exam questions

Exam 70-744 All Questions

View all questions & answers for the 70-744 exam

Exam 70-744 topic 1 question 133 discussion

Actual exam question from Microsoft's 70-744
Question #: 133
Topic #: 1
[All 70-744 Questions]

Your network contains an Active Directory forest named Corp. The forest functional level is Windows Server 2016.
You deploy a new forest named Priv and set the forest functional level to Windows Server 2016.
You need to implement Privileged Access Management (PAM).
What should you do next?

  • A. Install Microsoft Identity Manager (MIM) on a server in the Priv forest.
  • B. Install Microsoft Identity Manager (MIM) in the Corp forest.
  • C. Create shadow accounts in the Priv forest.
  • D. Create shadow accounts in the Corp forest.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️
References:
https://www.petri.com/windows-server-2016-set-privileged-access-management

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Yebubbleman
4 years, 5 months ago
The process to create shadow principles REQUIRES that MIM be installed first by virtue of the fact that the cmdlets used to do so get installed with MIM. You literally cannot do C without doing A first. The Exam Ref 70-744 book corroborates this, if nothing else.
upvoted 1 times
...
SamsOtro
4 years, 6 months ago
Correct answer is: A. Install Microsoft Identity Manager (MIM) on a server in the Priv forest.
upvoted 2 times
...
Treasure
4 years, 6 months ago
PAM is an instance of Privileged Identity Management (PIM) that is implemented using Microsoft Identity Manager (MIM). So answer is A
upvoted 2 times
...
Maku5555
4 years, 8 months ago
PIM isn't = PAM. For me A.
upvoted 2 times
...
morlu
4 years, 8 months ago
Given answer is incorrect, correct answer is A. Reference is correct, and the first step after creating the bastion forest is to install MIM. Next add the trust. Only then can you add the shadow principals.
upvoted 3 times
[Removed]
4 years, 8 months ago
To fully implement Microsoft’s ESAE model, Microsoft Identity Manager (MIM) is recommended. MIM is used to implement workflows so that users can request temporary access to privileged groups in the production forest. If you implement your own workflow solution, MIM is not required.
upvoted 1 times
...
KidCastaldo
4 years, 8 months ago
I agree, A is correct.
upvoted 2 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...