Exam MD-102: Endpoint Administrator
Practice Assessment Questions and Answers
You have a Microsoft 365 E5 subscription that uses Microsoft Intune.
You plan to create an Intune device limit restriction named Restriction1.
You need to set the maximum number of devices that a user can enroll.
What is the maximum number of devices that you can specify in Restriction1? - -15
-Which devices can access on-premises resources by using Microsoft Tunnel? - -Android
and iOS
-For which devices can you create an Endpoint Protection device configuration profile
template? - -Windows 11 and macOS
-You have a Microsoft 365 subscription that includes 500 Windows 11 devices that are
enrolled in Microsoft Intune.
You create a new configuration profile and deploy it to all Windows 11 devices.
What is the maximum amount of time it may take for a device to apply the new
configuration profile? - -8 hours
-You have a Microsoft 365 subscription that includes the following devices:
Device1: Windows 10 Home
Device2: Windows 11 Professional
Device3: Windows 8.1 Enterprise
Device4: Android 9.0
You need to identify which devices support Intune configuration policies.
Which devices should you identify? - -All four devices
-You have a Microsoft 365 E5 subscription that uses Microsoft Intune.
Intune contains the following resources:
Comply1: Compliance policy
Office1: Policy for Office apps
CA1: Conditional Access policy
Conf1: Device configuration profile
You plan to create a policy set named Set1.
Which resources can be added to Set1? - -Comply1 and Conf1 only
-You have a Microsoft 365 subscription that includes a user named User1.
,You need to ensure that User1 can enroll 150 Windows devices to Microsoft Intune. The
solution must follow the principle of least privilege.
Which role should you assign to User1? - -Device Enrollment Manager
-You have a Microsoft 365 subscription.
You need to ensure that any Intune managed Windows 10 Device that has been inactive for
180 days is automatically wiped and that the enrollment is deleted from Microsoft Intune.
What should you configure? - -Device Cleanup Rules
-You have a Microsoft 365 subscription that includes 500 Windows 11 devices that are
managed by using Microsoft Intune.
You need to remove stale devices from the subscription. The solution must minimize
administrative effort.
What should you do? - -Use the bulk device actions to delete the devices.
-You have a Microsoft 365 E5 subscription that uses Microsoft Intune.
You have the following devices enrolled in Intune:
Device1: Windows 11
Device2: Android
Device3: iOS
You plan to implement Remediations in Intune to detect and fix common support issues.
On which devices can you use Remediations? - -Device 1 only - Windows 11
-You have a Microsoft 365 subscription that includes a group named Group1 and two
devices named Device1 and Device2.
Device1 runs Windows 10 Enterprise and is a member of Group1.
Device2 runs Windows 11 Professional.
You create a new Windows 10 Configuration Profile and configure the following
assignments:
Included Groups: All Devices
Excluded Groups: Group1
You configure the follow applicability rule:
Rule: Assign profile if
Property: OS edition
Value: Windows 10/11 Enterprise
Which devices will receive the profile? - -neither Device1 nor Device2 - Device1 will not
receive the profile as it is a member of Group1 which is excluded from the profile scope.
Device2 will not receive the profile as it does not meet the Applicability Rules.
, -You have a Microsoft 365 subscription.
You purchase a device named Device1 and enroll Device1 in Microsoft Intune.
You need to configure Device1 to automatically login and display a single web app. The
solution must ensure that only administrators are able to access other features on the
device.
What should you configure? - -a Configuration profile using kiosk mode
-You have a Microsoft 365 subscription that includes 500 Windows 11 devices that are
managed by using Microsoft Intune.
You deploy a new VPN provider for the subscription.
You need to configure new connection profiles for the VPN provider on the Windows
devices. The solution must minimize administrative effort.
What should you do? - -Create a Device Configuration profile with templates.
-You have a Microsoft 365 subscription that uses Microsoft Intune.
You need to query the Microsoft Intune logs by using Azure Monitor.
What should you do first? - -Create a Log Analytics workspace.
-You have a Microsoft 365 subscription that contains 100 devices that run Windows 10
and are managed by Microsoft Intune.
You need to view an inventory of the apps and versions which are installed on the devices.
The solution must minimize administrative effort.
What should you do? - -From the Microsoft Intune Admin Center, use the Apps blade to
review the discovered apps.
-You have a Microsoft 365 E3 subscription that includes 500 Windows 11 devices that are
managed by using Microsoft Intune.
Several users report a slow start up experience for their devices.
You need to measure the startup performance of their devices by using Endpoint Analytics.
The solution must minimize administrative effort.
What should you do? - -Create a Device Configuration Profile.
-You have a Microsoft 365 subscription that includes 500 Windows 11 devices that are
managed by using Microsoft Intune.
The subscription includes a monitoring solution that uses Azure Monitor and collects
Microsoft Entra ID sign-in logs.
You need to ensure that the details for non-compliant devices are sent to Azure Monitor.
Which two logs should you configure? - -Device Compliance Organization logs and
Operation logs
Practice Assessment Questions and Answers
You have a Microsoft 365 E5 subscription that uses Microsoft Intune.
You plan to create an Intune device limit restriction named Restriction1.
You need to set the maximum number of devices that a user can enroll.
What is the maximum number of devices that you can specify in Restriction1? - -15
-Which devices can access on-premises resources by using Microsoft Tunnel? - -Android
and iOS
-For which devices can you create an Endpoint Protection device configuration profile
template? - -Windows 11 and macOS
-You have a Microsoft 365 subscription that includes 500 Windows 11 devices that are
enrolled in Microsoft Intune.
You create a new configuration profile and deploy it to all Windows 11 devices.
What is the maximum amount of time it may take for a device to apply the new
configuration profile? - -8 hours
-You have a Microsoft 365 subscription that includes the following devices:
Device1: Windows 10 Home
Device2: Windows 11 Professional
Device3: Windows 8.1 Enterprise
Device4: Android 9.0
You need to identify which devices support Intune configuration policies.
Which devices should you identify? - -All four devices
-You have a Microsoft 365 E5 subscription that uses Microsoft Intune.
Intune contains the following resources:
Comply1: Compliance policy
Office1: Policy for Office apps
CA1: Conditional Access policy
Conf1: Device configuration profile
You plan to create a policy set named Set1.
Which resources can be added to Set1? - -Comply1 and Conf1 only
-You have a Microsoft 365 subscription that includes a user named User1.
,You need to ensure that User1 can enroll 150 Windows devices to Microsoft Intune. The
solution must follow the principle of least privilege.
Which role should you assign to User1? - -Device Enrollment Manager
-You have a Microsoft 365 subscription.
You need to ensure that any Intune managed Windows 10 Device that has been inactive for
180 days is automatically wiped and that the enrollment is deleted from Microsoft Intune.
What should you configure? - -Device Cleanup Rules
-You have a Microsoft 365 subscription that includes 500 Windows 11 devices that are
managed by using Microsoft Intune.
You need to remove stale devices from the subscription. The solution must minimize
administrative effort.
What should you do? - -Use the bulk device actions to delete the devices.
-You have a Microsoft 365 E5 subscription that uses Microsoft Intune.
You have the following devices enrolled in Intune:
Device1: Windows 11
Device2: Android
Device3: iOS
You plan to implement Remediations in Intune to detect and fix common support issues.
On which devices can you use Remediations? - -Device 1 only - Windows 11
-You have a Microsoft 365 subscription that includes a group named Group1 and two
devices named Device1 and Device2.
Device1 runs Windows 10 Enterprise and is a member of Group1.
Device2 runs Windows 11 Professional.
You create a new Windows 10 Configuration Profile and configure the following
assignments:
Included Groups: All Devices
Excluded Groups: Group1
You configure the follow applicability rule:
Rule: Assign profile if
Property: OS edition
Value: Windows 10/11 Enterprise
Which devices will receive the profile? - -neither Device1 nor Device2 - Device1 will not
receive the profile as it is a member of Group1 which is excluded from the profile scope.
Device2 will not receive the profile as it does not meet the Applicability Rules.
, -You have a Microsoft 365 subscription.
You purchase a device named Device1 and enroll Device1 in Microsoft Intune.
You need to configure Device1 to automatically login and display a single web app. The
solution must ensure that only administrators are able to access other features on the
device.
What should you configure? - -a Configuration profile using kiosk mode
-You have a Microsoft 365 subscription that includes 500 Windows 11 devices that are
managed by using Microsoft Intune.
You deploy a new VPN provider for the subscription.
You need to configure new connection profiles for the VPN provider on the Windows
devices. The solution must minimize administrative effort.
What should you do? - -Create a Device Configuration profile with templates.
-You have a Microsoft 365 subscription that uses Microsoft Intune.
You need to query the Microsoft Intune logs by using Azure Monitor.
What should you do first? - -Create a Log Analytics workspace.
-You have a Microsoft 365 subscription that contains 100 devices that run Windows 10
and are managed by Microsoft Intune.
You need to view an inventory of the apps and versions which are installed on the devices.
The solution must minimize administrative effort.
What should you do? - -From the Microsoft Intune Admin Center, use the Apps blade to
review the discovered apps.
-You have a Microsoft 365 E3 subscription that includes 500 Windows 11 devices that are
managed by using Microsoft Intune.
Several users report a slow start up experience for their devices.
You need to measure the startup performance of their devices by using Endpoint Analytics.
The solution must minimize administrative effort.
What should you do? - -Create a Device Configuration Profile.
-You have a Microsoft 365 subscription that includes 500 Windows 11 devices that are
managed by using Microsoft Intune.
The subscription includes a monitoring solution that uses Azure Monitor and collects
Microsoft Entra ID sign-in logs.
You need to ensure that the details for non-compliant devices are sent to Azure Monitor.
Which two logs should you configure? - -Device Compliance Organization logs and
Operation logs