Configuration and Setup (Obj. 3,4) Flashcards
An Admin is currently setting up the password policies for the company’s Salesforce org. Which of the following statements about the settings in the Password Policies page are correct? (2)
A.) The default password length is 8 characters but can be changed anywhere from 3-100 characters.
B.) Password complexity always requires that passwords should have numbers, uppercase letter, lowercase letter, and special characters
C.) The password history enforcement can be modified
D.) The lockout effective period can be set to ‘Forever’
C.) The password history enforcement can be modified
D.) The lockout effective period can be set to ‘Forever’
An Admin would like to absolutely deny login access to the company’s Salesforce org if users are logging in outside the specified login hours and IP range. What are the different options that can be used? (2)
A.) Profile based IP restrictions
B.) Organization-wide IP restrictions
C.) Organization-based login hour restrictions
D.) Profile-based login hour restrictions
A.) Profile based IP restrictions
D.) Profile-based login hour restrictions
A user has reported that they do not see the ‘Contact Type’ field on the contact detail page. What should the Admin check first? (1)
A.) The role assigned to the user
B.) Field level security assigned to the user
C.) The contact page layout assigned to the user
D.) The contact page layout displayed for the profile assigned to the user
D.) The contact page layout displayed for the profile assigned to the user.
A user has contacted the Admin as they need to create a Campaign and do not see the ‘New’ button when they navigate to the Campaigns screen. They do have visibility to Campaign records. What can the Admin do to resolve this? (2)
A.) Ensure that the ‘Create Campaigns’ checkbox on the user record is selected
B.) Ensure that the ‘Marketing User’ checkbox on the user record is selected
C.) Ensure that the user’s profile has the correct Campaign page layout
D.) Ensure that the user’s profile has the Create permission on the Campaign object
B.) Ensure that the ‘Marketing User’ checkbox on the user record is selected
D.) Ensure that the user’s profile has the Create permission on the Campaign object
A user has left your company and you need to ensure immediately that they cannot log in to Salesforce. In what situations would you choose to freeze the user instead of deactivating them? (2)
A.) If the user may return to the company
B.) If the user is part of custom hierarchy fields
C.) If the user is a default owner of Leads or Cases
D.) If the user is the owner of Account records
B.) If the user is part of custom hierarchy fields
C.) If the user is a default owner of Leads or Cases
An Admin is told to look through the login forensics to spot any suspicious attempts to gain access to the org. Which of the following can login forensics provide? (3)
A.) The number of logins per role and profile
B.) Who logged in during non-business hours
C.) Who logged in more than the average number of times
D.) The number of logins per profile
E.) The average number of logins per user per a specified time period
B.) Who logged in during non-business hours
C.) Who logged in more than the average number of times
E.) The average number of logins per user per a specified time period
Recently, a new Candidate tab requested by the HR team of Telco Inc. was created for the recruitment application. The HR team is unable to locate the tab within the application. What should the Admin check to resolve the issue? (3)
A.) Check if the field-level security for the Candidate object is enabled for the HR team users.
B.) Check if the Candidate custom tab is visible for the HR team user profile
C.) Check if the object permission is correctly applied to the HR profile
D.) Check the assigned app settings for the profile
E.) Check if the Candidate custom tab is added to the recruitment application
B.) Check if the Candidate custom tab is visible for the HR team user profile
C.) Check if the object permission is correctly applied to the HR profile
E.) Check if the Candidate custom tab is added to the recruitment application
An Admin needs to add 10 users to the system and is considering using the ‘Add Multiple Users’ feature. Which of the following statements are true regarding the ‘Add Multiple Users’ functionality? (3)
A.) Users will have usernames that are different from their email addressed
B.) Users can be allocated different roles
C.) First names are required to create the user records
D.) Users can be allocated the same or different profiles
E.) Each user will be allocated the same license type
B.) Users can be allocated different roles
D.) Users can be allocated the same or different profiles
E.) Each user will be allocated the same license type
Every month, new users report having first-time access issues due to expired account verification links. What can an Admin do to reduce access issues related to this? (1)
A.) Enable automatic account verification after 7 days.
B.) Ensure that the manager is copied in the account verification email to the user
C.) Extend the number of days before the account verification link expires
D.) Disable account verification through email
C.) Extend the number of days before the account verification link expires
A sales representative has just left Cosmic Enterprise Solutions. What should be done to ensure that the user can no longer log in to Salesforce? (1)
A.) Deactivate the user contact
B.) Deactivate the user record
C.) Delete the user contact
D.) Delete the user account record
B.) Deactivate the user record
Amazing Inc. is a global manufacturer in the field of audio equipment. They recruited an Admin to start the implementation for their global sales operations team. The Admin found that there is a matrix organizational structure, and many users have 2 managers. How can he ensure that the managers for each user can be recorded? (1)
A.) Use the standard Manager field and create an additional User manager field as a standard lookup to the User object.
B.) Create 2 hierarchical relationship fields to set up User managers.
C.) Create 2 self lookup User object manager fields
D.) Use the standard Manager field on the User record and create an additional hierarchical relationship manager field.
D.) Use the standard Manager field on the User record and create an additional hierarchical relationship manager field
An Admin is setting up a new org for a company with over 300 employees that will require setup of several roles and profiles. Which statement regarding profiles and roles is correct? (1)
A.) A role determines what parts of the application the user can access
B.) The role hierarchy determines record access in a private data sharing model
C.) A profile controls what records a user can see in the application
D.) The profile hierarchy determines record access in a read only sharing model
B.) The role hierarchy determines record access in a private data sharing model
In a private sharing model, if the admin needs to make some exceptions to give access to records, what features can you use? (3)
A.) Sharing Rules
B.) Manual Sharing
C.) Sharing Exception Rules
D.) Account Teams
A.) Sharing Rules
B.) Manual Sharing
D.) Account Teams
A user logged into Salesforce in the morning and updated some records. He didn’t come back to it again until the afternoon. He found that he was logged out. What should the Admin explain to the user? (1)
A.) Users are logged out after a certain period of inactivity according to the session timeout value
B.) Users are always automatically logged out after 1 hour of inactivity
C.) Users are automatically logged out at lunchtime
D.) When users close a browser window, they are automatically logged out of Salesforce.
A.) Users are logged out after a certain period of inactivity according to the session timeout value.
Cosmic Supermarket would like to allow its employees to log in to Salesforce using their Google credentials. An Admin of the company is required to configure single sign-on (SSO) using Google as the third-party authentication provider. However, the employees should be required to prove their identity using multifactor authentication (MFA). Which of the following are valid considerations related to this use case? (2)
A.) A managed package must be installed to set up multi-factor authentication when Google is used as the third-party authentication provider.
B.) Multi-factor authentication can be configured for users by setting the ‘Session Security Level Required at Login’ in their profiles.
C.) ‘Multi-factory Authentication’ should be in the ‘High Assurance’ column on the ‘Session Settings’ page in Setup.
D.) By default, multi-factor authentication (MFA) is enforced for users who log in through an authentication provider that supports single sign-on (SSO).
B.) Multi-factor authentication can be configured for users by setting the ‘Session Security Level Required at Login’ in their profiles.
C.) ‘Multi-Factor Authentication’ should be in the ‘High Assurance’ column on the ‘Session Settings’ page in Setup.
A user has called you as they have forgotten their password. What should you suggest? (1)
A.) Tell the user you will send a temporary password to their cell phone via text message
B.) Tell the user to reset the password themselves from the Forgot Password link on the login page
C.) Tell the user to email Salesforce support
D.) Tell the user that passwords can only be reset by Salesforce Administrator and you will need to do it every time
B.) Tell the user to reset the password themselves from the Forgot Password link on the login page
What is true regarding setting up users? (2)
A.) The username and email address can be different, except when setting up multiple users.
B.) A user can have multiple roles but only one profile
C.) The administrator sets a temporary password and this is automatically emailed to the new users
D.) The profiles available depend on the license type selected
A.) The username and email address can be different, except when setting up multiple users.
D.) The profiles available depend on the license type selected
A recently terminated sales representative is assigned as the sole recipient of a workflow email alert. What should a Salesforce Administrator do to prevent the user from logging in to Salesforce? (1)
A.) Deactivate the user
B.) Freeze the user
C.) Delete the user
D.) Delete user’s contact
B.) Freeze the user
A user has left their phone at home which is usually used for multi-factor authentication. What can the Salesforce Administrator do? (1)
A.) Reset the password for the user
B.) Generate a temporary username
C.) Generate a temporary verification code
D.) Remove multi-factor authentication
C.) Generate a temporary verification code
A company would not like that its employees access Salesforce from home. How can this be achieved? (1)
A.) Define Trusted Login IP ranges
B.) Enable ‘Trusted Login Only’ setting
C.) Define Login IP Ranges for all profiles
D.) Define Permission Sets
C.) Define Login IP Ranges for all profiles
A Salesforce Administrator often deals with record-level security. Which of the following are correct regarding record-level security? (2)
A.) Sharing rules can never be stricter than the organization-wide sharing defaults
B.) Organization-wide sharing defaults are always used for opening record access to the user
C.) Roles are used to open up the record access among the user groups (i.e. horizontally)
D.) Roles are used to create a sharing hierarchy among the users
A.) Sharing rules can never be stricter than the organization-wide sharing defaults
D.) Roles are used to create a sharing hierarchy among the users.
The CIO of a technology company has directed the Salesforce Administrator to enable single sign-on with delegated authentication for the org. Which of the following are the benefits of delegated authentication? (2)
A.) It allow the sending of authentication and authorization data between affiliated but unrelated web services
B.) It can be configured to use a stronger form of user authentication, such as integration with a secure identity provider
C.) It applies to all users once enabled
D.) It makes the login page private and accessible only behind a corporate firewall
B.) It can be configured to use a stronger form of user authentication, such as integration with a secure identity provider.
D.) It makes the login page private and accessible only behind a corporate firewall
A Salesforce Administrator often helps the users with their concerns about the Salesforce org. He realizes that it would be easier if he could log in to the org as the users experiencing the problem so that he can view the org from their perspective. What is the most efficient way of achieving this? (1)
A.) Contact Salesforce support and request ‘Login As’ access for all users
B.) Request each affected user to Grant Login Access to the Salesforce Administrator
C.) Ask each affected user to send their password to the Salesforce Administrator
D.) Ensure the ‘Administrator Can Log In As Any User’ setting in the Login Access Policies page is enabled
D.) Ensure the ‘Administrator Can Log In As Any User’ setting in the Login Access Policies page is enabled
Which of the following are password policy settings that can be modified in a Salesforce org? (3)
A.) Minimum password length
B.) Use username as password
C.) Password expiration
D.) Enforce password history
E.) Enable password generator
A.) Minimum password length
C.) Password expiration
D.) Enforce password history
What options are available to set the length of time after which the system logs out inactive users? (2)
A.) Session timeout can be set using a permission set
B.) Session timeout can be set at the profile level
C.) Session timeout can be set at the organization level
D.) Session timeout can be set by individual user
B.) Session timeout can be set at the profile level
C.) Session timeout can be set at the organization level
What should be done to ensure that a Salesforce Administrator can troubleshoot on a user’s behalf, without having to request login access from the user? (1)
A.) Turn on the ‘Log In As Any User’ permission on the System Administrator profile
B.) Turn on the ‘Administrator Can Log In As Any User’ setting in the Login Access Policies page
C.) Turn on the ‘Modify All Data’ permission
D.) Contact Salesforce to enable the ‘Administrator Can Login In As Any User’ feature
B.) Turn on the ‘Administrator Can Log In As Any User’ setting in the Login Access Policies page
The Salesforce Administrator received a task to create 100 user records in his organization. He is planning to use Data Loader, preparing a data load file, and verifying that all required field information is present. From the list, which of the following fields are required fields to create a user with Data Loader? (1)
A.) First Name, Last Name, Username, Alias, Email, ProfileId
B.) First Name, Username, Email, Role, and User License
C.) First Name, Last Name, ProfileId, and User License
D.) First Name, Last Name, Email, ProfileId, and Role
A.) First Name, Last Name, Username, Alias, Email, ProfileId