exam questions

Exam MD-101 All Questions

View all questions & answers for the MD-101 exam

Exam MD-101 topic 1 question 35 discussion

Actual exam question from Microsoft's MD-101
Question #: 35
Topic #: 1
[All MD-101 Questions]

You manage one hundred Microsoft Azure Active Directory (Azure AD) joined Windows 10 devices.
You want to make sure that users are unable to join their home PC's to Azure AD.
Which of the following actions should you take?

  • A. You should configure the Enrollment restriction settings via the Device enrollment blade in the Intune admin center.
  • B. You should configure the Enrollment restriction settings via the Security & Compliance admin center.
  • C. You should configure the Enrollment restriction settings via the Azure Active Directory admin center.
  • D. You should configure the Enrollment restriction settings via the Windows Defender Security Center.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
BRoald
Highly Voted 2 years, 9 months ago
Selected Answer: A
Its A; Open Intune / Endpoint admin center > Devices > Enrollment Device Platform Restriction > All Users > Here you can block personally owned devices, such as a home PC. Answer A
upvoted 9 times
daye
2 years, 9 months ago
this will block Intune Enrollment, the Question is related with Azure, so C is the correct one IMHO
upvoted 9 times
cbjorn8931
2 years, 8 months ago
C, This is correct... Azure AD join needs users input your credentials of Azure AD Account. If you want to limit Azure AD join devices, you can limit users who can join their devices to AzureAD: Go to Azure Portal > Azure Acitve Directory > Devices > Add memebers who can join devices to Azure AD. https://serverfault.com/questions/893881/how-to-restrict-device-join-in-azure-ad
upvoted 6 times
...
TonySuccess
2 years, 9 months ago
I agree with you, I will be careful to read the wording of the question in the Exam.
upvoted 2 times
...
BRoald
2 years, 9 months ago
C is not correct since there is no "block Home PC" option available in Azure. Thats only in the Intune/Endpoint Manager admin center i described in my first comment. I stand with answer A
upvoted 4 times
daye
2 years, 8 months ago
Re Read the question, there is no Intune enrollment requirement. It's all about AD Join (Identity), where it's managed in Azure AD and you are able to block if the users are able to register any computer with their corporative accounts or not.
upvoted 1 times
BRoald
2 years, 6 months ago
Youre right aswell, but the question states "You want to make sure that users are unable to join their home PC's to Azure AD." But if you disable the choosen option, nobody can join AzureAD anymore, even with a company computer, so thats why i choosed A
upvoted 2 times
...
...
...
...
...
AngelusNL
Highly Voted 2 years, 8 months ago
Selected Answer: C
It's not about Intune, it's only about Joining Azure AD, C is correct
upvoted 8 times
...
NoursBear
Most Recent 1 year, 6 months ago
https://techcommunity.microsoft.com/t5/microsoft-intune/preventing-azure-ad-registration-microsoft-support-can-not-help/m-p/3864797
upvoted 1 times
...
Kock
2 years ago
Azure Active Directory (Azure AD) provides a central place to manage device identities and monitor related event information. https://learn.microsoft.com/en-us/azure/active-directory/devices/device-management-azure-portal
upvoted 1 times
...
[Removed]
2 years, 2 months ago
Selected Answer: C
Its C, no meniton of Intune.
upvoted 1 times
...
golijat
2 years, 2 months ago
Selected Answer: C
There is no mention of Intune
upvoted 1 times
...
Meebler
2 years, 6 months ago
C, Option A: configuring the Enrollment restriction settings via the Device enrollment blade in the Intune admin center, is not the correct answer. The Intune admin center is a tool used to manage devices and their associated policies, such as device compliance and app deployment. While the Intune admin center does have a Device enrollment blade, this blade is used to manage the enrollment of devices into Intune, not Azure AD. To make sure that users are unable to join their home PCs to Azure AD, you should configure the enrollment restriction setting in the Azure Active Directory admin center. This is the central location for managing Azure AD and its related services, including the enrollment of devices into Azure AD. The Device enrollment blade in the Intune admin center is not relevant to this task.
upvoted 1 times
...
Zarkata
2 years, 9 months ago
Selected Answer: A
BRoald is correct indeed.
upvoted 2 times
...
RickyBee
2 years, 9 months ago
Selected Answer: A
Broald is correct
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...