Replace MS-100 Prep 2021
Our pass rate is high to 98.9% and the similarity percentage between our MS-100 study guide and real exam is 90% based on our seven-year educating experience. Do you want achievements in the Microsoft MS-100 exam in just one try? I am currently studying for the Microsoft MS-100 exam. Latest Microsoft MS-100 Test exam practice questions and answers, Try Microsoft MS-100 Brain Dumps First.
Check MS-100 free dumps before getting the full version:
NEW QUESTION 1
Your network contains an on premises Active Directory domain named contoso.com. The domain contains five domain controllers.
Your company purchases Microsoft 365 and creates a Microsoft Azure Active Directory (Azure AD) tenant named contoso.onmicrosoft.com.
You plan to establish federation authentication between on premises Active Directory and the Azure AD tenant by using Active Directory Federation Services (AD FS).
You need to establish the federation.
What should you do? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point
- A. Mastered
- B. Not Mastered
Answer: A
Explanation: 
NEW QUESTION 2
You have a Microsoft 365 Enterprise E5 subscription.
You need to enforce multi-factor authentication on all cloud-based applications for the users in the finance department.
What should you do?
- A. Create on activity policy.
- B. Create a Sign- in risk policy.
- C. Create a session policy.
- D. Create an app permission policy.
Answer: B
Explanation:
References:
https://docs.microsoft.com/en-us/azure/active-directory/identity-protection/howto-sign-in-risk-policy
NEW QUESTION 3
Your company has a Microsoft Azure Active Directory (Azure AD) tenant named contoso.onmicrosoft.com that contains a user named User1.
You suspect that an imposter is signing in to Azure AD by using the credentials of User1.
You need to ensure that an administrator named Admin1 can view all the sign in details of User 1 from the
past 24 hours.
To which three roles should you add Admin1? Each correct answer presents a complete solution. NOTE: Each correct selection is worth one point.
- A. Security administrator
- B. Password administrator
- C. User administrator
- D. Compliance administrator
Answer: ABC
NEW QUESTION 4
Your network contains an Active Directory domain named .Ki.ituin.com that is synced to Microsoft Azure Active Directory (Azure AD).
The domain contains 10O user accounts.
The city attribute for all the users is set to the city where the user resides.
You need to modify the value of the city attribute to the three letter airport code of each city. What should you do?
- A. from Active Directory Administrative Center, select the Active Directory users, and then modify the Property settings.B From the Microsoft 365 admin center, select the users, and then use the Bulk actions option.
- B. From Azure Cloud Shell, run the Get-AzureADUsers, and then use the Bulk actions option.
- C. From Azure Cloud Shell, run the Get-AzureADUser and set-AzureADUser cmdlets.
- D. From Windows PowerShell on a domain controller, run the Get-AzureADUser and Set-AzureADUser cmdlets.
Answer: A
NEW QUESTION 5
You need to meet the technical requirements for the user licenses.
Which two properties should you configure for each user? To answer, select the appropriate properties in the answer area.
NOTE: Each correct selection is worth one point.
- A. Mastered
- B. Not Mastered
Answer: A
Explanation: 
NEW QUESTION 6
Your network contains an Active Directory forest named adatum.local. The forest contains 500 users and uses adatum.com as a UPN suffix.
You deploy a Microsoft 365 tenant.
You implement directory synchronization and sync only 50 support users.
You discover that five of the synchronized users have usernames that use a UPN suffix of onmicrosoft.com. You need to ensure that all synchronized identities retain the UPN set in their on-premises user account. What should you do?
- A. From the Microsoft 365 admin center, add adatum.com as a custom domain name.
- B. From Windows PowerShell, run the Set-ADDomain –AllowedDNSSuffixes adatum.com command.
- C. From Active Directory Users and Computers, modify the UPN suffix of the five user accounts.
- D. From the Microsoft 365 admin center, add adatum.local as a custom domain name.
Answer: C
NEW QUESTION 7
Your company has a Microsoft 365 subscription. All identities are managed in the cloud. The company purchases a new domain name.
You need to ensure that all new mailboxes use the new domain as their primary email address. What are two possible ways to achieve the goal? Each correct answer presents a complete solution. NOTE: Each correct selection is worth one point.
- A. From Microsoft Exchange Online PowerShell, run the Update-EmailAddressPolicy policy command.
- B. From the Exchange admin center, click mail flow, and then configure the email address policies.
- C. From the Microsoft 365 admin center, click Setup, and then configure the domains.
- D. From Microsoft Exchange Online PowerShell, run the Set-EmailAddressPolicy policy command.
- E. From the Azure Active Directory admin center, configure the custom domain names.
Answer: BD
NEW QUESTION 8
You have a Microsoft 365 subscription. All users have client computers that run Windows 10 and have Microsoft Office 365 ProPlus installed.
Some users in the research department work for extended periods of time without an Internet connection. How many days can the research department users remain offline before they are prevented from editing Office documents?
- A. 10
- B. 30
- C. 90
- D. 120
Answer: B
NEW QUESTION 9
You create a Microsoft 365 subscription.
You plan to deploy Microsoft Office 365 ProPlus applications to all the client computers at your company. You prepare the following XML file for the planned deployment.
Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
NOTE: Each correct selection is worth one point.
- A. Mastered
- B. Not Mastered
Answer: A
Explanation:
References:
https://docs.microsoft.com/en-us/deployoffice/configuration-options-for-the-office-2021-deployment-tool#updat https://docs.microsoft.com/en-us/deployoffice/overview-of-update-channels-for-office-365-proplus
NEW QUESTION 10
Your company has a hybrid deployment of Microsoft 365.
An on-premises user named User1 is synced to Microsoft Azure Active Directory (Azure AD). Azure AD Connect is configured as shown in the following exhibit.
Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
NOTE: Each correct selection is worth one point.
- A. Mastered
- B. Not Mastered
Answer: A
Explanation: 
NEW QUESTION 11
Your network contains an Active Directory domain named contoso.com. You have a Microsoft 365 subscription.
You have a Microsoft Azure Active Directory (Azure AD) tenant named contoso.onmicrosoft.com. You implement directory synchronization.
The developers at your company plan to build an app named App1. App1 will connect to the Microsoft Graph API to provide access to several Microsoft Office 365 services.
You need to provide the URI for the authorization endpoint that App1 must use. What should you provide?
- A. https://login.microsoftonline.com/
- B. https://contoso.com/contoso.onmicrosoft.com/app1
- C. https://login.microsoftonline.com/contoso.onmicrosoft.com/
- D. https://myapps.microsoft.com
Answer: C
NEW QUESTION 12
Your company has a Microsoft 365 subscription that has multi-factor authentication configured for all users. Users on the network report that they are prompted for multi-factor authentication multiple times a day.
You need to reduce the number of times the users are prompted for multi-factor authentication on their
company-owned devices. What should you do?
- A. Enable the multi-factor authentication trusted IPs setting, and then verify each device as a trusted device.
- B. Enable the remember multi-factor authentication setting, and then verify each device as a trusted device.
- C. Enable the multi-factor authentication trusted IPs setting, and then join all client computers to Microsoft Azure Active Directory (Azure AD).
- D. Enable the remember multi-factor authentication setting, and then join all client computers to Microsoft Azure Active Directory (Azure AD).
Answer: B
Explanation:
References:
https://docs.microsoft.com/en-us/azure/active-directory/authentication/howto-mfa-mfasettings
NEW QUESTION 13
You have a Microsoft 365 subscription.
You need to prevent phishing email messages from being delivered to your organization. What should you do?
- A. From the Exchange admin center, create an anti-malware policy.
- B. From Security & Compliance, create a DLP policy.
- C. From Security & Compliance, create a new threat management policy.
- D. From the Exchange admin center, create a spam filter policy.
Answer: C
Explanation:
References:
https://docs.microsoft.com/en-us/office365/securitycompliance/set-up-anti-phishing-policies
NEW QUESTION 14
Your network contains three Active Directory forests.
You create a Microsoft Azure Active Directory (Azure AD) tenant. You plan to sync the on premises Active Directory (Azure AD).
You need to recommend a synchronization solution. The solution must ensure that the synchronization can complete successfully and as quickly as possible if a single server fails.
What should you include in the recommendation?
- A. Three Azure AD Connect sync servers and three Azure AD Connect sync servers in staging mode
- B. One Azure AD Connect sync servers one Azure AD Connect sync servers in staging mode
- C. Three Azure AD Connect sync servers and one Azure AD Connect sync servers in staging mode
- D. six Azure AD Connect sync servers and three Azure AD Connect sync servers in staging mode
Answer: B
NEW QUESTION 15
Your network contains an Active Directory forest named local.
You have a Microsoft 365 subscription. You plan to implement a directory synchronization solution that will use password hash synchronization.
From the Microsoft 365 admin center, you verify the contoso.com domain name. You need to prepare the environment foe the planned directory synchronization solution.
What should you do first?
- A. From the public DNS zone of contoso.com, add a new mail exchanger (MX) record.
- B. From Active Directory Domains and Trusts, add contoso.com as a UPN suffix
- C. From the Microsoft 365 admin center, verify the contoso.com domain name.
- D. From Active Directory Users and Computers, modify the UPN suffix for all users.
Answer: B
NEW QUESTION 16
You have a Microsoft 365 subscription.
You suspect that several Microsoft Office 365 applications or services were recently updated. You need to identify which applications or services were recently updated.
What are two possible ways to achieve the goal? Each correct answer presents a complete solution.
NOTE: Each correct selection is worth one point.
- A. From the Microsoft 365 admin center, review the Message center blade.
- B. From the Office 365 Admin mobile app, review the messages.
- C. From the Microsoft 365 admin center, review the Products blade.
- D. From the Microsoft 365 admin center, review the Service health blade.
Answer: AB
NEW QUESTION 17
Your company has a Microsoft Azure Active Directory (Azure AD) tenant named contoso.onmicrosoft.com that contains the users shown in the following table.
You need to identify which users can perform the following administrative tasks:
Reset the password of User4.
Modify the value for the manager attribute of User4.
Which users should you identify for each task? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
- A. Mastered
- B. Not Mastered
Answer: A
Explanation:
References:
https://docs.microsoft.com/en-us/azure/active-directory/users-groups-roles/directory-assign-admin-roles
NEW QUESTION 18
Your company has 500 client computers that run Windows 10.
You plan to deploy Microsoft Office 365 ProPlus to all the computers. You create the following XML file for the planned deployment.
Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
NOTE: Each correct selection is worth one point.
- A. Mastered
- B. Not Mastered
Answer: A
Explanation: 
NEW QUESTION 19
Your company has a Microsoft 365 subscription that contains the users shown in the following table.
You need to identify which users can perform the following administrative tasks:
Modify the password protection policy.
Create guest user accounts.
Which users should you identify for each task? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
- A. Mastered
- B. Not Mastered
Answer: A
Explanation: 
NEW QUESTION 20
You have an on premises web application that is published by using a URL of https://app.contoso.local. You purchase a Microsoft 36S subscription.
Several external users must be able to connect to the web application
You need to recommend a solution for external access to the application. The solution must support multi-factor authentication.
Which two actions should you recommend? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.
- A. From an on-premises server, install a connector, and then publish the app.
- B. From the Azure Active Directory admin center, enable an Application Proxy.
- C. From the Azure Active Directory admin center, treate a conditional access policy.
- D. From an on premises server, install an Authentication Agent.
- E. Republish the web-application by using http//app.contoso.com
Answer: AB
Explanation:
References:
https://docs.microsoft.com/en-us/azure/active-directory/manage-apps/application-proxy-add-on-premises-applic
NEW QUESTION 21
You need to meet the security requirement for Group1. What should you do?
- A. Configure all users to sign in by using multi-factor authentication.
- B. Modify the properties of Group1.
- C. Assign Group1 a management role.
- D. Modify the Password reset properties of the Azure AD tenant.
Answer: D
Explanation:
References:
https://docs.microsoft.com/en-us/azure/active-directory/authentication/concept-sspr-howitworks
NEW QUESTION 22
Your network contains an on-premises Active Directory domain that is synced to Microsoft Azure Active Directory (Azure AD) as shown in the following two exhibits.

You create a user named User1 in Active Directory as shown in the following exhibit.
For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.
- A. Mastered
- B. Not Mastered
Answer: A
Explanation: 
NEW QUESTION 23
Which role should you assign to User1?
- A. Security Administrator
- B. Records Management
- C. Security Reader
- D. Hygiene Management
Answer: C
NEW QUESTION 24
......
Recommend!! Get the Full MS-100 dumps in VCE and PDF From Passcertsure, Welcome to Download: https://www.passcertsure.com/MS-100-test/ (New 106 Q&As Version)