Exam Details

  • Exam Code
    :MS-100
  • Exam Name
    :Microsoft 365 Identity and Services
  • Certification
    :Microsoft Certifications
  • Vendor
    :Microsoft
  • Total Questions
    :535 Q&As
  • Last Updated
    :Mar 24, 2025

Microsoft Microsoft Certifications MS-100 Questions & Answers

  • Question 481:

    Your company has a Microsoft Office 365 subscription with a number of Microsoft SharePoint Online sites.

    Currently, users are able to invite external users to access files on the SharePoint sites. You are tasked with making sure that users are only able to authenticated guest users to the SharePoint sites.

    Which of the following actions should you take?

    A. You should create a threat management policy via the Security and Compliance admin center.

    B. You should run the Set-SPOSite cmdlet.

    C. You should run the Add-SPOUser cmdlet.

    D. You should modify the sharing settings via the SharePoint admin center.

  • Question 482:

    Your company has acquired Microsoft 365 for their Active Directory domain, which includes five domain controllers.

    Prior to implementing a number of Microsoft 365 services, you are tasked with making use of an authentication solution that allows users to access Microsoft 365 by using their on-premises credentials. The solution should also only make use

    of the current server infrastructure.

    Furthermore, must allow for all user passwords to only be stored on-premises, and be highly available.

    Solution: You configure the use of password hash synchronization only.

    Does the solution meet the goal?

    A. Yes

    B. No

  • Question 483:

    Your company has acquired Microsoft 365 for their Active Directory domain, which includes five domain controllers.

    Prior to implementing a number of Microsoft 365 services, you are tasked with making use of an authentication solution that allows users to access Microsoft 365 by using their on-premises credentials. The solution should also only make use

    of the current server infrastructure.

    Furthermore, must allow for all user passwords to only be stored on-premises, and be highly available.

    Solution: You configure the use of pass-through authentication only.

    Does the solution meet the goal?

    A. Yes

    B. No

  • Question 484:

    Your company Microsoft 365 subscription includes a Microsoft Azure Active Directory (Azure AD) tenant, with Azure AD Identity Protection enabled.

    You are tasked with making sure that a tenant user is able to examine the list of users identified for risk in Azure AD Identity Protection

    You need to assign the user a role that requires the least privilege to examine the list.

    Which of the following is the role you should assign?

    A. Security reader

    B. Service administrator

    C. Reports reader

    D. Owner

  • Question 485:

    Your company has an Active Directory domain as well as a Microsoft Azure Active Directory (Azure AD) tenant.

    After configuring directory synchronization for all users in the organization, you configure a number of new user accounts to be created automatically.

    You want to run a command to make sure that the new user accounts synchronize to Azure AD in the shortest time required.

    Which of the following is the command that you should use?

    A. New-ADSyncRule

    B. Set-ADSyncSchedulerConnectorOverride

    C. Start-ADSyncSyncCycle

    D. Set-ADSyncSchema

  • Question 486:

    Your company's Microsoft Azure Active Directory (Azure AD) tenant includes four users. Two of the users are configured with the Global administrator, Password administrator roles respectively. A third user has both the Security administrator and the Guest inviter roles configured. The fourth user has no roles configured.

    Which of the following is the user that has the necessary permissions to create guest users? (Choose all that apply.)

    A. The user with the Global administrator role.

    B. The user with the Password administrator role.

    C. The user with the Security administrator and Guest inviter roles.

    D. The user with no roles.

  • Question 487:

    Your company Microsoft Azure Active Directory (Azure AD) tenant includes four users. Two of the users are configured with the Global administrator, Password administrator roles respectively. A third user has both the Security administrator

    and the Guest inviter roles configured.

    The fourth user has no roles configured.

    Which of the following is the user that has the necessary permissions to create guest users? (Choose all that apply.)

    A. The user with the Global administrator role.

    B. The user with the Password administrator role.

    C. The user with the Security administrator and Guest inviter roles.

    D. The user with no roles.

  • Question 488:

    You have been tasked with enable Microsoft Azure Information Protection for your company Microsoft 365 subscription.

    You are informed that only the members of a group, named Group1, are able to protect content. To achieve your goal, you plan to run a PowerShell cmdlet.

    Which of the following is the cmdlet you should run?

    A. The Add-AadrmRoleBaseAdministrator cmdlet.

    B. The Set-AadrmDoNotTrackUserGroup cmdlet.

    C. The Clear-AadrmSuperUserGroup cmdlet.

    D. The Set-AadrmOnboardingControlPolicy cmdlet.

  • Question 489:

    Your network contains an Active Directory domain that spans a number of cities and a multitude of users.

    After acquiring Microsoft 365, you intend to deploy quite a few Microsoft 365 services.

    You want to make sure that pass-through authentication and seamless SSO can be used in your environment. You also decide that Azure AD Connect won be configured to be in staging mode.

    With regards to redundancy limits, which of the following is the maximum amount of servers that can run Azure AD Connect?

    A. 1

    B. 3

    C. 5

    D. 7

  • Question 490:

    Your network contains an Active Directory domain that spans a number of cities and a multitude of users.

    After acquiring Microsoft 365, you intend to deploy quite a few Microsoft 365 services.

    You want to make sure that pass-through authentication and seamless SSO can be used in your environment. You also decide that Azure AD Connect won be configured to be in staging mode.

    With regards to redundancy limits, which of the following is the most amount of servers that can run standalone Authentication Agents?

    A. 7

    B. 9

    C. 11

    D. 13

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Microsoft exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your MS-100 exam preparations and Microsoft certification application, do not hesitate to visit our Vcedump.com to find your solutions here.