2026 New MS-100 Exam Dumps with PDF and VCE Free: https://www.2passeasy.com/dumps/MS-100/
Exam Code: MS-100 (MS-100 Exam Questions and Answers), Exam Name: Microsoft 365 Identity and Services, Certification Provider: Microsoft Certifitcation, Free Today! Guaranteed Training- Pass MS-100 Exam.
Free MS-100 Demo Online For Microsoft Certifitcation:
NEW QUESTION 1
Your company has a Microsoft Azure Active Directory (Azure AD) tenant named contoso.onmicrosoft.com that contains a user named User1.
You suspect that an imposter is signing in to Azure AD by using the credentials of User1.
You need to ensure that an administrator named Admin1 can view all the sign in details of User 1 from the
past 24 hours.
To which three roles should you add Admin1? Each correct answer presents a complete solution. NOTE: Each correct selection is worth one point.
- A. Security administrator
- B. Password administrator
- C. User administrator
- D. Compliance administrator
Answer: ABC
NEW QUESTION 2
Your company has a Microsoft Office 365 subscription that contains the groups shown in the following table.
You have the licenses shown in the following table.
Another administrator removes User1 from Group1 and adds Group2 to Group1.
For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.
Answer:
Explanation: The users are assigned SharePoint licenses directly. Their group memberships have no effect on licenses directly assigned to the user accounts.
NEW QUESTION 3
Your company has a Microsoft Azure Active Directory (Azure AD) directory tenant named contoso.onmicrosoft.com.
All users have client computers that run Windows 10 Pro and are joined to Azure AD. The company purchases a Microsoft 365 E3 subscription.
You need to upgrade all the computers to Windows 10 Enterprise. The solution must minimize administrative effort.
You assign licenses from the Microsoft 365 admin center. What should you do next?
- A. Add a custom domain name to the subscription.
- B. Deploy Windows 10 Enterprise by using Windows Autopilot.
- C. Create provisioning package, and then deploy the package to all the computers.
- D. Instruct all the users to log off of their computer, and then to log in again.
Answer: B
NEW QUESTION 4
You need to meet the security requirement for the vendors. What should you do?
- A. From the Azure portal, add an identity provider.
- B. From Azure Cloud Shell, run the New-AzureADUser cmdlet and specify the –UserPrincipalName parameter.
- C. From the Azure portal, create guest accounts.
- D. From Azure Cloud Shell, run the New-AzureADUser cmdlet and specify the –UserType parameter.
Answer: C
NEW QUESTION 5
Your company has on-premises servers and a Microsoft Azure Active Directory (Azure AD) tenant. Several months ago, the Azure AD Connect Health agent was installed on all the servers.
You review the health status of all the servers regularly.
Recently, you attempted to view the health status of a server named Server1 and discovered that the server is NOT listed on the Azure Active Directory Connect Servers list.
You suspect that another administrator removed Server1 from the list. You need to ensure that you can view the health status of Server1.
What are two possible ways to achieve the goal? Each correct answer presents a complete solution. NOTE: Each correct selection is worth one point.
- A. From Windows PowerShell, run theRegister-AzureADConnectHealthSyncAgent cmdlet.
- B. From Azure Cloud shell, run the Connect-AzureAD cmdlet.
- C. From Server1, change the Azure AD Connect Health services Startup type to Automatic (Delayed Start).
- D. From Server1, change the Azure AD Connect Health services Startup type to Automatic.
- E. From Server1, reinstall the Azure AD Connect Health agent.
Answer: AE
NEW QUESTION 6
You create the Microsoft 365 tenant.
You implement Azure AD Connect as shown in the following exhibit.
Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
NOTE: Each correct selection is worth one point.
Answer:
Explanation: 
NEW QUESTION 7
You have a Microsoft 365 Enterprise subscription.
You create a password policy as shown in the following exhibit.
Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
NOTE: Each correct selection is worth one point.
Answer:
Explanation: References:
https://docs.microsoft.com/en-us/azure/active-directory/authentication/concept-password-ban-bad
NEW QUESTION 8
You need to meet the technical requirements for the user licenses.
Which two properties should you configure for each user? To answer, select the appropriate properties in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation: 
NEW QUESTION 9
Your network contains an Active Directory forest. The forest contains two domains named contoso.com and adatum.com.
Your company recently purchased a Microsoft 365 subscription. You deploy a federated identity solution to the environment.
You use the following command to configure contoso.com for federation. Convert-MsolDomaintoFederated –DomainName contoso.com
In the Microsoft 365 tenant, an administrator adds and verifies the adatum.com domain name. You need to configure the adatum.com Active Directory domain for federated authentication.
Which two actions should you perform before you run the Azure AD Connect wizard? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.
- A. From Windows PowerShell, run the Convert-MsolDomaintoFederated–DomainName contoso.com –SupportMultipleDomain command.
- B. From Windows PowerShell, run the New-MsolFederatedDomain–SupportMultipleDomain -DomainName contoso.com command.
- C. From Windows PowerShell, run the New-MsolFederatedDomain-DomainName adatum.com command.
- D. From Windows PowerShell, run the Update-MSOLFederatedDomain–DomainName contoso.com –SupportMultipleDomain command.
- E. From the federation server, remove the Microsoft Office 365 relying party trust.
Answer: AE
NEW QUESTION 10
You have a Microsoft Azure Active Directory (Azure AD) tenant named contoso.com. You add an app named App1 to the enterprise applications in contoso.com.
You need to configure self-service for App1. What should you do first?
- A. Assign App1 to users and groups.
- B. Add an owner to App1.
- C. Configure the provisioning mode for App1.
- D. Configure an SSO method for App1.
Answer: A
Explanation: References:
https://docs.microsoft.com/en-us/azure/active-directory/manage-apps/manage-self-service-access
NEW QUESTION 11
Your network contains an Active Directory forest named contoso.local. You purchase a Microsoft 365 subscription.
You plan to move to Microsoft and to implement a hybrid deployment solution for the next 12 months. You need to prepare for the planned move to Microsoft 365.
What is the best action to perform before you implement directory synchronization? More than one answer choice may achieve the goal. Select the BEST answer.
- A. Purchase a third-party X.509 certificate.
- B. Rename the Active Directory forest.
- C. Purchase a custom domain name.
- D. Create an external forest trust.
Answer: C
NEW QUESTION 12
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You need to assign User2 the required roles to meet the security requirements. Solution: From the Office 365 admin center, you assign User2 the Security Reader role. From the Exchange admin center, you assign User2 the Help Desk role.
Does this meet the goal?
- A. Yes
- B. NO
Answer: B
NEW QUESTION 13
You have a Microsoft 365 subscription. All users have client computers that run Windows 10 and have Microsoft Office 365 ProPlus installed.
Some users in the research department work for extended periods of time without an Internet connection. How many days can the research department users remain offline before they are prevented from editing Office documents?
- A. 10
- B. 30
- C. 90
- D. 120
Answer: B
NEW QUESTION 14
Your company has a Microsoft Azure Active Directory (Azure AD) tenant named contoso.onmicrosoft.com that contains the users shown in the following table.
You need to identify which users can perform the following administrative tasks:
Reset the password of User4.
Modify the value for the manager attribute of User4.
Which users should you identify for each task? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
Answer:
Explanation: References:
https://docs.microsoft.com/en-us/azure/active-directory/users-groups-roles/directory-assign-admin-roles
NEW QUESTION 15
You have a Microsoft 365 Enterprise E5 subscription.
You need to enforce multi-factor authentication on all cloud-based applications for the users in the finance department.
What should you do?
- A. Create on activity policy.
- B. Create a Sign- in risk policy.
- C. Create a session policy.
- D. Create an app permission policy.
Answer: B
Explanation: References:
https://docs.microsoft.com/en-us/azure/active-directory/identity-protection/howto-sign-in-risk-policy
NEW QUESTION 16
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result these questions will not appear in the review screen.
Your company has a main office and three branch offices. All the branch offices connect to the main office by using a WAN link. The main office has a high-speed Internet connection. All the branch offices connect to the Internet by using the main office connection.
Users use Microsoft Outlook 2021 to connect to 4 Microsoft Exchange Server mailbox hosted in the main
office.
The users report that when the WAN link in their office becomes unavailable, they cannot access their mailbox.
You create a Microsoft 365 subscription, and then migrate all the user data to Microsoft 365.
You need to ensure that all the users can continue to use Outlook to receive email messages if a WAN link fails.
Solution: For each device, you configure an additional Outlook profile that uses IMAP. Does this meet the goal?
- A. Yes
- B. NO
Answer: B
NEW QUESTION 17
Your network contains an Active Directory domain and a Microsoft Azure Active Directory (Azure AD) tenant.
The network uses a firewall that contains a list of allowed outbound domains. You began to implement directory synchronization.
You discover that the firewall configuration contains only the following domain names in the list of allowed domains:
• *.microsof.com
• *.office.com
Directory synchronization fails.
You need to ensure that directory synchronization completes successfully.
What is the best approach to achieve the goal? More than one answer choice may achieve the goal. Select the BEST answer.
- A. From the firewall, allow the IP address range of the Azure data center for outbound communication.
- B. From Azure AD Connect, modify the Customize synchronization options task
- C. Deploy an Azure AD Connect sync server in staging mode.
- D. From the firewall, create a list of allowed inbound domains.
- E. From the firewall, modify the list of allowed outbound domains.
Answer: E
Recommend!! Get the Full MS-100 dumps in VCE and PDF From 2passeasy, Welcome to Download: https://www.2passeasy.com/dumps/MS-100/ (New 57 Q&As Version)