You need to configure the environment
You are the Office 365 administrator for your company. The company uses Active Directory
Federation Services (AD FS) to provide single sign-on to cloud-based services. You enable multifactor authentication.
Users must NOT be required to use multi-factor authentication when they sign in from the
company’s main office location. However, users must be required to verify their identity with a
password and token when they access resources from remote locations.
You need to configure the environment.
What should you do?
You need to change the AD FS 2.0 service account password
Which pages should you customize?
DRAG DROP
A company deploys an Office 365 tenant. You install the Active Directory Federation Services (AD FS)
server role on a server that runs Windows Server 2012. You install and configure the Federation
Service Proxy role service. Users sign in by using the Security Assertion Markup Language (SAML)
protocol.
You need to customize the sign-in pages for Office 365.
Which pages should you customize? To answer, drag the appropriate page to the correct
customization. Each page may be used once, more than once, or not at all. You may need to drag the
split bar between panes or scroll to view content.
Which three actions should you perform?
Contoso uses Office 365 for collaboration services. You implement single sign-on (SSO) with Office
365 by using Active Directory Federation Services (AD FS).
You need to implement Windows Azure multi-factor authentication.
Which three actions should you perform? Each correct answer presents part of the solution.
You need to configure name resolution for FS1 and FS2
A company plans to deploy an Office 365 tenant. You have two servers named FS1 and FS2 that have
the Federation Service Proxy role service installed.
You must deploy Active Directory Federation Services (AD FS) on Windows Server 2012.
You need to configure name resolution for FS1 and FS2.
What should you do?
Which certificate types should you assign?
DRAG DROP
You are the Office 365 administrator for your company.
You must configure a trust between the on-premises Active Directory domain and the Office 365
environment by using Active Directory Federation Services.
You need to assign the correct certificate to the description of your on-premises server environment
below.
Which certificate types should you assign? To answer, drag the appropriate certificate type to the
correct test description. Each certificate type may be used once, more than once, or not at all. You
may need to drag the split bar between panes or scroll to view content.
Which name should you specify?
A company named Fabrikam, Inc. is deploying an Office 365 tenant. You install Active Directory
Federation Services (AD FS) on a server that runs Windows Server 2012.
The company’s environment is described in the following table:
You must obtain a certificate from a certification authority and install it on the federation servers.
You need to specify the subject name for the certificate.
Which name should you specify?
You need to ensure that users can authenticate to Office 365
An organization implements single sign-on (SSO) for use with Office 365 services. You install an
Active Directory Federation Services (AD FS) proxy server.
Users report that they are unable to authenticate. You launch the Event Viewer and view the event
information shown in the following screen shot:
You need to ensure that users can authenticate to Office 365.
What should you do?
You need to ensure that User1 can save and edit documents on the client computer by using office
Your company subscribes to an Office 365 Plan E3. A user named User1 installs Office Professional
Plus for Office 365 on a client computer. From the Microsoft Online Services portal, you assign User1
an Office Professional Plus license. One month after installing Office, User1 can no longer save and
edit Office documents on the client computer. User1 can open and view Office documents.
You need to ensure that User1 can save and edit documents on the client computer by using office.
What should you do?
Which Windows PowerShell cmdlet should you use?
Your company uses Office 365. You need to identify which users do NOT have a Microsoft Exchange
Online license assigned to their user account.
Which Windows PowerShell cmdlet should you use?