Looking for more? Click here to get the full PDF with 163+ practice questions for $10 for offline study and deeper preparation.
Question 1
Your network contains an Active Directory domain named contoso.com. A user named User1 has a personal computer named Computer1 that runs Windows 10 Pro. User1 has a VPN connection to the corporate network. You need to ensure that when User1 connects to the VPN, network traffic uses a proxy server located in the corporate network. The solution must ensure that User1 can access the Internet when disconnected from the VPN. What should you do?
A. From Control Panel, modify the Windows Defender Firewall settings
B. From the Settings app, modify the Proxy settings for the local computer
C. From Control Panel, modify the properties of the VPN connection
D. From the Settings app, modify the properties of the VPN connection
Show Answer
Correct Answer:
D. From the Settings app, modify the properties of the VPN connection
Question 2
Your network contains an Active Directory domain. All users have been issued with new computers that run Windows 10 Enterprise. All users have Microsoft 365 E3 licenses. A user named Mia Hamm has an Active Directory user account named MHamm and a computer named Computer1. Mia Hamm reports that Computer1 is not activated. You need to ensure that Mia Hamm can activate Computer1. What should you do?
A. Assign a Windows 10 Enterprise license to MHamm, and then activate Computer1
B. From the Microsoft Deployment Toolkit (MDT), redeploy Computer1
C. From System Properties on Computer1, enter a Volume License Key, and then activate Computer1
D. Instruct Mia Hamm to perform a local AutoPilot Reset on Computer1, and then activate Computer1
Show Answer
Correct Answer:
D. Instruct Mia Hamm to perform a local AutoPilot Reset on Computer1, and then activate Computer1
Question 3
You have 20 computers that run Windows 10. You configure all the computers to forward all the events from all the logs to a computer named Computer1 that runs Windows 10. When you sign in to Computer1, you cannot see any security events from other computers. You can see all the other forwarded events from the other computers. You need to ensure that the security events are forwarded to Computer1. What should you do?
A. On each computer, run wecutil qc /q
B. On each computer, add the NETWORK SERVICE account to the Event Log Readers group
C. On each computer, run winrm qc ""q
D. On Computer1, add the account of Computer1 to the Event Log Readers group
Show Answer
Correct Answer:
B. On each computer, add the NETWORK SERVICE account to the Event Log Readers group
Question 4
You have a Microsoft 365 tenant that contains 70 remote users. The remote users work from various locations. Recently, each remote user purchased a personal computer that runs Windows 10 Home. You need to configure the VPN settings on the computers automatically by using the least amount of administrative effort. What should you use?
A. an unattend answer file
B. a Group Policy Object (GPO)
C. Windows Autopilot
D. a provisioning package
Show Answer
Correct Answer:
D. a provisioning package
Question 5
You have a Windows 10 device named Device1. You plan purchase a wireless display device that will stream audio and video from Device1. Which wireless feature or protocol should the display device support?
A. Wi-Fi sense
B. Miracast
C. near field communications (NFC)
D. Bluetooth
Show Answer
Correct Answer:
B. Miracast
Question 6
Your company has a computer named Computer1 that runs Windows 10. Computer1 is used to provide guests with access to the Internet. Computer1 is a member of a workgroup. You want to configure Computer1 to use a user account sign in automatically when the the computer is started. The user must not be prompted for a user name and password. What should you do?
A. Configure Group Policy preferences
B. Run the BCDBoot command
C. Edit the Registry
D. Run the MSConfig command
Show Answer
Correct Answer:
C. Edit the Registry
Question 7
You have Windows 10 devices that use custom device drivers. You need to test new builds of Windows before the builds are made available to the general public. The solution must ensure that the builds are installed as soon as possible. Which Windows readiness level should you configure?
A. Release Preview
B. Preview Build "" Slow
C. Semi-Annual Channel
D. Preview Build "" Fast
Show Answer
Correct Answer:
D. Preview Build "" Fast
Question 8
You have a computer that runs Windows 10. You need to view the Windows Update diagnostic log. What should you do first?
A. From File Explorer, go to the C:\Windows\Logs\WindowsUpdate folder and select Show hidden files, folders, and drives
B. From Windows Update in the Settings app, configure Advanced options
C. From Event Viewer, modify the properties of the WindowsUpdateClient operational log
D. From Windows PowerShell, run the Get-WindowsUpdateLog cmdlet
Show Answer
Correct Answer:
D. From Windows PowerShell, run the Get-WindowsUpdateLog cmdlet
Question 9
You have 200 computers that run Windows 10 and are joined to an Active Directory domain. You need to enable Windows Remote Management (WinRM) on all the computers by using Group Policy. Which three actions should you perform? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.
A. Set the Startup Type of the Windows Remote Management (WS-Management) service to Automatic
B. Enable the Windows Defender Firewall: Allow inbound Remote Desktop exceptions setting
C. Enable the Allow remote server management through WinRM setting
D. Enable the Windows Defender Firewall: Allow inbound remote administration exception setting
E. Enable the Allow Remote Shell access setting
F. Set the Startup Type of the Remote Registry service to Automatic
Show Answer
Correct Answer:
A. Set the Startup Type of the Windows Remote Management (WS-Management) service to Automatic
C. Enable the Allow remote server management through WinRM setting
D. Enable the Windows Defender Firewall: Allow inbound remote administration exception setting
Question 10
Your network contains an Active Directory domain that is synced to a Microsoft Azure Active Directory (Azure AD) tenant. All users have been issued with laptop computers as well as desktop computers that run Windows 10 Enterprise. All users have Microsoft 365 E3 licenses. A user named Mia Hamm informs you that she must perform a BitLocker recovery on her laptop but she does not have her BitLocker recovery key. You need to ensure that Mia Hamm can perform a BitLocker recovery on her laptop. What should you do?
A. Instruct Mia Hamm to log on to her desktop computer and run the repair-bde.exe command
B. Instruct Mia Hamm to use the BitLocker Recovery Password Viewer to view the computer object of the laptop
C. Instruct Mia Hamm to log on to her desktop computer and go to https://account.activedirectory.windowsazure.com and view the user account profile
D. Instruct Mia Hamm to run the Enable-BitLocker cmdlet on her laptop
Show Answer
Correct Answer:
C. Instruct Mia Hamm to log on to her desktop computer and go to https://account.activedirectory.windowsazure.com and view the user account profile
Question 11
A user has a computer that runs Windows 10. The user has access to the following storage locations: ✑ A USB flash drive ✑ Microsoft OneDrive ✑ OneDrive for Business ✑ A drive mapped to a network share ✑ A secondary partition on the system drive You need to configure Back up using File History from the Settings app. Which two storage locations can you select for storing File History data? Each correct answer presents a complete solution. NOTE: Each correct selection is worth one point.
A. OneDrive for Business
B. OneDrive
C. the USB flash drive
D. the secondary partition on the system drive
E. the drive mapped to a network share
Show Answer
Correct Answer:
C. the USB flash drive
E. the drive mapped to a network share
Question 12
You have two computers named Computer1 and Computer2 that run Windows 10. Computer2 has Remote Desktop enabled. From Computer1, you connect to Computer2 by using Remote Desktop Connection. You need to ensure that you can access the local drives on Computer1 from within the Remote Desktop session. What should you do?
A. From Windows Defender Firewall on Computer1, allow Remote Desktop
B. From Windows Defender Firewall on Computer2, allow File and Printer Sharing
C. From Computer2, configure the Remote Desktop settings
D. From Computer1, configure the Remote Desktop Connection settings
Show Answer
Correct Answer:
D. From Computer1, configure the Remote Desktop Connection settings
Question 13
Your network contains an Active Directory domain. The domain contains computers that run Windows 10. You must ensure that Windows BitLocker Drive Encryption is enabled on all client computers, even though a Trusted Platform Module (TPM) chip is installed in only some of them. You need to accomplish this goal by using one Group Policy object (GPO). What should you do?
A. Enable the Allow enhanced PINs for startup policy setting, and select the Allow BitLocker without a compatible TPM check box
B. Enable the Enable use of BitLocker authentication requiring preboot keyboard input on slates policy setting, and select the Allow BitLocker without a compatible TPM check box
C. Enable the Require additional authentication at startup policy setting, and select the Allow BitLocker without a compatible TPM check box
D. Enable the Control use of BitLocker on removable drives policy setting, and select the Allow BitLocker without a compatible TPM check box
Show Answer
Correct Answer:
C. Enable the Require additional authentication at startup policy setting, and select the Allow BitLocker without a compatible TPM check box
Question 14
Your network contains an Active Directory domain. The domain contains 1,000 computers that run Windows 10. You need to prevent the computers of the research department from appearing in Network in File Explorer. What should you do?
A. Configure DNS to use an external provider
B. Modify the %systemroot%\system32\drivers\etc\Networks file
C. Turn off network discovery
D. Disable the Network List Service
Show Answer
Correct Answer:
C. Turn off network discovery
Question 15
Which users can sign in to Computer2 by using Remote Desktop?
A. User2 only
B. Admin1 only
C. User1 only
D. Admin1 and User2 only
E. Admin1, User1, User2, and User3
Show Answer
Correct Answer:
D. Admin1 and User2 only
Question 16
You have a workgroup computer that runs Windows 10. You need to set the minimum password length to 12 characters. What should you use?
A. Local Group Policy Editor
B. Local Users and Groups in Computer Management
C. Email & accounts in the Settings app
D. Credential Manager in Control Panel
Show Answer
Correct Answer:
A. Local Group Policy Editor
Question 17
Your company has an on-premises network that contains an Active Directory domain. The domain is synced to Microsoft Azure Active Directory (Azure AD). All computers in the domain run Windows 10 Enterprise. You have a computer named Computer1 that has a folder named C:\Folder1. You want to use File History to protect C:\Folder1. Solution: You enable File History on Computer1. You then enable archiving for Folder1. Does this meet the goal?
A. Yes
B. No
Show Answer
Correct Answer:
B. No
Question 18
You have a computer named Computer1 that runs Windows 10. You need to prevent standard users from changing the wireless network settings on Computer1. The solution must allow administrators to modify the wireless network settings. What should you use?
A. Windows Configuration Designer
B. MSConfig
C. Local Group Policy Editor
D. an MMC console that has the Group Policy Object Editor snap-in
Show Answer
Correct Answer:
C. Local Group Policy Editor
Question 19
You enable controlled folder access in audit mode for several computers that run Windows 10. You need to review the events audited by controlled folder access. Which Event Viewer log should you view?
A. Windows\Security
B. Applications and Services\Microsoft\Windows\Known Folders\Operational
C. Applications and Services\Microsoft\Windows\Windows Defender\Operational
Show Answer
Correct Answer:
C. Applications and Services\Microsoft\Windows\Windows Defender\Operational
Question 20
Your network contains an Active Directory domain. The domain contains a computer named Computer1 that runs Windows 10. Computer1 has a Trusted Platform Module (TPM) version 1.2. The domain contains a domain controller named DC1 that has all the Remote Server Administration Tools (RSAT) installed. BitLocker Drive Encryption (BitLocker) recovery passwords are stored in Active Directory. You enable BitLocker on the operating system drive of Computer1. A software update on Computer1 disables the TPM, and BitLocker enters recovery mode. You need to recover your BitLocker password for Computer1. What should you use to retrieve the recovery password?
A. Disk Management
B. manage ""bde with the ""unlock parameter
C. Active Directory Users and Computers
D. repair-bde with the ""f parameter
Show Answer
Correct Answer:
C. Active Directory Users and Computers
Aced these? Get the Full Exam
Download the complete MD-100 study bundle with 163+ questions in a single printable PDF.