Physical Address

304 North Cardinal St.
Dorchester Center, MA 02124

MD-100 Configure authorization and authentication Microsoft Quiz Answers

Get MD-100 Configure authorization and authentication Microsoft Quiz Answers

This learning path introduces the tools and features of Windows for authorizing access to Windows clients. Students will learn about methods for how users sign-in to Windows, User Account Control, and account types.

This learning path helps prepare you for Exam MD-100: Windows Client.

Prerequisites:

  • Students should have a basic understanding of computer networks and hardware concepts.
  • Students should have a basic understanding of OS and Application concepts.
  • Students should have experience with using Windows 10 or later.

Enroll on Microsoft

Module 1: Explore authentication

In this module, you will learn about the differences between authentication and authorization.

Learning objectives:

After completing this lesson, you will be able to:

  • Configure a service account.
  • Set up a local account.
  • Use Credential Manager to manage credentials.
  • Describe and configure Windows Hello.

Prerequisites:

  • Students should have a basic understanding of computer networks and hardware concepts.
  • Students should have a basic understanding of OS and Application concepts.
  • Students should have experience with using Windows 10 or later.

Quiz 1: Knowledge Check

Q1. As the new Desktop Administrator for Northwind Traders, Alan Deyoung is trying to fix some of the security issues left behind by his predecessor. One such practice directed users to sign in to their computers with the Administrator account. Alan discovered that this policy led to malicious users gaining access to server and client computers. What should Alan do to resolve this issue with each device?

  • Delete the Administrator account and have users sign in with the Default Account
  • Lock out the Administrator account and have users sign in using the Local Service account
  • Disable the Administrator account and have users sign in with a local account that’s a member of the Administrators group

Q2. As the Desktop Administrator for Fabrikam, you must set up an account that will be used to sign-in to a Windows 11 PC. This account must be able to synchronize files with OneDrive. What type of account should you create?

  • Domain Account
  • Local Account
  • Microsoft Account

Q3. As the Desktop Administrator for World Wide Importers, you want to create a workgroup for the Warehouse department. This workgroup will enable the warehouse staff to share files, network storage, printers, and any connected resource. What’s the maximum number of computers that you can assign to this workgroup?

  • 20
  • 40
  • 75

Q4. As the Desktop Administrator for Trey Research, you were approached by members of the Engineering department regarding a sign-in issue. Each day the engineers access computers, CAD machines, and printers, in the company’s Engineering workgroup. These machines are all running either Windows 10 or Windows 11. Every time they access one of these workgroup resources, they’re prompted to enter their credentials. The engineers have found this continual entering of credentials to be very time consuming and annoying. What Windows tool can you use that will save each engineer’s credentials on each resource so that they’re not prompted each time they access computers in the Engineering workgroup?

  • Credential Manager
  • Windows Hello using Biometrics
  • Web Credentials

Q5. Contoso’s Engineering department typically uses smart cards for user authentication. Each engineer utilizes a smart card reader, which scans the chip on the user’s card to authenticate the user. Which of the following authentication methods is used in conjunction with smart cards?

  • Kerberos version 5 protocol
  • Certificate mapping
  • NTLM

Module 2: Manage users and groups

This module introduces the management of users and groups using Active Directory, and compares the differences between Active Directory Services and Azure Active Directory.

Learning objectives:

After completing this module, you will be able to:

  • Describe Active Directory Domain Services.
  • Describe Azure Active Directory.
  • Describe the differences between Active Directory Domain Services and Azure Active Directory.
  • Describe Active Directory Distribution and Security groups.
  • Describe the authentication process in Active Directory.

Prerequisites:

  • Students should have a basic understanding of computer networks and hardware concepts.
  • Students should have a basic understanding of OS and Application concepts.
  • Students should have experience with using Windows 10 or later.

Quiz 1: Knowledge Check

Q1. What does AD DS use to perform authentication for computer accounts during the startup process and for user accounts when the user signs in?

  • Domain controllers
  • LDAP calls
  • Group policy objects

Q2. What does AD DS use for locating resources such as domain controllers?

  • Domain Name System
  • LDAP
  • Kerberos

Q3. As the Enterprise Administrator for World Wide Importers, Patti Fernandez deployed AD DS on an Azure virtual machine to enable scalability and availability for an on-premises AD DS. What’s one of the repercussions of deploying AD DS on an Azure virtual machine?

  • Authentication will be very slow
  • You can’t use drive C for AD DS storage
  • It doesn’t make any use of Azure AD

Q4. As the Enterprise Administrator for Contoso, Holly Dickson recently deployed several new Windows 11 computers. George, who was a recipient of one of those new computers, complained to Holly that he was unable to access the local computer or network resources. Which of the following items could be causing the authentication failures that George has been experiencing?

  • Holly didn’t properly configure the list of DNS servers on George’s computer
  • George didn’t reauthenticate his user account by restarting the computer
  • Holly didn’t assign George to an Active Directory security group

Q5. Wingtip Toys has a hybrid Exchange deployment. Wingtip employs an on-premises AD DS that supports its Exchange Server 2019 deployment. It also has a cloud-based Azure AD environment that supports Exchange Online in its Microsoft 365 tenant. What tool can Wingtip’s Enterprise Administrator use to synchronize these AD DS and Azure AD services together to meet its hybrid identity goals?

  • Active Directory Rights Management Services (AD RMS)
  • Azure AD Connect
  • Active Directory Lightweight Directory Services (AD LDS)

Module 3: Configure User Account Control

This module introduces how User Account Control works and how you can use UAC-related desktop features to reduce security risks.

Learning objectives:

After completing this module, you will be able to:

  • Describe User Account Control (UAC).
  • Explain how UAC works.
  • Explain how to configure UAC notification settings.

Prerequisites:

  • Students should have a basic understanding of computer networks and hardware concepts.
  • Students should have a basic understanding of OS and Application concepts.
  • Students should have experience with using Windows 10 or later.

Quiz 1: Knowledge check

Q1. Which variation of the UAC elevation prompt is displayed to standard users when they attempt to perform an administrative task?

  • Consent prompt
  • Credential prompt
  • Approval prompt

Q2. As the Desktop Administrator for Contoso, you enabled UAC on all the company’s Windows 11 computers to prevent users from installing unauthorized software. However, some of the users are local Administrators on their computers. Which of the following tasks will generate a UAC consent prompt for these users?

  • Use Remote Desktop to connect to another computer
  • Install software and drivers
  • Connect and configure a Bluetooth device

Q3. As the Desktop Administrator for Contoso, you enabled UAC on all the company’s Windows 11 computers to prevent users from installing unauthorized software. Which of the following tasks can a standard user perform without receiving a UAC prompt?

  • Install drivers from Windows Update
  • Install drivers for a device
  • Copy or move files into the Program Files or Windows directory

Q4. When a permission or password is necessary to complete a task, UAC will notify you with one of three different types of elevation prompts. Which type of elevation prompt will you receive when the item has a valid digital signature that verifies that Microsoft is the publisher of this item?

  • A program that isn’t part of Windows needs your permission to start
  • A program with an unknown publisher needs your permission to start
  • A setting or feature that’s part of Windows needs your permission to start

Q5. As the Desktop Administrator for Fabrikam, you are a local administrator on your Windows 11 computer. When you attempted to install a new application on your computer, you received a UAC prompt that asked for permission to complete the task. You granted the permission, at which time the task was performed by using full administrative rights. What happened next?

  • You received a prompt asking whether you wanted to retain full administrative rights
  • Your account reverted to a lower level of permission
  • Your account automatically retained full administrative rights

Module 4: Implement device registration

This module examines the process of device restrigration and discusses how to register and enroll devices in Active Directory.

Learning objectives:

After completing this module, you will be able to:

  • Describe the challenges that BYOD introduces.
  • Describe Device Registration and its uses.
  • Describe how Device Registration works.
  • Describe the infrastructure requirements for Device Registration.
  • Describe how to register and enroll a device.

Prerequisites:

  • Students should have a basic understanding of computer networks and hardware concepts.
  • Students should have a basic understanding of OS and Application concepts.
  • Students should have experience with using Windows 10 or later.

Quiz 1: Knowledge Check

Q1. As an IT Support professional for Contoso, you’re helping to configure the company’s infrastructure to allow Device Registration. Which of the following prerequisites must you implement before you can enable Device Registration on your devices?

  • Each client machine must have a 64-bit operating system
  • Web Application Proxy must be set up
  • A DNS record for the host that’s named “Enterpriseregistration”

Q2. Fabrikam has enabled Device Registration. After a Fabrikam user enrolls a device, why is the device object created in AD DS?

  • So that a company Group Policy can be applied to the device
  • So the user won’t have to enter credentials every time they access internal websites and company apps
  • So that the registered devices can access company resources from external networks such as the Internet

Q3. Patti Fernandez is a sales rep for Contoso. Contoso has enabled Device Registration, and Patti has enrolled her smartphone through the enrollment process. Patti is out of town on a sales trip. However, by using her smartphone, Patti can still access internal Contoso applications through the Internet. This scenario is made possible because of two services. One of them is the Web Application Proxy. What is the other service that works in conjunction with the Web Application Proxy to provide Internet access to internal company resources for an enrolled device?

  • AD DS
  • AD FS
  • Azure AD

Q4. Device Registration works by using the Device Registration Service. When a user registers a device through the enrollment process, the Device Registration Service provisions a certificate for the device. What’s the purpose of this certificate?

  • It’s used to authenticate the device when it accesses internal resources
  • It enables the device to access company resources from external networks such as the Internet
  • So the user isn’t prompted for credentials each time they try to access a company resource

Q5. World Wide Importers requires control over the web apps that users can access from their devices. The company has deployed Device Registration. Which of the following tasks will occur after a user registers and enrolls a device?

  • The device is associated with the user’s account in the company directory
  • An email is sent to the user verifying the device enrollment
  • The web apps are added as bookmarks in the device’s browser
Conclusion:

I hope this MD-100 Configure authorization and authentication Microsoft Quiz Answers would be useful for you to learn something new from this problem. If it helped you then don’t forget to bookmark our site for more Coding Solutions.

This Problem is intended for audiences of all experiences who are interested in learning about Data Science in a business context; there are no prerequisites.

Keep Learning!

More Coding Solutions >>

LeetCode Solutions

Hacker Rank Solutions

CodeChef Solutions

Leave a Reply

Your email address will not be published. Required fields are marked *