MS-100 Test 1 — Questions and Answers
Question 1: You have a Microsoft 365 tenant with an Environment1 Microsoft Power Platform environment. <br> <br> (default). A Microsoft Dataverse database is present in Environment 1. <br> <br> You create a user named User1 in the tenant. You give User1 a Microsoft Power Apps license. <br> <br> Which of the Environment1 security roles is immediately assigned to User1?
- System customizer (Correct answer)
- Delegate
- Environment maker
- None of the above
Correct answer: System customizer
When a user is created in a Microsoft 365 tenant and assigned a Microsoft Power Apps license, they are automatically assigned the 'System Customizer' security role in the default Microsoft Dataverse environment. This role grants them privileges to customize and create applications within Dataverse, enabling them to build and manage Power Apps solutions.
Question 2: You have a Microsoft 365 membership, and User1 is one of your users. <br> <br> Before the updates are installed, you must ensure that User1 receives Microsoft 365 feature and service updates. <br> <br> All users have access to it. <br> <br> In the Microsoft 365 admin center, what should you do?
- Modify the Release preferences settings. (Correct answer)
- Submit a new service request
- Modify the privileged access management settings.
- Modify Office software download settings.
Correct answer: Modify the Release preferences settings.
To ensure a user receives Microsoft 365 feature and service updates before other users, you need to modify the 'Release preferences' settings in the Microsoft 365 admin center. This allows you to set specific users or the entire organization to the 'Targeted release' channel, which provides updates earlier than the 'Standard release' channel, enabling early testing and feedback.
Question 3: You have a bespoke model-driven Microsoft Power Apps program in your Microsoft Power Platform production environment. <br> For how long will the environment's system backups be kept?
- 28 (Correct answer)
- 5
- 20
- 80
Correct answer: 28
For production environments in Microsoft Power Platform with a Microsoft Dataverse database, system backups are automatically performed and retained for 28 days. This retention period ensures that organizations have a sufficient window to restore their data in case of accidental deletion or data corruption, providing a robust disaster recovery mechanism.
Question 4: You have a Microsoft Exchange Server organization with 100 mailboxes on-premises. <br> You have a Microsoft 365 hybrid tenant. <br> The Hybrid Configuration wizard is run, and the mails are migrated to the tenant. <br> Make sure that Microsoft 365 spam filtering is turned on for incoming email. <br> What are your options?
- Update the MX record to point to Exchange Online (Correct answer)
- Run the Azure Active Directory Connect wizard again
- Run the Hybrid Configuration wizard again.
- Update the Sender Policy Framework (SPF) TXT record to point to the on-premises Exchange IP address
Correct answer: Update the MX record to point to Exchange Online
After migrating mailboxes to a Microsoft 365 hybrid tenant, to ensure that Microsoft 365 spam filtering is applied to incoming email, you must update your domain's MX (Mail Exchanger) record. The MX record needs to point to Exchange Online Protection (EOP), which is part of Exchange Online. This directs all incoming mail through Microsoft 365's security services before it reaches the mailboxes.
Question 5: You've been tasked with determining which licenses to purchase once your organization migrates their on-premises email service to Microsoft Exchange Online. <br> You have been notified that licenses purchased for the IT and Managers groups of the organization should allow for the following: <br> Privileged Identity Management in Microsoft Azure Active Directory (Azure AD) is required for the IT group. <br> Conditional access to Microsoft Azure Active Directory (Azure AD) should be available to both the IT and Managers groups. <br> You must ensure that license fees are maintained to a bare minimum. <br> Which two of the following choices do you think are the best? (Select two.)
- Microsoft 365 E3 licenses should be purchased for the IT team members.
- For the Managers group, you should acquire Microsoft 365 E3 licenses. (Correct answer)
- For the Managers group, you should acquire Microsoft 365 E5 licenses. (Correct answer)
- For the Managers group, you should purchase Microsoft 365 E5 licenses.
Correct answer: For the Managers group, you should acquire Microsoft 365 E3 licenses.
The Managers group requires Conditional Access, which is a feature included in Azure AD Premium P1. Microsoft 365 E3 licenses provide Azure AD Premium P1, making it a suitable and cost-effective choice for this group. While Microsoft 365 E5 also includes Conditional Access (via Azure AD Premium P2), it offers additional features like Privileged Identity Management (PIM) that are not required by the Managers group, making E3 the more economical option to meet the 'bare minimum' license fee constraint.
Question 6: You need to consider the underlined segment to verify whether it is accurate. <br> Microsoft 365 is a subscription that your firm owns. <br> Create a new mail flow rule to protect your firm from getting phishing email communications. <br> If the underlined segment is correct, select 'No adjustment required.' Select the accurate choice if the underlined part is incorrect.
- Threat management policy. (Correct answer)
- No adjustment required
- Spam filter policy
- Label policy.
Correct answer: Threat management policy.
While mail flow rules can perform some basic filtering, comprehensive protection against sophisticated phishing email communications is primarily handled by advanced threat protection features. These capabilities are configured through Threat management policies, specifically anti-phishing policies within Microsoft Defender for Office 365, which utilize machine learning and advanced heuristics to detect and prevent complex phishing attacks more effectively than simple mail flow rules.
Question 7: Microsoft Exchange Online is included in your Microsoft 365 tenant. <br> You've been given the duty of enabling calendar sharing with a partner company that also uses Microsoft 365. <br> You must ensure that users in the partner organization have rapid access to each user's calendar. <br> Which of the following is the best course of action for you?
- Using the Exchange admin center, configure the sharing options.
- Run the Set-SPOSite cmdlet.
- Configure a conditional access policy via Exchange admin center. (Correct answer)
- Configure a new organization relationship via Exchange admin center.
Correct answer: Configure a conditional access policy via Exchange admin center.
To enable calendar sharing with a partner company that also uses Microsoft 365 and ensure rapid access to each user's calendar, the best course of action is to configure a new organization relationship. This setting, found in the Exchange admin center, allows for controlled sharing of free/busy information and other calendar details between the two Microsoft 365 tenants, providing seamless and efficient access for users in both organizations.
Question 8: Following the purchase of a new domain name, you must ensure that the primary email address of all new mailboxes is the new domain. <br> Which of the following should you use to launch the Microsoft Exchange Online PowerShell cmdlet?
- Set-EmailAddressPolicy (Correct answer)
- Update-EmailAddressPolicy
- Update-OfflineAddressBook
- Set-AddressBookPolicy
Correct answer: Set-EmailAddressPolicy
To ensure that the primary email address of all new mailboxes uses a newly purchased domain, you must configure an email address policy. The `Set-EmailAddressPolicy` cmdlet in Exchange Online PowerShell is used to modify or create these policies. This cmdlet allows you to define the format and domain for email addresses, ensuring that new mailboxes are automatically assigned the correct primary email address from the new domain.
Question 9: You've been tasked with identifying all users who have a Microsoft Office 365 license as a result of belonging to a group in your company's Microsoft 365 subscription. <br> You must include the group that was utilized to assign the license in your results. <br> Which of the following is the best course of action for you?
- To get started, go to the Microsoft 365 admin center and select the Products blade.
- Navigate to the Licenses blade in the Azure portal. (Correct answer)
- You should go to the Users blade in the Microsoft 365 admin center.
- Navigate to the Monitor blade in the Azure portal.
Correct answer: Navigate to the Licenses blade in the Azure portal.
To identify users who have a Microsoft Office 365 license assigned through group-based licensing and to see which specific group was used for the assignment, you need to navigate to the Azure portal. Within the Azure portal, the 'Licenses' blade under Azure Active Directory provides detailed information on license assignments, including the source of the assignment (direct or group-based) and the group responsible for the license inheritance.
You have a Microsoft 365 tenant with an Environment1 Microsoft Power Platform environment.
(default).
A Microsoft Dataverse database is present in Environment 1.
You create a user named User1 in the tenant.
You give User1 a Microsoft Power Apps license.
Which of the Environment1 security roles is immediately assigned to User1?