Free MD-102 Exam Braindumps

Pass your Endpoint Administrator exam with these free Questions and Answers

Page 3 of 20
QUESTION 6

- (Exam Topic 3)
You have a Microsoft 365 subscription that uses Microsoft Intune Suite. You use Microsoft Intune to manage devices.
You have a Windows 11 device named Device1 that is enrolled in Intune. Device1 has been offline for 30
days.
You need to remove Device1 from Intune immediately. The solution must ensure that if the device checks in again, any apps and data provisioned by Intune are removed. User-installed apps, personal data, and
OEM-installed apps must be retained.
What should you use?

  1. A. a Delete action
  2. B. a Retire action
  3. C. a Fresh Start action
  4. D. an Autopilot Reset action

Correct Answer: B
A retire action removes a device from Intune management and removes any apps and data provisioned by Intune. User-installed apps, personal data, and OEM-installed apps are retained. A retire action can be performed on devices that are offline for more than 30 days. References:
https://docs.microsoft.com/en-us/mem/intune/remote-actions/devices-wipe

QUESTION 7

- (Exam Topic 3)
Your company has an Azure AD tenant named contoso.com that contains several Windows 10 devices. When you join new Windows 10 devices to contoso.com, users are prompted to set up a four-digit pin. You need to ensure that the users are prompted to set up a six-digit pin when they join the Windows 10
devices to contoso.com.
Solution: From the Microsoft Entra admin center, you configure automatic mobile device management (MDM) enrollment. From the Microsoft Intune admin center, you configure the Windows Hello for Business enrollment options.
Does this meet the goal?

  1. A. Yes
  2. B. No

Correct Answer: B

QUESTION 8

- (Exam Topic 3)
You have an Azure AD tenant that contains the users shown in the following table.
MD-102 dumps exhibit
You have the devices shown in the following table.
MD-102 dumps exhibit
You have a Conditional Access policy named CAPolicy1 that has the following settings:
• Assignments
o Users or workload identities: User 1. User1
o Cloud apps or actions: Office 365 Exchange Online o Conditions: Device platforms: Windows, iOS
• Access controls
o Grant Require multi-factor authentication
You have a Conditional Access policy named CAPolicy2 that has the following settings:
Assignments
o Users or workload identities: Used, User2 o Cloud apps or actions: Office 365 Exch
o Conditions
Device platforms: Android, iOS Filter for devices
Device matching the rule: Exclude filtered devices from policy Rule syntax: device. displayName- contains "1"
Access controls Grant Block access
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
MD-102 dumps exhibit
Solution:
A screen shot of a computer Description automatically generated with low confidence

Does this meet the goal?

  1. A. Yes
  2. B. No

Correct Answer: A

QUESTION 9

- (Exam Topic 2)
You need to meet the OOBE requirements for Windows AutoPilot.
Which two settings should you configure from the Azure Active Directory blade? To answer, select the appropriate settings in the answer area.
NOTE: Each correct selection is worth one point.
MD-102 dumps exhibit
Solution:
Reference:
https://blogs.msdn.microsoft.com/sgern/2018/10/11/intune-intune-and-autopilot-part-3-preparing-your-environm https://blogs.msdn.microsoft.com/sgern/2018/11/27/intune-intune-and-autopilot-part-4-enroll-your-first-device/

Does this meet the goal?

  1. A. Yes
  2. B. No

Correct Answer: A

QUESTION 10

- (Exam Topic 3)
You have an Azure AD tenant and 100 Windows 10 devices that are Azure AD joined and managed by using Microsoft Intune.
You need to configure Microsoft Defender Firewall and Microsoft Defender Antivirus on the devices. The solution must minimize administrative effort.
Which two actions should you perform? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.

  1. A. To configure Microsoft Defender Antivirus, create a Group Policy Object (GPO) and configure the Windows Defender Antivirus settings.
  2. B. To configure Microsoft Defender Firewall, create a device configuration profile and configure the Device restrictions settings.
  3. C. To configure Microsoft Defender Antivirus, create a device configuration profile and configure the Endpoint protection settings.
  4. D. To configure Microsoft Defender Antivirus, create a device configuration profile and configure the Device restrictions settings.
  5. E. To configure Microsoft Defender Firewall, create a device configuration profile and configure the Endpoint protection settings.
  6. F. To configure Microsoft Defender Firewall, create a Group Policy Object (GPO) and configure Windows Defender Firewall with Advanced Security.

Correct Answer: CE
To configure Microsoft Defender Firewall and Microsoft Defender Antivirus on Azure AD joined devices that are managed by Intune, you need to create a device configuration profile and configure the Endpoint protection settings. You can use this profile to configure various settings for firewall and antivirus protection on the devices. References:
https://docs.microsoft.com/en-us/mem/intune/protect/endpoint-protection-windows-10

Page 3 of 20

Post your Comments and Discuss Microsoft MD-102 exam with other Community members: