CIT 157 Module 2

Lakukan tugas rumah & ujian kamu dengan baik sekarang menggunakan Quizwiz!

Your company has a Microsoft Azure Active Directory (Azure AD) tenant. All users in the company are licensed for Microsoft Intune. You need to ensure that the users enroll their iOS device in Intune.What should you configure first?

A Device Enrollment Program (DEP) token.

Your network contains an Active Directory domain. The domain contains 2,000 computers that run Windows 10.You implement hybrid Microsoft Azure Active Directory (Azure AD) and Microsoft Intune.You need to automatically register all the existing computers to Azure AD and enroll the computers in Intune. The solution must minimize administrative effort.What should you use?

A Windows AutoPilot deployment profile.

You are the administrator for an organization that has 100 devices that run Windows 10 Pro. The devices are joined to Azure AD and enrolled in Microsoft Intune. You need to upgrade the computers to Windows 10 Enterprise. What should you configure in Intune?

A device configuration profile

Will has installed Windows 10 on his Windows XP computer. The machine is now a dual-boot computer. He has FAT32 for Windows XP and NTFS for Windows 10. In addition, he boots his computer to Windows XP Professional for testing an application's compatibility with both operating systems. Which of the following file systems will be seen by both operating systems?

Both the FAT32 partition and the NTFS partition will be seen by both operating systems.

You are creating a device configuration profile in Microsoft Intune. You need to implement an ADMX-backed policy. Which profile type should you use?

Custom

You have been asked by your boss to set up a device configuration profile in Intune to allow your users to be able to reset their own passwords. Which device configuration profile option should you configure in Microsoft Intune?

Custom

Your company uses Microsoft Intune to manage all devices. The company uses conditional access to restrict access to Microsoft 365 services for devices that do not comply with the company's security policies. You want to view which devices will be prevented from accessing Microsoft 365 services. What should you use?

Device compliance in the Intune admin center

You have 200 computers that run Windows 10. The computers are joined to Microsoft Azure Active Directory (AD) and enrolled in Microsoft Intune.You need to enable self-service password reset on the sign-in screen.Which settings should you configure from the Microsoft Intune blade?

Device configuration

You have 175 computers that run Windows 10. The computers are joined to Microsoft Azure Active Directory (AD) and enrolled in Microsoft Intune. You have been asked to enable self-service password reset on the sign-in screen. Which settings should you configure in Microsoft Intune?

Device enrollment

Your company uses Microsoft Intune. More than 500 Android and iOS devices are enrolled in the Intune tenant.You plan to deploy new Intune policies. Different policies will apply depending on the version of Android or iOS installed on the device.You need to ensure that the policies can target the devices based on their version of Android or iOS.What should you configure first?

Device settings in Microsoft Azure Active Directory (Azure AD)

Bruce frequently works with a large number of files. He is noticing that the larger the files get, the longer it takes to access them. He suspects that the problem is related to the files being spread over the disk. What utility can be used to store the files contiguously on the disk?

Disk Defragmenter

Paige is considering upgrading her basic disk to a dynamic disk on her Windows 10 computer. She asks you to help her understand the function of dynamic disks. Which of the following statements is true of dynamic disks in Windows 10?

Dynamic disks support features such as simple volumes, extended volumes, spanned volumes, mirrored volumes, and striped volumes.

You have a Microsoft 365 subscription. All computers are enrolled in Microsoft Intune. You have business requirements for securing your Windows 10 devices. You need to lock any device that has a high Windows Defender Advanced Threat Protection (Windows Defender ATP) risk score. Which device configuration profile type should you use?

Endpoint protection

You have a Microsoft 365 subscription. You have 10 computers that run Windows 10 and are enrolled in mobile device management (MDM). You need to deploy the Microsoft Office 365 ProPlus suite to all the computers. What should you do?

From Microsoft Azure Active Directory (Azure AD), add an enterprise application.

You have 100 devices that run Windows 10 and are joined to Microsoft Azure Active Directory (Azure AD). You need to prevent users from joining their home computer to Azure AD.What should you do?

From the Device enrollment blade in the Intune admin center, modify the Enrollment restriction settings.

You are the network administrator for a large training organization. Your organization plans to deploy Windows 10 tablets to 50 meeting rooms. These tablets will be managed by using Microsoft Intune. The tablets have an application named Storm1 that many users will use. You need to configure the Windows 10 tablets so that any user can use Storm1 without having to sign in. Users must not be able to use other applications on the tablets. Which device configuration profile type should you use?

Kiosk

Your company has a Microsoft 365 subscription. A new user named Admin1 is responsible for deploying Windows 10 to computers and joining the computers to Microsoft Azure Active Directory (Azure AD). Admin1 successfully joins computers to Azure AD.Several days later, Admin1 receives the following error message: "This user is not authorized to enroll. You can try to do this again or contact your system administrator with the error code (0x801c0003)."You need to ensure that Admin1 can join computers to Azure AD and follow the principle of least privilege.

Modify the Device settings in Azure AD.

Your network contains an Active Directory domain. The functional level of the forest and the domain is Windows Server 2012 R2. The domain contains 500 computers that run Windows 10. All the computers are managed by using Microsoft System Center 2012 R2 Configuration Manager.You need to enable co-management.What should you do first?

Upgrade Configuration Manager to Current Branch.

Your company has a Microsoft Azure Active Directory (Azure AD) tenant named contoso.com. All users have computers that run Windows 10. The computers are joined to Azure AD and managed by using Microsoft Intune.You need to ensure that you can centrally monitor the computers by using Windows Analytics.What should you create in Intune?

a device configuration profile

Your network contains an Active Directory domain that is synced to Microsoft Azure Active Directory (Azure AD). The domain contains 500 laptops that runWindows 8.1 Professional. The users of the laptops work from home.Your company uses Microsoft Intune, the Microsoft Deployment Toolkit (MDT), and Windows Configuration Designer to manage client computers.The company purchases 500 licenses for Windows 10 Enterprise.You verify that the hardware and applications on the laptops are compatible with Windows 10.The users will bring their laptop to the office, where the IT department will deploy Windows 10 to the laptops while the users wait.You need to recommend a deployment method for the laptops that will retain their installed applications. The solution must minimize how long it takes to perform the deployment.What should you include in the recommendation?

an in-place upgrade


Set pelajaran terkait

Global Econ - Chapter 8 Application of the Cost of Taxation - Concordia College

View Set

Expert Witness Testimony and Report Writing

View Set

How to Read Literature Like a Professor

View Set

Ch 6-- Linear Momentum & Impulse

View Set

Unit 2 Terms: Introductory Python Vocabulary

View Set