exam questions

Exam MS-101 All Questions

View all questions & answers for the MS-101 exam

Exam MS-101 topic 2 question 81 discussion

Actual exam question from Microsoft's MS-101
Question #: 81
Topic #: 2
[All MS-101 Questions]

You have a Microsoft 365 tenant.
You plan to enable BitLocker Disk Encryption (BitLocker) automatically for all Windows 10 devices that enroll in Microsoft Intune.
What should you use?

  • A. an attack surface reduction (ASR) policy
  • B. an app configuration policy
  • C. a device compliance policy
  • D. a device configuration profile
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
AlexBa
Highly Voted 3 years, 5 months ago
Selected Answer: D
https://docs.microsoft.com/en-us/mem/intune/protect/encrypt-devices#create-a-device-configuration-profile-for-bitlocker
upvoted 5 times
...
Roche4ever
Most Recent 1 year, 7 months ago
Answer is correct: D Was in Exam Today, 25 Sept 23
upvoted 1 times
...
[Removed]
3 years, 5 months ago
It's a config, Answer is D, you can find it in the Endpoint Protection template for Windows 10, it's under windows encryption and it must be set to require, Compliance would just check for it if you wanted to apply a rule.
upvoted 3 times
...
Rocky83
3 years, 5 months ago
I think the answer is correct
upvoted 2 times
...
TheWallPTA
3 years, 5 months ago
I just checked and i can see Bitlocker under Compliance Policies...So think im going to go with C
upvoted 1 times
VirtualJP
3 years, 4 months ago
The Compliance policy just checks for the presence of Bitlocker and its state, it does not actually perform the function of enabling Bitlocker and settings. For this you would need a configuration profile either via Device | Configuration profile or by using Endpoint security | Disk encryption
upvoted 8 times
...
...
Johnnien
3 years, 5 months ago
Use one of the following policy types to configure BitLocker on your managed devices Endpoint security disk encryption policy for BitLocker. The BitLocker profile in Endpoint security is a focused group of settings that is dedicated to configuring BitLocker. View the BitLocker settings that are available in BitLocker profiles from disk encryption policy. Device configuration profile for endpoint protection for BitLocker. BitLocker settings are one of the available settings categories for Windows 10/11 endpoint protection.
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago