It is more faster and easier to pass the Microsoft 70-346 exam by using Refined Microsoft Managing Office 365 Identities and Requirements questuins and answers. Immediate access to the Most recent 70-346 Exam and find the same core area 70-346 questions with professionally verified answers, then PASS your exam with a high score now.

2021 Mar 70-346 exam price

Q21. You plan to deploy an Office 365 tenant to multiple offices around the country. 

You need to modify the users and groups who are authorized to administer the Rights Management service. 

Which Windows PowerShell cmdlet should you run? 

A. Add-MsolGroupMember 

B. Get-AadrmRoleBasedAdministrator 

C. Remove-AadrmRoleBasedAdministrator 

D. Enable-AadrmSuperUserFeature 

Answer:


Q22. A company has an Office 365 tenant that has an Enterprise E1 subscription. You configure the policies required for self-service password reset. 

You need to ensure that all existing users can perform self-service password resets. 

Which Windows PowerShell cmdlet should you run? 

A. Set-MsolUser 

B. Redo-MsolProvisionUser 

C. Set-MsolUserLicense 

D. Set-MsolUserPrincipalName 

E. Convert-MsolFederatedUser 

F. Set-MailUser 

G. Set-LinkedUser 

H. New-MsolUser 

Answer:

Explanation: 

Self-service password reset with on-premises write-back is a Premium-only feature. 

Example: 

The following command adds the Office 365 for enterprises license to the user. 

Set-MsolUserLicense -UserPrincipalName user@contoso.com -AddLicenses 

"Contoso:ENTERPRISEPACK" 

Note: The Set-MsolUserLicense cmdlet can be used to adjust the licenses for a user. This can include adding a new license, removing a license, updating the license options, or any combination of these actions. 

Reference: Set-MsolUserLicense 

https://msdn.microsoft.com/en-us/library/azure/dn194094.aspx


Q23. A company has an Office 365 tenant that has an Enterprise E1 subscription. Users currently sign in with credentials that include the contoso.com domain suffix. 

The company is acquired by Fabrikam. Users must now sign in with credentials that include the fabrikam.com domain suffix. 

You need to ensure that all users sign in with the new domain name. 

Which Windows PowerShell cmdlet should you run?

A. Set-MsolUser 

B. Redo-MsolProvisionUser 

C. Set-MsolUserLicense 

D. Set-MsolUserPrincipalName 

E. Convert-MsolFederatedUser 

F. Set-MailUser 

G. Set-LinkedUser 

H. New-MsolUser 

Answer:

Explanation: The Set-MsolUserPrincipalName cmdlet is used to change the User Principal Name (user ID) of a user. This cmdlet can be used to move a user between a federated and standard domain, which will result in their authentication type changing to that of the target domain. 

The following command renames user1@contoso.com to CCole@contoso.com. 

Set-MsolUserPrincipalName -UserPrincipalName User1@contoso.com -NewUserPrincipalName CCole@contoso.com 

Incorrect: 

Not A: The Set-MsolUser cmdlet is used to update a user object. This cmdlet should be used for basic properties only. 

Not B: The Redo-MsolProvisionUser cmdlet can be used to retry the provisioning of a user object in Azure Active Directory when a previous attempt to create the user object resulted in a validation error. 

Not C: The Set-MsolUserLicense cmdlet can be used to adjust the licenses for a user.

Not E: The Convert-MsolFederatedUser cmdlet is used to update a user in a domain that was recently converted from single sign-on (also known as identity federation) to standard authentication type. A new password must be provided for the user. 

Not F: Use the Set-MailUser cmdlet, used for on premises Exchange Server (not Office 365), to modify the mail-related attributes of an existing user in Active Directory. 

Not G: Use the Set-LinkedUser cmdlet to modify the properties of an existing linked user account. The Outlook Live Directory Sync (OLSync) service account is a linked user. 

Not H: The New-MsolUser cmdlet is used to create a new user in the Microsoft Azure Active Directory (Microsoft Azure AD). In 

Reference: Set-MsolUserPrincipalName 

https://msdn.microsoft.com/en-us/library/azure/dn194096.aspx 


Q24. HOTSPOT

A company plans to deploy an Office 365 tenant. 

You have the following requirements: 

Administrators must be able to access the Office 365 admin center. 

Microsoft Exchange Online must be used as a Simple Mail Transfer Protocol (SMTP) relay for a line-of-business application that sends email messages to remote domains. 

All users must be able to use the audio and video capabilities in Microsoft Lync 2013.

You need to configure the ports for the firewall. 

Which port should you use for each application? Select the correct answer from each list in the answer area. 

Answer: 


Q25. You are the Office 365 administrator for your company. The company uses Active Directory Federation Services (AD FS) to provide single sign-on to cloud-based services. You enable multi-factor authentication. 

Users must NOT be required to use multi-factor authentication when they sign in from the company's main office location. However, users must be required to verify their identity with a password and token when they access resources from remote locations. 

You need to configure the environment. 

What should you do? 

A. Disable AD FS multi-factor authentication. 

B. Configure an IP blacklist for the main office location. 

C. Disable the AD FS proxy. 

D. Configure an IP whitelist for the main office location. 

Answer:


Abreast of the times 70-346 exams:

Q26. A company has an Office 365 tenant. 

You need to monitor Active Directory synchronization. 

Which tool should you run? 

A. ldFix 

B. Office 365 Health, Readiness, and Connectivity Check 

C. Microsoft Remote Connectivity Analyzer Tool 

D. Synchronization Service (MIISClient) 

Answer:

Explanation: dFix is used to perform discovery and remediation of identity objects and their attributes in an on-premises Active Directory environment in preparation for migration to Office 365. IdFix is intended for the Active Directory administrators responsible for DirSync with the Office 365 service. 

Reference: IdFix DirSync Error Remediation Tool 

http://www.microsoft.com/en-us/download/details.aspx?id=36832 


Q27. Contoso Ltd. uses Office 365 for collaboration. You are implementing Active Directory Federation Services (AD FS) for single sign-on (SSO) with Office 365 services. The environment contains an Active Directory domain and an AD FS federation server. 

You need to ensure that the environment is prepared for the AD FS setup. 

Which two actions should you perform? Each correct answer presents part of the solution. 

A. Configure Active Directory to use the domain contoso.com. 

B. Configure Active Directory to use the domain contoso.local. 

C. Create a server authentication certificate for the federation server by using fs.contoso.com as the subject name and subject alternative name. 

D. Create a server authentication certificate for the federation server by using fs.contoso.local as the subject name and subject alternative name. 

Answer: A,C 


Q28. A company uses Office 365 services. You implement the Windows Azure Active Directory Sync tool in the local environment. 

An employee moves to a new department. All Office 365 services must display the new department information for the employee. 

You need to update the employee's user account. 

Where should you change the value of the department attribute for the employee? 

A. The Active Directory management page in the Windows Azure Management Portal 

B. The Users and groups page in the Office 365 admin center 

C. The on-premises Active Directory 

D. The Metaverse Designer 

Answer:


Q29. DRAG DROP 

You are the Office 365 administrator for your company. 

Users report that their passwords expire too frequently, and they do not receive adequate notice of password expiration. 

Account passwords must remain active for the longest duration allowed. Users must receive password expiration notifications as early as possible. 

You need to configure the password expiration policy. 

How should you set the policy on the password page of the Office 365 admin center? To answer, drag the appropriate duration to the correct location. Each duration may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. 

Answer: 


Q30. DRAG DROP

A company plans to implement an Office 365 environment to manage email. 

All user accounts must be configured to use only a custom domain. 

You need to provision an Office 365 tenant for the company. 

Which three actions should you perform in sequence? To answer, move the appropriate 

actions from the list of actions to the answer area and arrange them in the correct order. 

Answer: 

70 DRAG DROP

A company has an Office 365 tenant. You plan to use Office 365 to manage the DNS settings for a custom domain. You purchase the domain through a third-party provider. 

You create a custom website. You must host the website through a third-party provider at the IP address 134.170.185.46. You need to configure the correct DNS settings.

What should you do? To answer, drag the appropriate DNS record to the correct DNS target. Each record may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. 

Answer: