70-346

¡Supera tus tareas y exámenes ahora con Quizwiz!

A company has 50 employees that use Office 365. You need to disable password expiration for all accounts. How should you complete the relevant Windows PowerShell commands? To answer, drag the appropriate Windows PowerShell segment to the correct location in the answer area. Each Windows PowerShell segment may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. -MsolUser -MsolUserRole -MSOnline -MsolService -MsolSubscription -SSPUser -SPOUser -SPOService -SPOExternalUser -SPOTenant Import-Module _____ $cred = Get-Credential Connect-_____ -cred $cred Get-_____ | Set-_____ -PasswordNeverExpires $true

-MSOnline -MsolService -MsolUser -MsolUser

Litware Inc. has an Office 365 Enterprise El plan. Employees have access to all Office 365 services. Employees in the human resources (HR) department must continue to use the on-premises SharePoint 2013 deployment due to legal requirements. You need to disable access to SharePoint Online for all HR department employees. How should you complete the relevant Windows PowerShell commands? To answer, drag the appropriate Windows PowerShell segment to the correct location or locations in the answer area. Each Windows PowerShell segment may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. Import-Module MSOnline $cred = Get-Credential $license = New _________ -AccountSkuid "liteware:StandardPack" -Disabledplans ___________________ Get ________ - all Department "HR" Set _________ -LicenseOptions $license

-MsolLicenseOptions SHAREPOINTSTANDARD -MsolUser -MsolUserLicence

A company has 50 employees that use Office 365. You need to enforce password complexity requirements for all accounts. How should you complete the relevant Windows PowerShell command? To answer, drag the appropriate Windows PowerShell segment to the correct location or locations. Each Windows PowerShell segment may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. Get _________ | Set _________ _________ $true

-MsolUser -MsolUser -StrongpasswordRequired $true

You are the Office 365 administrator for your company. Your company uses Office 365 for collaboration. You must reset the password for all of the employees in your company. You need to ensure that all employees create a new password the next time they sign in to Office 365. How should you complete the relevant Windows PowerShell command? To answer, drag the appropriate Windows PowerShell segment to the correct location or locations. Each Windows PowerShell segment may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. Get-MsolUser - all | Set ___________ ___________

-MsolUserPassword -NewPassword Pass#123#

You are the Office 365 administrator for Contoso, Ltd. User1 is unable to sign in. You need to change the password for User1 and ensure that the user is prompted to reset her password the next time she signs in. How should you complete the relevant Windows PowerShell command? To answer, drag the appropriate Windows PowerShell segments to the correct location or locations. Each Windows PowerShell segment may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. -TenantID [email protected] -PasswordNeverExpires contoso\User1 -ImmutableID -UserPrincipalName User1\contoso -NewPassord Set-MsolUserPassword _____ _____

-UserPrincipalName [email protected]

A company has a Windows Server 2008 domain controller and a SharePoint 2007 farm. All servers on the network run Windows Server 2008. You must provide single sign-on for Office 365 SharePoint sites from the company's network. You need to install the required software. What should you install? To answer, drag the appropriate action to the correct location. Each answer may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. .NET Framework 3.5 with Service Pack 1 Ad FS 2.0 Rollup 3 for AD FS 2.0 SharePoint Server 2013 SharePoint Server 2010 with SP 1 1. Install _______ 2. Install _______ 3. Install _______ 4. Configure trusts between environments 5. Configure AD Sync

.NET Framework 3.5 with Service Pack 1 Ad FS 2.0 Rollup 3 for AD FS 2.0

An organization has over 10,000 users and uses a SQL-based Active Directory Federation Services (AD FS) server farm. You need to change the AD FS 2.0 service account password. What should you do? Select the correct answer from each list in the answer area. 1. Log on to each - directory sync server, federation proxy, federation server, workstation 2. Modify the application pool identity by using the - AD FS management , IIS, local security policy, task scheduler 3. Modify the AD FS 2.0 windows service properties by using - Office365 admin center, system configuration, Windows services MMC

1. Log on to each - federation server 2. Modify the application pool identity by using the - IIS 3. Modify the AD FS 2.0 windows service properties by using - Windows services MMC Snap IN

You are the Office 365 administrator for your company. The company has Office 365 Enterprise E3 licenses for each of its 250 employees. The company does not allow email or Lync Online licenses to be assigned to external contractors. User1 is an external contractor who requires access to SharePoint and Office Web Apps only. You need to add a license for User1's account. What should you do? To answer, drag the appropriate action to the correct location or locations. Each action may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. 1. Sign in to the Office 365 admin center. 2. ______________ 3. Add an office web app with sharepoint Plan 1 4. ______________ 5. Assign licenses to user 1 Select the purchase services option Select the licensing option Select the user and groups options Enable External users in SharePoint Add an office 365 Enterprise E3 license for User1

2. Select the purchase services option 4. Select the user and groups options

A company deploys an Office 365 tenant. All employees use Lync Online. You need to configure the network firewall to support Lync Online. Which ports must you open? To answer, drag the appropriate port number to the correct feature or features. Each port number may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. 443 3478 5223 80 389 Audio, Video, and application sharing sessions _______ Lync mobile push notifications _______

443 5223

You manage an Office 365 tenant. The subscription details for the tenant are displayed in the following screenshot. Office 365 Premium - Active - 2 lic - $10/Auto renews Use the drop-down menus to select the answer choice that answers each question. NOTE: Each correct answer is worth one point. For each user, what is the maximum number of devices on which you can install Microsoft Office? - 0, 2, 5, 10, 20 Which services does the tenant have licensing rights to use? Exchange only, exchange and SharePoint, Exchange and Skype, Exchange SP Yammer, Exchange SP Skype Yammer What is the maximum number of user accounts that you can create in the tenant? 100, 200, 300, 400, 500

5 Exchange SP Skype Yammer 300

You are the Office 365 administrator for your company. Users report that their passwords expire too frequently, and they do not receive adequate notice of password expiration. Account passwords must remain active for the longest duration allowed. Users must receive password expiration notifications as early as possible. You need to configure the password expiration policy. How should you set the policy on the password page of the Office 365 admin center? To answer, drag the appropriate duration to the correct location. Each duration may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. 1 13 30 72 365 730 1095 1460 Days before password expires: ________ Days before a user is notified that their password will expire: _______

730 30

A company plans to use Office 365 to provide email services for users. You need to ensure that a custom domain name is used. What should you do first? A. Add the custom domain name to Office 365 and then verify it. B. Verify the existing domain name. C. Create an MX record in DNS. D. Create a CNAME record in DNS.

A. Add the custom domain name to Office 365 and then verify it.

You plan to deploy an Office 365 tenant to multiple offices around the country. You need to modify the users and groups who are authorized to administer the Rights Management service. Which Windows PowerShell cmdlet should you run? A. Add-MsolGroupMember B. Get-AadrmRoleBasedAdministrator C. Remove-AadrmRoleBasedAdministrator D. Enable-AadrmSuperUserFeature

A. Add-MsolGroupMember

An organization deploys an Office 365 tenant. User accounts must be synchronized to Office 365 by using the Windows Azure Active Directory Sync tool. You have the following password policies: Passwords for the on-premises Active Directory Domain Services (AD DS) user accounts are at least six characters long. Passwords for Office 365 user accounts are at least eight characters long. You need to ensure that the user accounts will be synchronized. Which user accounts will be synchronized? A. All user accounts B. No user accounts C. User accounts with a password length of at least 8 characters D. User accounts with a password length of at least 14 characters

A. All user accounts

A company deploys an Office 365 tenant. You assign the roles to users as shown in the following table: User1 - global admin User2 - User management Admin User3 - No roles are assigned User3 must be able to monitor the health of the Exchange Online service. You must use the principle of least privilege to assign permissions to User3. You need to assign permissions to User3. Which three actions should you perform? Each correct answer presents part of the solution. A. Assign User3 the service administrator role in Office 365. B. Sign in to the Office 365 portal as User1. C. Sign in to the Office 365 portal as User2. D. Grant User3 administrative permissions in Exchange Online. E. Assign User3 the global administrator role in Office 365.

A. Assign User3 the service administrator role in Office 365. B. Sign in to the Office 365 portal as User1. D. Grant User3 administrative permissions in Exchange Online.

Contoso Ltd. uses Office 365 for collaboration. You are implementing Active Directory Federation Services (AD FS) for single sign-on (SSO) with Office 365 services. The environment contains an Active Directory domain and an AD FS federation server. You need to ensure that the environment is prepared for the AD FS setup. Which two actions should you perform? Each correct answer presents part of the solution. A. Configure Active Directory to use the domain contoso.com. B. Configure Active Directory to use the domain contoso.local. C. Create a server authentication certificate for the federation server by using fs.contoso.com as the subject name and subject alternative name. D. Create a server authentication certificate for the federation server by using fs.contoso.local as the subject name and subject alternative name.

A. Configure Active Directory to use the domain contoso.com. C. Create a server authentication certificate for the federation server by using fs.contoso.com as the subject name and subject alternative name.

You are the Office 365 administrator for your company. The company synchronizes the local Active Directory objects with a central identity management system. The environment has the following characteristics: Each department has its own organizational unit (OU). The company has OU hierarchies for partner user accounts. All user accounts are maintained by the identity management system. You need to ensure that partner accounts are NOT synchronized with Office 365. What should you do? A. Configure OU-based filtering by using the Windows Azure Active Directory Sync tool. B. In the Windows Azure Active Directory portal, configure OU-based filtering. C. Configure user attribute-based filtering by using the Windows Azure Active Directory Sync tool. D. In the Windows Azure Active Directory portal, configure user attribute-based filtering

A. Configure OU-based filtering by using the Windows Azure Active Directory Sync tool.

Contoso, Ltd., has an Office 365 tenant. You configure Office 365 to use the domain contoso.com, and you verify the domain. You deploy and configure Active Directory Federation Services (AD FS) and Active Directory Synchronization Services (AAD Sync) with password synchronization. You connect to Azure Active Directory by using a Remote PowerShell session. You need to switch from using password-synced passwords to using AD FS on the Office 365 verified domain. Which Windows PowerShell command should you run? A. Convert-MsolDomainToFederated -DomainName contoso.com B. Convert-MsolDomainToStandard -DomainName contoso.com C. Convert-MsolFederatedUser D. Set-MsolDomainAuthentication -DomainName contoso.com

A. Convert-MsolDomainToFederated -DomainName contoso.com

A company has an Office 365 tenant. The company uses a third-party DNS provider that does not allow TXT records. You need to verify domain ownership. What should you do? A. Create an MX record. B. Create a CNAME record. C. Create an A record. D. Create an SRV record.

A. Create an MX record.

You have an Exchange Online tenant. You must identify mailboxes that are no longer in use. You need to locate the inactive mailboxes. Which Windows PowerShell command should you run? A. Get-StaleMailboxReport-StartDate B. Get-MailboxActivityReport-Organization C. Get-MailboxActivityReport-Expression D. Get-MailboxActivityReport-EndDate

A. Get-StaleMailboxReport-StartDate

A company deploys an Office 365 tenant. You must provide an administrator with the ability to manage company information in Office 365. You need to assign permissions to the administrator by following the principle of least privilege. Which role should you assign? A. Global administrator B. Service administrator C. Billing administrator D. User management administrator

A. Global administrator

You have an Office 365 tenant that uses an Enterprise E3 subscription. You have two servers in a perimeter network that have the Active Directory Federation Services (AD FS) proxy role service installed. A federation server farm is located behind a firewall. You need to ensure that the AD FS proxies can communicate with the federation server farm. Which two name resolution strategies can you use? Each correct answer presents a complete solution. A. HOSTS file on the proxy servers B. DNS server in the perimeter network C. LMHOSTS file on the proxy servers D. LMHOSTS file on the federation servers E. HOSTS file on the federation servers

A. HOSTS file on the proxy servers B. DNS server in the perimeter network

Your company has an Office 365 subscription. You create a new retention policy that contains several retention tags. A user named Test5 has a client computer that runs Microsoft Office Outlook 2007. You install Microsoft Outlook 2010 on the client computer of Test5. Test5 reports that the new retention tags are unavailable from Outlook 2010. You verify that other users can use the new retention tags. You need to ensure that the new retention tags are available to Test5 from Outlook 2010. What should you do? A. Instruct Test5 to repair the Outlook profile. B. Modify the retention policy tags. C. Run the Set-Mailbox cmdlet. D. Force directory synchronization

A. Instruct Test5 to repair the Outlook profile.

An organization plans to migrate to Office 365. You need to estimate the post-migration network traffic. Which tool should you use? A. Lync 2013 Bandwidth Calculator B. Process Monitor C. Microsoft Network Monitor D. Microsoft OnRamp Readiness tool

A. Lync 2013 Bandwidth Calculator

You are the Office 365 administrator for your company. Users report that they have received significantly more spam messages over the past month than they normally receive. You need to analyze trends for the email messages received over the past 60 days. From the Office 365 admin center, what should you view? A. Messages on the Service health page B. The Received mail report C. The Office 365 Malware detections in sent mail report D. The Mailbox content search and hold report

A. Messages on the Service health page Notes also say B. The Received mail report

A company plans to deploy an Office 365 tenant. You have two servers named FS1 and FS2 that have the Federation Service Proxy role service installed. You must deploy Active Directory Federation Services (AD FS) on Windows Server 2012. You need to configure name resolution for FS1 and FS2. What should you do? A. On FS1 and FS2, add the cluster DNS name and IP address of the federation server farm to the hosts file. B. On FS1 only, add the cluster DNS name and IP address of the federation server farm to the hosts file. C. On FS1 only, add the cluster NetBIOS name and IP address of the federation server farm to the LMHOSTS file. D. On FS1 and FS2, add the cluster NetBIOS name and IP address of the federation server farm to the LMHOSTS file.

A. On FS1 and FS2, add the cluster DNS name and IP address of the federation server farm to the hosts file.

Your company has 100 user mailboxes. The company purchases a subscription to Office 365 for professionals and small businesses. You need to enable the Litigation Hold feature for each mailbox. What should you do first? A. Purchase a subscription to Office 365 for midsize business and enterprises. B. Enable audit logging for all of the mailboxes. C. Modify the default retention policy. D. Create a service request.

A. Purchase a subscription to Office 365 for midsize business and enterprises.

An organization implements single sign-on (SSO) for use with Office 365 services. You install an Active Directory Federation Services (AD FS) proxy server. Users report that they are unable to authenticate. You launch the Event Viewer and view the event information shown in the following screen shot: The federation server proxy could not establish a trust with the federation service. You need to ensure that users can authenticate to Office 365. What should you do? A. Re-enter the credentials used to establish the trust. B. Verify the federation server proxy is trusted by the federation service. C. Re-install the Secure Sockets Layer (SSL) certificate for the federation service. D. Verify network connectivity between the Federation Service Proxy and federation server.

A. Re-enter the credentials used to establish the trust.

You are the Office 365 administrator for your company. The environment must support single sign-on. You need to install the required certificates. Which two certificates should you install? Each correct answer presents part of the solution. A. Secure Sockets Layer (SSL) B. Privacy-enhanced mail (PEM) C. Token signing D. Personal E. Software publisher

A. Secure Sockets Layer (SSL) C. Token signing

You create an Office 365 tenant. You assign administrative roles to other users. You hire a new user named User2. User2 must NOT be able to change passwords for other users. You need to assign an administrative role to User2. Which role should you assign? A. Service administrator B. Global administrator C. Delegate administrator D. Password administrator

A. Service administrator

A company has an Office 365 tenant that has an Enterprise E1 subscription. You plan to test a new deployment by using 50 tenant user accounts. You need to ensure that the passwords for the test user accounts do not expire. Which Windows PowerShell cmdlet should you run? A. Set-MsolUser B. Redo-MsolProvisionUser C. Set-MsolUserLicense D. Set-MsolUserPrincipalName E. Convert-MsolFederatedUser F. Set-MailUser G. Set-LinkedUser H. New-MsolUser

A. Set-MsolUser

A company has an Office 365 tenant that has an Enterprise E1 subscription. The company has offices in several different countries. You need to restrict Office 365 services for existing users by location. Which Windows PowerShell cmdlet should you run? A. Set-MsolUser B. Redo-MsolProvisionUser C. Set-MsolUserLicense D. Set-MsolUserPrincipalName E. Convert-MsolFederatedUser F. Set-MailUser G. Set-LinkedUser H. New-MsolUser

A. Set-MsolUser

A company has an Office 365 tenant. You must reset the password for an account named User1. You need to ensure that the new password for the account meets complexity rules. Which two passwords can you use? Each correct answer presents a complete solution. A. Summer2015 B. May2015 C. User1User1 D. summer2015 E. May 2015 F. summer!@#$ G. M1crosoft

A. Summer2015 G. M1crosoft

You are the Office 365 administrator for your company. Users report that they have received significantly more spam messages over the past month than they normally receive. You need to analyze trends for the email messages received over the past 60 days. From the Office 365 admin center, what should you view? A. The Mail protection reports B. The Mailbox content search and hold report C. Messages on the Message center page D. The Office 365 Malware detections in sent mail report

A. The Mail protection reports

You administer the Office 365 environment for a company that has offices around the world. All of the offices use the same Office 365tenant. You need to ensure that all users can access the services that are available in their regions. Which setting or service should you update? A. User location settings B. User licenses C. Service usage address D. Rights management

A. User location settings

Your company deploys an Office 365 tenant. You need to ensure that you can view service health and maintenance reports for the past seven days. What are two possible ways to achieve this goal? Each correct answer presents a complete solution. A. View the service health current status page of the Office 365 admin center. B. Subscribe to the Office 365 Service Health RSS Notifications feed. C. View the service settings page of the Office 365 admin center. D. Run the Microsoft OnRamp Readiness Tool.

A. View the service health current status page of the Office 365 admin center. B. Subscribe to the Office 365 Service Health RSS Notifications feed.

You are the Office 365 administrator for your company. You have a server that runs Windows Server 2012. You plan to install an Active Directory Federation Services (AD FS) proxy server. You need to install and configure all of the required roles. Which two roles should you install and configure? Each correct answer presents part of the solution. A. Web Server (IIS) B. AD FS C. Application Server D. Network Policy and Access Service E. Active Directory Certificate Services (AD CS) F. Remote Access

A. Web Server (IIS) D. Network Policy and Access Service

An organization with an Active Directory Domain Services (AD DS) domain migrates to Office 365. You need to manage Office 365 from a domain-joined Windows Server 2012 Core server. Which three components should you install? Each answer presents part of the solution. A. Windows Azure Active Directory module for Windows PowerShell B. Microsoft .NET Framework 3.5 C. Microsoft Office 365 Integration Module for Windows Small Business Server 2011 Essentials D. Microsoft .NET Framework 4.0 E. Microsoft Online Services Sign-in Assistant F. Rights Management module for Windows PowerShell

A. Windows Azure Active Directory module for Windows PowerShell B. Microsoft .NET Framework 3.5 E. Microsoft Online Services Sign-in Assistant

A company named Fabrikam, Inc. is deploying an Office 365 tenant. You install Active Directory Federation Services (AD FS) on a server that runs Windows Server 2012. The company's environment is described in the following table: You must obtain a certificate from a certification authority and install it on the federation servers. You need to specify the subject name for the certificate. Which name should you specify?

A. fs.fabnkam.com

Your company has a subscription to Office 365 for midsize business and enterprises. The company uses Microsoft Lync Online. You need to open ports on the network firewall to enable all of the features of Lync Online. Which port or ports should you open? (Each correct answer presents part of the solution. Choose all that apply.) A. inbound TCP 443 B. outbound TCP 5061 C. outbound UDP 3478 D. outbound TCP 443 E. outbound UDP 50000 to outbound UDP 59999 F. inbound TCP 8080

A. inbound TCP 443 C. outbound UDP 3478 D. outbound TCP 443 E. outbound UDP 50000 to outbound UDP 59999

A company has an Office 365 tenant. You need to monitor Active Directory synchronization. Which tool should you run? A. ldFix B. Office 365 Health, Readiness, and Connectivity Check C. Microsoft Remote Connectivity Analyzer Tool D. Synchronization Service (MIISClient)

A. ldFix

You are the Office 365 administrator for your company. Users report that they have received significantly more spam messages over the past month than they normally receive. You need to analyze trends for the email messages received over the past 60 days. From the Office 365 admin center, what should you view? A. the Mail protection reports B. the Office 365 Malware detections in received mail report C. messages on the Message center page D. the Mailbox access by non-owners report

A. the Mail protection reports

An organization plans to migrate to Office 365. You use the Windows Azure Active Directory (AD) Sync tool. Several users will not migrate to Office 365. You must exclude these users from synchronization. All users must continue to authenticate against the on-premises Active Directory. You need to synchronize the remaining users. Which three actions should you perform to ensure users excluded from migration are not synchronized? Each correct answer presents part of the solution. A. Populate an attribute for each user account. B. Disable the user accounts in Active Directory. C. Perform a full synchronization. D. Configure the connection filter. E. Run the Windows PowerShell command Set-MsolDirSyncEnabled -EnableDirSync $false.

A. Populate an attribute for each user account. C. Perform a full synchronization. D. Configure the connection filter.

Contoso Ltd. plans to use Office 365 services for collaboration between departments. Contoso has one Active Directory Domain Services domain named contoso.local. You deploy the Windows Azure Active Directory Sync tool. You plan to implement single sign-on (SSO) for Office 365. You need to synchronize only the user accounts that have valid routable domain names and are members of specified departments. Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. Use the active directory user and computers mmc to change the UPN suffix to contoso.com for all contoso users Use domain based filtering to exclude all users in the domain contoso.local Use the active directory user and computers mmc to change the UPN suffix to contoso.com for all users in the specified department Use user attribute based filtering to exclude all users that have contoso.local in the UPN attribute Add the UPN suffix contoso.local by using the AD users and computers snap in Add the UPN suffix contoso.com to the comain contoso.local by using the AD domains and Trusts MMC snap in.

Add the UPN suffix contoso.com to the comain contoso.local by using the AD domains and Trusts MMC snap in. Use the active directory user and computers mmc to change the UPN suffix to contoso.com for all users in the specified department Use user attribute based filtering to exclude all users that have contoso.local in the UPN attribute

You are the Office 365 administrator for your company. The company has a single office. You have the following requirements: You must configure a redundant Active Directory Federation Services (AD FS) implementation. You must use a Windows Internal Database to store AD FS configuration data. The solution must use a custom login page for external users. The solution must use single sign-on for internal users. You need to deploy the minimum number of servers. How many servers should you deploy? A. 2 B. 4 C. 6 D. 16

B. 4

You deploy Lync Online for a company that has offices in San Francisco and New York. The two offices both connect to the Internet. There is no private network link between the offices. Users in the New York office report that they cannot transfer files to the users in the San Francisco office by using Lync Online. You need to ensure that users in both offices can transfer files by using Lync Online. What should you do? A. Configure the firewall to open Transmission Control Protocol (TCP) ports 50060-50079. B. Configure the firewall to open Transmission Control Protocol (TCP) ports 50040-50059. C. Create a private network connection to share files. D. Upgrade all of the Lync Online clients to use Lync 2013.

B. Configure the firewall to open Transmission Control Protocol (TCP) ports 50040-50059.

A company has an Office 365 tenant. You plan to distribute the Office 365 ProPlus client to users. The client machines do not normally have Internet access. You need to activate the Office 365 ProPlus installations and ensure that the licenses remain active. What should you do? A. Connect the client computer to the Internet once to activate the Office 365 ProPlus client, and once every 90 days after that. B. Connect the client computer to the Internet once to activate the Office 365 ProPlus client, and once every 30 days after that. C. Connect the client computer to the Internet only once to activate the Office 365 ProPlus client. D. Connect the client computer to the Internet once to activate the Office 365 ProPlus client, and once every 180 days after that. E. Connect the client computer to the Internet once to activate the Office 365 ProPlus client, and once every 365 days after that.

B. Connect the client computer to the Internet once to activate the Office 365 ProPlus client, and once every 30 days after that.

You use a centralized identity management system as a source of authority for user account information. You export a list of new user accounts to a file on a daily basis. Your company uses a local Active Directory for storing user accounts for on-premises solutions. You are configuring the Windows Azure Active Directory Sync tool. New user accounts must be created in both the local Active Directory and Office 365. You must import user account data into Office 365 daily. You need to import the new users. What should you do? A. Use the Office 365 admin center to import the file. B. Create a Windows PowerShell script to import account data from the file into Active Directory. C. Use the Windows Azure Management Portal to import the file. D. Create a Windows PowerShell script that uses the MSOnline module to import account data from the file.

B. Create a Windows PowerShell script to import account data from the file into Active Directory.

An organization purchases an Office 365 plan for 10,000 user accounts. You have a domain controller that runs Windows Server 2008 R2. The forest functional level is set to Windows Server 2000. The organization must be able to synchronize user attributes from the on-premises Active Directory Domain Services environment to Office 365. You need to prepare to install the Windows Azure Active Directory Sync tool. Which two actions should you perform? Each correct answer presents part of the solution. A. Upgrade the domain controller to Windows Server 2012. B. Install Microsoft .NET Framework 3.5 SP1 and Microsoft .NET Framework 4.0. C. Install Windows Server 2012 Standard edition. D. Raise the forest functional level to Windows Server 2008 R2. E. Join a workstation to an Active Directory domain.

B. Install Microsoft .NET Framework 3.5 SP1 and Microsoft .NET Framework 4.0. D. Raise the forest functional level to Windows Server 2008 R2.

You are the Office 365 administrator for your company. You configure new user accounts for User1 and User2. User1 has an on-premises mailbox. User2 has an Office 365 mailbox. Each user must be able to view the availability of the other user. You need to ascertain whether users can share their free/busy information. What should you use? A. Transport Reliability IP Probe (TRIPP Tool) B. Microsoft Remote Connectivity Analyzer Tool C. Business Connectivity Services D. Windows Azure Active Directory Rights Management

B. Microsoft Remote Connectivity Analyzer Tool

Contoso uses Office 365 for collaboration services. You implement single sign-on (SSO) with Office 365 by using Active Directory Federation Services (AD FS). You need to implement Windows Azure multi-factor authentication. Which three actions should you perform? Each correct answer presents part of the solution. A. On the AD FS federation server, run PhoneFactorAgentSetup.exe. B. On the AD FS Federation server, run WindowsAzureSDK-x64.exe. C. On the AD FS Federation server, run the Windows PowerShell cmdlet RegisterAdfsAuthenticationProvider. D. On the AD FS Federation server, run FsConfigWizard.exe. E. Run the Active Directory Domains and Trusts MMC snap-in. Register Windows Azure Multi-Factor Authentication Server as an additional authentication provider. F. Run the Windows Azure Multi-Factor Authentication Server Authentication Configuration Wizard.

B. On the AD FS Federation server, run WindowsAzureSDK-x64.exe. C. On the AD FS Federation server, run the Windows PowerShell cmdlet RegisterAdfsAuthenticationProvider. F. Run the Windows Azure Multi-Factor Authentication Server Authentication Configuration Wizard.

A company has an Office 365 tenant. You implement two-factor authentication for all users. You hire an employee named User1 to track service usage and status. User1 must be able to monitor the status of the services over a period of time by using a report. User1 does not have administrator access. You need to provide a report for User1. Which report solution should you choose? A. downloadable spreadsheet B. REST reporting web service C. reporting Windows PowerShell cmdlets D. Office 365 admin center

B. REST reporting web service

An organization prepares to implement Office 365. You have the following requirements: Gather information about the requirements for the Office 365 implementation. Use a supported tool that provides the most comprehensive information about the current environment. You need to determine the organization's readiness for the Office 365 implementation. What should you do? A. Run the Windows PowerShell cmdlet Get-MsolCompanylnformation. B. Run the OnRamp for Office 365 tool. C. Install the Windows Azure Active Directory Sync tool. D. Run the Office 365 Deployment Readiness Tool.

B. Run the OnRamp for Office 365 tool.

You are the Office 365 administrator for your company. Users report that they cannot sign in to Lync from their mobile devices, but they are able to send and receive Lync messages by using their laptop computers. You need to troubleshoot the issue. What should you do? A. From the Office 365 message center, confirm Lync settings. B. Use the Microsoft Connectivity Analyzer tool to confirm settings. C. Confirm Lync user licenses for the affected users. D. From the Lync admin center, verify the external access settings.

B. Use the Microsoft Connectivity Analyzer tool to confirm settings.

Your company deploys an Office 365 tenant. You need to ensure that you can view service health and maintenance reports for the past seven days. What are two possible ways to achieve this goal? Each correct answer presents a complete solution. A. Run the Microsoft Online Services Diagnostics and Logging (MOSDAL) Support Kit. B. View the service health current status page of the Office 365 admin center. C. View the service settings page of the Office 365 admin center. D. Subscribe to the Office 365 Service Health RSS Notifications feed.

B. View the service health current status page of the Office 365 admin center. D. Subscribe to the Office 365 Service Health RSS Notifications feed.

Contoso, Ltd. plans to use Office 365 for email services and Lync Online. Contoso has four unique domain names. You need to migrate domain names to Office 365. Which two domain names should you exclude from the migration? Each correct answer presents part of the solution. A. contoso.us B. contoso C. contoso.local D. contoso.co

B. contoso C. contoso.local

Contoso, Ltd. has an Office 365 tenant. The company has two servers named Server1 and Server2 that run Windows 2012 R2 Server. The servers are not joined to the contoso.com domain. Server2 is deployed to the perimeter network. You install Secure Sockets Layer (SSL) certificates on both servers. You deploy internal and external firewalls. All firewalls allow HTTPS traffic. You must deploy single sign-on (SSO) and Active Directory Federation Services (AD FS). You need to install and configure all AD FS components in the environment. Which four actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. Join Server1 and server 2 to the contoso.com domain Install and configure AD FS on Server1 Run on Server2 - Install-WindowsFeature Run on Server2 - Install WebApplicationProxy Run on Server2 - Install-AdfsFarm Join Server1 to the contoso.com domain Run on Server2 - New-WebApplication

Box 1: Install and Configure AD FS on Server1. Box 2: Join Server1 to the contoso.com domain Box 3: Run the following Windows PowerShell cmdlet on Server2: Install-WindowsFeature Box 4: Run the following Windows PowerShell cmdlet on Server2: Install-WebApplicationproxy Note:

A company migrates to Office 365. 2,000 active users have valid Office 365 licenses assigned. An additional 5,000 user accounts were created during the migration and testing processes. These users do not have any licenses assigned. You need to remove the Office 365 user accounts that do not have any licenses assigned by using the least amount of administrative effort. Which Windows PowerShell command should you run? A. Get-MsolUser -All -EnabledFilter "DisabledOnly" | Remove-MsolUser -Force B. Get-MsolUser-EnabledFilter "DisabledOnly" | Remove-MsolUser -Force C. Get-MsolUser -All -UnlicensedUsersOnly | Remove-MsolUser -Force D. Get-MsolUser -UnlicensedUsersOnly | Remove-MsolUser-Force

C. Get-MsolUser -All -UnlicensedUsersOnly | Remove-MsolUser -Force

Your company has a hybrid deployment of Office 365. You need to verify whether free/busy information sharing with external users is configured. Which Windows PowerShell cmdlet should you use? A. Test-OutlookConnectivity B. Test-FederationTrust C. Get-OrganizationRelationship D. Get-MSOLDomainFederationSettings

C. Get-OrganizationRelationship

Your company subscribes to an Office 365 Plan E3. A user named User1 installs Office Professional Plus for Office 365 on a client computer. From the Microsoft Online Services portal, you assign User1 an Office Professional Plus license. One month after installing Office, User1 can no longer save and edit Office documents on the client computer. User1 can open and view Office documents. You need to ensure that User1 can save and edit documents on the client computer by using office. What should you do? A. Install the Office Customization Tool. B. Reinstall Office Professional Plus. C. Install the Microsoft Online Services Sign-in Assistant. D. Upgrade the subscription to Plan E4.

C. Install the Microsoft Online Services Sign-in Assistant.

An organization plans to migrate to Office 365. You need to estimate the post-migration network traffic. Which tool should you use? A. Microsoft Online Services Diagnostics and Logging (MOSDAL) Support Kit B. Microsoft Network Monitor C. Lync 2013 Bandwidth Calculator D. Microsoft Remote Connectivity Analyzer

C. Lync 2013 Bandwidth Calculator

An organization plans to deploy Exchange Online. You must support all Exchange Online features. You need to create the required DNS entries. Which two DNS entries should you create? Each correct answer presents part of the solution. A. A B. SRV C. MX D. CNAME

C. MX D. CNAME

You have an Exchange Online tenant. User1 reports that they are not able to check their email. Other users can check their email. You remotely connect to User1's session. You need to troubleshoot why the user cannot check his email. What should you use? A. POP Email test B. Outlook Connectivity test C. Microsoft Remote Connectivity Analyzer D. Microsoft Connectivity Analyzer E. Outlook Autodiscover test F. IMAP Email test

C. Microsoft Remote Connectivity Analyzer

You have a legacy application that needs to send email to employees. The legacy application runs on a client computer. The legacy application must send email by using IMAP through Exchange Online. You need to identify the correct host name and port information. Which settings should you use? A. Imap.office365.com and port 993 B. Imap.office365.com and port 143 C. Outlook.office365.com and port 993 D. Outlook.office365.com and port 143

C. Outlook.office365.com and port 993

A company deploys an Office 365 tenant. You need to configure single sign-on (SSO) for all user accounts. Which two actions should you perform? Each correct answer presents part of the solution. A. Run the Windows PowerShell cmdlet Convert-MsolDomainToStandard. B. Run the Windows PowerShell cmdlet Enable-ADFSEndpoint. C. Run the Windows PowerShell cmdlet Convert-MsolDomainToFederated. D. Deploy a federation server proxy. E. Run the Windows PowerShell cmdlet New-ADFSOrganization. F. Deploy a federation server farm.

C. Run the Windows PowerShell cmdlet Convert-MsolDomainToFederated. F. Deploy a federation server farm.

You are the Office 365 administrator for your company. A user named User1 from a partner organization is permitted to sign in and use the Office 365 services. User1 reports that the password expires in ten days. You must set the password to never expire. Changes must NOT impact any other accounts. You need to update the password policy for the user. Which Windows PowerShell cmdlet should you run? A. Set-MsolPasswordPolicy B. Set-MsolPartnerlnformation C. Set-MsolUser D. Set-MsolUserPassword

C. Set-MsolUser

A company has an Office 365 tenant that has an Enterprise E1 subscription. You configure the policies required for self-service password reset. You need to ensure that all existing users can perform self-service password resets. Which Windows PowerShell cmdlet should you run? A. Set-MsolUser B. Redo-MsolProvisionUser C. Set-MsolUserLicense D. Set-MsolUserPrincipalName E. Convert-MsolFederatedUser F. Set-MailUser G. Set-LinkedUser H. New-MsolUser

C. Set-MsolUserLicense

You have an Office 365 tenant that uses an Enterprise E1 subscription. You need to convert the users in the tenant to an Enterprise E3 subscription. Which Windows PowerShell cmdlet should you run? A. Set-MsolUser B. Redo-MsolProvisionUser C. Set-MsolUserLicense D. Set-MsolUserPrincipalName E. Convert-MsolFederatedUser F. Set-MailUser G. Set-LinkedUser H. New-MsolUser

C. Set-MsolUserLicense

A company uses Office 365 services. You implement the Windows Azure Active Directory Sync tool in the local environment. An employee moves to a new department. All Office 365 services must display the new department information for the employee. You need to update the employee's user account. Where should you change the value of the department attribute for the employee? A. The Active Directory management page in the Windows Azure Management Portal B. The Users and groups page in the Office 365 admin center C. The on-premises Active Directory D. The Metaverse Designer

C. The on-premises Active Directory

Your company has an Office 365 subscription. The network contains an Active Directory domain. You configure single sign-on for all users. You need to verify that single sign-on functions for the users who access Office 365 from the Internet. What should you run? A. the Get-MSOLFederationProperty cmdlet B. the Test-OrganizationRelationship cmdlet C. the Microsoft Remote Connectivity Analyzer D. the Microsoft Exchange Server Deployment Assistant

C. the Microsoft Remote Connectivity Analyzer

You are the SharePoint Online administrator for Contoso, Ltd. The company purchases an Office 365 Enterprise El plan. The public-facing website must use SharePoint Online and the custom domain contoso.com. You need to configure the DNS settings for the public-facing SharePoint site. How should you configure the DNS settings? Select the appropriate options from each list in the answer area. Record = A, CNAME, MX, SRV Hostname = www.contoso.com, contoso-public.office.com, contoso-public,onmicrosoft.com, contoso-public.sharepoint.com Points to address = www.contoso.com, contoso-public.office.com, contoso-public,onmicrosoft.com, contoso-public.sharepoint.com

CNAME www.contoso.com contoso-public.sharepoint.com

You are the Office 365 administrator for your company. You have a workstation that runs Windows 8. You need to install the prerequisite components so that you can view mail protection reports on the workstation. Which two items must you install? Each correct answer presents part of the solution. A. SQL Server Analysis Services B. Microsoft Connectivity Analyzer Tool C. Microsoft Access 2013 D. .NET Framework 4.5 E. Microsoft Excel 2013

D. .NET Framework 4.5 E. Microsoft Excel 2013

A company with 75,000 employees has an Office 365 tenant. You need to install the Azure Active Directory Synchronization (AAD Sync) tool by using the least amount of administrative effort. Which versions of each product should you implement? (Select three) Select three. A. .Net 3.5 B. Net 4.0 C. .Net 4.5 D. .Net 4.5.1 E. PowerShell (PS1) F. PowerShell (PS2) G. PowerShell (PS3) H. PowerShell (PS4) I. SQL Server Express J. SQL Server 2008 K. SQL Server 2012 L. SQL Server 2014

D. .Net 4.5.1 F. PowerShell (PS2) I. SQL Server Express

Your company has a hybrid deployment of Office 365. All mailboxes are hosted on Office 365. All users access their Office 365 mailbox by using a user account that is hosted on-premises. You need to delete a user account and its associated mailbox. Which tool should you use? A. The Remove-MSOLUser cmdlet B. The Remove-Mailbox cmdlet C. The Office 365 portal D. Active Directory Users and Computers

D. Active Directory Users and Computers

You are the Office 365 administrator for your company. The company uses Active Directory Federation Services (AD FS) to provide single sign-on to cloud-based services. You enable multifactor authentication. Users must NOT be required to use multi-factor authentication when they sign in from the company's main office location. However, users must be required to verify their identity with a password and token when they access resources from remote locations. You need to configure the environment. What should you do? A. Disable AD FS multi-factor authentication. B. Configure an IP blacklist for the main office location. C. Disable the AD FS proxy. D. Configure an IP whitelist for the main office location

D. Configure an IP whitelist for the main office location.

Your company has a hybrid deployment of Office 365. You need to create a group. The group must have the following characteristics: Group properties are synchronized automatically. Group members have the ability to control which users can send email messages to the group. What should you do? A. Create a distribution group and configure the Mail Flow Settings. B. Create a dynamic distribution group. C. Create a new role group. D. Create a distribution group and configure the Membership Approval settings.

D. Create a distribution group and configure the Membership Approval settings.

Your company purchases an Office 365 plan. The company has an Active Directory Domain Services domain. User1 must manage Office 365 delegation for the company. You need to ensure that User1 can assign administrative roles to other users. What should you do? A. Create an Office 365 tenant and assign User1 the password administrator role. B. Use a password administrator account to assign the role to User1. C. Use a user management administrator account to assign the role to User1. D. Create an Office 365 tenant and assign User1 the global administrator role.

D. Create an Office 365 tenant and assign User1 the global administrator role.

Your company has a hybrid deployment Office 365. You create a user in Office 365. The next day, you discover that the new user account fails to appear in the Microsoft Exchange Server onpremises global address list (GAL). You need to ensure that the user has a mailbox and appears in the Exchange on- premises GAL and the Office 365 GAL. What should you do? A. Assign a Microsoft Exchange Online license to the user account. B. From the Microsoft Online Services Directory Synchronization tool, enable rich coexistence. C. From the Office 365 portal, modify the sign-in status of the user account. D. Delete the user account hosted on Office 365. From the Exchange Management Console, create a new remote mailbox.

D. Delete the user account hosted on Office 365. From the Exchange Management Console, create a new remote mailbox.

Your company has an Office 365 subscription. You need to add the label "External" to the subject line of each email message received by your organization from an external sender. What should you do? A. From the Exchange Control Panel, add a MailTip. B. From the Forefront Online Protection Administration Center, set the footer for outbound email. C. Run the Enable-InboxRule cmdlet. D. From the Exchange Control Panel, run the New Rule wizard.

D. From the Exchange Control Panel, run the New Rule wizard.

You have an Exchange Online tenant. You must identify mailboxes that are no longer in use. You need to locate the inactive mailboxes. Which Windows PowerShell command should you run? A. Get-StaleMailboxReport -Expression B. Get-StaleMailboxReport -Organization C. Get-MailboxActivityReport -Organization D. Get-StaleMailboxReport -EndDate

D. Get-StaleMailboxReport -EndDate

You are the Office 365 administrator for your company. You must use Windows PowerShell to manage cloud identities in Office 365. You must use a computer that runs Windows 8 to perform the management tasks. You need to ensure that the Windows 8 computer has the necessary software installed. What should you install first? A. Microsoft Office 365 Best Practices Analyzer for Windows PowerShell B. Windows PowerShell 4.0 C. Remote Server Administration Tools for Windows D. Microsoft Online Services Sign-in Assistant

D. Microsoft Online Services Sign-in Assistant

You are the administrator for a company named Contoso, Ltd. The company has an Office 365 subscription. Your need to prevent users from changing their user display name by using Outlook Web App. What should you do? A. Run the Set-MsolCompanyContactInformation cmdlet. B. Modify the default email address policy. C. Run the Set-MsolUserPrincipalName cmdlet. D. Modify the default role assignment policy.

D. Modify the default role assignment policy.

An organization migrates to Office 365. The Office 365 administrator must be notified when Office 365 maintenance activities are planned. You need to configure the administrator's computer to receive the notifications. What should you configure? A. Office 365 Management Pack for System Center Operations Manager B. Service requests C. Service health page D. Office 365 Service Health RSS Notifications feed

D. Office 365 Service Health RSS Notifications feed

A company has an Office 365 tenant. You must retrieve mailbox diagnostic data. You need to provide a report with this data for all users. Which report solution should you choose? A. Office 365 admin center B. downloadable spreadsheet C. reporting Windows PowerShell cmdlets D. REST reporting web service

D. REST reporting web service

A company has an Office 365 tenant and uses Exchange Online and Skype for Business Online. User1 is scheduling a Skype meeting with User2. User 1 is not able to see availability information for User2. You need to troubleshoot the issue. What should you use? A. Microsoft Lync Connectivity Analyzer Tool B. OCSLogger C. ClsController D. Remote Connectivity Analyzer

D. Remote Connectivity Analyzer

You have an Office 365 environment. Synchronization between the on-premises Active Directory and Office 365 is enabled. You need to deactivate directory synchronization. Which Windows PowerShell cmdlet should you run? A. Update-MsolFederatedDomain B. Remove-MsolDomain C. Remove-MsolFederatedDomain D. Set-MsolDirSyncEnabled

D. Set-MsolDirSyncEnabled

A company has an Office 365 tenant that has an Enterprise E1 subscription. Users currently sign in with credentials that include the contoso.com domain suffix. The company is acquired by Fabrikam. Users must now sign in with credentials that include the fabrikam.com domain suffix. You need to ensure that all users sign in with the new domain name. Which Windows PowerShell cmdlet should you run? A. Set-MsolUser B. Redo-MsolProvisionUser C. Set-MsolUserLicense D. Set-MsolUserPrincipalName E. Convert-MsolFederatedUser F. Set-MailUser G. Set-LinkedUser H. New-MsolUser

D. Set-MsolUserPrincipalName

You are the Office 365 administrator for your company. You prepare to install Active Directory Federation Services (AD FS). You need to open the correct port between the AD FS proxy server and the AD FS federation server. Which port should you open? A. TCP 80 B. TCP 135 C. TCP 389 D. TCP 443 E. TCP 636 F. TCP 1723

D. TCP 443

A company deploys an Office 365 tenant in a hybrid configuration with Exchange Server 2013. Office 365 users cannot see free/busy information that is published from the on-premises Exchange Server. In addition, Exchange Server users cannot see free/busy information that is published from Office 365. You need to troubleshoot why users cannot access free/busy information from both Office 365 and Exchange Server 2013. Which tool should you run? A. The Hybrid Configuration wizard B. The Remote Connectivity Analyzer with the Exchange Server tab selected C. The Microsoft Connectivity Analyzer Tool D. The Remote Connectivity Analyzer with the Office 365 tab selected

D. The Remote Connectivity Analyzer with the Office 365 tab selected

A company has an Office 365 tenant that has an Enterprise E1 subscription. You use single sign-on for all user accounts. You plan to migrate all services to Office 365. You need to ensure that all accounts use standard authentication. Which Windows PowerShell cmdlet should you run? A. Set-MsolUser B. Redo-MsolProvisionUser C. Set-MsolUserLicense D. Set-MsolUserPrincipalName E. Convert-MsolFederatedUser F. Set-MailUser G. Set-LinkedUser H. New-MsolUser

E. Convert-MsolFederatedUser

You have an Office 365 tenant that uses an Enterprise E3 subscription. You activate Azure Rights Management for the tenant. You must test the service with the Development security group before you deploy Azure Rights Management for all users. You need to enable Azure Rights Management for only the Development security group. Which Windows PowerShell cmdlet should you run? A. Enable-Aadrm B. New-AadrmRightsDefinition C. Enable-AadrmSuperUserFeature D. Add-AadrmSuperUser E. Set-AadrmOnboardingControlPolicy

E. Set-AadrmOnboardingControlPolicy

Fabrikam, Inc. employs 500 users and plans to migrate to Office 365. You must sign up for a trial plan from the Office 365 website. You have the following requirements: Create the maximum number of trial users allowed. Convert the trial plan to a paid plan at the end of the trial that supports all of Fabrikam's users. You need to create an Office 365 trial plan. How should you configure the trial plan? Select the correct answer from each list in the answer area. Plan = Midsize, E1,E3,E4 Number of included Trial users = 25, 50, 100,250

E3 25

A company deploys an Office 365 tenant. All employees in the human resources (HR) department must use multi-factor authentication. They must use only the Microsoft Outlook client to access their email messages. User1 joins the HR department. You need to help User1 configure his account. Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. Instruct User1 to create an app password Instruct User1 to use an app password to complete the registration process Instruct User1 to use a one-time password to complete the registration process Enable multi-factor authentication for User1 Instruct User1 to use a mobile phone to complete the registration process

Enable multi-factor authentication for User1 Instruct User1 to create an app password Instruct User1 to use an app password to complete the registration process

A company deploys an Office 365 tenant. You need to enable multi-factor authentication for Office 365. Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. Enable multi-factor for all user accounts Instruct users to use a mobile phone to complete the registration process Create a multi-factor authentication provider with the Per Enabled user usage model Create a multi-factor authentication provider with the Per authentication usage model Instruct users to obtain a single user password to complete the registration process.

Enable multi-factor for all user accounts Instruct users to use a mobile phone to complete the registration process Instruct users to obtain a single user password to complete the registration process.

An organization plans to deploy an Office 365 tenant. The company has two servers named SERVER1 and SERVER2. SERVER1 is a member server of the Active Directory forest that you are synchronizing. SERVER2 is a standalone server. Both servers run Windows Server 2012. You need to use the Windows Azure Active Directory Sync tool to provision users. Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. Install and run the windows azure AD sync tool on server2 From the office 365 admin center, activate AD sync Install and run the windows Azure AD Sync tool on Server1 Activate all Sync'd users Install AD domain Services on the member server

From the office 365 admin center, activate AD sync Install and run the windows Azure AD Sync tool on Server1 Activate all Sync'd users

You manage a team of three administrators for an organization that uses Office 365. You must assign roles for each of the administrators as shown in the table. You must assign the minimum permissions required to perform the assigned tasks. Admin1 - Rest user password for admins Admin2 - Perform purchasing operations Admin3 - Create and manager user views Billing, Global, user management

Global Billing User Management

A company deploys an Office 365 tenant. You install the Active Directory Federation Services (AD FS) server role on a server that runs Windows Server 2012. You install and configure the Federation Service Proxy role service. Users sign in by using the Security Assertion Markup Language (SAML) protocol. You need to customize the sign-in pages for Office 365. Which pages should you customize? To answer, drag the appropriate page to the correct customization. Each page may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. HomeRealmDiscovery.aspx FormsSignIn.aspx SignOut.aspx IdpInitiatedSignOn.aspx MasterPage.master default.aspx Change the list of trusted claims providers that are displayed Authenticate users Change the overall appearance of all pages

HomeRealmDiscovery.aspx IdpInitiatedSignOn.aspx MasterPage.master

You are the Office 365 administrator for your company. You need to ensure that trusted applications can decrypt rights-protected content. Which four Windows PowerShell cmdlets should you run in sequence? To answer, move the appropriate cmdlets from the list of cmdlets to the answer area and arrange them in the correct order. Import-Module AADRM Add-AadrmRoleBasedAdministrator Enable-AadrmSuperUserFeature Set-AadrmMigrationURL Enable-Aadrm Connect-AadrmService

Import-AADRM Connect-AadrmService Enable-Aadrm Enable-AadrmSuperUserFeature

You are the Office 365 administrator for your company. You audit the Windows Azure Active Directory Rights Management configuration for the company. You need to view a log of the recent administrative commands performed against the Microsoft Rights Management Service. Which three Windows PowerShell cmdlets should you run in sequence? To answer, move the appropriate cmdlets from the list of actions to the answer area and arrange them in the correct order. Get-AadrmAdminLog Get-AadrmRoleBaseAdministrator Import-Module AADRM Connect-AadrmService Get-AadrmSuperUser Get-MsolUser

Import-Module AADRM Connect-AadrmService Get-AadrmAdminLog

A graphic design agency has an Office 365 tenant. The agency uses only computers that run the Apple Macintosh operating system. Some users have Microsoft Entourage 2008 for Mac, and some have Microsoft Outlook for Mac. All users report that they cannot access Exchange Online to check their email. You need to run test connectivity for all users to identify the problem. You need to use the Microsoft Remote Connectivity Analyzer and the credentials of the users. What should you do? To answer, drag the appropriate test to run to the correct email client. Each test may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. Microsoft Exchange Web Services Connectivity Test Service Account Access (Developers) Outlook Connectivity Outlook Autodiscover Inbound SMTP Email Outbound SMTP Email Entourage 2008 for mac: ______ Microsoft Outlook for mac: _____

Inbound SMTP Email Outlook Connectivity

A company is deploying an Office 365 tenant. You need to deploy a Windows Server 2012 R2 federation server farm. Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. User AdfsSetup.exe to add the first federation server to the federation server farm Install the AD Federation Service server role Use Adfssetup.exe to add the second federation server to the federation server farm Run the windows PowerShell cmdlet Enable-ADFSEndpoint User the AD FS Federation Server Configuration Wizard to configure the first federation server in the federation server farm User the AD FS Federation Server Configuration Wizard to configure the second federation server in the federation server farm

Install the AD Federation Service server role User the AD FS Federation Server Configuration Wizard to configure the first federation server in the federation server farm User the AD FS Federation Server Configuration Wizard to configure the second federation server in the federation server farm

A company plans to use Office 365 to provide email services to employees. The company obtains a custom domain name to use with Office 365. You need to add the domain name to Office 365. Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. Connect to windows azure AD Run Remote Powershell Enable user access for Remote Powershell in Exchange Run the windows powershell cmdlet Net-MsolDomain Run the windows Powershell cmdlet New- MsolFederatedDomain Install the windows Azure AD module for windows powershell

Install the windows Azure AD module for windows powershell Connect to windows azure AD Run the windows powershell cmdlet Net-MsolDomain

Your company uses Office 365. You need to identify which users do NOT have a Microsoft Exchange Online license assigned to their user account. Which Windows PowerShell cmdlet should you use? A. Get-ManagementRoleAssignment B. Get-User C. Get-RoleGroupMember D. Get-LogonStatistics E. Get-RemovedMailbox F. Get-MSOLContact G. Get-Recipient H. Get-Mailbox I. Get-Group J. Get-MailboxStatistics K. Get-MSOLUser L. Get-MailContact

K. Get-MSOLUser

You have an Office 365 tenant. An organization is migrating from an Exchange organization to Office 365. Users report that Outlook does not display the availability of other users for meetings. You must determine whether an Office 365 mailbox can access the scheduling availability of a user with an onpremises mailbox. You must also run a test to verify that an on-premises mailbox can access the scheduling availability of a user that has an Office 365 mailbox. You need to conduct the tests. What should you do? To answer, drag the appropriate test to run to the correct mailbox test scenario. Each test may be used once, more than once or not at all. You may need to drag the split bar between panes or scroll to view content. Office 365 SSO Test Microsoft Exchange Web Services Connectivity Test Outlook Connectivity test On-Prem to Office365 mailbox - Office365 to On-Prem mailbox -

Microsoft Exchange Web Services Connectivity Test Office365 to On-Prem mailbox -

An organization prepares to migrate to Office 365. The organization has one domain controller named NYC-DC1 and one server named NYC-DS that is designated as the directory synchronization computer. The organization has the following servers: NYC-DC1 Win 2008 R2 Win 2000 Function Level NYC_DS Win 2003 You plan to upgrade the servers to support directory synchronization. You must upgrade each server to meet only the minimum requirements by using the least amount of administrative effort. You need to ensure that you can use the Windows Azure Active Directory Sync tool to synchronize the local Active Directory with Office 365. What should you do? Select the correct action from each list in the answer area. NYC-DC1 - Raise the function level to 2003, 2008, 2008 r2, install Win 2012 NYC-DS - Install 64 bit Win 2008 Standard, Install win 2008 R2 Stan, Install 2008 R2 Data Center, Install Win 2012.

NYC-DC1 = Raise Function level to 2003 NYC-DS - Install Win 2008 R2 Standard

A company has an Office 365 tenant. You plan to use Office 365 to manage the DNS settings for a custom domain. You purchase the domain through a third-party provider. You create a custom website. You must host the website through a third-party provider at the IP address 134.170.185.46. You need to configure the correct DNS settings. What should you do? To answer, drag the appropriate DNS record to the correct DNS target. Each record may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. Name Server A AAAA TXT CNAME ns1.bdm.microsoftonline.com - ns2.bdm.microsoftonline.com - 134.170.185.46 -

Name Server Name Server A

You have an Office 365 tenant. A user named User1 has a mailbox. The user creates documents and saves the documents in a shared document library. User1 leaves the company. You must delete the account for User1. In the table below, identify when each type of data will be deleted. NOTE: Make only one selection in each column. Each correct selection is worth one point. TimeFrame | User1 Exchange Mailbox| Documents created by user 1 in SP Never Removed | _ | _ Removed immediately | _ | _ Removed after 30 day grace | _ | _ Removed after 60day grace | _ | _

Never Removed | _ | X Removed immediately | _ | _ Removed after 30 day grace | X | _ Removed after 60day grace | _ | _

Fabrikam Inc. plans to use the domain fabrikam.com for Office 365 user identities, email addresses. Session Initiation Protocol (SIP) addresses, and a public-facing home page. Single sign-on (SSO) between Office 365 and the on-premises Active Directory is NOT required. You need to configure the Office 365 plan. Which four Windows PowerShell cmdlets should you run in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. Update-MsolFederatedDomain Set-MsolDomain Get-MsolDomainVerificationDNS New-MsolDomain Get-MsolDomainFederationSettings Confirm-MsolDomain Net-MsolFederatedDomain

New-MsolDomain Get-MsolDomainVerificationDNS Confirm-MsolDomain Set-MsolDomain

You are the Office 365 administrator for your company. The company has two administrators named User1 and User2. Users must be able to perform the activities as shown in the following table: User1 - Resets passwords for standard users. Resets password of other members of the same role. Must not reset password for other administrator accounts. User2 - Reset password for all administrator accounts Password Admin Delegate Admin Billing Admin Global Admin

Password Admin Global Admin

A company plans to synchronize users in an existing Active Directory organizational unit with Office 365. You must configure the Azure Active Directory Synchronization (AAD Sync) tool with password sync. You need to ensure that the service account has the minimum level of permissions required. Which two permission levels should you assign to the account for each task? To answer, select the appropriate permission level from each list in the answer area. Password Write-Back - Full Control, Reset password 2nd option - Create Child, Create Password Password sync - Replication Directory changes, Manage Replication topology 2nd option - Replication directory changes all, Replication directory changes in filtered set

Password Write-Back - Reset password 2nd option - Create Password Password sync - Replication Directory changes 2nd option - Replication directory changes all

A company has an Active Directory Domain Service (AD OS) domain. All servers run Windows Server 2008. You have an on-premises Exchange 2010 server. The company plans to migrate to Office 365. In the table below, identify the required action for each phase of the pilot. Make only one selection in each column. Each correct selection is worth one point. Planning | Migration | Project Action __ | __ |Assign licenses to users __ | __ |Prepare the on-prem AD for DirSync __ | __ |Raise the Function level to Win 2008 __ | __ |Upgrade the Exchange server to Exchange 2013

Planning | Migration | Project Action __ | _X_ |Assign licenses to users _X_ | __ |Prepare the on-prem AD for DirSync __ | __ |Raise the Function level to Win 2008 __ | __ |Upgrade the Exchange server to Exchange 2013

Contoso, Ltd., uses SharePoint Online and plans a new single sign-on (SSO) implementation that uses Active Directory Federation Services (AD FS). Your environment contains the following configurations: two servers named Server1 and Server2 a partner collaboration website for the domain contoso.com that points to a SharePoint Online team site a hardware load balancer to use with Server1 and Server2 You need to install AD FS to support the environment. Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. Run on Server1: Install-AdfsFarm -FederationServiceName contoso.com Run on Server2: Add-AdfsFarmNode Request and install SSL cert on Server 1 and Server 2 Run on Server1: Install-AdfsFarm -FederationServiceName fs.contoso.com Run on Server2: Add-ClusterNode

Request and install SSL cert on Server 1 and Server 2 Run on Server2: Add-AdfsFarmNode Run on Server1: Install-AdfsFarm -FederationServiceName fs.contoso.com

The legal department in your organization creates standardized disclaimers for all of their email messages. The disclaimers explain that any transmissions that are received in error should be reported back to the sender. You track any confidential documents that are attached to email messages. Your security team reports that an employee may have mistakenly sent an email message that contained confidential information. You need to identify whether the email message included the disclaimer and whether it contained confidential information. Which two options should you configure? To answer, select the appropriate objects in the answer area. Rule matches for received mail Rule matches for sent mail DLP policy matches for sent mail DLP rule matches for sent mail

Rule matches for sent mail DLP policy matches for sent mail

You have the following requirements: Administrators must be able to access the Office 365 admin center. Microsoft Exchange Online must be used as a Simple Mail Transfer Protocol (SMTP) relay for a lineof-business application that sends email messages to remote domains. All users must be able to use the audio and video capabilities in Microsoft Lync 2013. You need to configure the ports for the firewall. Which port should you use for each application? Select the correct answer from each list in the answer area. SMTP relay = 25, 443, 587 Office 365 Admin= 80, 443, 10106 Lync Outbound video= RTP/UDP 50000-50019, RTP/UDP 50020-50039, UDP 50040-50039 Lync Outbound audio= RTP/UDP 50000-50019, RTP/UDP 50020-50039, UDP 50040-50039

SMTP relay = 25 Office 365 Admin= 443 Lync Outbound video= RTP/UDP 50020-50039 Lync Outbound audio= RTP/UDP 50000-50019

You are the Office 365 administrator for your company. You must configure a trust between the on-premises Active Directory domain and the Office 365 environment by using Active Directory Federation Services. You need to assign the correct certificate to the description of your on-premises server environment below. Which certificate types should you assign? To answer, drag the appropriate certificate type to the correct test description. Each certificate type may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. Client Domain SSL X.509 Secures the communication between federation servers, clients and federation server proxy computers Securely signs all tokens that the federation server issues for the cloud-based services

SSl X.509

A company plans to implement an Office 365 environment to manage email. All user accounts must be configured to use only a custom domain. You need to provision an Office 365 tenant for the company. Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. Configure the global admin account recovery information Remove the domain name onmicrosoft.com Select the office 365 plan Configure the custom domain and DNS

Select the office 365 plan Configure the global admin account recovery information Configure the custom domain and DNS

You are the Exchange Online administrator for an organization. The organization migrates all users to Exchange Online. An employee works for a partner organization named Contoso, Ltd. The employee uses the email alias employeel©contoso.com. Users report that over the past week, they have not received email messages from [email protected]. You need to trace email messages that originate from [email protected] to users inside your organization. In the message trace window, which two settings should you configure? To answer, select the appropriate objects in the answer area. Sender - Add users Recipient - Add users Message was sent or received - Last 48 hours MessageID

Sender - Add users Message was sent or received - Last 48 hours

You need to report the status of service interruptions for Exchange Online and SharePoint Online. Use the drop-down menus to complete each statement based on the information presented in the screen shot. Each correct selection is worth one point. Exchange - Yellow arrow today , Blue info on Nov 13 SP - Green Check Today, Blue info Nov 13 What is the current status of Exchange and SP online? When is the earliest date that a post-incident review will be available for SP online?

SharePoint Online is Available. Exchange is available but service is degraded Nov 21

Fabrikam has the Office 365 Enterprise E3 plan. You must add the domain name fabrikam.com to the Office 365 tenant. You need to confirm ownership of the domain. Which DNS record types should you use? To answer, drag the appropriate DNS record type to the correct location or locations in the answer area. Each DNS record type may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content CNAME A TXT SRV MX Preferred - _____ Alternate - _____

TXT MX

You implement Office 365 for an organization. You must create the correct DNS entries needed to configure Office 365. Which DNS entries should you create? To answer, drag the appropriate DNS record type to the correct purpose. Each DNS record type may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. A CNAME MX SRV TXT Helps prevent outbound email messages from being flagged as spam Configures email message routing Outlook autodiscover record is used to help users easilyu configure their desktop clients

TXT MX CNAME

A company deploys an Office 365 tenant. You prepare to use the bulk add tool to add users to Office 365. You need to prepare a file to use with the bulk add tool. Which fields must you include in the file? To answer, drag the appropriate response to each field. Each response may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. User Name Display Name First Name Last Name Job Title

User Name Display Name

You are the Office 365 administrator for your company. User1 leaves the company. You must delete the account for User1. In the table below, identify when each type of data will be deleted. Make only one selection in each column. Each correct selection is worth one point. User1 Exchange Mailbox | Documents Created | Time _______ | ________ | Never removed _______ | ________ | Removed Immediately _______ | ________ | Removed after 30 day grace _______ | ________ | Removed after 90 day grace

User1 Exchange Mailbox | Documents Created | Time _______ | ____X____ | Never removed _______ | ________ | Removed Immediately ___X____ | ________ | Removed after 30 day grace _______ | ________ | Removed after 90 day grace


Conjuntos de estudio relacionados

SOCI 1101H - Chapter 11 Review Questions

View Set

Med Surg I Prep U Chapter 55: Management of Patients With Urinary Disorders

View Set