Latest [May 17, 2024] MD-100 Exam Dumps - Valid and Updated Dumps
Free Sales Ending Soon - 100% Valid MD-100 Exam Dumps with 379 Questions
Microsoft MD-100 exam is a part of a series of exams required to earn the Microsoft 365 Certified: Modern Desktop Administrator Associate certification. Windows Client certification validates an individual's skills in deploying, configuring, and managing Windows 10 and Office 365 in an enterprise environment.
To take the Microsoft MD-100 exam, candidates should have a fundamental understanding of Windows 10 operating system and its features. They should also have experience in deploying, configuring, and managing Windows devices in an enterprise environment.
NEW QUESTION # 27
Please wait while the virtual machine loads. Once loaded, you may proceed to the lab section. This may take a few minutes, and the wait time will not be deducted from your overall test time.
When the Next button is available, click it to access the lab section. In this section, you will perform a set of tasks in a live environment. While most functionality will be available to you as it would be in a live environment, some functionality (e.g., copy and paste, ability to navigate to external websites) will not be possible by design.
Scoring is based on the outcome of performing the tasks stated in the lab. In other words, it doesn't matter how you accomplish the task, if you successfully perform it, you will earn credit for that task.
Labs are not timed separately, and this exam may more than one lab that you must complete. You can use as much time as you would like to complete each lab. But, you should manage your time appropriately to ensure that you are able to complete the lab(s) and all other sections of the exam in the time provided.
Please note that once you submit your work by clicking the Next button within a lab, you will NOT be able to return to the lab.
Username and password
Use the following login credentials as needed:
To enter your password, place your cursor in the Enter password box and click on the password below.
Username: Contoso/Administrator
Password: Passw0rd!
The following information is for technical support purposes only:
Lab Instance: 11145882

You have already prepared Client1 for remote management.
You need to forward all events from the Application event log on Client1 to DC1.
To complete this task, sign in to the required computer or computers.
Answer:
Explanation:
See explanation below.
Explanation
Configuring the event source computer
1. Run the following command from an elevated privilege command prompt on the Windows Server domain controller to configure Windows Remote Management:
winrm qc -q
2. Start group policy by running the following command:
%SYSTEMROOT%\System32\gpedit.msc
3. Under the Computer Configuration node, expand the Administrative Templates node, then expand the Windows Components node, then select the
4. Right-click the SubscriptionManager . Enable the SubscriptionManager setting, and click the Show button to add a server address to the setting. Add at least one setting that specifies the event collector computer. The window contains an Explain tab that describes the syntax for the setting.
5. After the SubscriptionManager setting has been added, run the following command to ensure the policy is applied:
gpupdate /force
Configuring the event collector computer
1. Run the following command from an elevated privilege command prompt on the Windows Server domain controller to configure Windows Remote Management:
winrm qc -q
2. Run the following command to configure the Event Collector service:
wecutil qc /q
3. Create a source initiated subscription. This can either be done programmatically, by using the Event Viewer, or by using Wecutil.exe. If you use Wecutil.exe, you must create an event subscription XML file and use the following command:
wecutil cs configurationFile.xml
Reference:
https://docs.microsoft.com/en-us/windows/win32/wec/setting-up-a-source-initiated-subscription#forwarding-the-
NEW QUESTION # 28
You have a computer named Computer1 that runs Windows 10 and has Windows Assessment and Deployment Kit (Windows ADK) installed.
Computer1 has the drives shown in the following table.
You need to create Windows 10 unattended answer file.
What should you do first?
- A. From File Explorer, copy Install.wim from drive E to drive D.
- B. From Windows System Image Manager, select Select Windows Image, and then select Install.wim from drive E.
- C. From File Explorer, copy Boot.wim from drive E to drive D.
- D. From Windows System Image Manager, select Select Windows Image, and then select Boot.wim from drive E.
Answer: A
Explanation:
Explanation
References:
https://www.windowscentral.com/how-create-unattended-media-do-automated-installation-windows-10
NEW QUESTION # 29
Your network contains an Active Directory domain. The domain contains three computers named Computer1, Computer2, and Computer3 that run Windows 10. The computers are on the same network and have network connectivity.
Windows Defender Firewall on Computer1 has the server-to-server connection security rule shown in the following table.
Windows Defender Firewall on Computer2 has the server-to-server connection security rule shown in the following table.
Windows Defender Firewall on Computer3 has the server-to-server connection security rule shown in the following table.
All the connection security rules are enabled and configured to use only the Computer (Kerberos VS) authentication method.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation
NO NO NO
Traffic will not be encrypted by default. The question does not have this option configured by default.
Encryption is optional, not default to authentications. Encryption needs to be enabled in the GPO. The default is data integrity which is not default to encrypt. Actually, if you encrypt you will use both integrity with encryption. Devices in the encryption zone require authentication to communicate with other devices.
NEW QUESTION # 30
You have a workgroup computer named Computer1 that runs Windows 10 and has the users shown in the following table.
User Account Control (UAC) on Computer1 is configured as shown in the following exhibit.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Reference:
https://docs.microsoft.com/en-us/windows/security/identity-protection/user-account-control/user-account-control-security-policy-settings
NEW QUESTION # 31
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have a workgroup computer that runs Windows 10. The computer contains the local user accounts shown in the following table.
You need to configure the desktop background for User1 and User2 only.
Solution: From the local computer policy, you configure the Filter Options settings for the computer policy.
Does this meet the goal?
- A. No
- B. Yes
Answer: A
NEW QUESTION # 32
Your network contains an Active Directory domain that is synced to a Microsoft Azure Active Directory (Azure AD) tenant. All users have been issued with laptop computers as well as desktop computers that run Windows 10 Enterprise. All users have Microsoft 365 E3 licenses.
A user named Mia Hamm informs you that she must perform a BitLocker recovery on her laptop but she does not have her BitLocker recovery key.
You need to ensure that Mia Hamm can perform a BitLocker recovery on her laptop.
What should you do?
- A. Instruct Mia Hamm to log on to her desktop computer and go to https://account.activedirectory.windowsazure.com and view the user account profile.
- B. Instruct Mia Hamm to use the BitLocker Recovery Password Viewer to view the computer object of the laptop.
- C. Instruct Mia Hamm to log on to her desktop computer and run the repair-bde.exe command.
- D. Instruct Mia Hamm to run the Enable-BitLocker cmdlet on her laptop.
Answer: A
Explanation:
The BitLocker recovery key is stored in Azure Active Directory.
Reference:
https://celedonpartners.com/blog/storing-recovering-bitlocker-keys-azure-active-directory/
NEW QUESTION # 33
You have a computer that runs Windows 10. You view the domain services status as shown in the following exhibit.
Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
References:
https://docs.microsoft.com/en-us/azure/active-directory/devices/troubleshoot-device-dsregcmd
https://github.com/MicrosoftLearning/MD-101T00-ManagingModernDesktops/blob/master/Instructions/Labs/0403-Enrolling%20devices%20in%20Intune.md
NEW QUESTION # 34
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have two computers named Computer1 and Computer2 that run Windows 10.
You have an Azure Active Directory (Azure AD) user account named [email protected] that is in the local Administrators group on each computer.
You sign in to Computer1 by using [email protected].
You need to ensure that you can use Event Viewer on Computer1 to connect to the event logs on Computer2.
Solution: On Computer2, you run the winrm quickconfig command.
Does this meet the goal?
- A. No
- B. Yes
Answer: A
Explanation:
Windows Remote Management is a component of the Windows Hardware Management features that manage server hardware locally and remotely.
Reference:
https://docs.microsoft.com/en-us/windows/win32/winrm/about-windows-remote-management
NEW QUESTION # 35
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Reference:
https://www.sciencedirect.com/topics/computer-science/security-event-log
NEW QUESTION # 36
Your network contains an Active Directory domain. The domain contains 1,000 computers that run Windows
10.
You discover that when users are on their lock screen, they see a different background image every day, along with tips for using different features in Windows 10.
You need to disable the tips and the daily background image for all the Windows 10 computers.
Which Group Policy settings should you modify?
- A. Do not suggest third-party content in Windows spotlight
- B. Turn off all Windows spotlight features
- C. Turn off the Windows Welcome Experience
- D. Turn off Windows Spotlight on Settings
Answer: B
Explanation:
Explanation
References:
https://docs.microsoft.com/en-us/windows/configuration/windows-spotlight
NEW QUESTION # 37
You have a workgroup computer named Computer1 that runs Windows 10. Computer1 has the user accounts shown in the following table.
User3, User4, and Administrator sign in and sign out on Computer1. User1 and User2 have never signed in to Computer1.
You are troubleshooting policy issues on Computer1. You sign in to Computer1 as Administrator.
You add the Resultant Set of Policy (RsoP) snap-in to an MMC console.
Which users will be able to sign in on Computer1?
- A. Administrator only
- B. User3, User4, and Administrator only
- C. User1, User3, and User4 only
- D. Use1, User2, User3, User4, and Administrator
Answer: B
Explanation:
The Interactive logon: Number of previous logons to cache (in case domain controller is not available) policy setting determines whether a user can log on to a Windows domain by using cached account information. Logon information for domain accounts can be cached locally so that, if a domain controller cannot be contacted on subsequent logons, a user can still log on.
References:
https://docs.microsoft.com/en-us/windows/security/threat-protection/security-policy-settings/interactive-logon-number-of-previous-logons-to-cache-in-case-domain-controller-is-not-available
NEW QUESTION # 38
You have a computer that runs Windows 10.
From the Settings app, you view the connection properties shown in the following exhibit.
Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation
NEW QUESTION # 39
Your network contains an Active Directory domain. The domain contains 1,000 computers that run Windows
10.
You configure Microsoft Edge settings by using domain and local Group Policy Objects (GPOs).
You need to generate a report that contains all the Microsoft Edge policy settings applied to a computer.
What should you do?
- A. From a command prompt, run scanstate and specify the /apps parameter.
- B. From a command prompt, run scanstate and specify the /genconfig parameter.
- C. From Microsoft Edge, open edge://settings.
- D. From a command prompt, run gpresult and specify the /H parameter.
Answer: D
NEW QUESTION # 40
You have two computers named Computer1 and Computer2 that run Windows 10. The computers are in a workgroup.
You perform the following configurations on Computer1:
Create a user named User1.
Add User1 to the Remote Desktop Users group.
You perform the following configurations on Computer2:
Create a user named User1 and specify the same user password as the one set on Computer1.
Create a share named Share2 and grant User1 Full control access to Share2.
Enable Remote Desktop.
What are the effects of the configurations? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
NEW QUESTION # 41
Your network contains an Active Directory domain. The domain contains the users shown in the following table.
The Authenticated Users group has the Add workstations to domain user right in the Default Domain Controllers Policy.
The Device Managers and Help Desk groups are granted the Create Computer objects permission for the Computers container of the domain.
You have 15 workgroup computers that run Windows 10. Each computer contains a local user account named LocalAdmin1 that is a member of the following groups:
Administrators
Device Owners
Authenticated Users
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
NEW QUESTION # 42
You have a computer that runs Windows 10 Home.
You need to upgrade the computer to Windows 10 Enterprise as quickly as possible. The solution must retain the user settings.
What should you do first?
- A. Perform an in-place upgrade to Windows Pro.
- B. Install the latest feature updates.
- C. Run the scanscace command.
- D. Run the sysprep command.
Answer: A
Explanation:
Explanation
References:
https://docs.microsoft.com/en-us/windows/deployment/upgrade/windows-10-upgrade-paths
NEW QUESTION # 43
You need to implement a solution to configure the contractors' computers.
What should you do? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
References:
https://docs.microsoft.com/en-us/windows/configuration/provisioning-packages/provisioning-install-icd
NEW QUESTION # 44
You are troubleshooting Windows 10 updates that fail to install on a computer that runs Windows 10.
You delete the contents of the SoftwareDistribution folder.
You need to delete the signatures of the Windows Update packages.
Which folder should you delete?
- A. %systemroot%\WinSxS
- B. %systemdrive%\System Volume Information
- C. %systemdrive%\recovery
- D. %systemroot%\system32\catroot2
Answer: D
Explanation:
Reference:
https://tipsmake.com/how-to-delete-pending-updates-on-windows-10
NEW QUESTION # 45
Your network contains an Active Directory domain named contoso.com. The domain contains named Computer1 that runs Windows 10.
On Computer1, you create an NTFS folder and assign Full control permissions to Everyone.
You share the folder as Share1 and assign the permissions shown in the following table.
When accessing Share1, which two actions can be performed by User1 but not by User2? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.
- A. Delete a file created by another user.
- B. Take ownership of file.
- C. Set the permissions for a file.
- D. Rename a file created by another user.
- E. Copy a file created by another user to a subfolder.
Answer: B,C
Explanation:
Explanation
References:
https://www.varonis.com/blog/ntfs-permissions-vs-share/
NEW QUESTION # 46
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have two computers named Computer1 and Computer2 that run Windows 10.
You have an Azure Active Directory (Azure AD) user account named [email protected] that is in the local Administrators group on each computer.
You sign in to Computer1 by using [email protected].
You need to ensure that you can use Event Viewer on Computer1 to connect to the event logs on Computer2.
Solution: On Computer2, you run the winrm quickconfig command.
Does this meet the goal?
- A. No
- B. Yes
Answer: A
Explanation:
Explanation
Windows Remote Management is a component of the Windows Hardware Management features that manage server hardware locally and remotely.
References:
https://docs.microsoft.com/en-us/windows/win32/winrm/about-windows-remote-management
NEW QUESTION # 47
Your network contains an Active Directory domain. The domain contains three computers named Computer1, Computer2, and Computer3 that run Windows 10. The computers are on the same network and have network connectivity.
Windows Defender Firewall on Computer1 has the server-to-server connection security rule shown in the following table.
Windows Defender Firewall on Computer2 has the server-to-server connection security rule shown in the following table.
Windows Defender Firewall on Computer3 has the server-to-server connection security rule shown in the following table.
All the connection security rules are enabled and configured to use only the Computer (Kerberos VS) authentication method.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
References:
https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-firewall/create-an-authentication-request-rule
NEW QUESTION # 48
You have a computer named Computer1 that runs Windows 10. Computer1 is in a workgroup.
Computer1 contains the local users shown in the following table.
Computer1 contains the folders shown in the following table.
The Users group has Full control permissions to Folder1, Folder2, and Folder3.
User1 encrypts two files named File1.docx and File2.docx in Folder1 by using EFS.
Which users can move each file? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation:
EFS works by encrypting a file with a bulk symmetric key. The symmetric key that is used to encrypt the file is then encrypted with a public key that is associated with the user who encrypted the file. Because the encryption & decryption operations are performed at a layer below NTFS, it is transparent to the user and all their applications.
Box 1: User1, User2, and Administrator
Box 2: User1, User2, and Administrator
All three are members of the Users group that has Full control permissions to Folder1, Folder2, and Folder3.
NEW QUESTION # 49
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have a computer named Computer1 that runs Windows10.
A service named Application1 is configured as shown in the exhibit.
You discover that a user used the Service1 account to sign in to Computer1 and deleted some files.
You need to ensure that the identity used by Application1 cannot be used by a user to sign in to sign in to the desktop on Computer1. The solution must use the principle of least privilege.
Solution: On Computer1, you configure Application1 to sign in as the LocalSystem account and select the Allow service to interact with desktop check box. You delete the Service1 account.
Does this meet the goal?
- A. No
- B. Yes
Answer: A
Explanation:
Configuring Application1 to sign in as the LocalSystem account would ensure that the identity used by Application1 cannot be used by a user to sign in to the desktop on Computer1. However, this does not use the principle of least privilege. The LocalSystem account has full access to the system. Therefore, this solution does not meet the goal.
NEW QUESTION # 50
Your network contains an Active Directory domain named adatum.com that uses Key Management Service (KMS) for activation.
You deploy a computer that runs Windows 10 to the domain.
The computer fails to activate.
You suspect that the activation server has an issue.
You need to identify which server hosts KMS.
How should you complete the command? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation:
Explanation
References:
https://blogs.technet.microsoft.com/odsupport/2011/11/14/how-to-discover-office-and-windows-kms-hosts-via-
NEW QUESTION # 51
......
Microsoft MD-100 (Windows Client) Certification Exam is designed to validate the skills and knowledge required to configure, manage, and maintain Windows 10 devices in an enterprise environment. Windows Client certification is intended for IT professionals who deploy, configure, and manage Windows 10 installations, devices, and applications for small and medium-sized organizations. Candidates who pass the MD-100 exam demonstrate their ability to support and troubleshoot Windows 10 deployments, including managing and protecting devices, configuring connectivity, and maintaining Windows installations.
MD-100 Exam Dumps - 100% Marks In MD-100 Exam: https://certificationsdesk.examslabs.com/Microsoft/Windows-10/best-MD-100-exam-dumps.html