Skip to Content

Microsoft 365 Identity and Services MS-100 Exam Questions and Answers – 1

The latest Microsoft 365 Identity and Services MS-100 certification actual real practice exam question and answer (Q&A) dumps are available free, which are helpful for you to pass the Microsoft 365 Identity and Services MS-100 exam and earn Microsoft 365 Identity and Services MS-100 certification.

Question 61

Question

Your company has 3,000 users. All the users are assigned Microsoft 365 E3 licenses.
Some users are assigned licenses for all Microsoft 365 services. Other users are assigned licenses for only certain Microsoft 365 services.
You need to determine whether a user named User1 is licensed for Exchange Online only.
Solution: You run the Get-MsolUser cmdlet.
Does this meet the goal?

A. Yes
B. No

Answer

B. No

Question 62

Question

Your company has 3,000 users. All the users are assigned Microsoft 365 E3 licenses.
Some users are assigned licenses for all Microsoft 365 services. Other users are assigned licenses for only certain Microsoft 365 services.
You need to determine whether a user named User1 is licensed for Exchange Online only.
Solution: You run the Get-MsolAccountSku cmdlet.
Does this meet the goal?

A. Yes
B. No

Answer

B. No

Question 63

Question

Your company has 3,000 users. All the users are assigned Microsoft 365 E3 licenses.
Some users are assigned licenses for all Microsoft 365 services. Other users are assigned licenses for only certain Microsoft 365 services.
You need to determine whether a user named User1 is licensed for Exchange Online only.
Solution: You launch the Azure portal, and then review the Licenses blade.
Does this meet the goal?

A. Yes
B. No

Answer

A. Yes

Question 64

Question

You have a Microsoft 365 subscription.
You view the service advisories shown in the following exhibit.

You need to ensure that users who administer Microsoft SharePoint Online can view the advisories to investigate health issues.
Which role should you assign to the users?

A. SharePoint administrator
B. Message Center reader
C. Reports reader
D. Service administrator

Answer

D. Service administrator

Question 65

Question

You have a Microsoft 365 subscription that contains a Microsoft Azure Active Directory (Azure AD) tenant named contoso.com. The tenant includes a user named User1.
You enable Azure AD Identity Protection.
You need to ensure that User1 can review the list in Azure AD Identity Protection of users flagged for risk.
The solution must use the principle of least privilege.
To which role should you add User1?

A. Security reader
B. User administrator
C. Owner
D. Global administrator

Answer

A. Security reader

Question 66

Question

Your network contains three Active Directory forests.
You create a Microsoft Azure Active Directory (Azure AD) tenant.
You plan to sync the on-premises Active Directory to Azure AD.
You need to recommend a synchronization solution. The solution must ensure that the synchronization can complete successfully and as quickly as possible if a single server fails.
What should you include in the recommendation?

A. three Azure AD Connect sync servers and three Azure AD Connect sync servers in staging mode
B. one Azure AD Connect sync server and one Azure AD Connect sync server in staging mode
C. three Azure AD Connect sync servers and one Azure AD Connect sync server in staging mode
D. six Azure AD Connect sync servers and three Azure AD Connect sync servers in staging mode

Answer

B. one Azure AD Connect sync server and one Azure AD Connect sync server in staging mode

Question 67

Question

Your network contains an Active Directory domain named adatum.com that is synced to Microsoft Azure Active Directory (Azure AD).
The domain contains 100 user accounts.
The city attribute for all the users is set to the city where the user resides.
You need to modify the value of the city attribute to the three-letter airport code of each city.
What should you do?

A. From Azure Cloud Shell, run the Get-AzureADUser and Set-AzureADUser cmdlets.
B. From Azure Cloud Shell, run the Get-ADUser and Set-ADUser cmdlets.
C. From Windows PowerShell on a domain controller, run the Get-ADUser and Set-ADUser cmdlets.
D. From Azure Cloud Shell, run the Get-MsolUser and Set-MSOluser cmdlets.

Answer

C. From Windows PowerShell on a domain controller, run the Get-ADUser and Set-ADUser cmdlets.

Question 68

Question

Your network contains an on-premises Active Directory forest named contoso.com. The forest contains the following domains:

  • Contoso.com
  • East.contoso.com

An Azure AD Connect server is deployed to contoso.com. Azure AD Connect syncs to an Azure Active Directory (Azure AD) tenant.
You deploy a new domain named west.contoso.com to the forest.
You need to ensure that west.contoso.com syncs to the Azure AD tenant.
Solution: From the Azure AD Connect server in contoso.com, you return the setup wizard and include the west.contoso.com domain.
Does this meet the goal?

A. Yes
B. No

Answer

B. No

Question 69

Question

You network contains an on-premises Active Directory domain named contoso.com. The domain contains a Microsoft Exchange Server 2019 organization.
You plan to sync the domain to Azure Active Directory (Azure AD) and to enable device writeback and group writeback.
You need to identify which group types will sync from Azure AD.
Which two group types should you identify? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.

A. an Office 365 group that uses the Assigned membership type
B. a security group that uses the Dynamic Device membership type
C. an Office 365 group that uses the Dynamic User membership type
D. a security group that uses the Assigned membership type
E. a security group that uses the Dynamic User membership type

Answer

A. an Office 365 group that uses the Assigned membership type
C. an Office 365 group that uses the Dynamic User membership type

Question 70

Question

You have a Microsoft 365 subscription.
You view the service advisories shown in the following exhibit.

You need to ensure that a user named User1 can view the advisories to investigate service health issues.
Which role should you assign to User1?

A. Compliance administrator
B. Message Center reader
C. Reports reader
D. Service administrator

Answer

D. Service administrator