70-346 - Dump Flashcards
You are the Office 365 administrator for your company. The company has a single office.
You have the following requirements:
– You must configure a redundant Active Directory Federation Services (AD FS) implementation.
– You must use a Windows Internal Database to store AD FS configuration data.
– The solution must use a custom login page for external users.
– The solution must use single sign-on for internal users.
You need to deploy the minimum number of servers.
How many servers should you deploy?
A. 2
B. 4
C. 6
D. 16
B) 4
Your company has an Office 365 subscription.
You need to add the label “External” to the subject line of each email message received by your organization from an external sender.
What should you do?
A. From the Exchange Control Panel, add a MailTip.
B. From the Forefront Online Protection Administration Center, set the footer for outbound email.
C. Run the Enable-InboxRule cmdlet.
D. From the Exchange Control Panel, run the New Rule wizard.
D) From the Exchange Control Panel, run the New Rule wizard.
A company uses Office 365 services.
You implement the Windows Azure Active Directory Sync tool in the local environment.
An employee moves to a new department.
All Office 365 services must display the new department information for the employee.
You need to update the employee’s user account.
Where should you change the value of the department attribute for the employee?
A. The Active Directory management page in the Windows Azure Management Portal
B. The Users and groups page in the Office 365 admin center
C. The on-premises Active Directory
D. The Metaverse Designer
C) The on-premises Active Directory
You have an Office 365 environment.
Synchronization between the on-premises Active Directory and Office 365 is enabled.
You need to deactivate directory synchronization.
Which Windows PowerShell cmdlet should you run?
A. Update-MsolFederatedDomain
B. Remove-MsolDomain
C. Remove-MsolFederatedDomain
D. Set-MsolDirSyncEnabled
D) Set-MsolDirSyncEnabled
Your company has a hybrid deployment Office 365.
You create a user in Office 365. The next day, you discover that the new user account fails to appear in the Microsoft Exchange Server on-premises global address list (GAL).
You need to ensure that the user has a mailbox and appears in the Exchange on-premises GAL and the Office 365 GAL.
What should you do?
A. Assign a Microsoft Exchange Online license to the user account.
B. From the Microsoft Online Services Directory Synchronization tool, enable rich coexistence.
C. From the Office 365 portal, modify the sign-in status of the user account.
D. Delete the user account hosted on Office 365.
From the Exchange Management Console, create a new remote mailbox.
D) Delete the user account hosted on Office 365.
From the Exchange Management Console, create a new remote mailbox.
QUESTION 86
Your company has a hybrid deployment of Office 365.
You need to create a group. The group must have the following characteristics:
– Group properties are synchronized automatically.
– Group members have the ability to control which users can send email messages to the group.
What should you do?
A. Create a distribution group and configure the Mail Flow Settings.
B. Create a dynamic distribution group.
C. Create a new role group.
D. Create a distribution group and configure the Membership Approval settings.
A) Create a distribution group and configure the Mail Flow Settings.
Your company has a hybrid deployment of Office 365.
You need to verify whether free/busy information sharing with external users is configured.
Which Windows PowerShell cmdlet should you use?
A. Test-OutlookConnectivity
B. Test-FederationTrust
C. Get-OrganizationRelationship
D. Get-MSOLDomainFederationSettings
C) Get-OrganizationRelationship
Your company has 100 user mailboxes.
The company purchases a subscription to Office 365 for professionals and small businesses.
You need to enable the Litigation Hold feature for each mailbox.
What should you do first?
A. Purchase a subscription to Office 365 for midsize business and enterprises.
B. Enable audit logging for all of the mailboxes.
C. Modify the default retention policy.
D. Create a service request.
A) Purchase a subscription to Office 365 for midsize business and enterprises.
Your company has a subscription to Office 365 for midsize business and enterprises.
The company uses Microsoft Lync Online.
You need to open ports on the network firewall to enable all of the features of Lync Online.
Which port or ports should you open? (Each correct answer presents part of the solution. Choose all that apply.)
A. inbound TCP 443 B. outbound TCP 5061 C. outbound UDP 3478 D. outbound TCP 443 E. outbound UDP 50000 to outbound UDP 59999 F. inbound TCP 8080
C) outbound UDP 3478
D) outbound TCP 443
E) Outbound UDP 50000 to outbound UDP 59999
An organization plans to migrate to Office 365.
You use the Windows Azure Active Directory (AD) Sync tool.
Several users will not migrate to Office 365.
You must exclude these users from synchronization.
All users must continue to authenticate against the on-premises Active Directory.
You need to synchronize the remaining users.
Which three actions should you perform? Each correct answer presents part of the solution.
A. Populate an attribute for each user account.
B. Disable the user accounts in Active Directory.
C. Perform a full synchronization.
D. Configure the connection filter.
E. Run the Windows PowerShell command Set-MsolDirSyncEnabled -EnableDirSync $false.
A) Populate an attribute for each user account.
C) Perform a full synchronization.
D) Configure the connection filter.
You are the Office 365 administrator for your company. The company synchronizes the local Active
Directory objects with a central identity management system.
The environment has the following characteristics:
Each department has its own organizational unit (OU).
The company has OU hierarchies for partner user accounts.
All user accounts are maintained by the identity management system.
You need to ensure that partner accounts are NOT synchronized with Office 365.
What should you do?
A. Configure OU-based filtering by using the Windows Azure Active Directory Sync tool.
B. In the Windows Azure Active Directory portal, configure OU-based filtering.
C. Configure user attribute-based filtering by using the Windows Azure Active Directory Sync tool.
D. In the Windows Azure Active Directory portal, configure user attribute-based filtering.
A) Configure OU-based filtering by using the Windows Azure Active
An organization migrates to Office 365.
The Office 365 administrator must be notified when Office 365 maintenance activities are planned.
You need to configure the administrator’s computer to receive the notifications.
What should you configure?
A. Office 365 Management Pack for System Center Operations Manager
B. Service requests
C. Service health page
D. Office 365 Service Health RSS Notifications feed
D) Office 365 Service Health RSS Notifications feed
You have an Office 365 tenant that uses an Enterprise E3 subscription. You have two servers in a
perimeter network that have the Active Directory Federation Services (AD FS) proxy role service installed. A
federation server farm is located behind a firewall.
You need to ensure that the AD FS proxies can communicate with the federation server farm.
Which two name resolution strategies can you use? Each correct answer presents a complete solution.
A. HOSTS file on the proxy servers
B. DNS server in the perimeter network
C. LMHOSTS file on the proxy servers
D. LMHOSTS file on the federation servers
E. HOSTS file on the federation servers
A) HOSTS file on the proxy servers
B) DNS server in the perimeter network
Configure Name Resolution for a Federation Server Proxy in a DNS Zone That Serves Only the
Perimeter Network So that name resolution can work successfully for a federation server in an Active
Directory Federation Services (AD FS) scenario in which one or more Domain Name System (DNS) zones
serve only the perimeter network, the following tasks must be completed:
* The hosts file on the federation server proxy must be updated to add the IP address of a federation server.
* DNS in the perimeter network must be configured to resolve all client requests for the AD FS host name to
the federation server proxy. To do this, you add a host (A) resource record to perimeter DNS for the
federation server proxy.
Contoso Ltd. uses Office 365 for collaboration. You are implementing Active Directory Federation Services
(AD FS) for single sign-on (SSO) with Office 365 services. The environment contains an Active Directory
domain and an AD FS federation server.
You need to ensure that the environment is prepared for the AD FS setup.
Which two actions should you perform? Each correct answer presents part of the solution.
A. Configure Active Directory to use the domain contoso.com.
B. Configure Active Directory to use the domain contoso.local.
C. Create a server authentication certificate for the federation server by using fs.contoso.com as the subject
name and subject alternative name.
D. Create a server authentication certificate for the federation server by using fs.contoso.local as the subject
name and subject alternative name.
A. Configure Active Directory to use the domain contoso.com.
C. Create a server authentication certificate for the federation server by using fs.contoso.com as the subject
name and subject alternative name.
You deploy Lync Online for a company that has offices in San Francisco and New York. The two offices
both connect to the Internet. There is no private network link between the offices.
Users in the New York office report that they cannot transfer files to the users in the San Francisco office by
using Lync Online.
You need to ensure that users in both offices can transfer files by using Lync Online.
What should you do?
A. Configure the firewall to open Transmission Control Protocol (TCP) ports 50060-50079.
B. Configure the firewall to open Transmission Control Protocol (TCP) ports 50040-50059.
C. Create a private network connection to share files.
D. Upgrade all of the Lync Online clients to use Lync 2013.
B) Configure the firewall to open Transmission Control Protocol (TCP) ports 50040-50059.