NO.1 A company deploys an Office 365 tenant.
You must provide an administrator with the ability to manage company information in Office 365.
You need to assign permissions to the administrator by following the principle of least privilege.
Which role should you assign?
A. Global administrator
B. Service administrator
C. Billing administrator
D. User management administrator
Answer: A

Reference: http://onlinehelp.microsoft.com/en-

NO.2 You have an Office 365 tenant that uses an Enterprise E3 subscription. You activate Azure Rights
Management for the tenant.
You must test the service with the Development security group before you deploy Azure Rights
Management for all users.
You need to enable Azure Rights Management for only the Development security group.
Which Windows PowerShell cmdlet should you run?
A. Enable-Aadrm
B. New-AadrmRightsDefinition
C. Enable-AadrmSuperUserFeature
D. Add-AadrmSuperUser
E. Set-AadrmOnboardingControlPolicy
Answer: E

The Set-AadrmOnboardingControlPolicy cmdlet sets the policy that controls user on-boarding for
Azure Rights Management. This cmdlet supports a gradual deployment by controlling which users in
your organization can protect content by using Azure Rights Management.
Example: Restrict Azure RMS to users who are members of a specified group This command allows
only users that are members of the security group with the specified object ID to protect content by
using Azure Rights Management. The command applies to Windows clients and mobile devices.
Windows PowerShell PS C:\> Set-AadrmOnboardingControlPolicy -UseRmsUserLicense $False -
SecurityGroupObjectId "f
Reference: Set-AadrmOnboardingControlPolicy

NO.3 A company has an Office 365 tenant that has an Enterprise E1 subscription.
You use single sign-on for all user accounts. You plan to migrate all services to Office 365.
You need to ensure that all accounts use standard authentication.
Which Windows PowerShell cmdlet should you run?
A. Set-MsolUser
B. Redo-MsolProvisionUser
C. Set-MsolUserLicense
D. Set-MsolUserPrincipalName
E. Convert-MsolFederatedUser
F. Set-MailUser
G. Set-LinkedUser
H. New-MsolUser
Answer: E

The Convert-MsolFederatedUser cmdlet is used to update a user in a domain that was recently
converted from single sign-on (also known as identity federation) to standard authentication type.
Reference: Convert-MsolFederatedUser

NO.4 You are the Office 365 administrator for your company. You configure new user accounts for
User1 and User2. User1 has an on-premises mailbox. User2 has an Office 365 mailbox.
Each user must be able to view the availability of the other user.
You need to ascertain whether users can share their free/busy information.
What should you use?
A. Transport Reliability IP Probe (TRIPP Tool)
B. Microsoft Remote Connectivity Analyzer Tool
C. Business Connectivity Services
D. Windows Azure Active Directory Rights Management
Answer: B

NO.5 You are the Office 365 administrator for your company.
Users report that they have received significantly more spam messages over the past
month than they normally receive.
You need to analyze trends for the email messages received over the past 60 days.
From the Office 365 admin center, what should you view?
A. the Mail protection reports
B. the Office 365 Malware detections in received mail report
C. messages on the Message center page
D. the Mailbox access by non-owners report
Answer: A

Contoso, Ltd. has an Office 365 tenant. The company has two servers named Server1 and Server2
that run Windows 2012 R2 Server. The servers are not joined to the contoso.com domain. Server2 is
deployed to the perimeter network. You install Secure Sockets Layer (SSL) certificates on both
You deploy internal and external firewalls. All firewalls allow HTTPS traffic.
You must deploy single sign-on (SSO) and Active Directory Federation Services (AD FS).
You need to install and configure all AD FS components in the environment.
Which four actions should you perform in sequence? To answer, move the appropriate actions from
the list of actions to the answer area and arrange them in the correct order.

A company plans to deploy an Office 365 tenant.
You have the following requirements:
- Administrators must be able to access the Office 365 admin center.
- Microsoft Exchange Online must be used as a Simple Mail Transfer Protocol (SMTP) relay for a line
-of-business application that sends email messages to remote domains.
- All users must be able to use the audio and video capabilities in Microsoft Lync 2013.
You need to configure the ports for the firewall.
Which port should you use for each application? Select the correct answer from each list in the
answer area.

NO.8 You plan to deploy an Office 365 tenant to multiple offices around the country.
You need to modify the users and groups who are authorized to administer the Rights
Management service.
Which Windows PowerShell cmdlet should you run?
A. Add-MsolGroupMember
B. Get-AadrmRoleBasedAdministrator
C. Remove-AadrmRoleBasedAdministrator
D. Enable-AadrmSuperUserFeature
Answer: A

