MS-102 Actual Exam Questions

Last updated on May 30, 2025.
Vendor:Microsoft
Exam Code:MS-102
Exam Name:Microsoft 365 Administrator
Exam Questions:383
Question #251 Topic 1

HOTSPOT
-

You have a Microsoft 365 subscription.

From Azure AD Privileged Identity Management (PIM), you configure Role settings for the Global Administrator role as shown in the following exhibit.



You make a user named admin1@contoso.com eligible for the Global Administrator role.

Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.

NOTE: Each correct selection is worth one point.

Reveal Solution Hide Solution   Discussion   8

Correct Answer:

Question #252 Topic 1

You have a Microsoft 365 subscription that contains more than 2,000 guest users.

You need to ensure that when guest users are added to Microsoft 365 groups in the subscription, their membership is validated by the group owner every 30 days.

What should you configure?

  • A. group expiration policies
  • B. retention policies
  • C. access reviews
  • D. Conditional Access policies
Reveal Solution Hide Solution   Discussion   3

Correct Answer: C 🗳️

Community vote distribution
C (100%)

Question #253 Topic 1

HOTSPOT
-

You have a Microsoft 365 subscription that uses a domain name of adatum.com.

In Azure AD, you set Guest invite restrictions to Only users assigned to specific admin roles can invite guest users.

A user named user1@adatum.com reports that they can no longer invite external users from a domain named contoso.com to collaborate in Microsoft Teams.

You need to modify the Azure AD configuration to meet the following requirements:

• Ensure that User1 can invite the contoso.com users to Teams.
• Ensure that only the contoso.com users can be invited as guests to the Azure AD tenant.
• Follow the principle of least privilege.

What should you do for each requirement? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Reveal Solution Hide Solution   Discussion   4

Correct Answer:

Question #254 Topic 1

HOTSPOT
-

Your network contains an on-premises Active Directory domain that is synced to Azure AD as shown in the following exhibit.



An on-premises Active Directory user account named Allan Yoo is synchronized to Azure AD. You view Allan’s account from Microsoft 365 and notice that his username is set to Allan@adatum.onmicrosoft.com.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.

Reveal Solution Hide Solution   Discussion   5

Correct Answer:

Question #255 Topic 1

Your network contains an on-premises Active Directory domain. The domain contains 2,000 computers that run Windows 10.

You purchase a Microsoft 365 subscription.

You implement password hash synchronization and Azure AD Seamless Single Sign-On (Seamless SSO).

You need to ensure that users can use Seamless SSO from the Windows 10 computers.

What should you do?

  • A. Join the computers to Azure AD.
  • B. Create a conditional access policy in Azure AD.
  • C. Modify the Intranet zone settings by using Group Policy.
  • D. Deploy an Azure AD Connect staging server.
Reveal Solution Hide Solution   Discussion   5

Correct Answer: C 🗳️

Community vote distribution
C (91%)
9%

Question #256 Topic 1

Your network contains an Active Directory domain named adatum.com that is synced to Azure AD.

The domain contains 100 user accounts.

The city attribute for all the users is set to the city where the user resides.

You need to modify the value of the city attribute to the three-letter airport code of each city.

What should you do?

  • A. From Azure Cloud Shell, run the Get-MsolUser and Set-MsolUser cmdlets.
  • B. From Windows PowerShell on a domain controller, run the Get-MgUser and Update-MgUser cmdlets.
  • C. From Active Directory Administrative Center, select the Active Directory users, and then modify the Properties settings.
  • D. From Azure Cloud Shell, run the Get-MgUser and Update-MgUser cmdlets.
Reveal Solution Hide Solution   Discussion   8

Correct Answer: C 🗳️

Community vote distribution
C (78%)
D (22%)

Question #257 Topic 1

Your network contains an Active Directory domain named adatum.com that is synced to Azure AD.

The domain contains 100 user accounts.

The city attribute for all the users is set to the city where the user resides.

You need to modify the value of the city attribute to the three-letter airport code of each city.

What should you do?

  • A. From Windows PowerShell on a domain controller, run the Get-ADUser and Set-ADUser cmdlets.
  • B. From Azure Cloud Shell, run the Get-ADUser and Set-ADUser cmdlets.
  • C. From Windows PowerShell on a domain controller, run the Get-MgUser and Update-MgUser cmdlets.
  • D. From the Azure portal, select all the Azure AD users, and then use the User settings blade.
Reveal Solution Hide Solution   Discussion   4

Correct Answer: A 🗳️

Community vote distribution
A (100%)

Question #258 Topic 1

HOTSPOT
-

You have a Microsoft 365 subscription that uses Microsoft Defender for Office 365.

You need to identify the settings that are configured less secure than the Standard protection profile settings in the preset security policies.

What should you use? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Reveal Solution Hide Solution   Discussion   4

Correct Answer:

Question #259 Topic 1

HOTSPOT
-

You have a Microsoft 365 E5 subscription that contains the devices shown in the following table.



All the devices are onboarded to Microsoft Defender for Endpoint.

You plan to use Microsoft Defender Vulnerability Management to meet the following requirements:

• Detect operating system vulnerabilities.
• Perform a configuration assessment of the operating system.

Which devices support each requirement? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

Reveal Solution Hide Solution   Discussion   3

Correct Answer:

Question #260 Topic 1

You have a Microsoft 365 E5 tenant.

The Microsoft Secure Score for the tenant is shown in the following exhibit.



You plan to enable Security defaults for Azure AD.

Which three improvement actions will this affect?

NOTE: Each correct selection is worth one point.

  • A. Require MFA for administrative roles
  • B. Ensure all users can complete multi-factor authentication for secure access
  • C. Enable policy to block legacy authentication
  • D. Enable self-service password reset
  • E. Use limited administrative roles
Reveal Solution Hide Solution   Discussion   6

Correct Answer: ABC 🗳️

Community vote distribution
ABC (100%)

Previous Questions
file Viewing page 26 out of 39 pages.
Viewing questions 251-260 out of 383 questions
Next Questions
Browse atleast 50% to increase passing rate cup
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Loading ...