Microsoft (MD-101): Managing Modern Desktops Sample Questions

  1. Home
  2. Microsoft (MD-101): Managing Modern Desktops Sample Questions
Managing Modern Desktops (MD-101) Sample Questions

Advanced Sample Questions

What is the purpose of the Microsoft Intune device management solution?

  • A) To manage mobile devices and laptops
  • B) To manage servers and virtual machines
  • C) To manage desktop computers
  • D) To manage cloud-based services

Answer: A) To manage mobile devices and laptops

Explanation: Microsoft Intune is a device management solution designed to manage mobile devices and laptops, providing secure access to corporate resources, managing device updates, and enforcing security policies.

What type of devices does Microsoft Intune support for device management?

  • A) Desktop computers and servers
  • B) Mobile devices and laptops
  • C) Cloud-based services and virtual machines
  • D) Network switches and routers

Answer: B) Mobile devices and laptops

Explanation: Microsoft Intune supports the management of mobile devices and laptops, including iOS, Android, and Windows devices, providing secure access to corporate resources and managing device updates.

How does Microsoft Intune help with device security?

  • A) By managing device updates
  • B) By enforcing password policies
  • C) By monitoring network traffic
  • D) By controlling access to corporate resources

Answer: D) By controlling access to corporate resources

Explanation: Microsoft Intune helps with device security by controlling access to corporate resources, providing secure access to email, files, and other resources, and enforcing security policies, including password policies and device encryption.

What type of data protection does Microsoft Intune provide for mobile devices and laptops?

  • A) Network security
  • B) Data encryption
  • C) Web filtering
  • D) Load balancing

Answer: B) Data encryption Explanation: Microsoft Intune provides data encryption for mobile devices and laptops to protect corporate data, even if the device is lost or stolen. Additionally, Intune provides the ability to remote wipe a device to protect sensitive data.

How does Microsoft Intune help with compliance with security policies and regulations?

  • A) By monitoring network traffic
  • B) By controlling access to corporate resources
  • C) By enforcing security policies
  • D) By managing device updates

Answer: C) By enforcing security policies

Explanation: Microsoft Intune helps with compliance with security policies and regulations by enforcing security policies, including password policies, device encryption, and remote wipe, ensuring that corporate data is protected and secure.

What is the purpose of Microsoft AutoPilot in the context of device management?

  • A) To automate the device deployment process
  • B) To monitor network traffic
  • C) To control access to corporate resources
  • D) To manage device updates

Answer: A) To automate the device deployment process

Explanation: Microsoft AutoPilot is a device deployment solution that automates the process of deploying and setting up new devices, reducing the time and effort required for IT administrators.

What type of devices does Microsoft AutoPilot support for device deployment?

  • A) Mobile devices and laptops
  • B) Desktop computers and servers
  • C) Cloud-based services and virtual machines
  • D) Network switches and routers

Answer: A) Mobile devices and laptops

Explanation: Microsoft AutoPilot supports the deployment of mobile devices and laptops, including Windows 10 devices, providing a streamlined process for IT administrators to deploy and set up new devices.

How does Microsoft AutoPilot help with device security during the deployment process?

  • A) By automating the device deployment process
  • B) By controlling access to corporate resources
  • C) By enforcing security policies
  • D) By managing device updates

Answer: C) By enforcing security policies

Explanation: Microsoft AutoPilot helps with device security during the deployment process by enforcing security policies, including password policies, device encryption, and remote wipe, ensuring that corporate data is protected and secure.

What type of data protection does Microsoft AutoPilot provide for mobile devices and laptops during the deployment process?

  • A) Network security
  • B) Data encryption
  • C) Web filtering
  • D) Load balancing

Answer: B) Data encryption

Explanation: Microsoft AutoPilot provides data encryption for mobile devices and laptops during the deployment process to protect corporate data, even if the device is lost or stolen. Additionally, AutoPilot provides the ability to remote wipe a device to protect sensitive data.

How does Microsoft AutoPilot help with compliance with security policies and regulations during the deployment process?

  • A) By automating the device deployment process
  • B) By controlling access to corporate resources
  • C) By enforcing security policies
  • D) By managing device updates

Answer: C) By enforcing security policies

Explanation: Microsoft AutoPilot helps with compliance with security policies and regulations during the deployment process by enforcing security policies, including password policies, device encryption, and remote wipe, ensuring that corporate data is protected and secure.

Basic Sample Questions

Question 1. During a maintenance window, Windows 10 computers need to have features and quality updates installed automatically.
Solution: You configure Automatic Maintenance Random Delay, from the Maintenance Scheduler settings, in Group policy.
Does this meet the goal?
  • A. Yes
  • B. No

Correct Answer:

Reference: https://docs.microsoft.com/en-us/sccm/sum/deploy-use/automatically-deploy-software-updates

Question 2. Your company configures the computer settings for computers issued to users using Windows Autopilot.
User1 owns a computer running Windows 10 named Computer1. The user leaves the company. It is your plan to transfer the computer to a user named User2 and you need to ensure that when User2 first turns it on, he is prompted to select a language and to accept the license agreement.
Solution: Create a new Windows AutoPilot self-deploying deployment profile.
Does this meet the goal?
  • A. Yes
  • B. No

Correct Answer: B 

Reference: https://docs.microsoft.com/en-us/windows/deployment/windows-autopilot/self-deploying

Question 3. Your company configures the computer settings for computers issued to users using Windows Autopilot.
User1 owns a computer running Windows 10 named Computer1. The user leaves the company. It is your plan to transfer the computer to a user named User2 and you need to ensure that when User2 first turns it on, he is prompted to select a language and to accept the license agreement.
Solution: Perform a remote Windows AutoPilot Reset.
Does this meet the goal?
  • A. Yes
  • B. No

Correct Answer:

Reference: https://docs.microsoft.com/en-us/windows/deployment/windows-autopilot/windows-autopilot-reset-remote

Question 4. Your company configures the computer settings for computers issued to users using Windows Autopilot.
User1 owns a computer running Windows 10 named Computer1. The user leaves the company. It is your plan to transfer the computer to a user named User2 and you need to ensure that when User2 first turns it on, he is prompted to select a language and to accept the license agreement.
Solution: Create a new Windows AutoPilot user-driven deployment profile.
Does this meet the goal?
  • A. Yes
  • B. No

Correct Answer:

Reference: https://docs.microsoft.com/en-us/windows/deployment/windows-autopilot/user-driven

Question 5.  A Windows 10 computer should automatically receive updates for features and quality during a maintenance window.
Solution: In Group policy, from the Windows Update settings, enable Configure Automatic Updates, then select 4-Auto download, schedule the install, and at last enter a time.
Does this meet the goal?
  • A. Yes
  • B. No

Correct Answer: B

Reference: https://docs.microsoft.com/en-us/sccm/sum/deploy-use/automatically-deploy-software-updates

Question 6. A Windows 10 computer should automatically receive updates for features and quality during a maintenance window.
Solution: In Group policy, configure Automatic Maintenance Activation Boundary from the Maintenance Scheduler settings.
Does this meet the goal?
  • A. Yes
  • B. No

Correct Answer: B

Reference: https://docs.microsoft.com/en-us/sccm/sum/deploy-use/automatically-deploy-software-updates

Question 7. DRAG DROP –
During the tenure of a user’s employment at your company, Computer1 ran Windows 10, running as a user who left the company. Computer1 will be repurposed and assigned to another user. Windows AutoPilot must be used to deploy Computer1.
Which three of the following actions will you perform in sequence? 
Select and Place:
Actions Answer area
Upload the file by using Microsoft Intune
Generate a CSV file containing the computer information
Upload the file by running azcopy.exe.
Generate a JSON file containing computer information
Reset the computer

Correct Answer: 

Actions Answer area
Upload the file by using Microsoft IntuneGenerate a CSV file containing the computer information
Generate a CSV file containing the computer informationUpload the file by using Microsoft Intune
Upload the file by running azcopy.exe.Reset the computer
Generate a JSON file containing computer information
Reset the computer
Question 8. Your company has 10 computers running on Windows 8.1 with the following configurations:
  • A single MBR disk
  • A disabled TPM chip
  • Disabled hardware virtualization
  • UEFI firmware running in BIOS mode
  • Enabled Data Execution Prevention (DEP)
In order to upgrade the computers to Windows 10, Secure Boot must be enabled.
Which two actions will you do?
  • A. Converting the MBR disk to a GPT disk
  • B. Enabling the TPM chip.
  • C. Disabling DEP
  • D. Enabling hardware virtualization
  • E. Converting the firmware from BIOS to UEFI.

Correct Answer: AE

Reference: https://docs.microsoft.com/en-us/windows-hardware/manufacture/desktop/boot-to-uefi-mode-or-legacy-bios-mode

Question 9. Your network has an Active Directory domain containing 2,000 computers running Windows 10.
Implementing hybrid Microsoft Azure Active Directory (Azure AD) and Microsoft Intune requires that all the existing computers be registered to Azure AD and enrolled in Intune automatically. The solution must be such that it minimizes administrative effort.
What would you use?
  • A. An Autodiscover address record.
  • B. A Windows AutoPilot deployment profile.
  • C. An Autodiscover service connection point (SCP).
  • D. A Group Policy object (GPO).

Correct Answer: B

Reference: https://techcommunity.microsoft.com/t5/Windows-IT-Pro-Blog/Windows-Autopilot-Hybrid-Azure-AD-join-and-automatic/ba-p/286126

Question 10. There are four 64-bit computers shown in the table below:
Name Operating systemMemoryBitLocker Drive Encryption (BitLocker)
Computer132-bit version of Windows 6 Service Pack 1 (SP1)1 GBEnabled
Computer264-bit version of Windows 6 Service Pack 1 (SP1)4 GBEnabled
Computer332-bit version of Windows 8.12 GBEnabled
Computer464-bit version of Windows 8.14 GBDisabled
An in-place upgrade is to be performed to the 64-bit version of Windows 10. In their current state, which computers can upgrade to Windows 10’s 64-bit version?
  • A. Computer2 and Computer4 only
  • B. Computer4 only
  • C. Computer3 and Computer4 only
  • D. Computer1, Computer2, Computer3 and Computer4
  • E. Computer2, Computer3, and Computer4 only

Correct Answer: A

Reference: https://docs.microsoft.com/en-us/windows/deployment/windows-10-deployment-scenarios

Question 11. Windows 10 computers running on Azure Active Directory (AD) and enrolled in Microsoft Intune are part of 200 computers that run Windows 10.
Which settings will you set up in Microsoft Endpoint Manager’s admin center for self-service password reset on the sign-in screen?
  • A. Device configuration
  • B. Device compliance
  • C. Device enrollment
  • D. Conditional access

Correct Answer: A

Reference: https://docs.microsoft.com/en-us/mem/intune/configuration/device-profile-create

Question 12. There are several computers with specialized hardware and software in the research department, and your company uses Windows Update for Business.
You must prevent Windows Update from automatically updating the video drivers.
Solution: You enable Prevent installation of devices with drivers that match the devices set up classes in the Device Installation and Restrictions settings in a Group Policy object (GPO), and then you enter the device GUID.
Does this meet the goal?
  • A. Yes
  • B. No

Correct Answer: B

Reference: https://www.stigviewer.com/stig/microsoft_windows_server_2012_member_server/2013-07-25/finding/WN12-CC-000024

Question 13.  There are several computers with specialized hardware and software in the research department, and your company uses Windows Update for Business.
You must prevent Windows Update from automatically updating the video drivers.
Solution: From the Settings app, you clear the Give me updates for other Microsoft products when someone updates Windows check box.
Does this meet the goal?
  • A. Yes
  • B. No

Correct Answer: B

Reference: https://www.stigviewer.com/stig/microsoft_windows_server_2012_member_server/2013-07-25/finding/WN12-CC-000024

Question 14.  There are several computers with specialized hardware and software in the research department, and your company uses Windows Update for Business.
You must prevent Windows Update from automatically updating the video drivers.
Solution: From the Device Installation settings in a Group Policy object (GPO), you enable Specify search order for device driver source locations, and then you select Do not search Windows Update.
Does this meet the goal?
  • A. Yes
  • B. No

Correct Answer:  A

Reference: https://www.stigviewer.com/stig/microsoft_windows_server_2012_member_server/2013-07-25/finding/WN12-CC-000024

Question 15. When performing maintenance, you should ensure that quality and feature updates are installed automatically.
Solution: In Group policy, from the Windows Update settings, you enable Configure Automatic Updates, select 3 ג€” Auto download and notify for install, and then enter a time.
Does this meet the goal?
  • A. Yes
  • B. No

Correct Answer: B

Reference: https://docs.microsoft.com/en-us/sccm/sum/deploy-use/automatically-deploy-software-updates

Question 16. You own a Microsoft 365 subscription, and 20 computers are equipped with Windows 10 and are connected to Microsoft Azure Active Directory (Azure AD).
In your plan, new computers will be purchased that run Windows 10 and are connected to Azure AD. You need to make sure that your desktop background, your favorites, and the browsing history are all accessible on the new computer.
Solution: configure Enterprise State Roaming.
Does this meet the goal?
  • A. Yes
  • B. No

Correct Answer:  A

Reference: https://docs.microsoft.com/en-us/azure/active-directory/devices/enterprise-state-roaming-windows-settings-reference

Question 17. You have an Azure Logs subscription that contains a Microsoft Azure subscription Analytics workspace.
Your company deploys a new Windows 10 computer named Computer1, which is in a workgroup. It is important that you can use Log Analytics to query events from Computer1. What will you do on Computer1?
  • A. Configuring the commercial ID
  • B. Joining Azure Active Directory (Azure AD)
  • C. Creating an event subscription
  • D. Installing the Microsoft Monitoring Agent

Correct Answer:  D

Reference: https://docs.microsoft.com/en-us/azure/azure-monitor/platform/agent-windows

Question 18. A Microsoft Azure Active Directory (Azure AD) tenant is in place, a Volume Licensing Agreement is in place, and Windows 10 is activated by a product key.
The objective is to install Windows 10 Pro on 200 new computers using the Microsoft Deployment Toolkit (MDT) and Windows Deployment Services (WDS). It is imperative that the new computers be configured with the correct product key during installation.
What will you configure?
  • A. a WDS boot image
  • B. an MDT task sequence
  • C. the Device settings in Azure AD
  • D. a Windows AutoPilot deployment profile

Correct Answer: B

Reference: https://docs.microsoft.com/en-us/windows/deployment/deploy-windows-mdt/deploy-a-windows-10-image-using-mdt#a-href-idsec08astep-8-deploy-the-windows-10-client-image

Question 19. Your computer is named Computer5 which has Windows 10 installed.
config.ps1 is the name of the Windows PowerShell script you create, and you must ensure config.ps1 runs after Computer5 has been updated with features. Which file must be modified on Computer5?
  • A. Unattend.xml
  • B. Unattend.bat
  • C. SetupConfig.ini
  • D. LiteTouch.wsf

Correct Answer: C

Reference: https://www.joseespitia.com/2017/06/01/how-to-run-a-post-script-after-a-windows-10-feature-upgrade/

Question 20. Your network has an Active Directory forest containing a single domain and three sites named Site1, Site2, and Site3. Each of these sites is associated with two subnets. Site1 includes two subnets named SubnetA and SubnetB.
The client computers in the forest have Windows 10, and Delivery Optimization is also enabled. Your computer named Computer1 is in SubnetA. From which of the hosts will your Computer1 download the updates?
  • A. the computers in Site1 only
  • B. any computer in the domain
  • C. the computers in SubnetA only
  • D. any computer on the network

Correct Answer: C

Reference: https://docs.microsoft.com/en-us/windows/deployment/update/waas-delivery-optimization

Managing Modern Desktops (MD-101) practice tests
Menu