Microsoft 365 Administrator - MS-102무료 덤프문제 풀어보기

Your company has an office in London.
You have a Microsoft 365 subscription.
You need to create a Conditional Access policy named Policy1 that meets the following requirements:
* Only FIDO2 security keys, Windows Hello for Business, and certificates must be supported for authentication.
* The London office must be marked as a trusted location and excluded from Policy1.
How should you configure Policy1?
정답:

Explanation:
Setting
Correct selection
Authentication strength
Phishing-resistant MFA
Named location
IP ranges
The correct authentication strength is Phishing-resistant MFA . Microsoft Entra authentication strengths let administrators control which authentication methods satisfy a Conditional Access policy. The built-in phishing-resistant MFA strength is designed for methods such as FIDO2/passkeys , Windows Hello for Business , and certificate-based authentication , which matches the requirement exactly. Regular
"Multifactor authentication" would allow broader MFA methods such as push notification, SMS, voice, or OTP, so it is too permissive. "Passwordless MFA" is also not exact because passwordless methods can include methods that are not necessarily the same phishing-resistant set required here.
The correct named location type is IP ranges . To mark a physical office such as London as trusted, you define the office's public egress IP addresses as a Conditional Access named location and mark that IP range as trusted. Microsoft's Conditional Access location guidance states that named locations can be created as countries/regions or IP ranges , and that when you select IP ranges, you can optionally Mark as trusted location .
Therefore, configure Policy1 with Phishing-resistant MFA and exclude a trusted named location created from the London office IP ranges .
You have a Microsoft 365 E5 tenant that contains 100 Windows 10 devices.
You plan to deploy a Windows 10 Security Baseline profile that will protect secrets stored in memory.
What should you configure in the profile?

정답: B
You have a Microsoft 365 tenant that is signed up for Microsoft Store for Business and contains a user named User1. You need to ensure that User1 can perform the following tasks in Microsoft Store for Business:
* Assign licenses to users.
* Procure apps from Microsoft Store.
* Manage private store availability for all items.
The solution must use the principle of least privilege.
Which Microsoft Store for Business role should you assign to User1?

정답: A
설명: (Fast2test 회원만 볼 수 있음)
You have a Microsoft 365 E5 tenant.
You create an auto-labeling policy to encrypt emails that contain a sensitive info type. You specify the locations where the policy will be applied.
You need to deploy the policy.
What should you do first?

정답: A
설명: (Fast2test 회원만 볼 수 있음)
You have a Microsoft 365 E5 subscription.
You need to configure threat protection tor Microsoft 365 to meet the following requirements:
* Limit a user named User 1 from sending more than 30 email messages per day.
* Prevent the delivery of a specific file based on the file hash.
Which two threat policies should you configure in Microsoft Defender for Office 365? To answer, select the appropriate threat policies in the answer area.
NOTE: Each correct selection is worth one point.
정답:

Explanation:
Limit a user named User 1 from sending more than 30 email messages per day: Anti-spam policy The anti-spam policy in Microsoft Defender for Office 365 allows you to configure outbound spam settings, including limiting the number of email messages a user can send per day. This helps prevent spam and potential email abuse within the organization.
Prevent the delivery of a specific file based on the file hash: Safe Attachments policy The Safe Attachments policy in Microsoft Defender for Office 365 can be configured to block or quarantine emails with attachments that match specific file hashes. This ensures that potentially malicious files are not delivered to users ' inboxes.
You have a Microsoft 365 subscription that contains an Microsoft Entra tenant named contoso.com. The tenant contains the users shown in the following table.

You create and assign a data loss prevention (DLP) policy named Policy1. Policy1 is configured to prevent documents that contain Personally Identifiable Information (Pll) from being emailed to users outside your organization.
To which users can User! send documents that contain Pll?

정답: A
Your company has a Microsoft E5 tenant.
The company must meet the requirements of the ISO/IEC 27001:2013 standard.
You need to assess the company's current state of compliance.
What should you use?

정답: B
설명: (Fast2test 회원만 볼 수 있음)
You have a Microsoft 365 E5 subscription that uses Endpoint security.
You need to create a group and assign the Endpoint Security Manager role to the group.
Which type of group can you use?

정답: E

우리와 연락하기

문의할 점이 있으시면 메일을 보내오세요. 12시간이내에 답장드리도록 하고 있습니다.

근무시간: ( UTC+9 ) 9:00-24:00
월요일~토요일

서포트: 바로 연락하기 

English Deutsch 繁体中文 日本語