exam questions

Exam MD-102 All Questions

View all questions & answers for the MD-102 exam

Exam MD-102 topic 1 question 106 discussion

Actual exam question from Microsoft's MD-102
Question #: 106
Topic #: 1
[All MD-102 Questions]

HOTSPOT -

You have a Microsoft 365 subscription that includes Microsoft Intune.

You have computers that run Windows 11 as shown in the following table.



You have the groups shown in the following table.



You create and assign the compliance policies shown in the following table.



The next day, you review the compliance status of the computers.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.

NOTE: Each correct selection is worth one point.

Show Suggested Answer Hide Answer
Suggested Answer:

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
MR_Eliot
Highly Voted 1 year, 3 months ago
I would say the answer is YYY. Third one is not intune joined, so compliance policy does not apply. Anyway, I still say device is compliant. I have not found a single compliant device in my test tenant. They were either n/a or not compliant.
upvoted 7 times
MR_Eliot
1 year, 3 months ago
Computer 1 (intune) - Bitlocker: Disabled - Firewall : Enabled - Policy: Policy 1 Result: not compliant (currently is grace period) Computer 2 (intune) - Bitlocker: Enabled - Firewall : Enabled - Policy: Policy 1 Result: compliant Computer 3 (not enrolled) - Bitlocker: Enabled - Firewall : Disabled - Policy: None (Because not intune joined) - Result: Not compliant!
upvoted 16 times
...
...
NoursBear
Highly Voted 1 year, 7 months ago
I think the key is with Device 3 is "monitoring", Device 3 can't report back if not enrolled according to this: https://learn.microsoft.com/en-us/mem/intune/protect/compliance-policy-monitor If I understand right. It seems the device needs to be enrolled anyway, according to some other article too. Device 3 should be No I think
upvoted 6 times
e6d6bf4
1 month, 4 weeks ago
You are correct. The compliance policy from Intune needs the device to be enrolled so Intune can evaluate the compliancy. Since Computer 3 does not have a record on Intune, Intune will not mark the device noncompliant or compliant whatsover. The question statement said " it will be marked noncomplaint" --> Not true > No
upvoted 2 times
CheMetto
3 weeks, 3 days ago
That's the correct explanation! If you don't have a device in intune, how can you see it inside intune? It's like: I don't have a device into AD. The last time a user logged in was yesterday. On AD, would i see the device last logged in time to yesterday? Of course, not! You don't have AD, how can you? It's No the last one.
upvoted 1 times
...
...
...
386abb2
Most Recent 4 months ago
I would say YYY the last question is tricky as it says not compliant
upvoted 1 times
...
Doug77
4 months, 2 weeks ago
Answers are correct folks, this is why....first two we agree on, third is stated as not compliant, answering no= compliant for the default settings of devices not enrolled in intune with no device compliance policy applied. So....actually these are correct.
upvoted 1 times
...
ronniefactor
5 months ago
YYY - comp1-compliant -grace period, -comp2 - compliant-FW enabled and Bit locker enabled Comp3-not compliant, not entra joined and FW is disabled
upvoted 1 times
...
Stu5mmy
11 months, 2 weeks ago
This a tricky question when it comes to the evaluation of device 2. There's two types of compliance in devices in the Intune portal, one being the Intune compliance and the other one being the Entra ID compliance. Device 2 will meet the compliance requirements for Intune compliance, but not the Entra ID compliance because it is registered and not in a Joined/Hybrid state.
upvoted 1 times
...
rcristiano
1 year, 1 month ago
resposta correta
upvoted 2 times
...
Bukaj
1 year, 5 months ago
Answer from ChatGPT: If a device is only registered with Azure AD but not enrolled in Intune, it does not have to comply with Intune compliance policies. Compliance policies in Intune are used to set rules for devices managed with Intune1. However, there is a setting in Intune’s compliance policy settings that determines how Intune treats devices that haven’t been assigned a device compliance policy. This setting has two values1: Compliant (default): Devices that aren’t sent a device compliance policy are considered compliant. Not compliant: Devices that haven’t received a device compliance policy are considered noncompliant. So, if you want to apply a compliance policy from Intune to a device, it needs to be enrolled in Intune. It does not matter if the device is Azure AD registered or joined as long as the device is enrolled in Intune2
upvoted 3 times
...
mks_academy
1 year, 6 months ago
Y,Y,Y to me. Computer 1 is in a grace period because policy 1 applies to it and it does not have bitlocker activated. Computer 2 is compliant because policy 1 applies to it and bitlocker is activated. Computer 3 is not compliance (SO THE ANSWER IS Y) because policy 2 applies to it and firewall is disabled.
upvoted 4 times
AdamRachel
1 year, 5 months ago
yes but computer 3 is only register but not joined Azure AD so policy do not apply to this device and leave this device as compliant.
upvoted 1 times
...
AdamRachel
1 year, 5 months ago
But device 3 is not enrolled to Intune so Policy not apply so will leave device as compliant.
upvoted 1 times
...
riccardo1999
1 year, 5 months ago
computer 3 is not enrolled on Intune.
upvoted 2 times
frack
1 year, 5 months ago
it is registered.
upvoted 1 times
...
...
...
madsa
1 year, 6 months ago
amckinson_Android_10/16/2023_4:38 PM Intune Personal Noncompliant Android (device administrator) 9.0 [email protected] 29/11/2023, 04:29 Microsoft Entra registered anutbrown_Android_3/15/2023_1:34 PM Intune Personal In grace period Android (device administrator) 13.0 [email protected] 08/11/2023, 15:06 Microsoft Entra registered The answer is Yes Yes Yes, if you can put a device in a group you can apply a compliance policy.
upvoted 1 times
...
benpatto
1 year, 7 months ago
Computer 3 is not enrolled in Intune, therefore it can't receive the compliance policies. It may be registered in Azure AD but Intune ultimately is what plays the role here.
upvoted 4 times
...
Casticod
1 year, 8 months ago
I have a question... IF computer 3 is not registered (or joined), how does it belong to group 3) Beyond this joke, the answers seem to be correct Computer 1 is in a grace period because policy 1 applies to it and it does not have bitlocker activated. Team 2 is compliance because pass the policy1. Team 3 is not compliance because it does not belong to the Azure Ad in question
upvoted 2 times
Contactfornitish
1 year, 8 months ago
It clearly says its registered (computer3) Compliance policy applies on all registered, hybrid, enrolled devices.
upvoted 2 times
...
Sonia33
1 year, 6 months ago
It can belong a group if it in AAD. But it cannot be compliant or not compliant if it is not in Intune.
upvoted 1 times
...
...
BJS78
1 year, 9 months ago
Device must be joined to AAD and/or registered in Intune to receive compliance policy. Usually: AADJ: Corporate device, AADR: private device (does not apply with this question)
upvoted 1 times
...
sh123df
1 year, 9 months ago
No Yes Yes Looks like is wrong, correct me.
upvoted 2 times
LiamAzure
1 year, 7 months ago
Why No for the first one? This is after 1 day, it has 10 days
upvoted 1 times
...
majerzg
1 year, 8 months ago
I think that you are right.
upvoted 1 times
...
sh123df
1 year, 7 months ago
My answer is wrong. Look away from this
upvoted 3 times
...
...
Grg433
1 year, 9 months ago
should be Y,Y,Y ? no ?
upvoted 4 times
SdovlA
1 year, 9 months ago
The third device is just registered in AAD. The status is N/A.
upvoted 8 times
ExamBud
4 months, 2 weeks ago
It doesn't mind if it is registered. It is NA because it is not enrolled in Intune.
upvoted 1 times
...
frack
1 year, 5 months ago
table indicate Device3 as registered
upvoted 1 times
...
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...