universal Windows Platform (UWP) app named App1. App1 is signed with a certificate from a trusted certification authority (CA).
You need to sideload App1 to Computer1.
What should you do? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation
Reference:
https://www.windowscentral.com/how-enable-windows-10-sideload-apps-outside-store
https://docs.microsoft.com/en-us/windows/application-management/sideload-apps-in-windows-10
NEW QUESTION 120
You use the Antimalware Assessment solution in Microsoft Azure Log Analytics.
From the Protection Status dashboard, you discover the computers shown in the following table.
You verify that both computers are connected to the network and running.
What is a possible cause of the issue on each computer? To answer, drag the appropriate causes to the correct computers. Each cause may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Reference:
https://docs.microsoft.com/ga-ie/azure/security-center/security-center-install-endpoint-protection
NEW QUESTION 121
You network contains an Active Directory domain. The domain contains 200 computers that run Windows 8.1. You have a Microsoft Azure subscription.
You plan to upgrade the computers to Windows 10.
You need to generate an Upgrade Readiness report for the computers.
What should you do? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
NEW QUESTION 122
Your company has a Microsoft Azure Active Directory (Azure AD) tenant named contoso.com. All users have computers that run Windows 10. The computers are joined to Azure AD and managed by using Microsoft Intune.
You need to ensure that you can centrally monitor the computers by using the Update Compliance solution.
What should you create in Intune?
- A. a device configuration profile
- B. a device compliance policy
- C. a conditional access policy
- D. an update policy
Answer: A
Explanation:
Reference:
https://www.jeffgilb.com/update-compliance-with-intune/
NEW QUESTION 123
You have 1,000 computers that run Windows 10 and are members of an Active Directory domain.
You create a workspace in Microsoft Azure Log Analytics.
You need to capture the event logs from the computers to Azure.
What should you do? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Reference:
https://docs.microsoft.com/en-us/azure/azure-monitor/platform/agent-windows
NEW QUESTION 124
You have 200 computers that run Windows 10. The computers are joined to Microsoft Azure Active Directory (Azure AD) and enrolled in Microsoft Intune.
You redirect Windows known folders to Microsoft OneDrive for Business.
Which folder will be included in the redirection?
- A. Desktop
- B. Music
- C. Downloads
References:
https://docs.microsoft.com/en-us/onedrive/redirect-known-folders - D. Saved Games
Answer: A
NEW QUESTION 125
You have a Microsoft 365 subscription.
Users have iOS devices that are not enrolled in Microsoft 365 Device Management.
You create an app protection policy for the Microsoft Outlook app as shown in the exhibit. (Click the Exhibit tab.)
You need to configure the policy to meet the following requirements:
* Prevent the users from using the Outlook app if the operating system version is less than 12.0.0.
* Require the users to use an alphanumeric passcode to access the Outlook app.
What should you configure in an app protection policy for each requirement? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation
References:
https://docs.microsoft.com/en-us/intune/app-protection-policy-settings-ios
NEW QUESTION 126
......
MD-101 dumps Sure Practice with 265 Questions: https://www.pass4training.com/MD-101-pass-exam-training.html
Get New MD-101 Certification – Valid Exam Dumps Questions: https://drive.google.com/open?id=1d7sLryBPVB2ki4yWRoH3Ll8qw3NLCFS8

