[2021] MS-100 Answers MS-100 Free Demo Are Based On The Real Exam [Q153-Q170]

Share

[2021] MS-100 Answers MS-100 Free Demo Are Based On The Real Exam

MS-100 [Dec-2021 Newly Released] Exam Questions For You To Pass


Microsoft MS-100 Exam Syllabus Topics:

TopicDetails
Topic 1
  • Setup Microsoft 365 Tenancy and Subscription
  • Configure Subscription and Tenant Toles and Workload Settings
  • Plan and Create Tenant
Topic 2
  • Create & Manage Service Requests, Internal Service Health Response Plan
  • Monitor Service Health
Topic 3
  • Plan Migration of Users and Data
  • Identify Data to be Migrated and Method, Users and Mailboxes to be Migrated and Method
Topic 4
  • Manage Microsoft 365 Subscription and Tenant Health
  • Manage Service Health Alerts
Topic 5
  • Plan a Microsoft 365 implementation, On-Premises Infrastructure, Identity and Authentication Solution
Topic 6
  • Configure and Review Reports, Including BI, OMS, and Microsoft 365 Reporting
  • Schedule and Review Usage Metrics


What is covered in the Microsoft MS-100 exam?

When preparing for the exam, you must go through the certification webpage before you start your study. Thus, you will be informed about the newly updated topics and other details required for your preparation. Microsoft regularly revises the content of its tests to reflect the latest developments in the domains. Therefore, to avoid missing out on an important part of the topics, you should spend some time going through all the available details before choosing your study materials.

The Microsoft MS-100 test covers four domains. These are connected with the design and implementation of Microsoft 365 services, management of user identity and roles, planning of Office 365 workloads and applications, as well as management of access and authentication. You can find a comprehensive list of the subtopics of these areas on the official page. Please note that on September 24, 2020, the exam content was reviewed. Therefore, if you have been preparing with the subjects before this date, it is recommended that you go through the webpage to see the updated information.


Microsoft MS-100: Preparation Process

The Microsoft Learning Platform offers a wide range of resources to help the candidates prepare for the Microsoft MS-100 exam. The students who do not have a training budget can use free online tools while those who can afford to go through the instructor-led training also have the opportunity.

  • Instructor-Led Training

    The Microsoft 365 Identity & Services training course covers three core elements of the Microsoft 365 enterprise administration, including Microsoft 365 Tenant & Service Management, Microsoft 365 Identity Management, and Office 365 Management. Each aspect of the exam content is treated in detail within the course to help the candidates develop the practical skills as well as knowledge required to ace the test. The instructor-led training can be taken in a classroom or online.

  • Free Online Training

    This training tool offers a series of learning modules that the applicants can explore. For the Microsoft MS-100 exam, they can use the following learning paths:

    • Protect Identity & Access with Azure AD
    • Manage Identity & Access in Azure AD
    • Microsoft 365: Modernize Your Enterprise Deployments with Windows 10 & Microsoft 365 Apps
    • Stay Current with Windows 10 & Microsoft 365 Apps
    • Managing Your Enterprise Deployment with Microsoft 365

    Each of these learning paths has different modules that highlight the topics of the exam. Using these resources will help improve your performance and equip you with the skills required to get certified.

 

NEW QUESTION 153
Note This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You need to assign User2 the required roles to meet the security requirements.
Solution: From the Office 365 admin center, you assign User2 the Security Administrator role. From the Exchange admin center, you add User2 to the View-Only Management role.
Does this meet the goal?

  • A. Yes
  • B. NO

Answer: B

Explanation:
Explanation
* User2 must be able to view reports and schedule the email delivery of security and compliance reports.
The Security Administrator role can view reports but not schedule the email delivery of security and compliance reports.
The View-Only Organization Management role cannot schedule the email delivery of security and compliance reports.
Reference:
https://docs.microsoft.com/en-us/exchange/permissions-exo/permissions-exo

 

NEW QUESTION 154
Please wait while the virtual machine loads. Once loaded, you may proceed to the lab section. This may take a few minutes, and the wait time will not be deducted from your overall test time.
When the Next button is available, click it to access the lab section. In this section, you will perform a set of tasks in a live environment. While most functionality will be available to you as it would be in a live environment, some functionality (e.g., copy and paste, ability to navigate to external websites) will not be possible by design.
Scoring is based on the outcome of performing the tasks stated in the lab. In other words, it doesn't matter how you accomplish the task, if you successfully perform it, you will earn credit for that task.
Labs are not timed separately, and this exam may have more than one lab that you must complete. You can use as much time as you would like to complete each lab. But, you should manage your time appropriately to ensure that you are able to complete the lab(s) and all other sections of the exam in the time provided.
Please note that once you submit your work by clicking the Next button within a lab, you will NOT be able to return to the lab.
You may now click next to proceed to the lab.
Lab information
Use the following login credentials as needed:
To enter your username, place your cursor in the Sign in box and click on the username below.
To enter your password, place your cursor in the Enter password box and click on the password below.
Microsoft 365 Username:
[email protected]
Microsoft 365 Password: 3&YWyjse-6-d
If the Microsoft 365 portal does not load successfully in the browser, press CTRL-K to reload the portal in a new browser tab.
The following information is for technical support purposes only:
Lab Instance: 10887751
You hire a new global administrator named Irvin Sayers to manage your Microsoft 365 tenant.
You need to modify Irvin Sayers to meet the following requirements:
* Uses at least two methods of user authentication
* Has the highest Microsoft Office 365 administrative privileges

Answer:

Explanation:
See explanation below.
Explanation
You need to assign the Global Admin role to Irvin Sayers. You then need to configure the account to require Multi-Factor Authentication (MFA).
1. In the Microsoft 365 admin center, select Users then select Active Users.
2. Select the Irvin Sayers account to open the account properties blade.
3. In the Roles section, click on the 'Manage roles' link.
4. Select the 'Admin center access' option.
5. Select Global Administrator then click the 'Save changes' button.
The next step is to enable the account for Multi-Factor Authentication (MFA).
1. If the Irvin Sayers account is selected in the user accounts list, deselect it (click on the tick icon next to the account name). Selecting a user account changes the menu options at the top of the page; deselecting the accounts changes the menu options back.
2. Click on the 'Multi-factor authentication' link at the top of the page.
3. In the 'Multi-factor authentication' page, select the Irvin Sayers account.
4. Click the 'Enable' link on the right side of the page.
5. In the pop-up window, click the 'enable multi-factor auth' button.

 

NEW QUESTION 155
You have an Active Directory domain named Adatum.com that is synchronized to Azure Active Directory as shown in the exhibit.

Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Explanation

 

NEW QUESTION 156
Your company has a Microsoft Azure Active Directory (Azure AD) tenant named contoso.onmicrosoft.com that contains a user named User1.
You suspect that an imposter is signing in to Azure AD by using the credentials of User1.
You need to ensure that an administrator named Admin1 can view all the sign in details of User1 from the past
24 hours.
To which three roles should you add Admin1? Each correct answer presents a complete solution.
NOTE: Each correct selection is worth one point.

  • A. Security reader
  • B. Reports reader
  • C. Password administrator
  • D. Compliance administrator
  • E. Security administrator
  • F. User administrator

Answer: A,B,E

Explanation:
Section: [none]
Explanation:
Users in the Security Administrator, Security Reader, Global Reader, and Report Reader roles can view the sign in details.
Reference:
https://docs.microsoft.com/en-us/azure/active-directory/reports-monitoring/concept-sign-ins

 

NEW QUESTION 157
You need to meet the application requirement for App1.
Which three actions should you perform? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.

  • A. From the Microsoft 365 admin center, configure the Software download settings.
  • B. From the Azure Active Directory admin center, configure the application URL settings.
  • C. On an on-premises server, download and install the Microsoft AAD Application Proxy connector.
  • D. On an on-premises server, install the Hybrid Configuration wizard.
  • E. From the Azure Active Directory admin center, add an enterprise application.

Answer: B,C,E

Explanation:
References:
https://docs.microsoft.com/en-us/azure/active-directory/manage-apps/application-proxy#how-application-proxy-works

 

NEW QUESTION 158
Your company has a Microsoft 365 subscription.
You plan to move several archived PST files to Microsoft Exchange Online mailboxes.
You need to create an import job for the PST files.
Which three actions should you perform before you create the import job? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.

  • A. Create a PST import mapping file.
  • B. Run azcopy.exeto copy the PST files to Microsoft Azure Storage
  • C. From Exchange admin center, run a new migration batch.
  • D. Create a Microsoft Azure Storage account.
  • E. From Security & Compliance, retrieve the SAS key.

Answer: A,B,E

Explanation:
The first step is to download and install the Azure AzCopy tool, which is the tool that you run in Step 2 to upload PST files to Office 365. You also copy the SAS URL for your organization. This URL is a combination of the network URL for the Azure Storage location in the Microsoft cloud for your organization and a Shared Access Signature (SAS) key. This key provides you with the necessary permissions to upload PST files to your Azure Storage location.
Now you're ready to use the AzCopy.exe tool to upload PST files to Office 365. This tool uploads and stores them in an Azure Storage location in the Microsoft cloud.
After the PST files have been uploaded to the Azure Storage location for your Office 365 organization, the next step is to create a comma-separated value (CSV) file that specifies which user mailboxes the PST files will be imported to. You'll submit this CSV file when you create a PST Import job.
Reference:
https://docs.microsoft.com/en-us/office365/securitycompliance/use-network-upload-to-import-pst-files

 

NEW QUESTION 159
Your company has a Microsoft Azure Active Directory (Azure AD) tenant named contoso.onmicrosoft.com.
You purchase a domain named contoso.com from a registrar and add all the required DNS records.
You create a user account named User1. User1 is configured to sign in as [email protected].
You need to configure User1 to sign in as [email protected].
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

Answer:

Explanation:

Explanation

The first step is to add the contoso.com domain to Office 365. You do this by adding a custom domain. When you add a custom domain to office 365, you can use the domain as your email address or to sign in to Office
365.
The second step is to verify the custom domain. This is to prove that you own the domain. You can verify the custom domain by adding a DNS record to the domain DNS zone.
When you have added and verified the domain, you can configure the user accounts to use it. To configure User1 to sign in as [email protected], you need to change the username of User1. In Office 365, the username is composed of two parts. The first part is the actual username (User1) and the second part is the domain. You need to modify the username of User1 by selecting the contoso.com domain from the dropdown list of domains. The dropdown list of domains contains the <domain>.onmicrosoft.com domain and any custom domains that have been added.
Reference:
https://docs.microsoft.com/en-us/office365/admin/setup/add-domain?view=o365-worldwide

 

NEW QUESTION 160
Your company has an on premises Microsoft Exchange Server 2016 organization and a Microsoft 365 Enterprise subscription. You plan to migrate mailboxes and groups to Exchange Online.
You start a new migration batch.
Users report *low performance when they use the on premises Exchange Server organization.
You discover that the migration is causing the slow performance.
You need to reduce the impact of the mailbox migration on the end-users.
What should you do?

  • A. Modify the migration endpoint setting
  • B. Configure back pressure
  • C. Create a throttling policy.
  • D. Create a mail flow rule.

Answer: A

Explanation:
The migration is causing the slow performance. This suggests that the on-premise Exchange server is struggling under the load of copying the mailboxes to Exchange Online. You can reduce the load on the on-premise server by reducing the maximum number of concurrent mailbox migrations. Migrating just a few mailboxes at a time will have less of a performance impact than migrating many mailboxes concurrently.
Reference:
https://support.microsoft.com/en-gb/help/2797784/how-to-manage-the-maximum-concurrent-migration-batches-in-exchange-onl

 

NEW QUESTION 161
You have a Microsoft 365 subscription that contains a user named User1.
You need to ensure that User1 receives Microsoft 365 feature and service updates before the updates are released to all users.
What should you do in the Microsoft 365 admin center?

  • A. Modify the privileged access management settings.
  • B. Modify the Release preferences settings.
  • C. Modify Office software download settings.
  • D. Submit a new service request.

Answer: B

Explanation:
Reference:
https://practical365.com/blog/first-steps-configure-office-365-first-release-settings/

 

NEW QUESTION 162
Your network contains an on-premises Active Directory domain that syncs to Azure Active Directory (Azure AD).
The on-premises network contains a Microsoft SharePoint Server 2019 farm.
The company purchases a Microsoft 365 subscription.
You have the users shown in the following table

You plan to assign User1 and User2 the required roles to run the SharePoint Hybrid Configuration Wizard.
User1 will be used for on-premises credentials and User2 will be used for cloud credentials.
You need to assign the correct role to User2. The solution must use the principle of least privilege.
Which role should you assign to User2?

  • A. SharePoint administrator
  • B. Global administrator
  • C. SharePoint farm administrator
  • D. Application administrator

Answer: B

Explanation:
Explanation
To run the SharePoint Hybrid Configuration Wizard, you need to provide credentials of a user (in this case User2) of a Global Administrator account in Azure Active Directory.
Reference:
https://www.c-sharpcorner.com/article/sharepoint-2019-enable-hybrid-experience/

 

NEW QUESTION 163
Please wait while the virtual machine loads. Once loaded, you may proceed to the lab section. This may take a few minutes, and the wait time will not be deducted from your overall test time.
When the Next button is available, click it to access the lab section. In this section, you will perform a set of tasks in a live environment. While most functionality will be available to you as it would be in a live environment, some functionality (e.g., copy and paste, ability to navigate to external websites) will not be possible by design.
Scoring is based on the outcome of performing the tasks stated in the lab. In other words, it doesn't matter how you accomplish the task, if you successfully perform it, you will earn credit for that task.
Labs are not timed separately, and this exam may have more than one lab that you must complete. You can use as much time as you would like to complete each lab. But, you should manage your time appropriately to ensure that you are able to complete the lab(s) and all other sections of the exam in the time provided.
Please note that once you submit your work by clicking the Next button within a lab, you will NOT be able to return to the lab.
You may now click next to proceed to the lab.
Lab information
Use the following login credentials as needed:
To enter your username, place your cursor in the Sign in box and click on the username below.
To enter your password, place your cursor in the Enter password box and click on the password below.
Microsoft 365 Username:
[email protected]
Microsoft 365 Password: *yfLo7Ir2&y-
If the Microsoft 365 portal does not load successfully in the browser, press CTRL-K to reload the portal in a new browser tab.
The following information is for technical support purposes only:
Lab Instance: 10811525
You plan to invite several guest users to access the resources in your organization.
You need to ensure that only guests who have an email address that uses the @contoso.com suffix can connect to the resources in your Microsoft 365 tenant.

Answer:

Explanation:
See explanation below.
Explanation
You need to add contoso.com as an allowed domain in the 'External collaboration settings'.
1. Go to the Azure Active Directory admin center.
2. Select Users then select 'User settings'.
3. Under External Users, select the 'Manage external collaboration settings'.
4. Under 'Collaboration restrictions', select the 'Allow invitations only to the specified domains (most restrictive)' option.
5. Under, Target Domains, type in the domain name 'contoso.com'
6. Click the Save button at the top of the screen to save your changes.
References:
https://docs.microsoft.com/en-us/azure/active-directory/b2b/allow-deny-list

 

NEW QUESTION 164
You have a Microsoft 365 subscription.
You recently configured a Microsoft SharePoint Online tenant in the subscription.
You plan to create an alert policy.
You need to ensure that an alert is generated only when malware is detected in more than five documents stored in SharePoint Online during a period of 10 minutes.
What should you do first?

  • A. Deploy Windows Defender Advanced Threat Protection (Windows Defender ATP).
  • B. Enable Microsoft Office 365 Analytics.
  • C. Enable Microsoft Office 365 Cloud App Security.

Answer: A

Explanation:
Explanation:

 

NEW QUESTION 165
Your network contains an Active Directory domain and a Microsoft Azure Active Directory (Azure AD)
tenant.
The network uses a firewall that contains a list of allowed outbound domains.
You begin to implement directory synchronization.
You discover that the firewall configuration contains only the following domain names in the list of allowed
domains:
*.microsoft.com

*.office.com

Directory synchronization fails.
You need to ensure that directory synchronization completes successfully.
What is the best approach to achieve the goal? More than one answer choice may achieve the goal. Select
the BEST answer.

  • A. From the firewall, modify the list of allowed outbound domains.
  • B. Deploy an Azure AD Connect sync server in staging mode.
  • C. From the firewall, allow the IP address range of the Azure data center for outbound communication.
  • D. From the firewall, create a list of allowed inbound domains.
  • E. From Azure AD Connect, modify the Customize synchronization options task.

Answer: A

 

NEW QUESTION 166
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your network contains an on-premises Active Directory domain named contoso.com. The domain contains the users shown in the following table.

The domain syncs to an Azure Active Directory (Azure AD) tenant named contoso.com as shown in the exhibit.

User2 fails to authenticate to Azure AD when signing in as [email protected].
You need to ensure that User2 can access the resources in Azure AD.
Solution: From the on-premises Active Directory domain, you assign User2 the Allow logon locally user right.
You instruct User2 to sign in as [email protected].
Does this meet the goal?

  • A. Yes
  • B. No

Answer: B

Explanation:
This is not a permissions issue.
The on-premises Active Directory domain is named contoso.com. To enable users to sign on using a different UPN (different domain), you need to add the domain to Microsoft 365 as a custom domain.

 

NEW QUESTION 167
Your network contains an on-premises Active Directory domain that is synced to Microsoft Azure Active Directory (Azure AD) as shown in the following exhibit.

An on-premises Active Directory user account named Allan Yoo is synchronized to Azure AD. You view Allan's account from Microsoft 365 and notice that his username is set to [email protected].
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

 

NEW QUESTION 168
Your company has 10,000 users who access all applications from an on-premises data center.
You plan to create a Microsoft 365 subscription and to migrate data to the cloud.
You plan to implement directory synchronization.
User account and group accounts must sync to Microsoft Azure Directory (Azure AD) successfully.
You discover that several user accounts fail to sync to Azure AD.
You need to identify which user accounts failed to sync. You must resolve the issue as quickly as possible.
What should you do?

  • A. From Active Directory Administrative Center, search for all the users, and then modify the properties of the user accounts.
  • B. From Windows PowerShell, run the Start-AdSyncSyncCycle -PolicyType Deltacommand.
  • C. Run idfix.exe, and then click Complete.
  • D. Run idfix.exe, and then click Edit.

Answer: D

 

NEW QUESTION 169
You need to meet the security requirements for User3. The solution must meet the technical requirements.
What should you do? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Answer:

Explanation:

Reference:
https://docs.microsoft.com/en-us/office365/SecurityCompliance/eop/feature-permissions-in-eop

 

NEW QUESTION 170
......

New 2021 Realistic Free Microsoft MS-100 Exam Dump Questions & Answer: https://passguide.testkingpass.com/MS-100-testking-dumps.html