Identity-and-Access-Management-Designer Exam Question 26

Northern Trail Outfitters (NTO) uses a Security Assertion Markup Language (SAML)-based Identity Provider (idP) to authenticate employees to all systems. The IdP authenticates users against a Lightweight Directory Access Protocol (LDAP) directory and has access to user information. NTO wants to minimize Salesforce license usage since only a small percentage of users need Salesforce.
What is recommended to ensure new employees have immediate access to Salesforce using their current IdP?
  • Identity-and-Access-Management-Designer Exam Question 27

    Northern Trail Outfitters (NTO) has an existing custom business-to-consumer (B2C) website that does NOT support single sign-on standards, such as Security Assertion Markup Language (SAMi) or OAuth. NTO wants to use Salesforce Identity to register and authenticate new customers on the website.
    Which two Salesforce features should an identity architect use in order to provide username/password authentication for the website?
    Choose 2 answers
  • Identity-and-Access-Management-Designer Exam Question 28

    Universal Containers is budding a web application that will connect with the Salesforce API using JWT OAuth Flow.
    Which two settings need to be configured in the connect app to support this requirement?
    Choose 2 answers
  • Identity-and-Access-Management-Designer Exam Question 29

    Universal Containers is creating a mobile application that will be secured by Salesforce Identity using the OAuth 2.0 user-agent flow (this flow uses the OAuth 2.0 implicit grant type).
    Which three OAuth concepts apply to this flow?
    Choose 3 answers
  • Identity-and-Access-Management-Designer Exam Question 30

    Universal Containers (UC) is building a customer community and will allow customers to authenticate using Facebook credentials. The First time the user authenticating using facebook, UC would like a customer account created automatically in their Accounting system. The accounting system has a web service accessible to Salesforce for the creation of accounts. How can the Architect meet these requirements?