Chapter 1- Manage Identify Flashcards

1
Q

Where is the Local Account stored?

A

Stored in the local Security Account Manager ( SAM) database on a Windows 10 computer.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Where is a Domain Account stored?

A

Stored in the Active Directory Domain Services ( AD DS) database on a domain controller.
Domain accounts can be used to authenticate a user on a Windows computer joined to the domain.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Where can you configure a GP that restricts the use of Microsoft Accounts for a specific group of users in a AD domain?

A

In GP policy management editor window by expanding Computer configuration/ policies/ windows settings/ security settings/ local policies/ security options.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Where can users associate a Microsoft account with a domain account?

A

In the Settings App, from the accounts page.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q
Which of the following can you manage in the Office 365 Admin Centre?
AD Synchronisation
Valid, expired and assigned licences.
User password including resetting.
All of the above.
A

All of the above.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q
Which of the following tools and technologies can help you sideload LOB apps for computers in your organisation?
DISM
Powershell
Configuration Manager
Intune
All of the above
A

All of the above

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q
Which GP setting do you have to enable before you can sideload apps in Windows 10?
None
Allow all trusted apps to install
Allow development of windows store apps
Block Microsoft accounts
A

Allow ll trusted apps to install.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

True or False: You can create a required installation for an app in Microsoft Intune, which will automatically install on devices.

A

False

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Which of the following describes the purpose of deep linking an app?
A. To make specific Windows store apps available through a company portal.
B. To force the installation of apps on W10 computers.
C. To add LOB apps to the Windows store.
D. None of the above

A

A. To make specific Windows store apps available through a company portal.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What options can you sync with the domain?

A
Start screen
App data
Appearance
Language Preferences
Desktop personalization
Ease of access
Apps
Other Windows settings
Passwords
Web Browser
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Once given access where can users install Office 365 from their computers?

A

Open a web browser.
Sign in with the appropriate username and password.
From the Office 365 portal page click Install Now.
Click Run to start the installation.
Click Yes to continue and click Yes to start the wizard..
Select No Thanks to not send updates to Microsoft and then click Accept.
Click next on the OneDrive page.
Click Next to accept defaults. select NO thanks and then click All Done.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What methods, other than the self service method, can be used to deploy Office?

A

Deployment methods include:
Group policy
Start up scripts
SCCM

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

The Admin Centre contains configuration and management pages for all the different features that affect Office app installation.

A

DASHBOARD- This page provides a view of overall service health, including Office related components. It also contains shortcuts to admin tasks such as reset user passwords and add new users.
USERS- you can add, remove and edit user accounts that are part of the Office 365 environment. You can also configure AD synchronization and configure authentication methods and requirements.
DOMAINS- Manage and add domains used by Office 365.
SERVICE SETTINGS- There are several pages available under this section including updates, user software, passwords, rights management, and mobile.
TOOLS- This page includes several important configuration and readiness tools for Office including:
Office 365 health readiness and connectivity checks
Office 365 best practice Analyzer.
Microsoft Connectivity Analyzer.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is The Office 365 Click-to-run installation?

A

You can configure a click-to-run install that enables a streamed install process, which gives almost instant access to Office desktop apps rather than a traditional method that requires the user to wait for the entire install process to complete before using any Office applications.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

How do you disable access to the Windows Store?

A

Open either the Local Group Policy Editor or Group Policy Management on a domain controller for domain policy. Within Group Policy, navigate to the following location:
Computer Configuration\ Administrative Templates\ Windows Components\ App Package Deployment.
Change the setting for Allow All Trusted Apps To Install to Disabled.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q
Which of the 2 Powershell commands can you use to manage a CA database?
A. Backup-CARoleService
B. Restore-CARoleService
C. Backup-CACertStore
D. Restore-CACertStore
A

A. Backup-CARoleService is the correct command for backing up the CA database.
B. Restore-CARoleService is the correct command for restoring the CA database.

17
Q
Which 2 of the following offer authentication protection, confidentiality of the machine and it's contents, private keys for security, and ecrypted card information that can't be mined or removed?
A. Physical smart card.
B. A compatible TMP chip.
C. Virtual smart card.
D. A biometric fingerprint reader.
E. BitLocker Drive Encryption.
A

B and C Requires a compatible TMP chip and a virtual smart card

18
Q

You create a homegroup on one computer and join it from another. You try to access data shared from a second computer, but can’t.
What is the most likely problem?

A

The time is configured incorrectly on the second computer.

It can’t be more than 5 minutes out.

19
Q

Which of the following network types is a distributed concept, in which users manage their own data sharing?
A. Workgroup
B. Homegroup
C. Domain

A

A. Workgroup

B. Homegroup

20
Q

You want to secure communications over an untrusted network for applications that need internet access. You want to use TLS and SSl to achieve this.
Which of the following technologies offer this?
Must the solution include a PKI infrastructure?
A. VPN
B. Remote desktop services
C. Microsoft Application Virtulization ( App V)
D. Secure Channel

A

D. Secure Channel is a Security Support provider (SSP), and the TLS/SSL protocol uses a client/server model that’s based on certificate authentication and does require a PKI infrastructure.

21
Q

You are trying to set up a GP to set an account lockout duration when users fail to authenticate their computers after a specific number of events. The options are greyed out, Why?

A

You must first configure the Account Lockout Threshold to state how many times a user can try to authenticate before additional measures are taken.

22
Q

You want to enable your domain users to access the same desktop background, app settings, browser history etc that they would see on their home or other office computers.
What should you do?

A

Allow the user to associate their own Microsoft account.