Skip to Content

MS-101 Microsoft 365 Mobility and Security Exam Questions and Answers – Page 1

The latest MS-101 Microsoft 365 Mobility and Security certification actual real practice exam question and answer (Q&A) dumps are available free, which are helpful for you to pass the MS-101 Microsoft 365 Mobility and Security exam and earn MS-101 Microsoft 365 Mobility and Security certification.

Exam Question 41

Your network contains an on-premises Active Directory domain. The domain contains 2,000 computers that run Windows 8.1 and have applications installed as shown in the following table.

Name Application count Used by
App1 20 Finance department, sales department
App2 100 Marketing department

You enroll all the computers in Upgrade Readiness.
You need to ensure that App1 and App2 have an UpgradeDecision status of Ready to upgrade.
Solution: You set the Importance status of App1 to Business critical.
Does this meet the goal?

A. Yes
B. No
Correct Answer:
B. No
Answer Description:
Business Critical will prevent the app having a status of Ready to upgrade.

Exam Question 42

Your network contains an on-premises Active Directory domain. The domain contains 2,000 computers that run Windows 8.1 and have applications installed as shown in the following table.

Name Application count Used by
App1 20 Finance department, sales department
App2 100 Marketing department

You enroll all the computers in Upgrade Readiness.
You need to ensure that App1 and App2 have an UpgradeDecision status of Ready to upgrade.
Solution: You set the ReadyForWindows status of App1 to Highly adopted.
Does this meet the goal?

A. Yes
B. No
Correct Answer:
B. No
Answer Description:
App1 has a “low install count” (2% or less) so will be Ready to upgrade. We need to change the setting for App2.

Exam Question 43

You have 100 computers that run Windows 8.1 and are enrolled in Upgrade Readiness.
Two of the computers are configured as shown in the following table.

Name Architecture Memory Application installed
Computer1 64-bit 1 GB App1
Computer2 32-bit 2 GB App2

From Upgrade Readiness, you view the applications shown in the following table.

Name UpgradeDecision
App1 Ready to upgrade
App2 Review in progress

You enroll a computer named Computer3 in Upgrade Readiness. Computer3 has the following configurations:

  • 8 GB of memory
  • 64-bit architecture
  • An application named App3 installed

App3 is installed on Computer3 only.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

  • Computer1 has an UpgradeDesicion status of Ready to upgrade.
  • Computer2 has an UpgradeDesicion status of Ready to upgrade.
  • Computer3 has an UpgradeDesicion status of Ready to upgrade.

Correct Answer:

  • Computer1 has an UpgradeDesicion status of Ready to upgrade: No
  • Computer2 has an UpgradeDesicion status of Ready to upgrade: No
  • Computer3 has an UpgradeDesicion status of Ready to upgrade: Yes

Exam Question 44

Your network contains an on-premises Active Directory domain that syncs to Azure Active Directory (Azure AD).
The domain contains two servers named Server1 and Server2 that run Windows Server 2016. Server1 has the File Server Resource Manager role service installed.
You need to configure Server1 to use the Azure Rights Management (Azure RMS) connector.
You install the Microsoft Management connector on Server1.
What should you do next on Server1?

A. Run the GenConnectorConfig.ps1 script.
B. Configure the URL of the AIPMigrated group.
C. Enable BitLocker Drive Encryption (BitLocker).
D. Install a certification authority (CA).
Correct Answer:
A. Run the GenConnectorConfig.ps1 script.
Answer Description:
If you want to use the server configuration tool for the RMS connector, to automate the configuration of registry settings on your on-premises servers, download and run the GenConnectorConfig.ps1 script.

Exam Question 45

Your company has a Microsoft Azure Active Directory (Azure AD) tenant named contoso.com.
You sign up for Microsoft Store for Business.
The tenant contains the users shown in the following table.

Name Microsoft Store for Business role Azure AD role
User1 Purchaser None
User2 Basic Purchaser None
User3 None Application administrator
User4 None Cloud application administrator

Microsoft Store for Business has the following Shopping behavior settings:

  • Make everyone a Basic Purchaser is set to Off.
  • Allow app requests is set to On.

You need to identify which users can add apps to the Microsoft Store for Business private store.
Which users should you identify?

A. User1 and User2 only
B. User3 only
C. User1 only
D. User3 and User4 only
Correct Answer:
A. User1 and User2 only

Exam Question 46

Your network contains an on-premises Active Directory domain. The domain contains 2,000 computers that run Windows 8.1 and have applications installed as shown in the following table.

Name Application count Used by
App1 20 Finance department, sales department
App2 100 Marketing department

You enroll all the computers in Upgrade Readiness.
You need to ensure that App1 and App2 have an UpgradeDecision status of Ready to upgrade.
Solution: You set the importance status of App2 to Low install count.
Does this meet the goal?

A. Yes
B. No
Correct Answer:
A. Yes
Answer Description:
If an app is installed on less than 2% of the targeted devices, it’s marked Low install count. Two percent is the default value. You can adjust the threshold in the readiness settings from 0% to 10%. Desktop Analytics automatically marks these apps as Ready to upgrade.

Exam Question 47

You have two conditional access policies named Policy1 and Policy2.
Policy1 has the following settings:

  • Assignments:
    • Users and groups: User1
    • Cloud apps or actions: Office 365 Exchange Online
    • Conditions: 0 conditions selected
  • Access controls:
    • Grant: Grant access
    • Session: 0 controls selected
  • Enable policy: On

Policy2 has the following settings:

  • Assignments:
    • Users and groups: User1
    • Cloud apps or actions: Office 365 Exchange Online
    • Conditions: 0 conditions selected
  • Access controls:
    • Grant: Block access
    • Session: 0 controls selected
  • Enable policy: On

You need to ensure that User1 can access Microsoft Exchange Online only from devices that are marked as
compliant.
What should you do?

A. Modify the Grant settings of Policy2.
B. Disable Policy2.
C. Modify the Conditions settings of Policy2.
D. Modify the Grant settings of Policy1.
Correct Answer:
C. Modify the Conditions settings of Policy2.

Exam Question 48

You have a Microsoft 365 E5 subscription that uses an Azure Active Directory (Azure AD) tenant named contoso.com.
You need to ensure that users can enroll devices in Microsoft Endpoint Manager without manually entering the address of Microsoft Endpoint Manager.
Which two DNS records should you create? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.

A. a CNAME record for AutoDiscover.contoso.com
B. a CNAME record for EnterpriseEnrollment.contoso.com
C. a TXT record for EnterpriseRegistration.contoso.com
D. an SRV record for _SIP._TLS.contoso.com
E. an SRV record for _SIPfederationTLS.contoso.com
F. a CNAME record for EnterpriseRegistration.contoso.com
G. a TXT record for EnterpriseEnrollment.contoso.com
Correct Answer:
B. a CNAME record for EnterpriseEnrollment.contoso.com
F. a CNAME record for EnterpriseRegistration.contoso.com

Exam Question 49

Your network contains an on-premises Active Directory domain. The domain contains domain controllers that run Windows Server 2019. The functional level of the forest and the domain is Windows Server 2012 R2.

The domain contains 100 computers that run Windows 10 and a member server named Server1 that runs Windows Server 2012 R2.

You plan to use Server1 to manage the domain and to configure Windows 10 Group Policy settings.
You install the Group Policy Management Console (GPMC) on Server1.
You need to configure the Windows Update for Business Group Policy settings on Server1.
Solution: You raise the forest functional level to Windows Server 2016. You copy the Group Policy Administrative Templates from a Windows 10 computer to the Netlogon share on all the domain controllers.
Does this meet the goal?

A. Yes
B. No
Correct Answer:
B. No

Exam Question 50

Your network contains an on-premises Active Directory domain. The domain contains domain controllers that run Windows Server 2019. The functional level of the forest and the domain is Windows Server 2012 R2.

The domain contains 100 computers that run Windows 10 and a member server named Server1 that runs Windows Server 2012 R2.

You plan to use Server1 to manage the domain and to configure Windows 10 Group Policy settings.
You install the Group Policy Management Console (GPMC) on Server1.
You need to configure the Windows Update for Business Group Policy settings on Server1.
Solution: You copy the Group Policy Administrative Templates from a Windows 10 computer to Server1.
Does this meet the goal?

A. Yes
B. No
Correct Answer:
A. Yes