DON'T WANT TO MISS A THING?

Certification Exam Passing Tips

Latest exam news and discount info

Curated and up-to-date by our experts

Yes, send me the newsletter

Pass Your Exams with Microsoft MD-102 Exam Questions & Answers, Microsoft Windows Endpoint Administrator | SPOTO

Unlock your path to success with SPOTO's comprehensive Microsoft MD-102 exam questions and answers. Our latest practice tests and exam materials provide a thorough exam practice experience, featuring online exam questions, sample questions, and accurate exam dumps. Gain access to a wealth of resources, including free tests, mock exams, and exam questions and answers, ensuring you're fully prepared for the real test environment. Whether you're looking to enhance your knowledge of data protection, endpoint threat protection, or Microsoft Defender solutions, our MD-102 Manage Endpoint Security resources cover all the essential topics. Confidently pursue the Microsoft 365 Certified: Endpoint Administrator Associate certification with SPOTO's top-notch exam preparation resources.
Take other online exams

Question #1
What should you use to meet the technical requirements for Azure DevOps?
A. An app protection policy
B. Windows Information Protection (WIP)
C. Conditional access
D. A device configuration profile
View answer
Correct Answer: C
Question #2
You have two computers named Computer1 and Computer2 that run Windows 10. Computer2 has Remote Desktop enabled.From Computer1, you connect to Computer2 by using Remote Desktop Connection.You need to ensure that you can access the local drives on Computer1 from within the Remote Desktop session.What should you do?
A. From Computer2, configure the Remote Desktop settings
B. From Windows Defender Firewall on Computer1, allow Remote Desktop
C. From Windows Defender Firewall on Computer2, allow File and Printer Sharing
D. From Computer1, configure the Remote Desktop Connection settings
View answer
Correct Answer: D
Question #3
Your network contains an Active Directory domain. The domain contains a computer named Computer1 that runs Windows 11.You need to enable the Windows Remote Management (WinRM) service on Computer1 and perform the following configurations: For the WinRM service, set Startup type to Automatic. Create a listener that accepts requests from any IP address. Enable a firewall exception for WS-Management communications.Which PowerShell cmdlet should you use?
A. Connect-WSMan
B. Enable-PSRemoting
C. Invoke-WSManAction
D. Enable-PSSessionConfiguration
View answer
Correct Answer: B
Question #4
Which users can purchase and assign App1?
A. User3 only
B. User1 and User3 only
C. User1, User2, User3, and User4
D. User1, User3, and User4 only
E. User3 and User4 only
View answer
Correct Answer: B
Question #5
You have a hybrid deployment of Azure AD that contains 50 Windows 10 devices. All the devices are enrolled in Microsoft Intune. You discover that Group Policy settings override the settings configured in Microsoft Intune policies. You need to ensure that the settings configured in Microsoft Intune override the Group Policy settings. What should you do?
A. rom Group Policy Management Editor, configure the Computer Configuration settings in the Default Domain Policy
B. rom the Microsoft Intune admin center, create a custom device profile
C. rom the Microsoft Intune admin center, create an Administrative Templates device profile
D. rom Group Policy Management Editor, configure the User Configuration settings in the Default Domain Policy
View answer
Correct Answer: C
Question #6
Your company has an Azure AD tenant named contoso.com that contains several Windows 10 devices. When you join new Windows 10 devices to contoso.com, users are prompted to set up a four-digit pin. You need to ensure that the users are prompted to set up a six-digit pin when they join the Windows 10 devices to contoso.com. Solution: From the Microsoft Entra admin center, you configure automatic mobile device management (MDM) enrollment. From the Microsoft Intune admin center, you configure the Windows Hello f
A. Yes
B. No
View answer
Correct Answer: A
Question #7
You have an Azure AD group named Group1. Group1 contains two Windows 10 Enterprise devices named Device1 and Device2.You create a device configuration profile named Profile1. You assign Profile1 to Group1.You need to ensure that Profile1 applies to Device1 only.What should you modify in Profile1?
A. Assignments
B. Settings
C. Scope (Tags)
D. Applicability Rules
View answer
Correct Answer: C
Question #8
You plan to deploy Windows 11 Pro to 200 new computers by using the Microsoft Deployment Toolkit (MDT) and Windows Deployment Services (WDS). The company has a Volume Licensing Agreement and uses a product key to activate Windows 11. You need to ensure that the new computers will be configured to have the correct product key during the installation. What should you configure? https://learn.microsoft.com/en-us/answers/questions/856939/how-to-place-windows-product-key-in-the-rules-on-t#:~:text=You%20may%20set
A. n MDT task sequence
B. he Device settings in Azure AD
C. WDS boot image
D. Windows Autopilot deployment profile
View answer
Correct Answer: A
Question #9
You have a Microsoft 365 E5 subscription that contains 100 iOS devices enrolled in Microsoft Intune. You need to ensure that notifications of iOS updates are deferred for 30 days after the updates are released. What should you create?
A. a device configuration profile based on the Device features template
B. a device configuration profile based on the Device restrictions template
C. an update policy for iOS/iPadOS
D. an iOS app provisioning profile
View answer
Correct Answer: C
Question #10
You have a computer named Computed that has Windows 10 installed. You create a Windows PowerShell script named config.psl. You need to ensure that config.psl runs after feature updates are installed on Computer5. Which file should you modify on Computer5? SetupConfig.ini is a file that can be used to customize the behavior of Windows Setup during feature updates. You can use this file to specify commands or scripts that run before or after the installation process. To run a PowerShell script after a feature
A. iteTouch
B. etupConfig
C. nattendb*
D. nattend
View answer
Correct Answer: B
Question #11
You need to ensure that computer objects can be created as part of the Windows Autopilot deployment. The solution must meet the technical requirements. To what should you grant the right to create the computer objects?
A. Server2
B. Server1
C. GroupA
D. DC1
View answer
Correct Answer: B
Question #12
QUESTION NO: 77 You have a Microsoft 365 subscription that contains a user named User1. User1 is assigned a Windows 10/11 Enterprise E3 license.You use Microsoft Intune Suite to manage devices.User1 activates the following devices: Device1: Windows 11 Enterprise Device2: Windows 10 Enterprise Device3: Windows 11 EnterpriseHow many more devices can User1 activate?
A. 2
B. 3
C. 7
D. 8
View answer
Correct Answer: A
Question #13
You have a Microsoft 365 subscription that includes Microsoft Intune.You have an update ring named UpdateRing1 that contains the following settings: Automatic update behavior: Auto install and restart at a scheduled time Automatic behavior frequency: First week of the month Scheduled install day: Tuesday Scheduled install time: 3 AMFrom the Microsoft Intune admin center, you select Uninstall for the feature updates of UpdateRing1.When will devices start to remove the feature updates?
A. when a user approves the uninstall
B. as soon as the policy is received
C. next Tuesday
D. the first Tuesday of the next month
View answer
Correct Answer: B
Question #14
You have a Microsoft 365 subscription that uses Microsoft Intune Suite.You use Microsoft Intune to manage devices.You have a Windows 11 device named Device1 that is enrolled in Intune. Device1 has been offline for 30 days.You need to remove Device1 from Intune immediately. The solution must ensure that if the device checks in again, any apps and data provisioned by Intune are removed. User-installed apps, personal data, and OEM-installed apps must be retained.What should you use?
A. a Delete action
B. a Retire action
C. a Fresh Start action
D. an Autopilot Reset action
View answer
Correct Answer: B
Question #15
You have a Microsoft 365 E5 subscription. The subscription contains 25 computers that run Windows 11 and are enrolled in Microsoft Intune. You need to onboard the devices to Microsoft Defender for Endpoint. What should you create in the Microsoft Intune admin center?
A. an attack surface reduction (ASR) policy
B. a security baseline
C. an endpoint detection and response (EDR) policy
D. an account protection policy
E. an antivirus policy
View answer
Correct Answer: C
Question #16
You have a Microsoft 365 subscription that contains a user named User1 and uses Microsoft Intune Suite.You use Microsoft Intune to manage devices that run Windows 11.User provides remote support for 75 devices in the marketing department.You need to add User1 to the Remote Desktop Users group on each marketing department device.What should you configure?
A. an app configuration policy
B. a device compliance policy
C. an account protection policy
D. a device configuration profile
View answer
Correct Answer: B
Question #17
Your network contains an on-premises Active Directory domain. The domain contains two computers named Computer1 and Computer? that run Windows 10. You install Windows Admin Center on Computer1. You need to manage Computer2 from Computer1 by using Windows Admin Center. What should you do on Computed? To manage a remote computer from Windows Admin Center, you need to enable PowerShell remoting on the remote computer. You can do this by running the Enable-PSRemoting cmdlet, which configures the WinRM service,
A. pdate the TrustedHosts list
B. un the Enable-PSRemoting cmdlet
C. llow Windows Remote Management (WinRM) through the Microsoft Defender firewall
D. dd an inbound Microsoft Defender Firewall rule
View answer
Correct Answer: B
Question #18
You have a Windows 10 device named Computer1 enrolled in Microsoft Intune. You need to configure Computer1 as a public workstation that will run a single customer-facing, full-screen application. Which configuration profile type template should you use in Microsoft Intune admin center?
A. hared multi-user device
B. evice restrictions
C. iosk
D. ndpoint protection
View answer
Correct Answer: C
Question #19
You need to meet the device management requirements for the developers. What should you implement?
A. folder redirection
B. Enterprise State Roaming
C. home folders
D. known folder redirection in Microsoft OneDrive
View answer
Correct Answer: B
Question #20
You have a Microsoft 365 E5 subscription. You create a new update rings policy named Policy1 as shown in the following exhibit. Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic. NOTE: Each correct selection is worth one point,
A. Mastered
B. Not Mastered
View answer
Correct Answer: C

View Answers after Submission

Please submit your email and WhatsApp to get the answers of questions.

Note: Please make sure your email ID and Whatsapp are valid so that you can get the correct exam results.

Email:
Whatsapp/phone number: