Free MD-102 Deploying Windows Questions and Answers 1 — Questions and Answers
Question 1: You have a Microsoft 365 subscription that includes Microsoft Intune. <br> You plan to use Windows Autopilot to deploy Windows 11 devices. <br> You need to meet the following requirements during Autopilot provisioning: <br> * Display the app and profile configuration progress. <br> * Block users from using the devices until all apps and profiles are installed <br> What should you configure?
- an app configuration policy
- an app protection policy
- an enrollment device platform restriction
- an enrollment status page (Correct answer)
Correct answer: an enrollment status page
The Enrollment Status Page (ESP) in Windows Autopilot is designed to display the progress of device setup, including app and profile configuration. It can also be configured to block users from using the device until all required applications and profiles are successfully installed. This ensures that devices are fully provisioned and compliant before users gain access, meeting both requirements.
Question 2: You need to assign the same deployment profile to all the computers that are configured by using Windows Autopilot. <br> Which two actions should you perform? Each correct answer presents part of the solution. <br> NOTE: Each correct selection is worth one point.
- Create an Azure AD group that has dynamic membership rules and uses the ZTDID tag. (Correct answer)
- Create an Azure AD group that has dynamic membership rules and uses the operating System tag.
- Assign a Windows Autopilot deployment profile to a group. (Correct answer)
- Join the computers to Azure AD.
- Create a Group Policy object (GPO) that is linked to a domain.
- Join the computers to an on-premises Active Directory domain.
Correct answer: Create an Azure AD group that has dynamic membership rules and uses the ZTDID tag.
To assign a deployment profile to all Windows Autopilot computers, you first need to group these devices. Creating an Azure AD group with dynamic membership rules using the ZTDID (Zero Touch Deployment ID) tag allows Autopilot-registered devices to automatically join. Once the group is populated, you can then assign the desired Windows Autopilot deployment profile to this specific Azure AD group, ensuring consistent configuration.
Question 3: Your network contains an Active Directory domain named contoso.com. The domain contains 25 computers that run Windows 11. You have a Microsoft 365 subscription You have an Azure AD tenant that syncs with contoso.com. You configure hybrid Azure AD join and discover that some of the computers have a registered state of Pending. You need to ensure that the computers complete the join successfully. <br> What should you ensure?
- that Windows is activated on all the computers
- that the users of the computers are assigned Microsoft 365 licenses
- that each computer has a line of sight to a domain controller (Correct answer)
- that the computers contain the latest quality updates
Correct answer: that each computer has a line of sight to a domain controller
For hybrid Azure AD join to complete successfully, the computers need to be able to communicate directly with an on-premises Active Directory domain controller. This 'line of sight' is crucial for the device registration process, as the domain controller is responsible for syncing the device object to Azure AD. Without this connectivity, the device registration can remain in a 'Pending' state.
Question 4: You have an Azure AD tenant named contoso.com. <br> You plan to purchase 25 computers that run Windows 11. You plan to deliver the computers directly to users. You need to ensure that during the out-of-box experience (OBE), users are prompted to sign in, and then the computers are configured to use Microsoft Intune. <br> Which two components should you configure?
- a provisioning package
- automatic enrollment (Correct answer)
- an unattend.xml answer file
- a Windows Autopilot deployment profile for self-deploying mode
- a Windows Autopilot deployment profile for user-driven mode (Correct answer)
Correct answer: automatic enrollment
To ensure users are prompted to sign in during the Out-of-Box Experience (OOBE) and devices are configured with Intune, two key components are needed. First, automatic enrollment must be configured in Azure AD/Intune so that when a user signs in with corporate credentials, the device automatically enrolls. Second, a Windows Autopilot deployment profile for user-driven mode is essential, as this profile guides the OOBE, prompts for credentials, and applies Intune configurations.
Question 5: You have a Microsoft 365 subscription that includes Microsoft Intune. The subscription contains corporate-owned, fully managed Android Enterprise devices. You plan to deploy a configuration profile that will have a device restrictions profile type named Profile1. Profile1 will assign maintenance windows for system updates. <br> What should you configure from the Configuration settings for Profile1?
- Device experience (Correct answer)
- General
- Connectivity
- Power Settings Explanation
Correct answer: Device experience
For Android Enterprise corporate-owned, fully managed devices, settings related to system updates, including defining maintenance windows, are found under the "Device experience" category within a device restrictions configuration profile. This section allows administrators to control various aspects of the device's user experience and operational behavior, such as update policies, kiosk modes, and display settings.
You have a Microsoft 365 subscription that includes Microsoft Intune.
You plan to use Windows Autopilot to deploy Windows 11 devices.
You need to meet the following requirements during Autopilot provisioning:
* Display the app and profile configuration progress.
* Block users from using the devices until all apps and profiles are installed
What should you configure?