Ucertify offers free demo for 70-398 exam. "Planning for and Managing Devices in the Enterprise", also known as 70-398 exam, is a Microsoft Certification. This set of posts, Passing the Microsoft 70-398 exam, will help you answer those questions. The 70-398 Questions & Answers covers all the knowledge points of the real exam. 100% real Microsoft 70-398 exams and revised by experts!

Q9. HOTSPOT

A company runs Windows 10 Enterprise on all devices and has a single Active Directory Domain Services (AD DS) domain. The company uses Microsoft Intune to manage

Windows Phones and iOS devices.

Security updates must be installed as quickly as possible. The update management solution must be able to automatically uninstall updates. You must not deploy any additional development or custom tools.

You need to implement a solution.

In the table below, identify the feature that each solution supports.

NOTE: Make only one selection in each column. Each correct answer is worth one point.

Answer:


Q10. DRAG DROP 

Your organization is deploying new Windows 10 devices. You create a new organizational unit that contains all Windows 10 devices.

You are preparing a new security policy for Windows 10 devices. Your organization requires audits on the use of removable storage devices on personal devices.

You need to enable audits of removable storage.

Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

Answer:


Q11. You are a network administrator for a company that has an Office 365 E3 subscription. You purchase Enterprise Mobility Suite licenses. You implement synchronization by using a federated identity model.

Passwords for Sales team users often expire while they are travelling. When this happens, the users are not able to log on to the virtual private network (VPN) to perform their duties. Users must be able to reset their own passwords.

You need to enable password write-back. Which application should you configure?

A. Web Application Proxy

B. Active Directory Federation Services (AD FS)

C. Microsoft Online Services Sign-in Assistant

D. Directory Synchronization (DirSync)

E. Azure Active Directory Connect

Answer: E


Q12. A company uses Office 365. The company has an on-premises Active Directory Domain Services (AD DS) domain and Azure Active Directory Connect. The company runs an on- premises installation of System Center Configuration Manager. All devices are joined to the domain. All users have AD DS accounts and use their AD DS credentials to access the Office 365 resources.

You plan to use Cloud App Discovery. You need to deploy a solution.

Which three will achieve the goal? Each correct answer presents a complete solution.

A. Install the agent by using System Center Operations Manager.

B. Install the agent by using SystemCenter Configuration Manager.

C. Install the agent by using Group Policy.

D. Install the agent manually.

E. Install the agent by using the Office 365 portal.

Answer: B,C,D


Q13. You configure Windows Remote Desktop to allow remote connections. You are testing the remote desktop connection.

When users that are not administrators sign in to the Remote Desktop Connection, the following error message displays: “To sign in remotely, you need the right to sign in through Remote Desktop Services.”

You need to ensure that all employees can access resources by using Remote Desktop Connection.

What should you do?

A. In the local group policy, configure the Remote Desktop Connection Client to prompt for credentials on the client.

B. Create a Group Policy Object that enables the Windows Firewall to allow inbound Remote Desktop Exceptions.

C. Ensure that the employee’s device is joined to the domain.

D. In Computer Management, add the Authenticated Users group to the Remote Users group.

Answer: D


Q14. The company apps need to be made available to all mobile devices. You recently published the new applications in Azure.

What should you do?

A. In the Microsoft Azure admin portal, add users to the app collection for the apps.

B. In the MicrosoftAzure admin portal, enable multi-factor authentication.

C. Instruct users to download the Remote Desktop app from the appropriate vendor app store.

D. Run the following Windows PowerShell cmdlet:Update-AzureRemoteAppCollection

Answer: D


Q15. DRAG DROP 

Your organization is deploying new Windows 10 devices. You create a new organizational unit that contains all Windows 10 devices.

You are preparing a new security policy for Windows 10 devices. Your organization requires audits on the use of removable storage devices on personal devices.

You need to enable audits of removable storage.

Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

Answer:


Q16. You are a network administrator for a company that has an Office 365 E3 subscription. You purchase Enterprise Mobility Suite licenses. You implement synchronization by using a federated identity model.

Passwords for Sales team users often expire while they are travelling. When this happens, the users are not able to log on to the virtual private network (VPN) to perform their duties. Users must be able to reset their own passwords.

You need to enable password write-back. Which application should you configure?

A. Web Application Proxy

B. Active Directory Federation Services (AD FS)

C. Microsoft Online Services Sign-in Assistant

D. Directory Synchronization (DirSync)

E. Azure Active Directory Connect

Answer: E