MD-101 Exam Question 116
You have devices enrolled in Microsoft Intune as shown in the following table.

You create an app protection policy named Policy1 that has the following settings:
* Platform: Windows 10
* Protected apps: App1
* Exempt apps: App2
* Network boundary: Cloud resources, IPv4 ranges
You assign Policy1 to Group1 and Group2. You exclude Group3 from Policy1.
Which devices will apply Policy1?

You create an app protection policy named Policy1 that has the following settings:
* Platform: Windows 10
* Protected apps: App1
* Exempt apps: App2
* Network boundary: Cloud resources, IPv4 ranges
You assign Policy1 to Group1 and Group2. You exclude Group3 from Policy1.
Which devices will apply Policy1?
MD-101 Exam Question 117
You have a Microsoft 365 tenant that uses Microsoft Intune for mobile device management (MDM).
You associate a Microsoft Store for Business account with Intune.
You purchase an app named Appl from the Microsoft Store for Business.
You need to ensure that Appl can be deployed by using Intune.
What should you do?
You associate a Microsoft Store for Business account with Intune.
You purchase an app named Appl from the Microsoft Store for Business.
You need to ensure that Appl can be deployed by using Intune.
What should you do?
MD-101 Exam Question 118
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your network contains an Active Directory domain. The domain contains a computer named Computer1 that runs Windows 8.1.
Computer1 has apps that are compatible with Windows 10.
You need to perform a Windows 10 in-place upgrade on Computer1.
Solution: You copy the Windows 10 installation media to a Microsoft Deployment Toolkit (MDT) deployment share. You create a task sequence, and then you run the MDT deployment wizard on Computer1.
Does this meet the goal?
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your network contains an Active Directory domain. The domain contains a computer named Computer1 that runs Windows 8.1.
Computer1 has apps that are compatible with Windows 10.
You need to perform a Windows 10 in-place upgrade on Computer1.
Solution: You copy the Windows 10 installation media to a Microsoft Deployment Toolkit (MDT) deployment share. You create a task sequence, and then you run the MDT deployment wizard on Computer1.
Does this meet the goal?
MD-101 Exam Question 119
You have a Microsoft 365 E5 subscription that contains a user named User! and the devices shown In the following table.

User1 can access her Microsoft Exchange Online mailbox from both Device1 and Device2.
You plan to create a Conditional Access policy named CAPolicy1 that will have the following settings:
* Assignments
* Users or workload identities: User1
* Cloud apps or actions: Office 365 Exchange Online
* Access controls
* Grant Block access
You need to configure CAPolicy1 to allow mailbox access from Device1 but block mailbox access from Device2.
Solution: You add a condition to filter for devices.
Does this meet the goal?

User1 can access her Microsoft Exchange Online mailbox from both Device1 and Device2.
You plan to create a Conditional Access policy named CAPolicy1 that will have the following settings:
* Assignments
* Users or workload identities: User1
* Cloud apps or actions: Office 365 Exchange Online
* Access controls
* Grant Block access
You need to configure CAPolicy1 to allow mailbox access from Device1 but block mailbox access from Device2.
Solution: You add a condition to filter for devices.
Does this meet the goal?
MD-101 Exam Question 120
You have a Windows 10 device named Device1 that is joined to Active Directory and enrolled in Microsoft Intune.
Device 1 is managed by using Group Policy and Intune.
You need to ensure that the Intune settings override the Group Policy settings.
What should you configure?
Device 1 is managed by using Group Policy and Intune.
You need to ensure that the Intune settings override the Group Policy settings.
What should you configure?
