MS-102 Implement identity synchronization Microsoft Quiz Answers

Get MS-102 Implement identity synchronization Microsoft Quiz Answers

This learning path examines how to plan for and implement identity synchronization in a hybrid Microsoft 365 deployment, including how to implement Microsoft Entra Connect and how to manage synchronized identities.

This learning path helps prepare you for Exam MS-102: Microsoft 365 Administrator.

Prerequisites:

  • Students should have completed a role-based administrator training collection such as Messaging, Teamwork, Security and Compliance, or Collaboration.
  • Students should have a proficient understanding of DNS and basic functional experience with Microsoft 365 services.
  • Students must have a proficient understanding of general IT practices.
  • Students should have a working knowledge of PowerShell.

Enroll On Microsoft

Quiz 1: Examine authentication options for the hybrid identity model

Q1. Which Microsoft service provides single sign-on (SSO) and identity federation capabilities?

  • PingFederate
  • Pass-through authentication (PTA)
  • AD FS

Quiz 2: Knowledge check

Q1. Contoso wants to implement a hybrid identity model. It also wants to be responsible for maintaining and supporting the directory synchronization solution on its own. Which directory synchronization tool should Contoso use to meet this requirement?

  • Federated authentication
  • Microsoft Entra Connect
  • Microsoft Entra Connect cloud sync

Q2. In which type of managed authentication does AD DS perform the authentication when using a hybrid identity model?

  • Pass-through authentication (PTA)
  • Federated authentication
  • Password hash synchronization (PHS)

Q3. Fabrikam is implementing a hybrid identity model in which it uses a third-party identity provider. What is Fabrikam’s authoritative source for account information?

  • Fabrikam’s on-premises AD DS
  • Microsoft Entra ID
  • Fabrikam’s third-party identity provider

Module 2: Prepare for identity synchronization to Microsoft 365

This module examines all the planning aspects that must be considered when implementing directory synchronization between on-premises Active Directory and Microsoft 365.

Learning objectives:

By the end of this module, you should be able to:

  • Identify the tasks necessary to configure your Microsoft Entra environment.
  • Plan directory synchronization to synchronize your on-premises Active Directory objects to Microsoft Entra ID.
  • Identify the features of Microsoft Entra Connect sync and Microsoft Entra Connect Cloud Sync.
  • Choose which directory synchronization best fits your environment and business needs.

Prerequisites:

None

This module is part of these learning paths:

Quiz 1: Prepare for directory synchronization

Q1. Contoso has completed its directory synchronization of users and groups from its on-premises Active Directory to Microsoft 365. What is Contoso’s source of authority for user and group objects that were synchronized?

  • Contoso’s on-premises Active Directory
  • Microsoft 365
  • Microsoft Entra ID

Quiz 2: Plan for directory synchronization using Microsoft Entra Connect

Q1. As the Enterprise Administrator for Tailspin Toys, you’re planning to use Microsoft Entra Connect as your directory synchronization tool. Tailspin’s Active Directory has less than 100,000 objects. Which of the following statements applies given the company’s configuration?

  • You must plan for another SQL Server to manage the database and load
  • You can use more than one Microsoft Entra Connect server connected to a single Microsoft Entra ID
  • You can use the light version of SQL Server Express that’s installed on the Microsoft Entra Connect server

Quiz 3: Knowledge check

Q1. You’re the Microsoft 365 Administrator for Tailspin Toys. You’re using Microsoft Entra Connect as your synchronization tool. You recently noticed that the synchronization process has been taking longer than expected. In some cases, it encountered errors during the sync operation. You reviewed the logs and monitoring tools related to Microsoft Entra Connect, the proxy server, and other associated network infrastructure. The logs indicated connection idle timeouts on the proxy server as the potential problem. What should you do to correct this situation?

  • Restart Microsoft Entra Connect and the proxy server
  • Set the connection idle timeout setting on the proxy server to 6 minutes or more
  • Increase the bandwidth of the network connection

Q2. Fabrikam currently has Exchange Server 2016 installed. It plans to implement a hybrid Exchange environment with Microsoft 365. Fabrikam has more than 100,000 objects. It has multiple on-premises Active Directory forests. It plans to synchronize user, group, and contact objects. It also wants to implement password hash synchronization and seamless single-sign-in. Which directory synchronization tool should Fabrikam choose?

  • DirSync
  • Microsoft Entra Connect cloud sync
  • Microsoft Entra Connect Sync

Module 3: Implement directory synchronization tools

This module examines the Microsoft Entra Connect and Microsoft Entra Connect cloud sync installation requirements, the options for installing and configuring the tools, and how to monitor synchronization services using Microsoft Entra Connect Health.

Learning objectives:

By the end of this module, should be able to:

  • Configure Microsoft Entra Connect and Microsoft Entra Connect Cloud Sync prerequisites
  • Set up Microsoft Entra Connect and Microsoft Entra Connect Cloud Sync
  • Monitor synchronization services using Microsoft Entra Connect Health

Prerequisites:

None

This module is part of these learning paths:

Quiz 1: Configure Microsoft Entra Connect

Q1. During installation of Microsoft Entra Connect, you can choose the Customized Settings option. Which of the following items is a valid reason for selecting this option?

  • When the organization wants to use pass-through authentication
  • When the organization has a single Active Directory forest
  • When the organization wants to use the default setup option for Microsoft Entra Connect

Quiz 2: Configure Microsoft Entra Connect cloud sync prerequisites

Q1. As the Microsoft 365 Administrator for Fabrikam, Holly Spencer is completing the prerequisites to running Microsoft Entra Connect cloud sync. As part of that process, Holly has created a user account in the Microsoft Entra admin center. What’s the next step that Holly must complete so that Fabrikam doesn’t get locked out of its tenant?

  • Add one or more custom domain names to your Microsoft Entra tenant
  • Assign the user account hybrid identity administrator permissions on Fabrikam’s Microsoft Entra tenant
  • Identify an on-premises server for the provisioning agent

Quiz 3: Knowledge check

Q1. You’re the Microsoft 365 Administrator for Contoso, which is planning to install Microsoft Entra Connect. You’re reviewing the prerequisites for Microsoft Entra Connect. Which of the following items should you consider when determining which server to install it on?

  • Microsoft Entra Connect supports Windows Server 2003 and later
  • Microsoft Entra Connect can be installed on a domain controller, member server, or non-domain joined server
  • You can have more than one Microsoft Entra Connect server connected to a single Microsoft Entra ID or Microsoft 365 tenant

Q2. You’re the Microsoft 365 Administrator for Contoso, which is planning to install Microsoft Entra Connect. Which of the following permissions is required to install Microsoft Entra Connect on a domain joined computer and successfully synchronize your directory to Microsoft 365?

  • Local administrator permissions on the Microsoft Entra Connect computer
  • A Domain Admin account for your on-premises Active Directory
  • A Domain User account for your on-premises Active Directory

Module 4: Manage synchronized identities

This module examines how to manage user identities when you configure Microsoft Entra Connect, how to manage users and groups in Microsoft 365 with Microsoft Entra Connect, and how to maintain directory synchronization.

Learning objectives:

By the end of this module, you should be able to:

  • Ensure users synchronize efficiently
  • Manage groups with directory synchronization
  • Use Microsoft Entra ID Connect Sync Security Groups to help maintain directory synchronization
  • Configure object filters for directory synchronization
  • Explain how Microsoft Identity Manager helps organizations manage and synchronize user identities across their organizations and hybrid environments
  • Troubleshoot directory synchronization using various troubleshooting tasks and tools

Prerequisites:

None

This module is part of these learning paths:

Quiz 1: Manage users with directory synchronization

Q1. As the Microsoft 365 Administrator for Northwind Traders, you accidentally deleted a user account in your on-premises Active Directory. Because the deletion was synchronized to Microsoft 365, the user object was put in a deleted state and no longer appears in the Microsoft 365 Active Users list. Since you prefer to use Windows PowerShell to do system maintenance, which Microsoft Graph PowerShell cmdlet should you use to recover the deleted user?

  • Recover-MgDeletedUser
  • Recycle-MgDeletedItem
  • Restore-MgDirectoryDeletedItem

Quiz 2: Explore Microsoft Identity Manager

Q1. As Tailspin Toys’ Microsoft 365 Administrator, Alan Deyoung wants to implement Microsoft Identity Manager to help protect Tailspin’s privileged user accounts. Alan prepared the company’s domain and is now preparing Tailspin’s identity management servers. Which of the following resources must Alan configure to prepare Tailspin’s identity management servers?

  • SharePoint Server
  • Exchange Server
  • Network firewall

Quiz 3: Troubleshoot directory synchronization

Q1. Key troubleshooting tasks for directory synchronization include analyzing logs for errors and remediating synchronization errors. Which of the following errors can typically occur during directory synchronization from your on-premises Active Directory to Microsoft 365?

  • The email from your Outlook client got stuck in the Outbox folder and can’t be sent
  • Phone calls from your Skype for Business client have poor audio quality
  • Unexpected changes in Active Directory that affect OU scoping or attribute filtering

Quiz 4: Knowledge check

Q1. Where can you create, modify, and desync custom user objects when directory synchronization is implemented?

  • Microsoft 365 admin center
  • Local Active Directory Users and Computers snap-in in your on-premises Active Directory
  • Exchange Online admin center

Q2. As the Microsoft 365 Administrator for Northwind Traders, you accidentally deleted a user account in your on-premises Active Directory. Since the deletion is synchronized to Microsoft 365, the user object was put in a deleted state and no longer appears in the Microsoft 365 Active Users list. How long do you have to recover the deleted account before it can no longer be restored?

  • 45 days
  • 60 days
  • 30 days

Module 5: Manage secure user access in Microsoft 365

This module examines various password-related tasks for users and administrators, including:

  • creating and configuring password policies
  • configuring self-service password management
  • configuring multifactor authentication
  • implementing conditional access policies

Learning objectives:

By the end of this module, you should be able to:

  • Manage user passwords
  • Describe pass-through authentication
  • Enable multifactor authentication
  • Describe self-service password management
  • Implement Microsoft Entra ID Smart Lockout

Prerequisites:

None

This module is part of these learning paths:

Quiz 1: Manage user passwords

Q1. Which Microsoft 365 administrator role can change the password of a user who’s assigned to the Microsoft 365 Global administrator role?

  • User Management administrator
  • Global administrator
  • Password administrator

Quiz 2: Explore self-service password management

Q1. When passwords are changed in Microsoft 365, they can be written back to the on-premises Active Directory. Which of the following requirements must be met to enable this feature?

  • You need a Microsoft Entra ID P1 or P2 license
  • Your domain controllers must be at least Windows Server 2003
  • You need a Microsoft 365 Business license

Quiz 3: Implement conditional access policies

Q1. Contoso has chosen to implement Conditional Access policies. Conditional Acccess enables Contoso to protect the company’s regulated content by requiring certain criteria be met before granting access to the content. What prerequisite must Contoso complete to implement Conditional Access policies?

  • Install Microsoft Intune
  • Purchase a Microsoft Entra ID P1 or P2 license
  • Implement Microsoft Entra ID Governance

Quiz 4: Knowledge check

Q1. As the Microsoft 365 Administrator for Tailspin Toys, you want to use Conditional Access to enable multifactor authentication (MFA). Microsoft recommends that before you enable Conditional Access policies, you should first turn off two settings. One is per-user MFA. What is the other setting that you should turn off before enabling Conditional Access policies?

  • Self-service password reset
  • Microsoft Entra Smart Lockout
  • Security Defaults

Q2. How is Microsoft Entra pass-through authentication configured?

  • By using Microsoft Entra Connect
  • In the Microsoft 365 admin center
  • In the Microsoft Entra admin center

Q3. You’re a sales rep for Fabrikam. When you tried signing in to your cloud account today, you kept forgetting your latest password. After a series of failed sign-in attempts, Smart Lockout locked you out of your account. You were informed that an administrator had to wait for the lockout duration to expire before they could unlock your account. Since you’re working under a tight deadline on your current sales project, you can’t afford to wait that long before accessing your account. You either want to unlock the account yourself, or you want to get someone else to unlock it for you. Which of the following methods is the recommended approach that you should take to unlock your account if you can’t wait for an administrator to do it?

  • Use self-service password reset from a trusted device or location
  • Contact the Microsoft 365 support team and request an immediate account unlock
  • Perform a password reset from another user’s account with administrative privileges

Find More Microsoft Quiz Answers >>

Work Smarter with Microsoft PowerPoint Coursera Quiz Answers

Work Smarter with Microsoft Excel Coursera Quiz Answers

Introduction to Microsoft Azure Cloud Services Coursera Quiz Answers

Team Networking Funda
Team Networking Funda

We are Team Networking Funda, a group of passionate authors and networking enthusiasts committed to sharing our expertise and experiences in networking and team building. With backgrounds in Data Science, Information Technology, Health, and Business Marketing, we bring diverse perspectives and insights to help you navigate the challenges and opportunities of professional networking and teamwork.

Leave a Reply

Your email address will not be published. Required fields are marked *