exam questions

Exam MD-102 All Questions

View all questions & answers for the MD-102 exam

Exam MD-102 topic 1 question 308 discussion

Actual exam question from Microsoft's MD-102
Question #: 308
Topic #: 1
[All MD-102 Questions]

You have a Microsoft 365 E5 subscription and use Microsoft Intune.

You plan to implement a Microsoft Cloud PKI solution that will deploy personal user certificates to all Windows devices.

What is the minimum number of configuration profiles required to support the solution?

  • A. 1
  • B. 2
  • C. 3
  • D. 4
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Friscini
Highly Voted 3 months, 3 weeks ago
Selected Answer: C
https://learn.microsoft.com/en-us/mem/intune/protect/microsoft-cloud-pki-configure-ca#step-3-create-certificate-profiles
upvoted 6 times
...
GeorgeMar
Most Recent 1 week, 4 days ago
Selected Answer: C
To issue certificates, you must create a trusted certificate profile for your root and issuing CAs. The trusted certificate profile establishes trust with the Cloud PKI certificate registration authority supporting the SCEP protocol. A trusted certificate profile required for each platform (Windows, Android, iOS/iPad, macOS) that's issuing Cloud PKI SCEP certificates. This step requires you to: Create a trusted certificate profile for the Cloud PKI root CA. Create a trusted certificate profile for a Cloud PKI issuing CA. Create an SCEP certificate profile for a Cloud PKI issuing CA.
upvoted 1 times
...
neothwin
1 month ago
Selected Answer: B
To implement a Microsoft Cloud PKI solution that deploys personal user certificates to all Windows devices using Microsoft Intune, you need to create the following configuration profiles: Trusted Certificate Profile: This profile is used to deploy the root CA certificate to the devices, ensuring that the devices trust the issuing CA. SCEP Certificate Profile: This profile is used to request and deploy the user certificates to the devices. Therefore, the minimum number of configuration profiles required to support the solution is two.
upvoted 4 times
...
sorinaccio
1 month, 1 week ago
Selected Answer: B
To implement a Microsoft Cloud PKI solution that deploys personal user certificates to all Windows devices using Microsoft Intune, it is necessary to create two configuration profiles: a Trusted Certificate Profile and a PKCS Certificate Profile.
upvoted 2 times
...
SR96
3 months ago
Selected Answer: C
You need Root, Issusing and SCEP hence why it is 3
upvoted 4 times
...
Alboo007_rs007
3 months, 1 week ago
Selected Answer: B
SCEP Certificate Profile: This profile is used to configure the device to request and install a personal certificate from a certificate authority (CA). User Certificate Profile: This profile is used to assign the certificates to individual users.
upvoted 3 times
...
Alboo007_rs007
3 months, 3 weeks ago
Selected Answer: B
ITS 2 : Trusted Certificate Profile for the Cloud PKI root CA. SCEP Certificate Profile for the issuing CA.
upvoted 4 times
...
AleFCI1908
4 months, 3 weeks ago
Selected Answer: C
C: need 3 certificates: one for the trusted root certificate, one for the user certificates, and one for the configuration that links Intune with the on-premises PKI infrastructure. https://learn.microsoft.com/en-us/mem/intune/protect/microsoft-cloud-pki-overview#:~:text=Before%20the%20device%20checks%20in%20to%20the%20Intune,profiles.%20This%20flow%20isn%27t%20shown%20in%20the%20diagram.
upvoted 1 times
HvD
4 months, 3 weeks ago
There is no on-premise PKI, the question states Microsoft Cloud PKI, which is a cloud service.
upvoted 1 times
AleFCI1908
4 months, 2 weeks ago
sorry, you are right. given are correct. Thank you
upvoted 1 times
...
...
...
JayHall
4 months, 3 weeks ago
Answer is correct: 2 To deploy personal user certificates to all Windows devices using Microsoft Cloud PKI in Microsoft Intune, you would need at least two configuration profiles: Root CA Configuration Profile: This profile sets up the root certificate authority (CA) in the cloud. It acts as the trust anchor for your PKI hierarchy2. Issuing CA Configuration Profile: This profile creates the issuing CA, which is responsible for issuing the personal user certificates to the devices. These profiles ensure that the PKI infrastructure is properly configured to issue and manage certificates for your devices. https://learn.microsoft.com/en-us/mem/intune/protect/microsoft-cloud-pki-configure-ca
upvoted 3 times
ExamBud
1 month, 1 week ago
You need a third profile to deploy the SCEP or PKCS cert to the user.
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago