Microsoft MD-102 Endpoint Administrator Online Training
Microsoft MD-102 Online Training
The questions for MD-102 were last updated at Mar 07,2025.
- Exam Code: MD-102
- Exam Name: Endpoint Administrator
- Certification Provider: Microsoft
- Latest update: Mar 07,2025
You have 200 computers that run Windows 10 and are joined to an Active Directory domain.
You need to enable Windows Remote Management (WinRM) on all the computers by using Group Policy.
Which three actions should you perform? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.
- A . Enable the Allow Remote Shell access setting.
- B . Enable the Allow remote server management through WinRM setting.
- C . Set the Startup Type of the Windows Remote Management (WS-Management) service to Automatic.
- D . Enable the Windows Defender Firewall: Allow inbound Remote Desktop exceptions setting.
- E . Set the Startup Type of the Remote Registry service to Automatic.
- F . Enable the Windows Defender Firewall: Allow inbound remote administration exception setting.
You have 200 computers that run Windows 10 and are joined to an Active Directory domain.
You need to enable Windows Remote Management (WinRM) on all the computers by using Group Policy.
Which three actions should you perform? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.
- A . Enable the Allow Remote Shell access setting.
- B . Enable the Allow remote server management through WinRM setting.
- C . Set the Startup Type of the Windows Remote Management (WS-Management) service to Automatic.
- D . Enable the Windows Defender Firewall: Allow inbound Remote Desktop exceptions setting.
- E . Set the Startup Type of the Remote Registry service to Automatic.
- F . Enable the Windows Defender Firewall: Allow inbound remote administration exception setting.
You have 200 computers that run Windows 10 and are joined to an Active Directory domain.
You need to enable Windows Remote Management (WinRM) on all the computers by using Group Policy.
Which three actions should you perform? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.
- A . Enable the Allow Remote Shell access setting.
- B . Enable the Allow remote server management through WinRM setting.
- C . Set the Startup Type of the Windows Remote Management (WS-Management) service to Automatic.
- D . Enable the Windows Defender Firewall: Allow inbound Remote Desktop exceptions setting.
- E . Set the Startup Type of the Remote Registry service to Automatic.
- F . Enable the Windows Defender Firewall: Allow inbound remote administration exception setting.
You have a Microsoft 365 Business Standard subscription and 100 Windows 10 Pro devices.
You purchase a Microsoft 365 E5 subscription.
You need to upgrade the Windows 10 Pro devices to Windows 10 Enterprise. The solution must minimize administrative effort.
Which upgrade method should you use?
- A . Windows Autopilot
- B . a Microsoft Deployment Toolkit (MDT) lite-touch deployment
- C . Subscription Activation
- D . an in-place upgrade by using Windows installation media
HOTSPOT
You have a Microsoft 365 subscription.
You plan to enable Microsoft Intune enrollment for the following types of devices:
• Existing Windows 11 devices managed by using Configuration Manager
• Personal iOS devices
The solution must minimize user disruption.
Which enrollment method should you use for each device type? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
HOTSPOT
You have a Microsoft Entra ID P2 subscription that contains the users shown in the following table.
You purchase the devices shown in the following table.
You configure automatic mobile device management (MDM) and mobile application management (MAM) enrollment by using the following settings:
• MDM user scope: Group1
• MAM user scope: Group2
For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.
Your network contains an Active Directory Domain Services (AD DS) domain. The domain contains 100 client computers that run Windows 10.
Currently, your company does NOT have a deployment infrastructure.
The company purchases Windows 11 licenses through a volume licensing agreement.
You need to recommend how to upgrade the computers to Windows 11. The solution must minimize licensing costs.
What should you include in the recommendation?
- A . Windows Autopilot
- B . Configuration Manager
- C . subscription activation
- D . Microsoft Deployment Toolkit (MDT)
HOTSPOT
You have computers that run Windows 10 and are configured by using Windows Autopilot.
A user performs the following tasks on a computer named Computer1:
• Creates a VPN connection to the corporate network
• Installs a Microsoft Store app named App1
• Connections to a Wi-Fi network
You perform a Windows Autopilot Reset on Computer1.
What will be the state of the computer when the user signs in? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
HOTSPOT
You have a Microsoft Deployment Toolkit (MDT) solution that is used to manage Windows 11 deployment tasks.
MDT contains the operating system images shown in the following table.
You need to perform a Windows 11-place upgrade on several computers that run Windows 10.
From the Deployment Workbench, you open the New Task Sequence Wizard.
You need to identify which task sequence template and which operating system image to use for the task sequence. The solution must minimize administrative effort.
What should you identify? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
You have a workgroup computer named Client1 that runs Windows 11 and connects to a public network.
You need to enable PowerShell remoting on Client1. The solution must ensure that PowerShell remoting connections are accepted from the local subnet only.
Which PowerShell command should you run?
- A . Set-PSSessionConfiguration CAccessMode Local
- B . Enable-PSRemoting CSkipNetworkProfileCheck
- C . Enable-PSRemoting CForce
- D . Set-NetFirewallRule CName “WINRM-HTTP-In-TCP-PUBLIC” CRemoteAddress Any