Microsoft

MD-102 practice test

Practice with 15 free Testara sample questions, or choose paid access to the full 359-question bank.

Provider
Microsoft
Question bank
359
Free sample
15 questions
Publisher
Testara

About this practice material

This page covers Testara's practice question bank for MD-102, a certification listed under Microsoft. Questions use original, exam-style scenarios and are not questions from the official certification exam.

Testara is an independent practice platform and is not affiliated with, endorsed by, or authorized by Microsoft. The certification credential is issued by Microsoft, not Testara. Certification and provider names belong to their respective owners.

Start practicing

The guest demo does not save an attempt. Sign in before buying access.

Try 15 questions free

Available without signing in

Free sample questions

These 15 questions and their explanations are server-rendered so you can inspect the material before opening the interactive demo.

  1. Question 1 · 1

    You have a Microsoft Intune subscription. You have devices enrolled in Intune as shown in the following table. An app named App1 is installed on each device. What is the minimum number of app configuration policies required to manage App1?

    Choose one answer.

    Question illustration 1
    • 1
    • 2
    • 3
    • 4
    • 5
  2. Question 2 · 1

    DRAG DROP - You have 500 Windows 10 devices enrolled in Microsoft Intune. You plan to use Exploit protection in Microsoft Intune to enable the following system settings on the devices: • Data Execution Prevention (DEP) • Force randomization for images (Mandatory ASLR) You need to configure a Windows 10 device that will be used to create a template file. Which protection areas on the device should you configure in the Windows Security app before you create the template file? To answer, drag the appropriate protection areas to the correct settings. Each protection area may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. NOTE: Each correct selection is worth one point.

    Match each destination with an option.

    Question illustration 1

    DEP

    • Account protection
    • App & browser control
    • Device security
    • Virus & threat protection

    Mandatory ASLR

    • Account protection
    • App & browser control
    • Device security
    • Virus & threat protection
  3. Question 3 · 1

    You have an Azure AD tenant named contoso.com. You have a workgroup computer named Computer1 that runs Windows 11. You need to add Computer1 to contoso.com. What should you use?

    Choose one answer.

    • dsregcmd.exe
    • Computer Management
    • netdom.exe
    • the Settings app
  4. Question 4 · 1

    You have a Microsoft 365 subscription that uses Microsoft Intune Suite. You use Microsoft Intune to manage Windows 11 devices. You need to implement passwordless authentication that requires users to use number matching. Which authentication method should you use?

    Choose one answer.

    • Microsoft Authenticator
    • voice calls
    • FIDO2 security keys
    • text messages
  5. Question 5 · 1

    You use a Microsoft Intune subscription to manage iOS devices. You configure a device compliance policy that blocks jailbroken iOS devices. You need to enable Enhanced jailbreak detection. What should you configure?

    Choose one answer.

    • the Compliance policy settings
    • the device compliance policy
    • a network location
    • a configuration profile
  6. Question 6 · 1

    DRAG DROP - You have a Microsoft 365 subscription that contains two users named User1 and User2. You need to ensure that the users can perform the following tasks: • User1 must be able to create groups and manage users. • User2 must be able to reset passwords for nonadministrative users. The solution must use the principle of least privilege. Which role should you assign to each user? To answer, drag the appropriate roles to the correct users. Each role may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. NOTE: Each correct selection is worth one point.

    Match each destination with an option.

    Question illustration 1

    User1

    • Global Administrator
    • Helpdesk Administrator
    • Security Administrator
    • User Administrator

    User2

    • Global Administrator
    • Helpdesk Administrator
    • Security Administrator
    • User Administrator
  7. Question 7 · 1

    HOTSPOT - You have a Microsoft Intune subscription that has the following device compliance policy settings: • Mark devices with no compliance policy assigned as: Compliant • Compliance status validity period (days): 14 On January1, you enroll Windows 10 devices in Intune as shown in the following table. On January 4, you create the following two device compliance policies: • Name: Policy1 • Platform: Windows 10 and later • Require BitLocker: Require • Mark device noncompliant: 5 days after noncompliance • Scope (Tags): Tag1 • Name: Policy2 • Platform: Windows 10 and later • Firewall: Require • Mark device noncompliant: Immediately • Scope (Tags): Tag2 On January 5, you assign Policy1 and Policy2 to Group1. For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.

    Choose an option for each prompt.

    Question illustration 1
    Question illustration 2

    On January 7, Device1 is marked as compliant.

    • Yes
    • No

    On January 8, Device1 is marked as compliant.

    • Yes
    • No

    On January 8, Device2 is marked as compliant.

    • Yes
    • No
  8. Question 8 · 1

    HOTSPOT - You have a Microsoft 365 subscription that includes Microsoft Intune. You have computers that run Windows 11 as shown in the following table. You have the groups shown in the following table. You create and assign the compliance policies shown in the following table. The next day, you review the compliance status of the computers. For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.

    Choose an option for each prompt.

    Question illustration 1
    Question illustration 2
    Question illustration 3
    Question illustration 4

    If User1 registers Device1 in contoso.com, Device1 is enrolled automatically in Microsoft Intune.

    • Yes
    • No

    If User1 joins Device1 to contoso.com, Device2 is enrolled automatically in Microsoft Intune.

    • Yes
    • No

    If User2 registers Device3 in contoso.com, Device3 is enrolled automatically in Microsoft Intune.

    • Yes
    • No
  9. Question 9 · 1

    Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution. After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. Your company has an Azure AD tenant named contoso.com that contains several Windows 10 devices. When you join new Windows 10 devices to contoso.com, users are prompted to set up a four-digit pin. You need to ensure that the users are prompted to set up a six-digit pin when they join the Windows 10 devices to contoso.com. Solution: From the Microsoft Entra admin center, you configure the Authentication methods. Does this meet the goal?

    Choose one answer.

    • Yes
    • No
  10. Question 10 · 1

    You have a Microsoft 365 tenant that contains the objects shown in the following table. You are creating a compliance policy named Compliance1. Which objects can you specify in Compliance1 as additional recipients of noncompliance notifications?

    Choose one answer.

    Question illustration 1
    • Group3 and Group4 only
    • Group3, Group4, and Admin1 only
    • Group1, Group2, and Group3 only
    • Group1, Group2, Group3, and Group4 only
    • Group1, Group2, Group3, Group4, and Admin1
  11. Question 11 · 1

    HOTSPOT - You have an Azure AD tenant named contoso.com that contains a user named User1. User1 has a user principal name (UPN) of user1@contoso.com. You join a Windows 11 device named Client1 to contoso.com. You need to add User1 to the local Administrators group of Client1. How should you complete the command? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.

    Choose an option for each prompt.

    Question illustration 1

    command

    • net accounts
    • net localgroup
    • net user

    domain qualifier

    • AzureAD
    • CONTOSO
    • UPN
  12. Question 12 · 1

    You have a Microsoft 365 E5 subscription that contains 100 iOS devices enrolled in Microsoft Intune. You need to deploy a custom line-of-business (LOB) app to the devices by using Intune. Which extension should you select for the app package file?

    Choose one answer.

    • .intunemac
    • .ipa
    • .apk
    • .appx
  13. Question 13 · 1

    You have a Microsoft 365 subscription. You need to provide a user the ability Security defaults and create Conditional Access policies. The solution must use the principle of least privilege. Which role should you assign to the user?

    Choose one answer.

    • Global Administrator
    • Conditional Access Administrator
    • Security Administrator
    • Intune Administrator
  14. Question 14 · 1

    HOTSPOT - In Microsoft Intune, you have the device compliance policies shown in the following table. The Intune compliance policy settings are configured as shown in the following exhibit. On June 1, you enroll Windows 10 devices in Intune as shown in the following table. For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.

    Choose an option for each prompt.

    Question illustration 1
    Question illustration 2
    Question illustration 3
    Question illustration 4

    On June 4, Device1 is marked as compliant.

    • Yes
    • No

    On June 6, Device1 is marked as compliant.

    • Yes
    • No

    On June 9, Device2 is marked as compliant.

    • Yes
    • No
  15. Question 15 · 1

    You have a Microsoft 365 subscription that contains a user named User1 and uses Microsoft Intune Suite. You use Microsoft Intune to manage devices that run Windows 11. User provides remote support for 75 devices in the marketing department. You need to add User1 to the Remote Desktop Users group on each marketing department device. What should you configure?

    Choose one answer.

    • an app configuration policy
    • a device compliance policy
    • an account protection policy
    • a device configuration profile

Each purchase applies to this certification. Prices are one-time payments, not monthly subscriptions.

Starter

$29 USD one time

Full access to one certification's question bank in standard practice mode for 60 days.

  • Full question bank for one certification
  • 60 days of access
  • Standard practice mode
  • Question notes and community discussions
  • Attempt scores and answer review

Professional

$49 USD one time

Full access to one certification's question bank, custom test controls and advanced analytics for 60 days.

  • Custom test builder
  • Timers and question selection
  • Randomized question and answer order
  • Advanced performance and weak-question analytics
  • Priority customer support
Try 15 questions free