DON'T WANT TO MISS A THING?

Certification Exam Passing Tips

Latest exam news and discount info

Curated and up-to-date by our experts

Yes, send me the newsletter

Microsoft MD-102 Dumps & Mock Exam for Success, Microsoft Windows Endpoint Administrator | SPOTO

Achieve success in the Microsoft MD-102 certification exam with SPOTO's comprehensive exam dumps and mock exams. Our latest practice tests provide a realistic exam experience, featuring online exam questions, sample questions, and accurate exam questions and answers. Gain access to a wealth of exam materials, including free tests for exam practice, ensuring you're fully prepared for the real test environment. Whether you're looking to enhance your knowledge of data protection, endpoint threat protection, or Microsoft Defender solutions, our MD-102 Manage Endpoint Security dumps cover all the essential topics. Unlock your potential and confidently pursue the Microsoft 365 Certified: Endpoint Administrator Associate certification with SPOTO's top-notch exam preparation resources.
Take other online exams

Question #1
You have a Microsoft 365 subscription that uses Microsoft Intune Suite. You use Microsoft Intune to manage devices. All devices are in the same time zone. You create an update rings policy and assign the policy to all Windows devices. On the November 1, you pause the update rings policy. All devices remain online. Without further modification to the policy, on which date will the devices next attempt to update?
A. December 1
B. December 6
C. November 15
D. November 22
View answer
Correct Answer: A
Question #2
You have 100 computers that run Windows 10. You plan to deploy Windows 11 to the computers by performing a wipe and load installation. You need to recommend a method to retain the user settings and the user data. Which three actions should you recommend be performed in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
A. Mastered
B. Not Mastered
View answer
Correct Answer: C
Question #3
You have the device configuration profile shown in the following exhibit. Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic. NOTE: Each correct selection is worth one point.
A. Mastered
B. Not Mastered
View answer
Correct Answer: A
Question #4
You have a Microsoft 365 subscription. You plan to enable Microsoft Intune enrollment for the following types of devices: ? Existing Windows 11 devices managed by using Configuration Manager ? Personal iOS devices The solution must minimize user disruption. Which enrollment method should you use for each device type? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
A. Mastered
B. Not Mastered
View answer
Correct Answer: A
Question #5
You have 200 computers that run Windows 10 and are joined to an Active Directory domain. You need to enable Windows Remote Management (WinRM) on all the computers by using Group Policy. Which three actions should you perform? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.
A. Enable the Allow Remote Shell access setting
B. Enable the Allow remote server management through WinRM setting
C. Set the Startup Type of the Windows Remote Management (WS-Management) service to Automatic
D. Enable the Windows Defender Firewall: Allow inbound Remote Desktop exceptions setting
E. Set the Startup Type of the Remote Registry service to Automatic
F. Enable the Windows Defender Firewall: Allow inbound remote administration exception setting
View answer
Correct Answer: C
Question #6
You have a Microsoft 365 subscription that contains a user named User1. User! is assigned a Windows 10/11 Enterprise E3 license. You use Microsoft Intune Suite to manage devices. User1 activates the following devices: ? Device1: Windows 11 Enterprise ? Device2: Windows 10 Enterprise ? Device3: Windows 11 Enterprise How many more devices can User1 activate?
A. 2
B. 3
C. 7
D. 8
View answer
Correct Answer: D
Question #7
You have a Windows 11 capable device named Device1 that runs the 64-bit version of Windows 10 Enterprise and has Microsoft Office 2019 installed. You have the Windows 11 Enterprise images shown in the following table. Which images can be used to perform an in-place upgrade of Device1?
A. image1 only
B. lmage2only
C. Image1 and Image2
View answer
Correct Answer: A
Question #8
You have a Microsoft 365 E5 subscription that contains 100 iOS devices enrolled in Microsoft Intune. You need to ensure that notifications of iOS updates are deferred for 30 days after the updates are released. What should you create?
A. a device configuration profile based on the Device features template
B. a device configuration profile based on the Device restrictions template
C. an update policy for iOS/iPadOS
D. an iOS app provisioning profile
View answer
Correct Answer: B
Question #9
You have a Microsoft 365 subscription that includes Microsoft Intune. You have computers that run Windows 11 as shown in the following table. You have the groups shown in the following table. You create and assign the compliance policies shown in the following table. The next day, you review the compliance status of the computers. For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.
A. Mastered
B. Not Mastered
View answer
Correct Answer: D
Question #10
Your network contains an Active Directory domain. The domain contains 2,000 computers that run Windows 10. You implement hybrid Azure AD and Microsoft Intune. You need to automatically register all the existing computers to Azure AD and enroll the computers in Intune. The solution must minimize administrative effort. What should you use?
A. an Autodiscover address record
B. a Group Policy object (GPO)
C. an Autodiscover service connection point (SCP)
D. a Windows Autopilot deployment profile
View answer
Correct Answer: B
Question #11
What should you configure to meet the technical requirements for the Azure AD-joined computers?
A. Windows Hello for Business from the Microsoft Intune blade in the Azure portal
B. The Accounts options in an endpoint protection profile
C. The Password Policy settings in a Group Policy object (GPO)
D. A password policy from the Microsoft Office 365 portal
View answer
Correct Answer: B
Question #12
You have the devices shown in the following table. You need to migrate app data from Device1 to Device2. The data must be encrypted and stored on Seryer1 during the migration. Which command should you run on each device? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
A. Mastered
B. Not Mastered
View answer
Correct Answer: A
Question #13
You have a Microsoft 365 subscription that uses Microsoft Intune Suite. You use Microsoft Intune to manage devices. You need to review the startup times and restart frequencies of the devices. What should you use?
A. Azure Monitor
B. intune Data Warehouse
C. Microsoft Defender for Endpoint
D. Endpoint analytics
View answer
Correct Answer: B
Question #14
You have 100 computers that run Windows 10. You have no servers. All the computers are joined to Microsoft Azure Active Directory (Azure AD). The computers have different update settings, and some computers are configured for manual updates. You need to configure Windows Update. The solution must meet the following requirements: The configuration must be managed from a central location. Internet traffic must be minimized. Costs must be minimized. How should you configure Windows Update? To answer, select th
A. Mastered
B. Not Mastered
View answer
Correct Answer: A
Question #15
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. Your network contains an Active Directory domain. The domain contains a comput
A. Yes
B. No
View answer
Correct Answer: A
Question #16
You have an Azure AD tenant that contains the devices shown in the following table. You purchase Windows 11 Enterprise E5 licenses. Which devices can use Subscription Activation to upgrade to Windows 11 Enterprise?
A. Device1 only
B. Device1 and Device2 only
C. Device1 and Device3 only
D. Device1, Device2, Device3, and Device4
View answer
Correct Answer: A
Question #17
You have a Microsoft 365 subscription that contains 1,000 iOS devices and includes Microsoft Intune. You need to prevent the printing of corporate data from managed apps on the devices, should you configure?
A. an app configuration policy
B. a security baseline
C. an app protection policy
D. an iOS app provisioning profile
View answer
Correct Answer: C
Question #18
You have a Microsoft 365 E5 subscription that contains 100 Windows 10 devices enrolled in Microsoft Intune. You need to create Endpoint security policies to meet the following requirements: Hide the Firewall & network protection area in the Windows Security app. Disable the provisioning of Windows Hello for Business on the devices. Which two policy types should you use? To answer, select the policies in the answer area. NOTE: Each correct selection is worth one point.
A. Mastered
B. Not Mastered
View answer
Correct Answer: C
Question #19
You have a Microsoft 365 subscription that includes Microsoft Intune. You need to implement a Microsoft Defender for Endpoint solution that meets the following requirements: ? Enforces compliance for Defender for Endpoint by using Conditional Access ? Prevents suspicious scripts from running on devices What should you configure? To answer, drag the appropriate features to the correct requirements. Each feature may be used once, more than once, or not at all. You may need to drag the split bar between panes
A. Mastered
B. Not Mastered
View answer
Correct Answer: C
Question #20
You have a Microsoft 365 tenant. You have devices enrolled in Microsoft Intune. You assign a conditional access policy named Policy1 to a group named Group1. Policy! restricts devices marked as noncompliant from accessing Microsoft OneDrive for Business. You need to identify which noncompliant devices attempt to access OneDrive for Business. What should you do?
A. From the Microsoft Entra admin center, review the Conditional Access Insights and Reporting workbook
B. From the Microsoft Intune admin center, review Device compliance report
C. From the Microsoft Intune admin center, review the Noncompliant devices report
D. From the Microsoft Intune admin center, review the Setting compliance report
View answer
Correct Answer: B
Question #21
You have a Microsoft 365 subscription. You plan to use Windows Autopilot to provision 25 Windows 11 devices. You need to configure the Out-of-box experience (OOBE) settings. What should you create in the Microsoft Intune admin center?
A. an enrollment status page (ESP)
B. a deployment profile
C. a compliance policy
D. a PowerShell script
E. a configuration profile
View answer
Correct Answer: C
Question #22
You have a Microsoft 365 E5 subscription that contains 10 Android Enterprise devices. Each device has a corporate-owned work profile and is enrolled in Microsoft Intune. You need to configure the devices to run a single app in kiosk mode. Which Configuration settings should you modify in the device restrictions profile?
A. General
B. Users and Accounts
C. System security
D. Device experience
View answer
Correct Answer: A
Question #23
You have a Microsoft 365 E5 subscription that contains a group named Group1. You create a Conditional Access policy named CAPolicy1 and assign CAPolicy1 to Group1. You need to configure CAPolicy1 to require the members of Group1 to reauthenticate every eight hours when they connect to Microsoft Exchange Online. What should you configure?
A. Session access controls
B. an assignment that uses a User risk condition
C. an assignment that uses a Sign-in risk condition
D. Grant access controls
View answer
Correct Answer: A
Question #24
You have a Microsoft 365 E5 subscription and 100 unmanaged iPad devices. You need to deploy a specific iOS update to the devices. Users must be prevented from manually installing a more recent version of iOS. Which two actions should you perform? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.
A. Enroll the devices in Microsoft Intune by using the Intune Company Portal
B. Create a compliance policy
C. Enroll the devices in Microsoft Intune by using Apple Business Manager
D. Create an iOS app provisioning profile
E. Create a device configuration profile
View answer
Correct Answer: A
Question #25
Your network contains an Active Directory domain named contoso.com. The domain contains a computer named Computer1 that runs Windows 10. You have the groups shown in the following table. Which groups can you add to Group4?
A. Group2only
B. Group1 and Group2 only
C. Group2 and Group3 only
D. Group1, Group2, and Group3
View answer
Correct Answer: A
Question #26
You have a Microsoft 365 E5 subscription. The subscription contains 25 computers that run Windows 11 and are enrolled in Microsoft Intune. You need to onboard the devices to Microsoft Defender for Endpoint. What should you create in the Microsoft Intune admin center?
A. an attack surface reduction (ASR) policy
B. a security baseline
C. an endpoint detection and response (EDR) policy
D. an account protection policy
E. an antivirus policy
View answer
Correct Answer: A
Question #27
You have the on-premises servers shown in the following table. You have a Microsoft 365 E5 subscription that contains Android and iOS devices. All the devices are managed by using Microsoft Intune. You need to implement Microsoft Tunnel for Intune. The solution must minimize the number of open firewall ports. To which server can you deploy a Tunnel Gateway server, and which inbound ports should be allowed on the server to support Microsoft Tunnel connections? To answer, select the appropriate options in the
A. Mastered
B. Not Mastered
View answer
Correct Answer: A
Question #28
You have the Microsoft Deployment Toolkit (MDT) installed. You install and customize Windows 11 on a reference computer You need to capture an image of the reference computer and ensure that the image can be deployed to multiple computers. Which command should you run before you capture the image?
A. dism
B. wpeinit
C. sysprep
D. bcdedit
View answer
Correct Answer: C
Question #29
You have a Microsoft 365 E5 subscription and 25 Apple iPads. You need to enroll the iPads in Microsoft Intune by using the Apple Configurator enrollment method. What should you do first?
A. Upload a file that has the device identifiers for each iPad
B. Modify the enrollment restrictions
C. Configure an Apple MDM push certificate
D. Add your user account as a device enrollment manager (DEM)
View answer
Correct Answer: A
Question #30
Your network contains an Active Directory domain. The domain contains a computer named Computer1 that runs Windows 8.1. Computer1 has apps that are compatible with Windows 10. You need to perform a Windows 10 in-place upgrade on Computer1. Solution: You copy the Windows 10 installation media to a network share. You start Computer1 from Windows PE (WinPE), and then you run setup.exe from the network share. Does this meet the goal?
A. Yes
B. No
View answer
Correct Answer: A
Question #31
You have a Microsoft Intune subscription. You are creating a Windows Autopilot deployment profile named Profile1 as shown in the following exhibit. Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic. NOTE: Each correct selection is worth one point.
A. Mastered
B. Not Mastered
View answer
Correct Answer: A
Question #32
You have a Microsoft Intune subscription. You have devices enrolled in intune as shown in the following table. An app named App1 is installed on each device. What is the minimum number of app configuration policies required to manage Appl ?
A. 1
B. 2
C. 3
D. 4
E. 5
View answer
Correct Answer: CE
Question #33
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. Your company has an Azure AD tenant named contoso.com that contains several Wi
A. Yes
B. No
View answer
Correct Answer: A

View Answers after Submission

Please submit your email and WhatsApp to get the answers of questions.

Note: Please make sure your email ID and Whatsapp are valid so that you can get the correct exam results.

Email:
Whatsapp/phone number: