Exit demo 70-697 Configuring Windows Devices PDF format · free preview

Microsoft 70-697 - Questions & Answers

Free preview · every answer includes a full explanation

Product page: https://prepkeys.com/70-697.html

Question 1
Single choice

Your Windows 10 Enterprise work computer is a member of an Active Directory domain. You use your domain account to log on to the computer. You use your Microsoft account to log on to a home laptop.

You want to access Windows 10 Enterprise apps from your work computer by using your Microsoft account.

You need to ensure that you are able to access the Windows 10 Enterprise apps on your work computer by logging on only once.

What should you do?

A.

Add the Microsoft account as a user on your work computer.

B.

Enable Remote Assistance on your home laptop.

C.

Connect your Microsoft account to your domain account on your work computer.

D.

Install OneDrive for Windows on both your home laptop and your work computer.

Question 2
Single choice

You are an IT consultant for small and mid-sized businesses.

One of your clients wants to start using Virtual Smart Cards on its Windows 10 Enterprise laptops and tablets. Before implementing any changes, the client wants to ensure that the laptops and tablets support Virtual Smart Cards.

You need to verify that the client laptops and tablets support Virtual Smart Cards.

What should you do?

A.

Ensure that each laptop and tablet has a Trusted Platform Module (TPM) chip of version 1.2 or greater.

B.

Ensure that BitLocker Drive Encryption is enabled on a system drive of the laptops and tablets.

C.

Ensure that each laptop and tablet can read a physical smart card.

D.

Ensure that the laptops and tablets are running Windows 10 Enterprise edition.

Question 3
Single choice

You administer Windows 10 Enterprise laptop and desktop computers. Your company uses Active Directory Domain Services (AD DS) and Active Directory Certificate Services (AD CS).

Your company decides that access to the company network for all users must be controlled by two-factor authentication.

You need to configure the computers to meet this requirement.

What should you do?

A.

Install smart card readers on all computers. Issue smart cards to all users.

B.

Enable the Password must meet complexity requirements policy setting. Instruct users to logon by typing their user principal name (UPN) and their strong password.

C.

Create an Internet Protocol security (IPsec) policy on each Windows 10 Enterprise computer to encrypt traffic to and from the domain controller.

D.

Issue photo identification to all users. Instruct all users to create and use a picture password.

Question 4
Single choice

You administer computers that run Windows 8 Enterprise in an Active Directory domain in a single Active Directory Site. All user account objects in Active Directory have the Manager attribute populated. The company has purchased a subscription to Windows Intune. The domain security groups are synchronized with the Microsoft Online directory.

You create a Windows Intune group that specifies a manager as a membership criterion. You notice that the group has no members.

You need to ensure that users that meet the membership criteria are added to the Windows Intune group.

What should you do?

A.

Force Active Directory replication within the domain.

B.

Ensure that all user accounts are identified as synchronized users.

C.

Ensure that the user who is performing the search has been synchronized with the Microsoft Online directory.

D.

Synchronize the Active Directory Domain Service (AD DS) with the Microsoft Online directory.

Question 5
Single choice

Your company has Windows 10 client computers. All of the computers are managed by using Windows Intune.

You need to provide a user with the ability to deploy software to the computers by using Windows Intune.

The solution must minimize the number of permissions assigned to the user.

Which role should you use?

A.

User management administrator from the Windows Intune account portal

B.

Global administrator from the Windows Intune account portal

C.

Service administrator from the Windows Intune administrator console

D.

Service administrator from the Windows Intune account portal

Question 6
Single choice

Your network contains an Active Directory domain. The domain contains 100 computers that run Windows
10.

Your company is developing a line-of-business application.
You plan to deploy the application by using Windows Store for Business.

You need to ensure that a developer can publish the application to the Windows Store for Business.

What should you do first?

A.

Provision a Windows Dev Center dev account for the developer.

B.

Assign the Windows Store Purchaser role to the developer.

C.

Assign the Windows Store Admin role to the developer.

D.

Provision a Microsoft Azure Active Directory (Azure AD) account for the developer.

E.

Provision a Microsoft account for the developer.

Question 7
Single choice

You administer Windows 10 Enterprise client computers that are members of an Active Directory domain that includes Active Directory Certificate Services (AD CS).

You restored a computer from a backup that was taken 45 days ago. Users are no longer able to log on to that computer by using their domain accounts. An error message states that the trust relationship between the computer and the primary domain has failed.

What should you do?

A.

Renew the certificates issued to the client computer.

B.

Reset the passwords of all affected domain users.

C.

Logon as a local administrator and issue the netdom resetpwd command. Log off and restart the computer.

D.

Restore the client computer from a known good backup that was taken two weeks earlier than the
backup you previously restored.

Question 8
Single choice

You have an on-premises Active Directory domain and a Microsoft Azure Active Directory. You have a Microsoft Intune subscription that is linked to the Azure Active Directory.

You configure directory synchronization between the on-premises Active Directory and the Azure Active Directory. You import 100 users into the Azure Active Directory.

Users report that they are unable to sigh in to Microsoft Intune. You confirm that each user has a valid Active Directory account and password.

You open the Microsoft Intune Console and see the configuration of User1 as shown in the exhibit. (Click the Exhibit button.)

You need to ensure that the users can sign in to Microsoft Intune.

What should you do first?

A.

Activate the synchronized user accounts.

B.

Purchase an Enterprise Mobility Suite subscription.

C.

Configure Microsoft Intune for single sign-on.

D.

Create a new Security Group in Microsoft Intune named Domain Intune Users.

Question 9
Single choice

Your network contains an Active Directory domain named contoso.com. All client computers run Windows 10 Enterprise and Microsoft Office 2013. All of the computers are joined to the domain.

Your company purchases a subscription to Office 365. An administrator creates an Office 365 account for each user and deploys a federated solution for Office 365.

You need to prevent the users from being prompted for a user account and a password each time they access services from Office 365.

Which account should you instruct the users to use when they sign in to their computer?

A.

a Microsoft account

B.

a local user account

C.

an Office 365 account

D.

a contoso.com account

Question 10
Single choice

A company has an Active Directory Domain Services (AD DS) domain. All client computers run Windows 10 Enterprise and are joined to the domain.

Corporate police prohibits Homegroups on the corporate network.

You need to ensure that client computer network adapter settings do not support joining a Homegroup.

What should you do?

A.

Disable IPv6.

B.

Disable IPv4.

C.

Enable IPv6.

D.

Enable IPv4.

Showing 10 of 330 questions · Unlock the full set