MSCA - Exam 70-346
You are the Office 365 administrator for your company. You have a workstation that runs Windows 8. You need to install the prerequisite components so that you can view mail protection reports on the workstation. Which two items must you install? Each correct answer presents part of the solution.
.NET Framework 4.5 Microsoft Excel 2013
You need to modify the Office 365 subscription to support the planned changes for the devices that connect from untrusted networks. You enable Azure multi-factor authentication for all of the users in the subscription. What should you do next from the Office 365 portal?
Add a trusted domain
A company plans to use Office 365 to provide email services for users. You need to ensure that a custom domain name is used. What should you do first?
Add the custom domain name to the Office 365 and then verify it
An organization deploys an Office 365 tenant. User accounts must be synchronized to Office 365 by using the Windows Azure Active Directory Sync tool. You have the following password policies: ✑ Passwords for the on-premises Active Directory Domain Services (AD DS) user accounts are at least six characters long. ✑ Passwords for Office 365 user accounts are at least eight characters long. You need to ensure that the user accounts will be synchronized. Which user accounts will be synchronized?
All user accounts
Contoso Ltd. uses Office 365 for collaboration. You are implementing Active Directory Federation Services (AD FS) for single sign-on (SSO) with Office 365 services. The environment contains an Active Directory domain and an AD FS federation server. You need to ensure that the environment is prepared for the AD FS setup. Which two actions should you perform? Each correct answer presents part of the solutio
Configure Active Directory to use the domain contoso.com Create a server authentication certificate for the federation server by using fs.contoso.com as the subject name and subject alternative name
You are the Office 365 administrator for your company. The company synchronizes the local Active Directory objects with a central identity management system. The environment has the following characteristics: ✑ Each department has its own organizational unit (OU). ✑ The company has OU hierarchies for partner user accounts. ✑ All user accounts are maintained by the identity management system. You need to ensure that partner accounts are NOT synchronized with Office 365. What should you do?
Configure OU-based filtering by using the Windows Azure Active Directory Sync tool
You deploy Lync Online for a company that has offices in San Francisco and New York. The two offices both connect to the Internet. There is no private network link between the offices. Users in the New York office report that they cannot transfer files to the users in the San Francisco office by using Lync Online. You need to ensure that users in both offices can transfer files by using Lync Online. What should you do?
Configure the firewall to open Transmission Control Protocol (TCP) ports 50040-50059
A company has an Office 365 tenant. You plan to distribute the Office 365 ProPlus client to users. The client machines do not normally have Internet access. You need to activate the Office 365 ProPlus installations and ensure that the licenses remain active. What should you do?
Connect the client computer to the Internet once to activate the Office 365 ProPlus client, and once every 30 days after that
Contoso, Ltd., has an Office 365 tenant. You configure Office 365 to use the domain contoso.com, and you verify the domain. You deploy and configure Active Directory Federation Services (AD FS) and Active Directory Synchronization Services (AAD Sync) with password synchronization. You connect to Azure Active Directory by using a Remote PowerShell session. You need to switch from using password-synced passwords to using AD FS on the Office 365 verified domain. Which Windows PowerShell command should you run?
Convert-MsolDomainToFederated -DomainName contoso.com
A company has an Office 365 tenant that has an Enterprise E1 subscription. You use single sign-on for all user accounts. You plan to migrate all services to Office 365. You need to ensure that all accounts use standard authentication. Which Windows PowerShell cmdlet should you run?
Convert-MsolFederatedUser
You use a centralized identity management system as a source of authority for user account information. You export a list of new user accounts to a file on a daily basis. Your company uses a local Active Directory for storing user accounts for on-premises solutions. You are configuring the Windows Azure Active Directory Sync tool. New user accounts must be created in both the local Active Directory and Office 365. You must import user account data into Office 365 daily. You need to import the new users. What should you do?
Create a Windows PowerShell script to import account data from the file into Active Directory
Your company has a hybrid deployment of Office 365. You need to create a group. The group must have the following characteristics: ✑ Group properties are synchronized automatically. ✑ Group members have the ability to control which users can send email messages to the group. What should you do?
Create a distribution group and configure the Membership Approval settings
Your company purchases an Office 365 plan. The company has an Active Directory Domain Services domain. User1 must manage Office 365 delegation for the company. You need to ensure that User1 can assign administrative roles to other users. What should you do?
Create an Office 365 tenant and assign User1 the global administrator role
Your company has an Office 365 subscription. You need to add the label "External" to the subject line of each email message received by your organization from an external sender. What should you do?
From the Exchange Control Panel, run the New Rule wizard
You have an Office 365 subscription that has several thousand mailboxes. The users in the Office 365 organization are located in different regions. You need to view the path of the email messages sent from a user to an external recipient Which cmdlet should you use?
Get-MailTrafficReport
Your company uses Office 365. You need to identify which users do NOT have a Microsoft Exchange Online license assigned to their user account. Which Windows PowerShell cmdlet should you use?
Get-MailboxStatistics K. Get-MsolUser L. Get-MailContact
A company migrates to Office 365. 2,000 active users have valid Office 365 licenses assigned. An additional 5,000 user accounts were created during the migration and testing processes. These users do not have any licenses assigned. You need to remove the Office 365 user accounts that do not have any licenses assigned by using the least amount of administrative effort. Which Windows PowerShell command should you run?
Get-MsolUser -All -UnlicensedUsersOnly | Remove-MsolUser -Force
You have an Exchange Online tenant. You must identify mailboxes that are no longer in use. You need to locate the inactive mailboxes. Which Windows PowerShell command should you run?
Get-StaleMailboxReport-StartDate
A company has an Office 365 tenant. You need to monitor Active Directory synchronization. Which tool should you run?
IdFix
An organization uses Exchange Online. You enable mailbox audit logging for all mailboxes. User1 reports that her mailbox has been accessed by someone else. You need to determine whether someone other than the mailbox owner has accessed the mailbox. What should you do?
In the Exchange Admin Center, navigate to the Auditing section of the Compliance Management page. Run a non-owner mailbox access report
Contoso Ltd, has an on-premises SharePoint environment. The Company plans to deploy SharePoint Online. You must use Active Directory Federation Service (AD FS). The global administrator account must be able to access the Office 365 tenant even if AD FS is unavailable. You need to set up the global administrator account. What should you do?
In the Office 365 admin center, create a user named [email protected]
An organization purchases an Office 365 plan for 10,000 user accounts. You have a domain controller that runs Windows Server 2008 R2. The forest functional level is set to Windows Server 2000. The organization must be able to synchronize user attributes from the on-premises Active Directory Domain Services environment to Office 365. You need to prepare to install the Windows Azure Active Directory Sync tool. Which two actions should you perform? Each correct answer presents part of the solution.
Install Microsoft .NET Framework 3.5 SP1 and Microsoft .NET Framework 4.0 Raise the forest functional level to Windows Server 2008 R2
Your company subscribes to an Office 365 Plan E3. A user named User1 installs Office Professional Plus for Office 365 on a client computer. From the Microsoft Online Services portal, you assign User1 an Office Professional Plus license. One month after installing Office, User1 can no longer save and edit Office documents on the client computer. User1 can open and view Office documents. You need to ensure that User1 can save and edit documents on the client computer by using office. What should you do?
Install the Microsoft Online Services Sign-in Assistant
An organization plans to migrate to Office 365. You need to estimate the post-migration network traffic. Which tool should you use?
Lync 2013 Bandwidth Calculator
An organization plans to deploy Exchange Online. You must support all Exchange Online features. You need to create the required DNS entries. Which two DNS entries should you create? Each correct answer presents part of the solution.
MX CNAME
You are the Office 365 administrator for your company. Users report that they have received significantly more spam messages over the past month than they normally receive. You need to analyze trends for the email messages received over the past 60 days. From the Office 365 admin center, what should you view?
Messages on the Service health page
You have an Office 365 subscription. All users have mailboxes hosted in Microsoft Exchange Online. The network administrators in your organization are updating the network infrastructure, including making changes to the DNS providers and updating the SSL certificates. You need to perform the following test in the Exchange Online environment: Verity that the mail exchanger (MX) records for Exchange Online are published correctly. Send a test message from an external recipient to an Exchange Online recipient verify that the SMTP service is accessible from the Internet. Which tool should you use?
Microsoft Connectivity Analyzer Tool
You have an Exchange Online tenant. User1 reports that they are not able to check their email. Other users can check their email. You remotely connect to User1s session. You need to troubleshoot why the user cannot check his email. What should you use?
Microsoft Remote Connectivity Analyzer
You are the Office 365 administrator for your company. You configure new user accounts for User1 and User2. User1 has an on-premises mailbox. User2 has an Office 365 mailbox. Each user must be able to view the availability of the other user. You need to ascertain whether users can share their free/busy information. What should you use?
Microsoft Remote Connectivity Analyzer Tool
An organization migrates to Office 365. The Office 365 administrator must be notified when Office 365 maintenance activities are planned. You need to configure the administrator's computer to receive the notifications. What should you configure?
Office 365 Service Health RSS Notifications feed
A company plans to deploy an Office 365 tenant. You have two servers named FS1 and FS2 that have the Federation Service Proxy role service installed. You must deploy Active Directory Federation Services (AD FS) on Windows Server 2012. You need to configure name resolution for FS1 and FS2. What should you do?
On FS1 and FS2, add the cluster DNS name and IP address of the federation server farm to the hosts file
Contoso uses Office 365 for collaboration services. You implement single sign-on (SSO) with Office 365 by using Active Directory Federation Services (AD FS). You need to implement Windows Azure multi-factor authentication. Which three actions should you perform? Each correct answer presents part of the solution.
On the AD FS federation server, run PhoneFactorAgentSetup.exe On the AD FS Federation server, run the Windows PowerShell cmdlet Register-AdfsAuthenticationProvider Run the Windows Azure Multi-Factor Authentication Server Authentication Configuration Wizard
You have a legacy application that needs to send email to employees. The legacy application runs on a client computer. The legacy application must send email by using IMAP through Exchange Online. You need to identify the correct host name and port information. Which settings should you use?
Outlook.office365.com and port 993
A company has an Office 365 tenant. You implement two-factor authentication for all users. You hire an employee named User1 to track service usage and status. User1 must be able to monitor the status of the services over a period of time by using a report. User1 does not have administrator access. You need to provide a report for User1. Which report solution should you choose?
REST reporting web service
A company has an Office 365 tenant. You must retrieve mailbox diagnostic data. You need to provide a report with this data for all users. Which report solution should you choose?
REST reporting web service
You plan to deploy an Office 365 tenant to multiple offices around the country. You need to modify the accounts that are authorized to administer the Rights Management Which Windows PowerShell cmdlet should you run?
Remove-AadrmRoleBasedAdministrator
An organization prepares to implement Office 365. You have the following requirements: ✑ Gather information about the requirements for the Office 365 implementation. ✑ Use a supported tool that provides the most comprehensive information about the current environment. You need to determine the organization's readiness for the Office 365 implementation. What should you do?
Run the OnRamp for Office 365 tool
You are the Office 365 administrator for your company. The environment must support single sign-on. You need to install the required certificates. Which two certificates should you install? Each correct answer presents part of the solution.
Secure Socket Layer (SSL) Token signing
You have an Office 365 subscription. You plan to create a report about Microsoft OneDrive for Business usage that will be given to a third party. You wed to ensure that the OneDrive for Business report shows anonymous identifiers instead of user names. What should you configure from Settings in the Office 365 admin center?
Security & Privacy
You create an Office 365 tenant. You assign administrative roles to other users. You hire a new user named User2. User2 must NOT be able to change passwords for other users. You need to assign an administrative role to User2. Which role should you assign?
Service administrator
You have an Office 365 tenant that uses an Enterprise E3 subscription. You activate Azure Rights Management for the tenant. You must test the service with the Development security group before you deploy Azure Rights Management for all users. You need to enable Azure Rights Management for only the Development security group. Which Windows PowerShell cmdlet should you run?
Set-AadrmOnboardingControlPolicy
A company has an Office 365 tenant that has an Enterprise E1 subscription. The company has offices in several different countries. You need to restrict Office 365 services for existing users by location. Which Windows PowerShell cmdlet should you run?
Set-MsolUser
A company has an Office 365 tenant that has an Enterprise E1 subscription. You plan to test a new deployment by using 50 tenant user accounts. You need to ensure that the passwords for the test user accounts do not expire. Which Windows PowerShell cmdlet should you run?
Set-MsolUser
You are the Office 365 administrator for your company. A user named User1 from a partner organization is permitted to sign in and use the Office 365 services. User1 reports that the password expires in ten days. You must set the password to never expire. Changes must NOT impact any other accounts. You need to update the password policy for the user. Which Windows PowerShell cmdlet should you run?
Set-MsolUser
A company has an Office 365 tenant that has an Enterprise E1 subscription. Users currently sign in with credentials that include the contoso.com domain suffix. The company is acquired by Fabrikam. Users must now sign in with credentials that include the fabrikam.com domain suffix. You need to ensure that all users sign in with the new domain name. Which Windows PowerShell cmdlet should you run?
Set-MsolUserPrincipalName
A company has an Office 365 tenant. You must reset the password for an account named User1. You need to ensure that the new password for the account meets complexity rules. Which two passwords can you use? Each correct answer presents a complete solution.
Summer2015 M1crosoft
You are the Office 365 administrator for your company. You prepare to install Active Directory Federation Services (AD FS). You need to open the correct port between the AD FS proxy server and the AD FS federation server.Which port should you open?
TCP 443
A company deploys an Office 365 tenant in a hybrid configuration with Exchange Server 2013. Office 365 users cannot see free/busy information that is published from the on-premises Exchange Server. In addition, Exchange Server users cannot see free/busy information that is published from Office 365. You need to troubleshoot why users cannot access free/busy information from both Office 365 and Exchange Server 2013. Which tool should you run?
The Remote Connectivity Analyzer with the Office 365 tab selected
You need to recommend a solution to meet the technical requirement for monitoring the health information. What should you recommend?
Use the Company Portal app to receive push notifications
You are the Office 365 administrator for your company. Users report that they cannot sign in to Lync from their mobile devices, but they are able to send and receive Lync messages by using their laptop computers. You need to troubleshoot the issue. What should you do?
Use the Microsoft Connectivity Analyzer tool to confirm settings
You administer the Office 365 environment for a company that has offices around the world. All of the offices use the same Office 365 tenant. You need to ensure that all users can access the services that are available in their regions. Which setting or service should you update?
User location settings
You are the Office 365 administrator for your company. You have a server that runs Windows Server 2012. You plan to install an Active Directory Federation Services (AD FS) proxy server. You need to install and configure all of the required roles. Which two roles should you install and configure? Each correct answer presents part of the solution.
Web Server (IIS) Network Policy and Access Service
An organization with an Active Directory Domain Services (AD DS) domain migrates to Office 365. You need to manage Office 365 from a domain-joined Windows Server 2012 Core server. Which three components should you install? Each answer presents part of the solution.
Windows Azure Active Directory module for Windows PowerShell Microsoft .NET Framework 3.5 Microsoft Online Services Sign-in Assistant
Note This question is part of a series of questions that present the same scenario Each the series contains a unique solution. Determine whether the solution meets the stated goals. You have an on-premises Active Directory forest. You deploy Active Directory Federation Services (AD FS) and purchase an Office 365 subscription. You need to create a trust between the AD FS servers and the Office 365 subscription. Solution: You run the netdom.com command. Does the meet the goal?
Yes
Contoso, Ltd. plans to use Office 365 for email services and Lync Online. Contoso has four unique domain names. You need to migrate domain names to Office 365. Which two domain names should you exclude from the migration? Each correct answer presents part of the solution.
contoso contoso.local
A company named Fabrikam, Inc. is deploying an Office 365 tenant. You install Active Directory Federation Services (AD FS) on a server that runs Windows Server 2012. The company's environment is described in the following table: You must obtain a certificate from a certification authority and install it on the federation servers. You need to specify the subject name for the certificate. Which name should you specify?
fs.fabrikam.com
Your company has a subscription to Office 365 for midsize business and enterprises. The company uses Microsoft Lync Online. You need to open ports on the network firewall to enable all of the features of Lync Online. Which port or ports should you open? (Each correct answer presents part of the solution. Choose all that apply.)
inbound TCP 443 outbound UDP 3478 outbound TCP 443 outbound UDP 50000 to outbound UDP 59999
You are the Office 365 administrator for your company. Users report that they have received significantly more spam messages over the past month than they normally receive. You need to analyze trends for the email messages received over the past 60 days. From the Office 365 admin center, what should you view?
the Mail protection reports
Your company has an Office 365 subscription. The network contains an Active Directory domain. You configure single sign-on for all users. You need to verify that single sign-on functions for the users who access Office 365 from the Internet. What should you run?
the Microsoft Remote Connectivity Analyzer