16 tips on esame 70-346

Exam Code: 70-346 (Practice Exam Latest Test Questions VCE PDF)
Exam Name: Managing Office 365 Identities and Requirements
Certification Provider: Microsoft
Free Today! Guaranteed Training- Pass 70-346 Exam.

2016 Apr 70-346 Study Guide Questions:

Q33. An organization with an Active Directory Domain Services (AD DS) domain migrates to Office 365. You need to manage Office 365 from a domain-joined Windows Server 2012 Core server.

Which three components should you install? Each answer presents part of the solution. 

A. Windows Azure Active Directory module for Windows PowerShell 

B. Microsoft .NET Framework 3.5 

C. Microsoft Office 365 Integration Module for Windows Small Business Server 2011 Essentials 

D. Microsoft .NET Framework 4.0 

E. Microsoft Online Services Sign-in Assistant 

F. Rights Management module for Windows PowerShell 

Answer: A,B,E 


Q34. You are the Office 365 administrator for your company. 

The environment must support single sign-on. 

You need to install the required certificates. 

Which two certificates should you install? Each correct answer presents part of the solution. 

A. Secure Sockets Layer (SSL) 

B. Privacy-enhanced mail (PEM) 

C. Token signing 

D. Personal 

E. Software publisher 

Answer: A,C 


Q35. You plan to deploy an Office 365 tenant to multiple offices around the country. 

You need to modify the users and groups who are authorized to administer the Rights Management service. 

Which Windows PowerShell cmdlet should you run? 

A. Add-MsolGroupMember 

B. Get-AadrmRoleBasedAdministrator 

C. Remove-AadrmRoleBasedAdministrator 

D. Enable-AadrmSuperUserFeature 

Answer: A 


Q36. DRAG DROP 

A company plans to use Office 365 to provide email services to employees. The company obtains a custom domain name to use with Office 365. 

You need to add the domain name to Office 365. 

Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. 


Answer: 



Q37. DRAG DROP

A company is deploying an Office 365 tenant.

You need to deploy a Windows Server 2012 R2 federation server farm. 

Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. 


Answer: 



70-346 exam price

Renew microsoft 70-346:

Q38. Your company has an Office 365 subscription. The network contains an Active Directory domain. You configure single sign-on for all users. 

You need to verify that single sign-on functions for the users who access Office 365 from the Internet. 

What should you run? 

A. the Get-MSOLFederationProperty cmdlet 

B. the Test-OrganizationRelationship cmdlet 

C. the Microsoft Remote Connectivity Analyzer 

D. the Microsoft Exchange Server Deployment Assistant 

Answer: C 


Q39. DRAG DROP 

An organization plans to deploy an Office 365 tenant. The company has two servers named SERVER1 and SERVER2. SERVER1 is a member server of the Active Directory forest that you are synchronizing. SERVER2 is a standalone server. Both servers run Windows Server 2012. 

You need to use the Windows Azure Active Directory Sync tool to provision users. 

Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. 


Answer: 



Q40. You have an Office 365 tenant that uses an Enterprise E3 subscription. You activate Azure 

Rights Management for the tenant. 

You must test the service with the Development security group before you deploy Azure 

Rights Management for all users. 

You need to enable Azure Rights Management for only the Development security group. Which Windows PowerShell cmdlet should you run? 

A. Enable-Aadrm 

B. New-AadrmRightsDefinition 

C. Enable-AadrmSuperUserFeature 

D. Add-AadrmSuperUser 

E. Set-AadrmOnboardingControlPolicy 

Answer: E 

Explanation: 

The Set-AadrmOnboardingControlPolicy cmdlet sets the policy that controls user on-boarding for Azure Rights Management. This cmdlet supports a gradual deployment by controlling which users in your organization can protect content by using Azure Rights Management. 

Example: 

Restrict Azure RMS to users who are members of a specified group This command allows only users that are members of the security group with the specified object ID to protect content by using Azure Rights Management. The command applies to Windows clients and mobile devices. 

Windows PowerShell 

PS C:\> Set-AadrmOnboardingControlPolicy -UseRmsUserLicense $False -SecurityGroupObjectId "f 

Reference: Set-AadrmOnboardingControlPolicy 

https://msdn.microsoft.com/en-us/library/dn857521.aspx 


Q41. DRAG DROP 

A company deploys an Office 365 tenant. 

You need to enable multi-factor authentication for Office 365. 

Which three actions should you perform in sequence? To answer, move the appropriate 

actions from the list of actions to the answer area and arrange them in the correct order. 


Answer: 



Q42. A company has an Office 365 tenant that has an Enterprise E1 subscription. The company has offices in several different countries. 

You need to restrict Office 365 services for existing users by location. 

Which Windows PowerShell cmdlet should you run? 

A. Set-MsolUser 

B. Redo-MsolProvisionUser 

C. Set-MsolUserLicense 

D. Set-MsolUserPrincipalName 

E. Convert-MsolFederatedUser 

F. Set-MailUser 

G. Set-LinkedUser 

H. New-MsolUser 

Answer: A 

Explanation: 

The Set-MsolUser cmdlet is used to update a user object. 

Example: The following command sets the location (country) of this user. The country must be a two-letter ISO code. This can be set for synced users as well as managed users. Set-MsolUser -UserPrincipalName user@contoso.com -UsageLocation "CA" 

Note: Some organizations may want to create policies that limit access to Microsoft Office 365 services, depending on where the client resides. Active Directory Federation Services (AD FS) 2.0 provides a way for organizations to configure these types of policies. Office 365 customers using Single Sign-On (SSO) who require these policies can now use client access policy rules to restrict access based on the location of the computer or device that is making the request. Customers using Microsoft Online Services cloud User IDs cannot implement these restrictions at this time. 

Reference: Limiting Access to Office 365 Services Based on the Location of the Client 

https://technet.microsoft.com/en-us/library/hh526961(v=ws.10).aspx 

Reference: Set-MsolUser 

https://msdn.microsoft.com/en-us/library/azure/dn194136.aspx 


70-346 vce

Breathing 70-346 exam dump:

Q43. A company has an Office 365 tenant. You plan to distribute the Office 365 ProPlus client to users. 

The client machines do not normally have Internet access. 

You need to activate the Office 365 ProPlus installations and ensure that the licenses remain active. 

What should you do? 

A. Connect the client computer to the Internet once to activate the Office 365 ProPlus client, and once every 90 days after that. 

B. Connect the client computer to the Internet once to activate the Office 365 ProPlus client, and once every 30 days after that. 

C. Connect the client computer to the Internet only once to activate the Office 365 ProPlus client. 

D. Connect the client computer to the Internet once to activate the Office 365 ProPlus client, and once every 180 days after that. 

E. Connect the client computer to the Internet once to activate the Office 365 ProPlus client, and once every 365 days after that. 

Answer: B 

Explanation: 

After you've verified the user is assigned a license, you should check that Office 365 ProPlus is activated. Activation usually occurs during initial installation. The computer has to connect to the Internet at least once every 30 days for Office 365 ProPlus to remain activated. 

Reference: Troubleshooting tips for Office 365 ProPlus 

https://technet.microsoft.com/en-us/library/gg702620.aspx 


Q44. DRAG DROP

You are the Office 365 administrator for Contoso, Ltd. 

User1 is unable to sign in. 

You need to change the password for User1 and ensure that the user is prompted to reset her password the next time she signs in. 

How should you complete the relevant Windows PowerShell command? To answer, drag the appropriate Windows PowerShell segments to the correct location or locations. Each Windows PowerShell segment may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. 


Answer: 



Q45. HOTSPOT 

You manage an Office 365 tenant. The subscription details for the tenant are displayed in the following screenshot. 


Use the drop-down menus to select the answer choice that answers each question. NOTE: Each correct answer is worth one point. 



Answer: 



Q46. DRAG DROP 

You are the Office 365 administrator for your company. The company has two administrators named User1 and User2. 

Users must be able to perform the activities as shown in the following table: 


You need to grant the appropriate administrative role to each user. 

What should you do? To answer, drag the appropriate role to the correct user. Each role may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. 


Answer: 



Q47. Contoso, Ltd., has an Office 365 tenant. You configure Office 365 to use the domain contoso.com, and you verify the domain. You deploy and configure Active Directory Federation Services (AD FS) and Active Directory Synchronization Services (AAD Sync) with password synchronization. You connect to Azure Active Directory by using a Remote PowerShell session. 

You need to switch from using password-synced passwords to using AD FS on the Office 365 verified domain. 

Which Windows PowerShell command should you run? 

A. Convert-MsolDomainToFederated –DomainName contoso.com 

B. Convert-MsolDomainToStandard –DomainName contoso.com 

C. Convert-MsolFederatedUser 

D. Set-MsolDomainAuthentication –DomainName contoso.com 

Answer: A 

Explanation: The Convert-MSOLDomainToFederated cmdlet converts the specified domain from standard authentication to single sign-on (also known as identity federation), including configuring the relying party trust settings between the Active Directory Federation Services (AD FS) server and the Microsoft Online Services. As part of converting a domain from standard authentication to single sign-on, each user must also be converted. This conversion happens automatically the next time a user signs in; no action is required by the administrator.

Incorrect: 

Not B: This is the opposite to what is required. The Convert-MsolDomainToStandard cmdlet converts the specified domain from single sign-on (also known as identity federation) to standard authentication. This process also removes the relying party trust settings in the AD FS server and online service. After the conversion, this cmdlet will convert all existing users from single sign-on to standard authentication. Not C: The Convert-MsolFederatedUser cmdlet is used to update a user in a domain that was recently converted from single sign-on (also known as identity federation) to standard authentication type. A new password must be provided for the user. Not D: The Set-MsolDomainAuthentication cmdlet is used to change the domain authentication between standard identity and single-sign on. This cmdlet will only update the settings in Microsoft Online Services; typically the Convert-MsolDomainToStandard or Convert-MsolDomainToFederated should be used instead. 

Reference: Convert-MsolDomainToFederated 

https://msdn.microsoft.com/en-us/library/azure/dn194092.aspx 


Q48. A company has an Office 365 tenant. The company uses a third-party DNS provider that does not allow TXT records. 

You need to verify domain ownership. 

What should you do? 

A. Create an MX record. 

B. Create a CNAME record. 

C. Create an A record. 

D. Create an SRV record. 

Answer: A 

Explanation: 

Add a TXT or MX record for DNS verification. 

Reference: Change nameservers to set up Office 365 with any domain registrar 

https://support.office.com/en-us/article/Change-nameservers-to-set-up-Office-365-with-anydomain-registrar-a8b487a9-2a45-4581-9dc4-5d28a47010a2



see more http://www.certshared.com/exam/70-346/

Microsoft 70-346 Certification Sample Questions and Answers: http://www.braindumpsall.net/70-346-dumps/

P.S. New 70-346 dumps PDF: http://www.4easydumps.com/70-346-dumps-download.html