Summer Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: Board70

MD-102 Exam Dumps - Microsoft 365 Certified: Endpoint Administrator Associate Questions and Answers

Question # 4

You have a Microsoft 365 tenant and an internal certification authority (CA).

You need to use Microsoft Intune to deploy the root CA certificate to managed devices.

Which type of Intune policy and profile should you use? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Options:

Buy Now
Question # 5

You have a Microsoft 365 subscription that uses Microsoft Intune Suite.

You use Microsoft Intune to manage devices.

You need to ensure that the startup performance of managed Windows 11 devices is captured and available for review in the Intune admin center.

What should you configure?

Options:

A.

the Azure Monitor agent

B.

a device compliance policy

C.

a Conditional Access policy

D.

an Intune data collection policy

Buy Now
Question # 6

Your network contains an Active Directory domain named contoso.com. The domain contains 25 computers that run Windows 11-

You have a Microsoft 365 subscription

You have an Azure AD tenant that syncs with contoso.com.

You configure hybrid Azure AD join and discover that some of the computers have a registered state of Pending.

You need to ensure that the computers complete the join successfully.

What should you ensure?

Options:

A.

that Windows is activated on all the computers

B.

that the users of the computers are assigned Microsoft 365 licenses

C.

that each computer has a line of sight to a domain controller

D.

that the computers contain the latest quality updates

Buy Now
Question # 7

You manage 1,000 computers that run Windows 10. All the computers are enrolled in Microsoft Intune. You manage the servicing channel settings of the computers by using Intune.

You need to review the servicing status of a computer.

What should you do?

Options:

A.

From Software updates, view the Per update ring deployment state.

B.

From Software updates, view the audit logs.

C.

From Device configuration - Profiles, view the device status.

D.

From Device compliance, view the device compliance.

Buy Now
Question # 8

You have a Microsoft 365 E5 subscription.

You need to enroll Android Enterprise devices in Microsoft Intune by using zero-touch enrollment.

What should you do first?

Options:

A.

From the zero-touch enrollment portal, create a zero-touch configuration.

B.

From the Microsoft Intune admin center, configure enrollment restrictions.

C.

From the Microsoft Intune admin center, create a zero-touch configuration.

D.

From the Microsoft Intune admin center, link a Managed Google Play account.

Buy Now
Question # 9

You have a Microsoft 365 E5 subscription.

You create an app protection policy for Android device named Policy1 as shown in the following exhibit.

Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.

NOTE: Each correct selection is worth one point.

Options:

Buy Now
Question # 10

Your network contains an Active Directory domain. Active Directory is synced with Microsoft Azure Active Directory (Azure AD).

There are 500 Active Directory domain-joined computers that run Windows 10 and are enrolled in Microsoft Intune.

You plan to implement Microsoft Defender Exploit Guard.

You need to create a custom Microsoft Defender Exploit Guard policy, and then distribute the policy to all the computers.

What should you do? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Options:

Buy Now
Question # 11

Your network contains an Active Directory domain named contoso.com. The domain contains two computers named Computer! and Computer2 that run Windows 10. On Computer1, you need to run the Invoke-Command cmdlet to execute several PowerShell commands on Computed. What should you do first?

Options:

A.

On Computed, run the Enable-PSRemoting cmdlet.

B.

On Computed, add Computer! to the Remote Management Users group.

C.

From Active Directory, configure the Trusted for Delegation setting for the computer account of Computed.

D.

On Computer1, run the HcK-PSSession cmdlet.

Buy Now
Question # 12

You have a Microsoft 365 subscription that includes Microsoft Intune.

You have computers that run Windows 11 as shown in the following table.

You have the groups shown in the following table.

You create and assign the compliance policies shown in the following table.

The next day, you review the compliance status of the computers.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.

Options:

Buy Now
Question # 13

You have a Microsoft 365 E5 subscription that contains 150 hybrid Azure AD joined Windows devices. All the devices are enrolled in Microsoft Intune. You need to configure Delivery Optimization on the devices to meet the following requirements:

• Allow downloads from the internet and from other computers on the local network.

• Limit the percentage of used bandwidth to 50.

What should you use?

Options:

A.

a configuration profile

B.

a Windows Update for Business Group Policy setting

C.

a Microsoft Peer-to-Peer Networking Services Group Policy setting

D.

an Update ring for Windows 10 and later profile

Buy Now
Exam Code: MD-102
Exam Name: Endpoint Administrator
Last Update: Jul 4, 2026
Questions: 392
MD-102 pdf

MD-102 PDF

$28.5  $94.99
MD-102 Engine

MD-102 Testing Engine

$33  $109.99
MD-102 PDF + Engine

MD-102 PDF + Testing Engine

$43.5  $144.99