Question 26
You have a Windows Virtual Desktop deployment.
You need to ensure that all the connections to the managed resources in the host pool require multi-factor authentication (MFA).
Which two settings should you modify in a conditional access policy? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

You need to ensure that all the connections to the managed resources in the host pool require multi-factor authentication (MFA).
Which two settings should you modify in a conditional access policy? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Question 27
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have the following:
A Microsoft 365 E5 tenant
An on-premises Active Directory domain
A hybrid Azure Active Directory (Azure AD) tenant
An Azure Active Directory Domain Services (Azure AD DS) managed domain
An Azure Virtual Desktop deployment
The Azure Virtual Desktop deployment contains personal desktops that are hybrid joined to the on-premises domain and enrolled in Microsoft Intune.
You need to configure the security settings for the Microsoft Edge browsers on the personal desktops.
Solution: You create and configure a Group Policy Object (GPO) in the on-premises domain.
Does this meet the goal?
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have the following:
A Microsoft 365 E5 tenant
An on-premises Active Directory domain
A hybrid Azure Active Directory (Azure AD) tenant
An Azure Active Directory Domain Services (Azure AD DS) managed domain
An Azure Virtual Desktop deployment
The Azure Virtual Desktop deployment contains personal desktops that are hybrid joined to the on-premises domain and enrolled in Microsoft Intune.
You need to configure the security settings for the Microsoft Edge browsers on the personal desktops.
Solution: You create and configure a Group Policy Object (GPO) in the on-premises domain.
Does this meet the goal?
Question 28
You are automating the deployment of an Azure Virtual Desktop host pool.
You deploy the Azure Resource Manager (ARM) template shown in the following exhibit.

Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the Dockerfile.
NOTE: Each correct selection is worth one point.

You deploy the Azure Resource Manager (ARM) template shown in the following exhibit.

Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the Dockerfile.
NOTE: Each correct selection is worth one point.

Question 29
You have a Windows Virtual Desktop deployment.
Many users have iOS devices that have the Remote Desktop Mobile app installed.
You need to ensure that the users can connect to the feed URL by using email discovery instead of entering the feed URL manually.
How should you configure the _msradc DNS record? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Many users have iOS devices that have the Remote Desktop Mobile app installed.
You need to ensure that the users can connect to the feed URL by using email discovery instead of entering the feed URL manually.
How should you configure the _msradc DNS record? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.

Question 30
You have a Azure Virtual Desktop host pool that contains live session hosts. The session hosts run Windows
10 Enterprise multi-session.
You need to prevent users from accessing the internet from Azure Virtual Desktop sessions. The session hosts must be allowed to access all the required Microsoft services.
Solution: You configure the RDP Properties of the host pool.
Does This meet the goal?
10 Enterprise multi-session.
You need to prevent users from accessing the internet from Azure Virtual Desktop sessions. The session hosts must be allowed to access all the required Microsoft services.
Solution: You configure the RDP Properties of the host pool.
Does This meet the goal?




