Refined 70-346 Dumps Questions 2019

70-346 Royal Pack Testengine pdf

100% Actual & Verified — 100% PASS

Unlimited access to the world's largest Dumps library!

https://www.2passeasy.com/dumps/70-346/

We offers 70 346 pdf. "Managing Office 365 Identities and Requirements", also known as 70-346 exam, is a Microsoft Certification. This set of posts, Passing the 70-346 exam with exam ref 70 346 pdf, will help you answer those questions. The 70 346 managing office 365 identities and requirements covers all the knowledge points of the real exam. 100% real 70 346 book pdf and revised by experts!

Free 70-346 Demo Online For Microsoft Certifitcation:

NEW QUESTION 1
Contoso, Ltd. has an Office 365 tenant. The company has two servers named Server1 and Server2 that run Windows 2012 R2 Server. The servers are not joined to the contoso.com domain. Server2 is deployed to the perimeter network.
You install Secure Sockets Layer (SSL) certificates on both servers.
You deploy internal and external firewalls. All firewalls allow HTTPS traffic.
You must deploy single sign-on (SSO) and Active Directory Federation Services (AD FS). You need to install and configure all AD FS components in the environment.
Which four actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
70-346 dumps exhibit

    Answer:

    Explanation: All AD FS servers must be domain joined.
    References: https://technet.microsoft.com/en-us/library/dn554247(v=ws.11).aspx#BKMK_4

    NEW QUESTION 2
    You have an Office 365 tenant that uses an Enterprise E1 subscription.
    You need to convert the users in the tenant to an Enterprise E3 subscription. Which Windows PowerShell cmdlet should you run?

    • A. Set-MsolUser
    • B. Redo-MsolProvisionUser
    • C. Set-MsolUserLicense
    • D. Set-MsolUserPrincipalName
    • E. Convert-MsolFederatedUser
    • F. Set-MailUser
    • G. Set-LinkedUser
    • H. New-MsolUser

    Answer: C

    Explanation: The Set-MsolUserLicense cmdlet can be used to adjust the licenses for a user. This can include adding a new license, removing a license, updating the license options, or any combination of these actions.
    Note: Switching plans manually means that you’re completing the following separate procedures instead of using the switch plans wizard. The procedures are:
    70-346 dumps exhibit Buy licenses for the subscription you’re switching users to.
    70-346 dumps exhibit Verify the subscription is ready to switch users to.
    70-346 dumps exhibit Reassign user licenses
    70-346 dumps exhibit Remove unneeded licenses from the subscription you’re switching from.
    70-346 dumps exhibit Cancel the original subscription (if switching all users).
    70-346 dumps exhibit Switching only some users isn’t supported by the switch
    References:
    https://docs.microsoft.com/en-us/powershell/module/msonline/set-msoluserlicense?view=azureadps-1.0

    NEW QUESTION 3
    An organization has an Office 365 tenant. You use multi-factor authentication for all privileged accounts. User1 is on an extended leave of absence
    You must configure the mailbox for User1 to forward to User2. You need to configure forwarding for User1’s mailbox.
    Which two Actions should you perform? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.

    • A. Create an app password for the administrator account.
    • B. Launch the Exchange Admin Center.
    • C. Connect to Exchange Online by using Remote PowerShell.
    • D. Launch Windows PowerShell as an administrator.

    Answer: A

    NEW QUESTION 4
    A company deploys an Office 365 tenant.
    You need to configure single sign-on (SSO) for all user accounts. External users are not allowed to connect directly to internal servers.
    Which three actions should you perform? Each correct answer presents part of the solution.

    • A. Run the Windows PowerShell cmdlet Enable-ADFSEndpoint.
    • B. Deploy a federation server proxy.
    • C. Run the Windows PowerShell cmdlet Convert-MsolDomainToStandard.
    • D. Run the Windows PowerShell cmdlet New-ADFSOrganization.
    • E. Deploy a federation server farm.
    • F. Run the Windows PowerShell cmdlet Convert-MsolDomainToFederated.

    Answer: BEF

    NEW QUESTION 5
    You are the administrator for Contoso Ltd. The company uses Office 365 and has an on-premises Active Directory Domain Services (AD DS) domain that uses the namespace contoso.com.
    You plan to implement Workplace Join. You must implement Active Directory Federation Services (AD FS) and
    Web Application Proxy (WAP). You take the following actions:
    70-346 dumps exhibit Install the WAP role on a server.
    70-346 dumps exhibit Allocate fs.conroso.com for the AD FS namespace.
    70-346 dumps exhibit Define the server FQDN as server1.contoso.com.
    You need to install and configure certificate for the WAP server.

    • A. a certificate with a subject of fs.contoso.com
    • B. a certificate with a subject of server1.contoso.com
    • C. a certificate with a subject alternative name that contains fs.contoso.com and enterpriseregistration.contoso.com
    • D. a certificate with a subject alternative name that contains server1.contoso.com and fs.contoso.com

    Answer: C

    NEW QUESTION 6
    A company uses Office 365.
    You need to permanently delete a user account. What should you do?

    • A. Run the Microsoft Azure PowerShell cmdlet Remove-MsolUser.
    • B. Use the Microsoft Azure portal.
    • C. Run the Microsoft Azure PowerShell cmdlet Remove-AzureAdUser.
    • D. Use Office 365 admin center.

    Answer: A

    NEW QUESTION 7
    You are the Office 365 administrator for your company.
    You must use Windows PowerShell to manage cloud identities in Office 365. You must use a computer that runs Windows 8 to perform the management tasks.
    You need to ensure that the Windows 8 computer has the necessary software installed. What should you install first?

    • A. Microsoft Office 365 Best Practices Analyzer for Windows PowerShell
    • B. Windows PowerShell 4.0
    • C. Remote Server Administration Tools for Windows
    • D. Microsoft Online Services Sign-in Assistant

    Answer: D

    Explanation: Cloud identities in Office 365 are user accounts in Azure Active Directory.
    You can use Windows PowerShell to administer Office 365 and Azure Active Directory. However, the default installation of Windows PowerShell on Windows 8 (or any other version of Windows) does not include the PowerShell cmdlets required to manage Office 365 or Azure Active Directory.
    You need to install the PowerShell module that includes the necessary cmdlets for managing Azure Active Directory. This module is the Windows Azure Active Directory Module for Windows PowerShell module. This module also requires that Microsoft .NET Framework 3.5 is installed and enabled.
    Before the Windows Azure Active Directory Module for Windows PowerShell, can be installed, the Microsoft Online Services Sign-in Assistant must be installed. This will allow you to connect to your Office 365/Azure subscription from a PowerShell session on a remote computer.

    NEW QUESTION 8
    Contoso, Ltd. has an Office 365 Tenant. The company plans to implement single sign-on (SSO). You install Active Directory Federation Services.
    You need to enable the use of SSO.
    How should you complete the relevant Windows PowerShell commands? To answer, select the appropriate Windows PowerShell segment from each list in the answer area.
    70-346 dumps exhibit

      Answer:

      Explanation: See step 2) and step 5) below.
      To convert an existing domain to a single sign-on domain, follow these steps. References: https://msdn.microsoft.com/en-us/library/azure/jj205461.aspx

      NEW QUESTION 9
      An organization plans to migrate to Office 365. You use Azure AD Connect.
      Several users will not migrate to Office 365. You must exclude these users from synchronization. All users must continue to authenticate against the on-premises Active Directory.
      You need to synchronize the remaining users.
      Which three actions should you perform to ensure users excluded from migration are not synchronized? Each correct answer presents part of the solution.

      • A. Run the Windows PowerShell command Set-MsolDirSyncEnabled -EnableDirSync $false.
      • B. Perform a full synchronization.
      • C. Populate an attribute for each user account.
      • D. Configure the connection filter.
      • E. Disable the user accounts in Active Directory.

      Answer: BCD

      Explanation: D: With filtering, you can control which objects should appear in Azure AD from your on-premises directory. For example, you run a pilot for Azure or Office 365 and you only want a subset of users in Azure AD.
      C: Attribute–based filtering: This option allows you to filter objects based on attribute values on the objects. You can also have different filters for different object types.
      B: After you have made your configuration changes, these must be applied to the objects already present in the system. It could also be that objects not currently in the sync engine should be processed and the sync engine needs to read the source system again to verify its content.
      If you changed configuration using attribute filtering, then you need to do Full synchronization. References:
      https://azure.microsoft.com/en-us/documentation/articles/active-directory-aadconnectsync-configure-filtering/

      NEW QUESTION 10
      You are the system administrator at Contoso Ltd. The company is using a DNSnamespaceofcontoso.com. The company plans to deploy Office 365. You are setting up the contoso.com domain for Office 365. You
      have been assigned a value of MS-ms20240844 for verification of your domain.
      You need to complete the domain verification process for Office 365.
      What should you do? To answer, select the appropriate options in the dialog box in the answer area. NOTE: Each correct selection is worth one point.
      70-346 dumps exhibit

        Answer:

        Explanation: 70-346 dumps exhibit

        NEW QUESTION 11
        A company deploys an Office 365 tenant. All employees use Skype for Business Online. You need to configure the network firewall to support Skype for Business Online.
        Which ports must you open? To answer, drag the appropriate port number to the correct feature or features. Each port number may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
        70-346 dumps exhibit

          Answer:

          Explanation: Transport Control Protocol(TCP), User Datagram Protocol(UDP) ports, and Protocol Numbers are important to TCP/IP networking, intranets, and the Internet. Ports and protocol numbers provide access to a host computer. However, they also create a security hazard by allowing uninvited access. Therefore, knowing which port to allow or disable increases a network's security. If the wrong ports or protocol numbers are disabled on a firewall, router, or proxy server as a security measure, essential services might become unavailable.
          Port 443 is used for Audio, video and application sharing sessions as well as data sharing sessions - For HTTPS.
          Port 5223 is used for mobile push notifications - Extensible Messaging and Presence Protocol (XMPP) client connection over SSL.

          NEW QUESTION 12
          Your company deploys an Office 365 tenant.
          You need to ensure that you can view service health and maintenance reports for the past seven days. What are two possible ways to achieve this goal? Each correct answer presents a complete solution.

          • A. View the service health current status page of the Office 365 admin center.
          • B. Subscribe to the Office 365 Service Health RSS Notifications feed.
          • C. View the service settings page of the Office 365 admin center.
          • D. Run the Microsoft OnRamp Readiness Tool.

          Answer: AB

          Explanation: As an Office 365 admin, you can see whether there has been a service interruption or outage in your service on the Office 365 service health page. The Service health page shows status information for today, the past six days, and 30 days of history.

          NEW QUESTION 13
          Your company has a main office and a branch office. Both offices are directly connected to the Internet. The branch office connection to the Internet has limited bandwidth.
          The company deploys Microsoft Skype for Business Online.
          You need to ensure that users in the branch office can only use instant messaging (IM) while using Skype for Business Online. The users must be prevented from connecting to audio or video conferences.
          What should you do?

          • A. On the firewall at the branch office, block all of the outbound traffic on port 5061.
          • B. From the Office 365 portal, modify the user properties of each user in the branch office.
          • C. From the Office 365 portal, configure the license settings of each user in the branch office.
          • D. Deploy only the Skype for Business Attendee client to all of the users in the branch office.

          Answer: B

          NEW QUESTION 14
          You are the administrator for a company named Tailspin Toys. The company uses the tailspintoys.com SMTP domain. All mailboxes are hosted on Office 365. From the Internet, customers send warranty questions to Tailspin Toys by sending an email message to a shared mailbox named Warranty. The Warranty mailbox has the warranty@tailspintoys.com SMTP address. The service manager reports that many email orders sent to warranty@tailspintoys.com are identified as spam.
          You need to ensure that all of the messages sent by the customers arrive in the Warranty mailbox. What should you do?

          • A. From the Forefront Online Protection Administration Center, enable Directory-Based Edge Blocking.
          • B. From the Forefront Online Protection Administration Center, create a new policy rule.
          • C. From Windows PowerShell, run the New Transport Rule cmdlet and specify the - ExceptIfHeaderContainsWords parameter.
          • D. From Windows PowerShell, run the Set-ContentFilterConfig cmdlet and specify the-BypassedRecipients parameter.

          Answer: C

          Explanation: Set-ContentFilterConfig is only available for on-premises Exchange servers.
          “….Learn more about this at Configure your spam filter policies. Another option would be create an Exchange transport rule that works like the domain or user-based allow list in the spam filter. You can block messages sent from a particular domain or user in a similar manner too…”
          References:

          NEW QUESTION 15
          An organization prepares to migrate to Office 365. The organization has one domain controller named NYC-DC1 and one server named NYC-DS that is designated as the directory synchronization computer.
          The organization has the following servers:
          70-346 dumps exhibit
          You plan to upgrade the servers to support directory synchronization.
          You must upgrade each server to meet only the minimum requirements by using the least amount of administrative effort.
          You need to ensure that you can use the Azure AD Connect to synchronize the local Active Directory with Office 365.
          What should you do? Select the correct action from each list in the answer area.
          70-346 dumps exhibit

            Answer:

            Explanation: The minimum forest functional level requirement for Office356 is Windows Server 2003.
            The minimum domain controller requirement for office 356 is 32-bit Windows Server 2003 Standard Edition with Service Pack 1 (SP1). From the available options, the minimum requirement is met by Windows Server 2008 R2 Standard Edition.
            References:
            http://msdn.microsoft.com/en-us/library/azure/jj151831.aspx

            NEW QUESTION 16
            Fabrikam, Inc. employs 500 users and plans to migrate to Office 365.
            You must sign up for a trial plan from the Office 365 website. You have the following requirements:
            Create the maximum number of trial users allowed.
            Convert the trial plan to a paid plan at the end of the trial that supports all of Fabrikam's users.
            You need to create an Office 365 trial plan.
            How should you configure the trial plan? Select the correct answer from each list in the answer area.
            70-346 dumps exhibit

              Answer:

              Explanation: Office 365 Enterprise E 3 offers include unlimited number of users and since you are signing up for a trail to develop into a paid plan. Making use of 25 users in the trial will suffice.
              Office 365 Business can accommodate a maximum of 300 users only. References:
              https://technet.microsoft.com/en-us/office/dn788955 https://technet.microsoft.com/en-us/library/office-365-plan-options.aspx
              https://technet.microsoft.com/en-us/library/office-365-platform-service-description.aspx
              Katzer, Matthew and DonCrawford, Office 365 Migrating and Managing your Business in the Cloud, Apress Media, New York, 2013, pp 84-87

              NEW QUESTION 17
              You have an Office 365 tenant that uses an Enterprise E3 subscription. You have two servers in a perimeter network that have the Active Directory Federation Services (AD FS) proxy role service installed. A federation server farm is located behind a firewall.
              You need to ensure that the AD FS proxies can communicate with the federation server farm.
              Which two name resolution strategies can you use? Each correct answer presents a complete solution.

              • A. HOSTS file on the proxy servers
              • B. DNS server in the perimeter network
              • C. LMHOSTS file on the proxy servers
              • D. LMHOSTS file on the federation servers
              • E. HOSTS file on the federation servers

              Answer: AB

              Explanation: Configure Name Resolution for a Federation Server Proxy in a DNS Zone That Serves Only the PerimeterNetwork
              So that name resolution can work successfully for a federation server in an Active Directory Federation
              Services (AD FS) scenario in which one or more Domain Name System (DNS) zones serve only the perimeter network, the following tasks must be completed:
              70-346 dumps exhibit The hosts file on the federation server proxy must be updated to add the IP address of a federation server.
              70-346 dumps exhibit DNS in the perimeter network must be configured to resolve all client requests for the AD FS host name to the federation server proxy. To do this, you add a host (A) resource record to perimeter DNS for the federation server proxy.
              References:
              https://technet.microsoft.com/en-us/library/dd807045.aspx

              P.S. 2passeasy now are offering 100% pass ensure 70-346 dumps! All 70-346 exam questions have been updated with correct answers: https://www.2passeasy.com/dumps/70-346/ (356 New Questions)