Microsoft Certification 70-346 - O365 Identities/Requirements

96 Questions | Total Attempts: 281

SettingsSettingsSettings
Microsoft Certification 70-346 - O365 Identities/Requirements

MS Exam 70-346: Managing Office 365 Identities and Requirements


Related Topics
Questions and Answers
  • 1. 
    A company deploys an Office 365 tenant in a hybrid configuration with Exchange Server 2013. Office 365 users cannot see the free/busy information that is published from the on-premises Exchange Server. In addition, Exchange Server users cannot see free/busy information that is published from Office 365.You need to troubleshoot why users cannot access free/busy information from both Office 365 and Exchange Server 2013. Which tool should you run?
    • A. 

      The Hybrid Configuration wizard

    • B. 

      The Remote Connectivity Analyzer with the Exchange Server tab selected

    • C. 

      The Microsoft Connectivity Analyzer Tool

    • D. 

      The Remote Connectivity Analyzer with the Office 365 tab selected

  • 2. 
    You are the Office 365 administrator for your company. The environment must support single sign-on. You need to install the required certificates.Which two certificates should you install? Each correct answer presents part of the solution.
    • A. 

      Secure Sockets Layer (SSL)

    • B. 

      Privacy-enhanced mail (PEM)

    • C. 

      Token signing

    • D. 

      Personal

    • E. 

      Software publisher

  • 3. 
    You are the Office 365 administrator for your company. You prepare to install Active Directory Federation Services (AD FS). You need to open the correct port between the AD FS proxy server and the AD FS federation server.Which port should you open?
    • A. 

      TCP 80

    • B. 

      TCP 135

    • C. 

      TCP 389

    • D. 

      TCP 443

    • E. 

      TCP 636

    • F. 

      TCP 1723

  • 4. 
    An organization implements single sign-on (SSO) for use with Office 365 services. You install an Active Directory Federation Services (AD FS) proxy server. Users report that they are unable to authenticate. You launch the Event Viewer and view the event information shown in the following screen shot:You need to ensure that users can authenticate to Office 365. What should you do?
    • A. 

      Re-enter the credentials used to establish the trust.

    • B. 

      Verify the federation server proxy is trusted by the federation service.

    • C. 

      Re-install the Secure Sockets Layer certificate for the federation service.

    • D. 

      Verify network connectivity between the Federation Service Proxy and federation server.

  • 5. 
    • A. 

      Service administrator

    • B. 

      Global administrator

    • C. 

      Delegate administrator

    • D. 

      Password administrator

  • 6. 
    You are the Office 365 administrator for your company. You have a workstation that runs Windows 8. You need to install the prerequisite components so that you can view mail protection reports on the workstation.Which two items must you install? Each correct answer presents part of the solution.
    • A. 

      SQL Server Analysis Services

    • B. 

      Microsoft Connectivity Analyzer Tool

    • C. 

      Microsoft Access 2013

    • D. 

      .NET Framework 4.5

    • E. 

      Microsoft Excel 2013

  • 7. 
    Your company purchases an Office 365 plan. The company has an Active Directory Domain Services domain. User1 must manage Office 365 delegation for the company. You need to ensure that User1 can assign administrative roles to other users.What should you do?
    • A. 

      Create an Office 365 tenant and assign User1 the password administrator role.

    • B. 

      Use a password administrator account to assign the role to User1.

    • C. 

      Use a user management administrator account to assign the role to User1.

    • D. 

      Create an Office 365 tenant and assign User1 the global administrator role.

  • 8. 
    An organization prepares to migrate to Office 365. The organization has one domain controller named NYC-DC1 and one server named NYC-DS that is designated as the directory synchronization computer.NYC-DC1 is running Windows Server 2008 R2 and has a Forest Functional Level of Windows 2000. What is the minimum you must do to the server to allow Directory Synchronization to function?
    • A. 

      Raise the forest functional level to Windows Server 2003.

    • B. 

      Raise the forest functional level to Windows Server 2008.

    • C. 

      Raise the forest functional level to Windows Server 2008 R2.

    • D. 

      Install Windows Server 2012.

  • 9. 
    An organization prepares to migrate to Office 365. The organization has one domain controller named NYC-DC1 and one server named NYC-DS that is designated as the directory synchronization computer.NYC-DS is running Windows Server 2003. What is the minimum you must do to the server to allow Directory Synchronization to function?
    • A. 

      Install the 64-bit version of Windows Server 2008 Standard edition

    • B. 

      Install Windows Server 2008 R2 Standard edition

    • C. 

      Install Windows Server 2008 R2 Datacenter edition

    • D. 

      Install Windows Server 2012

  • 10. 
    Contoso Ltd. uses Office 365 for collaboration. You are implementing Active Directory Federation Services (AD FS) for single sign-on (SSO) with Office 365 services. The environment contains an Active Directory domain and an AD FS federation server. You need to ensure that the environment is prepared for the AD FS setup.Which two actions should you preform? Each correct answer presents part of the solution.
    • A. 

      Configure Active Directory to use the domain contoso.com

    • B. 

      Configure Active Directory to use the domain contoso.local

    • C. 

      Create a server authentication certificate for the federation server by using fs.contoso.com as the subject name and subject alternative name.

    • D. 

      Create a server authentication certificate for the federation server by using fs.contoso.local as the subject name and subject alternative name.

  • 11. 
    Your company has an Office 365 subscription. You create a new retention policy that contains several retention tags. A user named Test5 has a client computer that runs Microsoft Office Outlook 2007. You install Microsoft Outlook 2010 on the client computer of Test5. Test5 reports that the new retention tags are unavailable from Outlook 2010. You verify that other users can use the new retention tags.You need to ensure that the new retention tags are available to Test5 from Outlook 2010. What should you do?
    • A. 

      Instruct Test5 to repair the Outlook profile

    • B. 

      Modify the retention policy tags

    • C. 

      Run the Set-Mailbox cmdlet

    • D. 

      Force directory synchronization

  • 12. 
    You are the Office 365 administrator for your company. Users report that their passwords expire too frequently, and they do not receive adequate notice of password expiration. Account passwords must remain active for the longest duration allowed. Users must receive password expiration notifications as early as possible. You need to configure the password expiration policy.What is the maximum amount of days you can set before a password change is forced?
    • A. 

      1

    • B. 

      13

    • C. 

      30

    • D. 

      72

    • E. 

      365

    • F. 

      730

    • G. 

      1095

    • H. 

      1460

  • 13. 
    You are the Office 365 administrator for your company. Users report that their passwords expire too frequently, and they do not receive adequate notice of password expiration. Account passwords must remain active for the longest duration allowed. Users must receive password expiration notifications as early as possible. You need to configure the password expiration policy.What is the earliest amount of time you can set or users to be notified of an upcoming password change?
    • A. 

      1

    • B. 

      13

    • C. 

      30

    • D. 

      72

    • E. 

      365

    • F. 

      730

    • G. 

      1095

    • H. 

      1460

  • 14. 
    A company deploys an Office 365 tenant. You must provide an administrator with the ability to manage company information in Office 365. You need to assign permissions to the administrator by following the principle of least privilege.Which role should you assign?
    • A. 

      Global administrator

    • B. 

      Service administrator

    • C. 

      Billing administrator

    • D. 

      User management administrator

  • 15. 
    An organization purchases an Office 365 plan for 10,000 user accounts. You have a domain controller that runs Windows Server 2008 R2. The forest functional level is set to Windows Server 2000. The organization must be able to synchronize user attributes from the on-premises Active Directory Domain Services environment to Office 365.You need to prepare to install the Windows Azure Active Directory Sync tool. Which two actions should you preform?
    • A. 

      Upgrade the domain controller to Windows Server 2012

    • B. 

      Install Microsoft .NET Framework 3.5 SP1 and Microsoft .NET Framework 4.0

    • C. 

      Install Windows Server 2012 Standard Edition

    • D. 

      Raise the forest functional level to Windows Server 2008 R2

    • E. 

      Join a workstation to an Active Directory domain

  • 16. 
    You are the Office 365 administrator for your company. You must configure a trust between the on-premises Active Directory domain and the Office 365 envionment by using Active Directory Federation Services. You need to assign the correct certificate to the description of your on-premises server environment below.Which certificate secures the communication between federation servers, clients, and federation server proxy computers?
    • A. 

      Client

    • B. 

      Domain

    • C. 

      X.509

    • D. 

      SSL

  • 17. 
    You are the Office 365 administrator for your company. You must configure a trust between the on-premises Active Directory domain and the Office 365 envionment by using Active Directory Federation Services. You need to assign the correct certificate to the description of your on-premises server environment below.Which certificate securely signs all tokens that the federation server issues for the cloud-based services.
    • A. 

      Client

    • B. 

      Domain

    • C. 

      X.509

    • D. 

      SSL

  • 18. 
    You are the Office 365 administrator for your company. The company has two administrators named User1 and User2. Users must be able to perform the activities as shown in the following table: AdministratorActivitiesUser1
    • Reset passwords for standard user accounts
    • Reset passwords for other members of the same role.
    • Must NOT reset passwords for other administrator accounts
    User2
    • Reset passwords for all administrator accounts
    What is the correct role to assign to User1?
    • A. 

      Global administrator

    • B. 

      Delegate administrator

    • C. 

      Billing administrator

    • D. 

      Password administrator

  • 19. 
    You are the Office 365 administrator for your company. The company has two administrators named User1 and User2. Users must be able to perform the activities as shown in the following table: AdministratorActivitiesUser1
    • Reset passwords for standard user accounts
    • Reset passwords for other members of the same role.
    • Must NOT reset passwords for other administrator accounts
    User2
    • Reset passwords for all administrator accounts
    What is the correct role to assign to User2?
    • A. 

      Global administrator

    • B. 

      Delegate administrator

    • C. 

      Billing administrator

    • D. 

      Password administrator

  • 20. 
    You are the SharePoint Online administrator for Contoso, Ltd. The company purchases an Office 365 Enterprise E1 plan. The public-facing website must use SharePoint Online and the custom domain contoso.comYou need to configure the DNS settings for the public-facing SharePoint site. How should you configure the DNS settings?
    • A. 

      Record: A - Hostname: contoso-public.office.com - Points To Address: contoso-public.sharepoint.com

    • B. 

      Record: CNAME - Hostname: www.contoso.com - Points To Address: contoso-public.sharepoint.com

    • C. 

      Record: CNAME - Hostname: www.contoso.com - Points To Address: contoso-public.onmicrosoft.com

    • D. 

      Record: A - Hostname: www.contoso.com - Points To Address: contoso-public.sharepoint.com

  • 21. 
    Contoso, Ltd. plans to use Office 365 for email services and Lync Online. Contoso has four unique domain names. You need to migrate domain names to Office 365.Which two domain names should you exclude from the migration?
    • A. 

      Contoso.us

    • B. 

      Contoso

    • C. 

      Contoso.local

    • D. 

      Contoso.co

  • 22. 
    An organization prepares to implement Office 365. You have the follow responsibilities:
    1. Gather information about the requirements for the Office 365 implementation
    2. Use a supported tool that provides the most comprehensive information about the current environment
    You need to determine the organization's readiness for the Office 365 implementation. What should you do?
    • A. 

      Run the Windows PowerShell cmdlet Get-MsolCompanyInformation

    • B. 

      Run the OnRamp for Office 365 tool

    • C. 

      Install the Windows Azure Active Directory Sync tool

    • D. 

      Run the Office 365 Deployment Readiness Tool

  • 23. 
    You deploy Lync Online for a company that has offices in San Francisco and New York. The two offices both connect to the internet. There is no private network link between the offices. Users in the New York office report that they cannot transfer files to the users in the San Francisco office by using Lync Online.What should you do?
    • A. 

      Configure the firewall to open Transmission Control Protocol (TCP) ports 50060-50079

    • B. 

      Configure the firewall to open Transmission Control Protocol (TCP) ports 50040-50059

    • C. 

      Create a private network connection to share files

    • D. 

      Upgrade all of the Lync Online clients to use Lync 2013

  • 24. 
    A company deploys an Office 365 tenant. You need to configure single sign-on (SSO) for all user accounts.Which two actions should you preform?
    • A. 

      Run the Windows PowerShell cmdlet Convert-MsolDomainToStandard

    • B. 

      Run the Windows PowerShell cmdlet Enable-ADFSEndpoint

    • C. 

      Run the Windows PowerShell cmdlet Convert-MsolDomainToFederated

    • D. 

      Deploy a federation server proxy

    • E. 

      Run the Windows PowerShell cmdlet New-ADFSOrganization

    • F. 

      Deploy a federation server farm

  • 25. 
    • A. 

      On the AD FS federation server, run PhoneFactor AgentSetup.exe

    • B. 

      On the AD FS Federation server, run WindowsAzureSDK-x64.exe

    • C. 

      On the AD FS Federation server, run the Windows PowerShell cmdlet Register-AdfsAuthenticationProvider

    • D. 

      On the AD FS Federation server, run FsConfigWizard.exe

    • E. 

      Run the Active Directory Domains and Trusts MMC snap-in. Register Windows Azure Multi-Factor Authentication Server as an additional authentication provider

    • F. 

      Run the Windows Azure Multi-Factor Authentication Server Authentication Configuration Wizard