MD-100 Study Questions
"A user has a computer that runs Windows 10. When the user connects the computer to the corporate network, the user cannot access the internal corporate servers. The user can access servers on the Internet. You run the ipconfig command and receive the following output. You send a ping request and successfully ping the default gateway, the DNS servers, and the DHCP server. Which configuration on the computer causes the issue? A. the DNS servers B. the IPv4 address C. the subnet mask D. the default gateway address"
A
"A user named User1 has a computer named Computer1 that runs Windows 10. Computer1 is joined to an Azure Active Directory (Azure AD) tenant named contoso.com. User1 joins Computer1 to contoso.com by using [email protected]. Computer1 contains a folder named Folder1. Folder1 is in drive C and is shared as Share1. Share1 has the permission shown in the following table. Group Share-Permission Everyone Full-Control AzureAD\[email protected] Owner A user named User2 has a computer named Computer2 that runs Windows 10. User2 joins Computer2 to contoso.com by using [email protected]. User2 attempts to access Share1 and receives the following error message: ""The username or password is incorrect."" You need to ensure that User2 can connect to Share1. Solution: In Azure AD, you create a group named Group1 that contains User1 and User2. You grant Group1 Modify access to Folder1. Does this meet the goal? A. Yes B. No"
A
"You deploy Windows 10 to a computer named Computer1. Computer1 contains a folder named C:\Folder1. Folder1 contains multiple documents. You need to ensure that you can recover the files in Folder1 by using the Previous Versions tab. Solution: You enable File History and add Folder1 in the Documents library. Does this meet the goal? A. Yes B. No"
A
"You discover that a user used the Service1 account to sign in to Computer1 and deleted some files. You need to ensure that the identity used by Application1 cannot be used by a user to sign in to sign in to the desktop on Computer1. The solution must use the principle of least privilege. Solution: On Computer1, you assign Service1 the deny log on as a service user right. Does this meet the goal? A. Yes B. No"
A
"You have 15 computers that run Windows 10. Each computer has two network interfaces named Interface1 and Interface2. You need to ensure that network traffic uses Interface1, unless Interface1 is unavailable. What should you do? A. Run the Set-NetIPInterface InterfaceAlias Interface1 InterfaceMetric 1 command. B. Run the Set-NetAdapterBinding Name Interface2 Enabled $true ComponentID ms_tcpip ThrottleLimit 0 command. C. Set a static IP address on Interface 1. D. From Network Connections in Control Pane, modify the Provider Order."
A
"You have a computer named Computer1 that runs Windows 10 and has an application named App1. You need to use Performance Monitor to collect data about the processor utilization of App1. Which performance object should you monitor? A. Process B. Processor Performance C. Processor Information D. Processor"
A
"You have a computer named LON-CL1.Adatum.com that runs Windows 10. From Event Viewer, you create a custom view named View1 that has the following filter: User: User1 Logged: Any time Event logs: System Computer: LON-CL1 Event IDs: 10000 11000 Event level: Error, Verbose You open Event Viewer and discover the event shown in the exhibit. (Click the Exhibit tab.) The event does not appear in View1. You need to ensure that the event appears in View1. What should you do? A. Add a Task Category setting to the filter. B. Add the computer account to the Event Log Readers group. C. Create an event subscription. D. Modify the Computer setting in the filter."
A
"You have a computer that runs Windows 8.1. When you attempt to perform an in-place upgrade to Windows 10, the computer fails to start after the first restart. You need to view the setup logs on the computer. Which folder contains the logs? A. \$Windows.~BT\Sources\Panther\ B. \Windows\Logs C. \Windows\Temp D. \$Windows.~BT\Inf"
A
"You have a laptop named Computer1 that runs Windows 10. When in range, Computer1 connects automatically to a Wi-Fi network named Wireless1. You need to prevent Computer1 from automatically connecting to Wireless1. Solution: From a command prompt, you run netsh wlan delete profile name=""Wireless1"". Does this meet the goal? A. Yes B. No"
A
"You manage devices that run Windows 10. Ten sales users will travel to a location that has limited bandwidth that is expensive. The sales users will be at the location for three weeks. You need to prevent all Windows updates from downloading for the duration of the trip. The solution must not prevent access to email and the Internet. Solution: From Network Internet in the Settings app, you set the network connections as metered connections. Does this meet the goal? A. Yes B. No"
A
"You need to sign in as LocalAdmin on Computer11. What should you do first? A. From the LAPS UI tool, view the administrator account password for the computer object of Computer11. B. From Windows Configuration Designer, create a configuration package that sets the password of the LocalAdmin account on Computer11. C. Use a Group Policy object (GPO) to set the local administrator password. D. From Microsoft Intune, set the password of the LocalAdmin account on Computer11."
A
"You need to take remote control of an employee's computer to troubleshoot an issue. What should you send to the employee to initiate a remote session? A. a numeric security code B. a connection file C. an Easy Connect request D. a password"
A
"You plan to deploy Windows 10 to 100 secure computers. You need to select a version of Windows 10 that meets the following requirements: Uses Microsoft Edge as the default browser Minimizes the attack surface on the computer Supports joining Microsoft Azure Active Directory (Azure AD) Only allows the installation of applications from the Microsoft Store What is the best version to achieve the goal? More than one answer choice may achieve the goal. Select the BEST answer. A. Windows 10 Pro in S mode B. Windows 10 Home in S mode C. Windows 10 Pro D. Windows 10 Enterprise"
A
"Your company purchases 20 laptops that use a new hardware platform. In a test environment, you deploy Windows 10 to the new laptops. Some laptops frequently generate stop errors. You need to identify the cause of the issue. What should you use? A. Reliability Monitor B. Task Manager C. System Configuration D. Performance Monitor"
A
"Your network contains an Active Directory domain named contoso.com. The domain contains two computers named Computer1 and Computer2 that run Windows 10. On Computer1, you need to run the Invoke-Command cmdlet to execute several PowerShell commands on Computer2. What should you do first? A. On Computer2, run the Enable-PSRemoting cmdlet B. From Active Directory, configure the Trusted for Delegation setting for the computer account of Computer2 C. On Computer1, run the New-PSSession cmdlet D. On Computer2, add Computer1 to the Remote Management Users group"
A
"Your network contains an Active Directory domain that is synced to a Microsoft Azure Active Directory (Azure AD) tenant. Your company purchases a Microsoft 365 subscription. You need to migrate the Documents folder of users to Microsoft OneDrive for Business. What should you configure? A. One Drive Group Policy settings B. roaming user profiles C. Enterprise State Roaming D. Folder Redirection Group Policy settings"
A
"Your network contains an Active Directory domain. The domain contains a computer named Computer1 that runs Windows 10. You need to view the settings to Computer1 by Group Policy objects (GPOs) in the domain and local Group Policies. Which command should you run? A. gpresult B. secedit C. gpupdate D. gpfixup"
A
"Your company uses Microsoft Deployment Toolkit (MDT) to deploy Windows 10 to new computers. The company purchases 1,000 new computers. You need to ensure that the Hyper-V feature is enabled on the computers during the deployment. What are two possible ways to achieve the goal? Each answer presents part of the solution. NOTE: Each selection is worth one point. A. Add a task sequence step that adds a provisioning package. B. In a Group Policy object (GPO), from Computer Configuration, configure Application Control Policies. C. Add a custom command to the Unattend.xml file. D. Add a configuration setting to Windows Deployment Services (WDS). E. Add a task sequence step that runs dism.exe."
AC
"You have 200 computers that run Windows 10 and are joined to an Active Directory domain. You need to enable Windows Remote Management (WinRM) on all the computers by using Group Policy. Which three actions should you perform? Each answer presents part of the solution. NOTE: Each selection is worth one point. A. Set the Startup Type of the Windows Remote Management (WS-Management) service to Automatic. B. Enable the Windows Firewall: Allow inbound remote administration exception setting. C. Enable the Allow remote server management through WinRM setting. D. Enable the Windows Firewall: Allow inbound Remote Desktop exceptions setting. E. Enable the Allow Remote Shell access setting. F. Set the Startup Type of the Remote Registry service to Automatic."
ACD
"Your network contains an Active Directory domain. The domain contains 10 computers that run Windows 10. On a different computer named Computer1, you plan to create a collector-initiated subscription to gather the event logs from the Windows 10 computers. You need to configure the environment to support the event log collection. Which two actions should you perform? Each answer presents part of the solution. NOTE: Each selection is worth one point. A. Add Computer1 to the Event Log Readers group on the Windows 10 computers B. Add Computer1 to the Event Log Readers group on Computer1 C. On the Windows 10 computers, change the Startup Type of Windows Event Collector to Automatic D. Enable Windows Remote Management (WinRM) on the Windows 10 computers E. Enable Windows Remote Management (WinRM) on Computer1"
AD
"Which three user profiles will persist after each user signs out? Each answer presents part of the solution. NOTE: Each selection is worth one point. A. User1 B. User2 C. User3 D. User4 E. User5"
ADE
"You discover that a user used the Service1 account to sign in to Computer1 and deleted some files. You need to ensure that the identity used by Application1 cannot be used by a user to sign in to sign in to the desktop on Computer1. The solution must use the principle of least privilege. Solution: On Computer1, you assign Service1 the deny log on locally user right. Does this meet the goal? A. Yes B. No"
B
"You have a Microsoft Azure Active Directory (Azure AD) tenant. Some users sign in to their computer by using Windows Hello for Business. A user named User1 purchases a new computer and joins the computer to Azure AD. User1 attempts to configure the sign-in options and receives the error message shown in the exhibit. You open Device Manager and confirm that all the hardware works correctly. You need to ensure that User1 can use Windows Hello for Business facial recognition to sign in to the computer. What should you do first? A. Purchase an infrared (IR) camera. B. Upgrade the computer to Windows 10 Enterprise. C. Enable UEFI Secure Boot. D. Install a virtual TPM driver."
B
"A user named User1 has a computer named Computer1 that runs Windows 10. User1 connects to a Microsoft Azure virtual machine named VM1 by using Remote Desktop. User1 creates a VPN connection named VPN1 to connect to a partner organization. When the VPN1 connection is established, User1 cannot connect to VM1. When User1 disconnects from the VPN1, the user can connect to VM1. You need to ensure that User1 can connect to VM1 while connected to the VPN1. What should you do? A. From the proxy settings, add the IP address of VM1 to the bypass list to bypass the proxy. B. From the properties of VPN1, clear the Use default gateway on remote network check box. C. From the properties of the Remote Desktop connection to VM1, specify a Remote Desktop Gateway (RD Gateway). D. From the properties of VPN1, configure a static default gateway address."
B
"A user named User1 has a computer named Computer1 that runs Windows 10. Computer1 is joined to an Azure Active Directory (Azure AD) tenant named contoso.com. User1 joins Computer1 to contoso.com by using [email protected]. Computer1 contains a folder named Folder1. Folder1 is in drive C and is shared as Share1. Share1 has the permission shown in the following table. Group Share-Permission Everyone Full-Control AzureAD\[email protected] Owner A user named User2 has a computer named Computer2 that runs Windows 10. User2 joins Computer2 to contoso.com by using [email protected]. User2 attempts to access Share1 and receives the following error message: ""The username or password is incorrect."" You need to ensure that User2 can connect to Share1. Solution: In Azure AD, you create a group named Group1 that contains User1 and User2. You grant Group1 Change access to Share1. Does this meet the goal? A. Yes B. No"
B
"A user named User2 has a computer named Computer2 that runs Windows 10. User2 joins Computer2 to contoso.com by using [email protected]. Computer1 contains a folder named Folder1. Folder1 is in drive C and is shared as Share1. Share1 has the permission shown in the following table. Group Share-Permission Everyone Full-Control AzureAD\[email protected] Owner A user named User2 has a computer named Computer2 that runs Windows 10. User2 joins Computer2 to contoso.com by using [email protected]. User2 attempts to access Share1 and receives the following error message: ""The username or password is incorrect."" You need to ensure that User2 can connect to Share1. Solution: You create a local group on Computer1 and add the Guest account to the group. You grant the group Modify access to Share1. Does this meet the goal? A. Yes B. No"
B
"A user named User2 has a computer named Computer2 that runs Windows 10. User2 joins Computer2 to contoso.com by using [email protected]. Computer1 contains a folder named Folder1. Folder1 is in drive C and is shared as Share1. Share1 has the permission shown in the following table. Group Share-Permission Everyone Full-Control AzureAD\[email protected] Owner A user named User2 has a computer named Computer2 that runs Windows 10. User2 joins Computer2 to contoso.com by using [email protected]. User2 attempts to access Share1 and receives the following error message: ""The username or password is incorrect."" You need to ensure that User2 can connect to Share1. Solution: You create a local user account on Computer1 and instruct User2 to use the local account to connect to Share1. Does this meet the goal? A. Yes B. No "
B
"Quality update installations must be deferred as long as possible on ComputerA. Users in the IT department must use dynamic look on their primary device. User6 must be able to connect to Computer2 by using Remote Desktop. The principle of least privilege must be used whenever possible. Administrative effort must be minimized whenever possible. Assigned access must be configured on Computer1. Q52 You need to meet the quality update requirement for ComputerA. For how long should you defer the updates? A. 14 days B. 10 years C. 5 years D. 180 days E. 30 days"
B
"User6 must be able to connect to Computer2 by using Remote Desktop. The principle of least privilege must be used whenever possible. Administrative effort must be minimized whenever possible. Assigned access must be configured on Computer1. Q35 You need to meet the technical requirement for User6. What should you do? A. Add User6 to the Remote Desktop Users group in the domain. B. Remove User6 from Group2 in the domain. C. Add User6 to the Remote Desktop Users group on Computer2. D. And User6 to the Administrators group on Computer2."
B
"You deploy Windows 10 to a computer named Computer1. Computer1 contains a folder named C:\Folder1. Folder1 contains multiple documents. You need to ensure that you can recover the files in Folder1 by using the Previous Versions tab. Solution: You set up Backup and Restore (Windows 7) and include Folder1 in the backup. Does this meet the goal? A. Yes B. No"
B
"You discover that a user used the Service1 account to sign in to Computer1 and deleted some files. You need to ensure that the identity used by Application1 cannot be used by a user to sign in to sign in to the desktop on Computer1. The solution must use the principle of least privilege. Solution: On Computer1, you configure Application1 to sign in as the LocalSystem account and select the Allow service to interact with desktop check box. You delete the Service1 account. Does this meet the goal? A. Yes B. No"
B
"You have a computer named Computer1 that runs Windows 10. On Computer1, you turn on File History. You need to protect a folder named D:\Folder1 by using File History. What should you do? A. From File Explorer, modify the Security settings of D:\Folder1 B. From File Explorer, add D:\Folder1 to the Documents library C. From the Settings app, configure the Recovery settings D. From File History in Control Panel, configure the Select drive settings"
B
"You have a computer named Computer1 that runs Windows 10. You complete a full back up of Computer1 to an external USB drive. You store the USB drive offsite. You delete several files from your personal Microsoft OneDrive account by using File Explorer, and then you empty the Recycle Bin on Computer1. You need to recover the files 60 days after you deleted them in the least amount of time possible. What should you use? A. the OneDrive recycle bin B. the full backup on the external USB drive C. Recovery in the Settings app"
B
"You have a computer named Computer1 that runs Windows 10. You test Windows updates on Computer1 before you make the updates available to other computers. You install a quality update that conflicts with a customer device driver. You need to remove the update from Computer1. Solution: From an elevated command prompt, you run the vmic qfe delete command. Does this meet the goal? A. Yes B. No"
B
"You have a computer named Computer1 that runs Windows 10. Computer1 belongs to a workgroup. You run the following commands on Computer1. New-LocalUser Name User1 NoPassword Add-LocalGroupMember User Member User1 What is the effect of the configurations? A. User1 is prevented from signing in until the user is assigned additional user rights. B. User1 appears on the sign-in screen and can sign in without a password. C. User1 is prevented from signing in until an administrator manually sets a password for the user. D. User1 appears on the sign-in screen and must set a new password on the first sign-in attempts."
B
"You have a computer named Computer1 that runs Windows 10. Computer1 connects to multiple wireless networks. You need to view the wireless networks to which Computer1 connects. What should you use? A. the System log in Event Viewer B. Wi-Fi in the Settings app C. the properties of the wireless adapter in Network Connections in Control Panel D. the Details tab for the wireless adapter in Device Manager"
B
"You have a computer that runs Windows 10 and is joined to Azure Active Directory (Azure AD). You attempt to open Control Panel and receive the error message shown on the following exhibit. You need to be able to access Control Panel. What should you modify? A. the PowerShell execution policy B. the Local Group Policy C. the Settings app D. a Group policy preference"
B
"You have a file named Reg1.reg that contains the following content. @=""notepad.exe"". What is the effect of importing the file? A. A key named command will be renamed as notepad.exe. B. In a key named Notepad, the command value will be set to @=""notepad.exe"". C. In a key named command, the default value will be set to notepad.exe."
B
"You have a laptop named Computer1 that runs Windows 10. When in range, Computer1 connects automatically to a Wi-Fi network named Wireless1. You need to prevent Computer1 from automatically connecting to Wireless1. Solution: From the Services console, you disable the Link-Layer Topology Discovery Mapper service. Does this meet the goal? A. Yes B. No"
B
"You have a laptop named Computer1 that runs Windows 10. When in range, Computer1 connects automatically to a Wi-Fi network named Wireless1. You need to prevent Computer1 from automatically connecting to Wireless1. Solution: From the properties of the Wi-Fi adapter, you disable Link-Layer Topology Discovery Responder. Does this meet the goal? A. Yes B. No"
B
"You have a public computer named Computer1 that runs Windows 10/ Computer1 contains a folder named Folder1. You need to provide a user named User1 with the ability to modify the permissions of Folder1. The solution must use the principle of least privilege. Which NTFS permission should you assign to User1? A. Full control B. Modify C. Write D. Read Execute
B
"You have an Azure Active Directory (Azure AD) tenant that contains a user named [email protected]. You have a computer named Computer1 that runs Windows 10. You join Computer1 to Azure AD. You enable Remote Desktop on Computer1. [email protected] attempts to connect to Computer1 by using Remote Desktop and receives the following error message: ""The logon attempt failed."" You need to ensure that the user can connect to Computer1 by using Remote Desktop. What should you do first? A. In Azure AD, assign [email protected] the Cloud device administrator role. B. From the local Group Policy, modify the Allow log on through Remote Desktop Services user right. C. In Azure AD, assign [email protected] the Security administrator role. D. On Computer1, create a local user and add the new user to the Remote Desktop Users group."
B
"You have several computers that run Windows 10. The computers are in a workgroup and have BitLocker Drive Encryption (BitLocker) enabled. You join the computers to Microsoft Azure Active Directory (Azure AD). You need to ensure that you can recover the BitLocker recovery key for the computers from Azure AD. What should you do first? A. Disable BitLocker. B. Add a BitLocker key protector. C. Suspend BitLocker. D. Disable the TMP chip."
B
"You manage devices that run Windows 10. Ten sales users will travel to a location that has limited bandwidth that is expensive. The sales users will be at the location for three weeks. You need to prevent all Windows updates from downloading for the duration of the trip. The solution must not prevent access to email and the Internet. Solution: From Network Internet in the Settings app, you set a data limit. Does this meet the goal? A. Yes B. No"
B
"You manage devices that run Windows 10. Ten sales users will travel to a location that has limited bandwidth that is expensive. The sales users will be at the location for three weeks. You need to prevent all Windows updates from downloading for the duration of the trip. The solution must not prevent access to email and the Internet. Solution: From Update Security in the Settings app, you turn on Pause Updates. Does this meet the goal? A. Yes B. No"
B
"Your network contains an Active Directory domain named contoso.com. A user named User1 has a personal computer named Computer1 that runs Windows 10 Pro. User1 has a VPN connection to the corporate network. You need to ensure that when User1 connects to the VPN, network traffic uses a proxy server located in the corporate network. The solution must ensure that User1 can access the Internet when disconnected from the VPN. What should you do? A. From Control Panel, modify the Windows Defender Firewall settings B. From the Setting app, modify the Proxy settings for the local computer C. From Control Panel, modify the properties of the VPN connection D. From the Settings app, modify the properties of the VPN connection"
B
"Your network contains an Active Directory domain. The domain contains a user named User1. User1 creates a Microsoft account. User1 needs to sign in to cloud resources by using the Microsoft account without being prompted for credentials. Which settings should User1 configure? A. User Accounts in Control Panel B. Email app accounts in the Settings app C. Users in Computer Management D. Users in Active Directory Users and Computers
B
"You have a computer named Computer1 that runs Windows 10. Computer1 contains a folder named Folder1. You need to log any users who take ownership of the files in Folder1. Which two actions should you perform? Each answer presents part of the solution. NOTE: Each selection is worth one point. A. Modify the folder attributes of Folder1. B. Modify the Advanced Security Settings for Folder1. C. From a Group Policy object (GPO), configure the Audit Sensitive Privilege Use setting. D. From a Group Policy object (GPO), configure the Audit File System setting. E. Install the Remote Server Administration Tools (RSAT)."
BD
"You have several computers that run Windows 10. The computers are in a workgroup. You need to prevent users from using Microsoft Store apps on their computer. What are two possible ways to achieve the goal? Each answer presents part of the solution. NOTE: Each selection is worth one point. A. From Security Settings in the local Group Policy, configure Security Options. B. From Administrative Templates in the local Group Policy, configure the Store settings. C. From Security Settings in the local Group Policy, configure Software Restriction Policies. D. From Security Settings in the local Group Policy, configure Application Control Policies."
BD
"Your network contains an Active Directory domain named contoso.com. The domain contains named Computer1 that runs Windows 10. On Computer1, you create an NTFS folder and assign Full control permissions to Everyone. You share the folder as Share1 and assign the permissions shown in the following table. Name Permission User1 Full Control User2 Change When accessing Share1, which two actions can be performed by User1 but not by User2? Each answer presents part of the solution. NOTE: Each selection is worth one point. A. Delete a file created by another user. B. Set the permissions for a file. C. Rename a file created by another user. D. Take ownership of file. E. Copy a file created by another user to a subfolder."
BD
" "You have a computer that is configured as shown in the following exhibit. What can the computer connect to? A. all the local computers and the remote computers within your corporate network only B. all the local computers and the remote computers, including Internet hosts C. only other computers on the same network segment that have automatic private IP addressing (APIPA) D. only other computers on the same network segment that have an address from a class A network ID"
C
" "Your company has a main office and a branch office. The offices connect to each other by using a WAN link. Access to the Internet is provided through the main office. The branch office contains 25 computers that run Windows 10. The computers contain small hard drives that have very little free disk space. You need to prevent the computers in the branch office from downloading updates from peers on the network. What should you do? A. From the Settings app, modify the Delivery Optimizations settings. B. Configure the network connections as metered connections. C. Configure the computers to use BranchCache in hosted cache mode. D. Configure the updates to use the Semi-Annual Channel (Targeted) channel."
C
"An employee reports that she must perform a BitLocker recovery on her laptop. The employee does not have her BitLocker recovery key but does have a Windows 10 desktop computer. What should you instruct the employee to do from the desktop computer? A. Run the manage-bde.exe status command B. From BitLocker Recovery Password Viewer, view the computer object of the laptop C. Go to https://account.activedirectory.windowsazure.com and view the user account profile D. Run the Enable-BitLockerAutoUnlock cmdlet"
C
"You deploy 100 computers that run Windows 10. Each computer has a cellular connection and a Wi-Fi connection. You need to prevent the computers from using the cellular connection unless a user manually connects to the cellular network. What should you do? A. Set the Use cellular instead of Wi-Fi setting for the cellular connection to Never B. Run the netsh wlan set hostednetwork mode=disallow command C. Clear the Let Windows manage this connection check box for the cellular connection D. Select the Let Windows manage this connection check box for the Wi-Fi connection"
C
"You have 20 computers that run Windows 10. The computers are in a workgroup. You need to create a local user named Admin1 on all the computers. Admin1 must be a member of the Remote Management Users group. What should you do? A. From Windows Configuration Designer, create a provisioning package, and then run the provisioning package on each computer. B. Create a script that runs the New-ADUser cmdlet and the Set-AdGroup cmdlet. C. Create a Group Policy object (GPO) that contains the Local User Group Policy preference. D. Create a script that runs the New-MsolUser cmdlet and the Add-ADComputerServiceAccount cmdlet."
C
"You have a computer named Computer1 that runs Windows 10. You need to configure User Account Control (UAC) to prompt administrators for their credentials. Which settings should you modify? A. Administrators Properties in Local Users and Groups B. User Account Control Settings in Control Panel C. Security Options in Local Group Policy Editor D. User Rights Assignment in Local Group Policy Editor"
C
"You have a computer named Computer1 that runs Windows 10. You need to prevent standard users from changing the wireless network settings on Computer1. The solution must allow administrators to modify the wireless network settings. What should you use? A. Windows Configuration Designer B. MSConfig C. Local Group Policy Editor D. an MMC console that has the Group Policy Object Editor snap-in"
C
"You have a computer that runs Windows 10. You can start the computer but cannot sign in. You need to start the computer into the Windows Recovery Environment (WinRE). What should you do? A. Turn off the computer. Turn on the computer, and then press F8. B. Turn off the computer. Turn on the computer, and then press F10. C. From the sign-in screen, hold the Shift key, and then click Restart. D. Hold Alt+Ctrl+Delete for 10 seconds.
C
"You have a computer that runs Windows 10. You discover that Windows updates are failing to install on the computer. You need to generate a log file that contains detailed information about the failures. Which cmdlet should you run? A. GetLogProperties B. GetWindowsErrorReporting C. GetWindowsUpdateLog D. GetWinEvent"
C
"Your network contains an Active Directory domain. The domain contains computers that run Windows 10. You need to provide a user with the ability to remotely create and modify shares on the computers. The solution must use the principle of least privilege. To which group should you add the user? A. Power Users B. Remote Management Users C. Administrators D. Network Configuration Operators"
C
"You have several computers that run Windows 10. All users have Microsoft OneDrive for Business installed. Users frequently save files to their desktop. You need to ensure that all the users can recover the files on their desktop from OneDrive for Business. Which two actions should you perform? Each answer presents part of the solution. NOTE: Each selection is worth one point. A. Copy ADMX and ADML files to C:\Users\PublicDesktop\ B. From Backup in the Settings app, add a drive C. Configure the Silently move Windows known folders to OneDrive settings D. Copy ADMX and ADML files to C:\Windows\PolicyDefinitions E. Configure the Save documents to OneDrive by default setting"
CD
"You have three computers that run Windows 10 as shown in the following table. All the computers have C and D volumes. The Require additional authentication at startup Group Policy settings is disabled on all the computers. Which volumes can you encrypt by using BitLocker Drive Encryption (BitLocker)? To answer, select the appropriate options in the answer area."
Computer 2 and Computer 3 Only
"You are a network administrator at your company. The company uses an application that checks for network connectivity to a server by sending a ping request to the IPv6 address of the server replies, the application loads. A user cannot open the application. You manually send the ping request from the computer of the user and the server does not reply. You send the ping request from your computer and the server replies. You need to ensure that the ping request works from the user's computer. Which Windows Defender firewall rule is a possible cause of the issue? A. File and Printer Sharing (NB-Datagram-In) B. File and Printer Sharing (Echo request ICMPv6-Out) C. File and Printer Sharing (NB-Datagram-Out) D. File and Printer Sharing (Echo Request ICMPv6-In)"
D
"You have 10 computers that run Windows 10 and have BitLocker Drive Encryption (BitLocker) enabled. You plan to update the firmware of the computers. You need to ensure that you are not prompted for the BitLocker recovery key on the next restart. The drive must be protected by BitLocker on subsequent restarts. Which cmdlet should you run? A. Unlock-BitLocker B. Disable-BitLocker C. Add-BitLockerKeyProtector D. Suspend-BitLocker"
D
"You have a computer that runs Windows 10 and has BitLocker Drive Encryption (BitLocker) enabled on all volumes. You start the computer from Windows Recovery Environment (WinRE). You need to read the data on the system drive. What should you do? A. Run cipher.exe and specify the /rekey parameter B. Run cipher.exe and specify the /adduser parameter C. Run manange-bde.exe and specify the -off parameter D. Run manage-bde.exe and specify the -unlock parameter"
D
"You need to meet the technical requirement for the IT department users. What should you do first? A. Issue computer certificates B. Distribute USB keys to the IT department users. C. Enable screen saver and configure a timeout. D. Turn on Bluetooth."
D
"You need to recommend a solution to configure the employee VPN connections. What should you include in the recommendation? A. Remote Access Management Console B. Group Policy Management Console (GPMC) C. Connection Manager Administration Kit (CMAK) D. Microsoft Intune "
D
"Your network contains an Active Directory domain. The domain contains 1,000 computers that run Windows 10. You discover that when users are on their lock screen, they see a different background image every day, along with tips for using different features in Windows 10. You need to disable the tips and the daily background image for all the Windows 10 computers. Which Group Policy settings should you modify? A. Turn off the Windows Welcome Experience B. Turn off Windows Spotlight on Settings C. Do not suggest third-party content in Windows spotlight D. Turn off all Windows spotlight features"
D
"Your network contains an Active Directory domain. The domain contains 10 computers that run Windows 10. Users in the finance department use the computers. You have a computer named Computer1 that runs Windows 10. From Computer1, you plan to run a script that executes Windows PowerShell commands on the finance department computers. You need to ensure that you can run the PowerShell commands on the finance department from Computer1. What should you do on the finance department computers? A. From the local Group Policy, enable the Allow Remote Shell Access setting. B. From the local Group Policy, enable the Turn on Script Execution setting. C. From the Windows PowerShell, run the Enable-MMAgent cmdlet. D. From the Windows PowerShell, run the Enable-PSRemoting cmdlet."
D
"Your network contains an Active Directory domain. The domain contains a user named Admin1. All computers run Windows 10. You enable Windows PowerShell remoting on the computers. You need to ensure that Admin1 can establish remote PowerShell connections to the computers. The solution must use the principle of least privilege. To which group should you add Admin1? A. Access Control Assistance Operators B. Power Users C. Remote Desktop Users D. Remote Management Users"
D
"You enable Windows PowerShell remoting on a computer that runs Windows 10. You need to limit which PowerShell cmdlets can be used in a remote session. Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the order." "
New-PSSessionConfigurationFile Register-PSSessionConfiguration New-PSSession
"You have a computer named Computer1 that runs Windows 10. Computer1 has the local users shown in the following table. NAME MEMBER-OF User1 Administrators User2 Event Log Readers User3 Device Owners User4 Power Users User5 Users Which users can analyze the event logs on Computer1? To answer, select the appropriate options in the answer area." "
Users who can analyze security event logs: User1 and User2 Only Users who can analyze system event logs: User1, User2, User3, User4, and User5