Microsoft MD-101 Deluxe Study Guide with Online Test Engine
MD-101 dumps review - Professional Quiz Study Materials
Microsoft MD-101: Exam topics and subtopics
The exam covers different domains and each of them has subtopics, which you need to master as well. Thus, it is important to know the content of the test in detail. The sections of the Microsoft MD-101 exam content include the following:
- Manage Apps and Data (10-15%)
This objective has the smallest amount of questions that you will face with during the exam. It covers two main subtopics, which include deploying and updating apps as well as implementing Mobile Application Management. This means that you should have the relevant skills in deploying apps by using Intune or Microsoft Store for Business, deploying Microsoft 365 Apps for Enterprise, configuring kiosk and implementing it, and managing MAM policies.
- Deploy and Update Operating Systems (35-40%)
This domain has the highest percentage of appearing in the Microsoft MD-101 exam. This means that most of the 40-60 questions will represent this section. It covers a wide range of skills, including the upgrade of devices to Windows 10, management of updates, implementation of Windows 10 by using Windows Autopilot, management of device authentication, as well as implementation of Windows 10 by using dynamic deployment. These tasks include your full understanding of how to pilot deployment, identify downgrade and upgrade paths, perform Azure AD join, migrate user profiles, and configure an environment of Desktop Analytics. You have to know the details of managing and troubleshooting provisioning packages as well. Your skills in managing sign-on options and implementing feature updates are also important.
- Manage and Protect Devices (20-25%)
This topic covers the details of how to manage Intune device enrollment and inventory, monitor devices, and manage Windows Defender. These skills include the way of how you enroll non-Windows or Windows devices as well as your ability to integrate Windows Defender Application Control and your knowledge of how to work with Windows Defender extensions.
- Manage Profiles and Policies (25-30%)
In this area, you will be evaluated on the skills, including implementation of conditional access and compliance policies for devices, planning of co-management, management of user profiles, and configuration of device profiles. Therefore, you need to know how to perform the migration of group policy to MDM policies, configure Enterprise State Roaming in Azure AD, and implement device profiles. It is also important to understand the idea of recommending a co-management strategy, implementing Folder Redirection, and managing conditional access policies.
MD-101 Exam Objectives and Skills Tested
The Microsoft MD-101 exam comes with the following objectives:
- Deploy & Update Operating Systems;
- Manage and protect devices;
- Manage Apps & Data.
- Administer polices and profiles;
All these are the exam domains that impart the latest and most vital information. For instance, the first domain, Deploy & Update Operating Systems, has a strong focus on the dynamic deployment of Windows 10. During the preparation phase, candidates will learn about how to evaluate and select the deployment options, troubleshoot provisioning packages, and work with Endpoint Manager.
Extensive knowledge about Windows Autopilot, Azure AD join, Windows 10 delivery optimization, Windows update configuration, user profile migration are also included in this section. These and other subtopics require one to understand the upgrade management and device authentication.
The second section covers 20-25% of the exam and teaches about end-to-end Windows Defender management. The successful candidates will be able to understand what it takes to implement and administer end-to-end Windows Defender Application Guard and implement Windows Defender Credential Guard. Skills associated with Microsoft Defender Advanced Threat Protection are also well-covered. In addition, applicants should be experienced in using Windows Defender Antivirus along with Windows Defender Exploit Guard. One more theme involved in this section focuses on one's ability to fully integrate Windows Defender Application Control. The other concepts included are monitoring of security and health of devices and generating inventory reports as well as setting up and managing device enrollment.
Configuring, planning, and implementing device compliance policies will be extensively covered in the third objective of the exam. The candidate will learn about migrating groups, configuring device and user profiles, and managing device policies. This section also involves the implementation of co-management, choosing the right strategy for it, using Enterprise State Roaming, and others.
The fourth and the last domain covers about 10-15% portion of MD-101 exam and talks about deployment and updating applications. It teaches about app assigned to the groups, utilizing Intune and Microsoft Store for Business, and Mobile Application Management implementation. All the key skills needed for Windows Information Protection configuration and management as well as the implementation of MAM policies are also covered in this section.
NEW QUESTION 131
Your company uses Microsoft Intune to manage Windows 10, Android, and iOS devices.
Several users purchase new iPads and Android devices.
You need to tell the users how to enroll their device in Intune.
What should you instruct the users to use for each device? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation
The Intune Company Portal app is used to enroll Android, iOS, macOS, and Windows devices References:
https://docs.microsoft.com/en-us/intune-user-help/enroll-device-android-company-portal
https://docs.microsoft.com/en-us/intune-user-help/enroll-your-device-in-intune-ios
https://docs.microsoft.com/en-us/intune-user-help/enroll-your-device-in-intune-macos-cp
NEW QUESTION 132
You have 100 computers that run Windows 10. The computers are joined to Microsoft Azure Active Directory (Azure AD) and enrolled in Microsoft Intune.
You need to configure the following device restrictions:
Block users from browsing to suspicious websites.
Scan all scripts loaded into Microsoft Edge.
Which two settings should you configure in Device restrictions? To answer, select the appropriate settings in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Reference:
https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-smartscreen/windows-defender-smartscreen-overview
NEW QUESTION 133
Your company has a computer named Computer1 that runs Windows 10 Pro.
The company develops a proprietary Universal Windows Platform (UWP) app named App1. App1 is signed with a certificate from a trusted certification authority (CA).
You need to sideload App1 to Computer1.
What should you do? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Reference:
https://www.windowscentral.com/how-enable-windows-10-sideload-apps-outside-store
https://docs.microsoft.com/en-us/windows/application-management/sideload-apps-in-windows-10
NEW QUESTION 134
You need to resolve the performance issues in the Los Angeles office.
How should you configure the update settings? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Reference:
https://docs.microsoft.com/en-us/windows/deployment/update/waas-delivery-optimization
https://2pintsoftware.com/delivery-optimization-dl-mode/
NEW QUESTION 135
Your network contains an Active Directory domain named contoso.com that syncs to Azure Active Directory (Azure AD). The domain contains computers that run Windows 10. The computers are configured as shown in the following table.
All the computers are enrolled in Microsoft Intune.
You configure the following Maintenance Scheduler settings in the Default Domain Policy:
Turn off auto-restart for updates during active hours: Enabled
Active hours start: 08:00
Active hours end: 22:00
In Intune, you create a device configuration profile named Profile1 that has the following OMA-URI settings:
./Device/Vendor/MSFT/Policy/Config/ControlPolicyConflict/MDMWinsOverGP set to value 1
./Device/Vendor/MSFT/Policy/Config/Update/ActiveHoursStart set to value 9
./Device/Vendor/MSFT/Policy/Config/Update/ActiveHoursEnd set to value 21 You assign Profile to Group1.
How are the active hours configured on Computer1 and Computer2? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Reference:
https://docs.microsoft.com/en-us/windows/client-management/mdm/policy-csp-controlpolicyconflict
NEW QUESTION 136
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your company uses Windows Update for Business.
The research department has several computers that have specialized hardware and software installed.
You need to prevent the video drivers from being updated automatically by using Windows Update.
Solution: From the Device Installation settings in a Group Policy object (GPO), you enable Specify search order for device driver source locations, and then you select Do not search Windows Update.
Does this meet the goal?
- A. Yes
- B. No
Answer: A
Explanation:
Explanation/Reference:
References:
https://www.stigviewer.com/stig/microsoft_windows_server_2012_member_server/2013-07-25/finding/WN12- CC-000024
NEW QUESTION 137
What should you upgrade before you can configure the environment to support co-management?
- A. the domain functional level
- B. Windows Server Update Services (WSUS)
- C. the domain controllers
- D. Configuration Manager
Answer: D
Explanation:
Explanation
References:
https://docs.microsoft.com/en-us/sccm/comanage/tutorial-co-manage-clients
NEW QUESTION 138
You need to recommend a solution to meet the device management requirements.
What should you include in the recommendation? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation
Reference:
https://github.com/MicrosoftDocs/IntuneDocs/blob/master/intune/app-protection-policy.md
https://docs.microsoft.com/en-us/azure/information-protection/configure-usage-rights#do-not-forward-option-for
NEW QUESTION 139
You need to meet the technical requirements for the LEG department computers.
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
Answer:
Explanation:
Reference:
https://docs.microsoft.com/en-us/windows/deployment/update/windows-analytics-azure-portal
NEW QUESTION 140
You have 500 computers that run Windows 10. The computers are joined to Microsoft Azure Active Directory (Azure AD) and enrolled in Microsoft Intune.
You plan to distribute certificates to the computers by using Simple Certificate Enrollment Protocol (SCEP).
You have the servers shown in the following table.
NDES issues certificates from the subordinate CA.
You are configuring a device profile as shown in the exhibit. (Click the Exhibit tab.) You need to complete the SCEP profile.
- A. Server1
- B. Server2
- C. Server3
- D. Server4
Answer: D
NEW QUESTION 141
You have the 64-bit computers shown in the following table.
You plan to perform an in-place upgrade to the 64-bit version of Windows 10.
Which computers can you upgrade to the 64-bit version of Windows 10 in their current state?
- A. Computer3 and Computer4 only
- B. Computer2 and Computer4 only
- C. Computer1, Computer2, Computer3 and Computer4
- D. Computer4 only
- E. Computer2, Computer3, and Computer4 only
Answer: B
Explanation:
Explanation/Reference:
References:
https://docs.microsoft.com/en-us/windows/deployment/windows-10-deployment-scenarios
NEW QUESTION 142
Hotspot Question
You have computers that run Windows 10 as shown in the following table.
Computer2 and Computer3 are enrolled in Microsoft Intune. In a Group Policy object (GPO) linked to the domain, you enable the Computer Configuration/Administrative Templates/Windows Components/Search/Allow Cortana setting. In an Intune device configuration profile, you configure the following:
- Device/Vendor/MSFT/Policy/Config/ControlPolicyConflict/MDMWinsOverGP
to a value of 1
- Experience/AllowCortana to a value of 0.
Each of the following statement, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation:
https://blogs.technet.microsoft.com/cbernier/2018/04/02/windows-10-group-policy-vs-intune- mdm-policy-who-wins/
NEW QUESTION 143
You have computers that run Windows 10 and are configured by using Windows AutoPilot.
A user performs the following tasks on a computer named Computer1:
* Creates a VPN connection to the corporate network
* Installs a Microsoft Store app named App1
* Connects to a Wi-Fi network
You perform a Windows AutoPilot Reset on Computer1.
What will be the state of the computer when the user signs in? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation
Reference:
https://docs.microsoft.com/en-us/windows/deployment/windows-autopilot/windows-autopilot-reset
NEW QUESTION 144
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your company uses Windows Update for Business.
The research department has several computers that have specialized hardware and software installed.
You need to prevent the video drivers from being updated automatically by using Windows Update.
Solution: From the Settings app, you clear the Give me updates for other Microsoft products when I update Windows check box.
Does this meet the goal?
- A. No
- B. Yes
Answer: A
Explanation:
Explanation
References:
https://www.stigviewer.com/stig/microsoft_windows_server_2012_member_server/2013-07-25/finding/WN12-C
NEW QUESTION 145
Your company has a Microsoft Azure Active Directory (Azure AD) tenant.
The company uses Microsoft Intune to manage iOS, Android, and Windows 10 devices.
The company plans to purchase 1,000 iOS devices. Each device will be assigned to a specific user.
You need to ensure that the new iOS devices are enrolled automatically in Intune when the assigned user signs in for the first time.
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
Answer:
Explanation:
Reference:
https://docs.microsoft.com/en-us/intune/device-enrollment-program-enroll-ios
NEW QUESTION 146
Your network contains an Active Directory domain that is synced to Microsoft Azure Active Directory (Azure AD). All computers are joined to the domain and registered to Azure AD.
The network contains a Microsoft System Center Configuration Manager (Current Batch) deployment that is configured for co-management with Microsoft Intune.
All the computers in the finance department are managed by using Configuration Manager. All the computers in the marketing department are managed by using Intune.
You install new computers for the users in the marketing department by using the Microsoft Deployment Toolkit (MDT).
You purchase an application named App1 that uses an MSI package.
You need to install App1 on the finance department computers and the marketing department computers.
How should you deploy App1 to each department? To answer, drag the appropriate deployment methods to the correct departments. Each deployment method may be used once, more than once, or not at all. You may need to drag the split bat between panes or scroll to view content.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Reference:
https://docs.microsoft.com/en-us/intune/apps-add
https://docs.microsoft.com/en-us/sccm/apps/get-started/create-and-deploy-an-application
NEW QUESTION 147
You need to assign the same deployment profile to all the computers that are configured by using Windows Autopilot.
Which two actions should you perform? Each correct answer presents part of the solution.
NOTE: each correct selection is worth one point.
- A. Create a Microsoft Azure Active Directory (Azure AD) group that has dynamic membership rules and uses the operatingSystem tag
- B. Create a Group Policy object (GPO) that is linked to a domain
- C. Assign a Windows AutoPilot deployment profile to a group
- D. Create a Microsoft Azure Active Directory (Azure AD) group that has dynamic membership rules and uses the ZTDID tag References:
https://www.petervanderwoude.nl/post/automatically-assign-windows-autopilot-deployment-profile-to-windowsautopilot-devices/ - E. Join the computers to Microsoft Azure Active Directory (Azure AD)
- F. Join the computers to an on-premises Active Directory domain
Answer: C,D
NEW QUESTION 148
Your network contains an Active Directory domain that is synced to Microsoft Azure Active Directory (Azure AD). All computers are joined to the domain and registered to Azure AD.
The network contains a Microsoft System Center Configuration Manager (Current Batch) deployment that is configured for co-management with Microsoft Intune.
All the computers in the finance department are managed by using Configuration Manager. All the computers in the marketing department are managed by using Intune.
You install new computers for the users in the marketing department by using the Microsoft Deployment Toolkit (MDT).
You purchase an application named App1 that uses an MSI package.
You need to install App1 on the finance department computers and the marketing department computers.
How should you deploy App1 to each department? To answer, drag the appropriate deployment methods to the correct departments. Each deployment method may be used once, more than once, or not at all. You may need to drag the split bat between panes or scroll to view content.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation
Reference:
https://docs.microsoft.com/en-us/intune/apps-add
https://docs.microsoft.com/en-us/sccm/apps/get-started/create-and-deploy-an-application
NEW QUESTION 149
Note: This question is part of a series of questions that present the same scenario. Each question
in the series contains a unique solution that might meet the stated goals. Some question sets
might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these
questions will not appear in the review screen.
Your company uses Windows Update for Business.
The research department has several computers that have specialized hardware and software installed.
You need to prevent the video drivers from being updated automatically by using Windows Update.
Solution: From the Device Installation and Restrictions settings in a Group Policy object (GPO), you
enable Prevent installation of devices using drivers that match these device setup classes, and then
you enter the device GUID.
Does this meet the goal?
- A. No
- B. Yes
Answer: A
Explanation:
Explanation/Reference:
References:
https://www.stigviewer.com/stig/microsoft_windows_server_2012_member_server/2013-07-25/finding/
WN12-CC-000024
NEW QUESTION 150
Your company has a Microsoft Azure Active Directory (Azure AD) tenant and computers that run Windows 10.
The company uses Microsoft Intune to manage the computers.
The Azure AD tenant has the users shown in the following table.
The device type restrictions in Intune are configured as shown in the following table:
User3 is a device enrollment manager (DEM) in Intune.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
References:
https://docs.microsoft.com/en-us/intune-user-help/enroll-your-device-in-intune-android
NEW QUESTION 151
......
Exam Questions Answers Braindumps MD-101 Exam Dumps PDF Questions: https://www.passtorrent.com/MD-101-latest-torrent.html
MD-101 Test Prep Training Practice Exam Questions Practice Tests: https://drive.google.com/open?id=1dgybgVdPSC8DE3faf5KlNbWwrikRUsKB