Question 61

Northern Trail Outfitters (NTO) recently purchased Salesforce Identity Connect to streamline user provisioning across Microsoft Active Directory (AD) and Salesforce Sales Cloud.
NTO has asked an identity architect to identify which salesforce security configurations can map to AD permissions.
Which three Salesforce permissions are available to map to AD permissions?
Choose 3 answers
  • Question 62

    Universal Containers wants to set up SSO for a selected group of users to access external applications from Salesforce through App Launcher.
    Which three steps must be completed in Salesforce to accomplish the goal? (Choose three.)
  • Question 63

    Northern Trail Outfitters would like to use a portal built on Salesforce Experience Cloud for customer self-service. Guests of the portal be able to self-register, but be unable to automatically be assigned to a contact record until verified. External Identity licenses have bee purchased for the project.
    After registered guests complete an onboarding process, a flow will create the appropriate account and contact records for the user.
    Which three steps should an identity architect follow to implement the outlined requirements?
    Choose 3 answers
  • Question 64

    A real estate company wants to provide its customers a digital space to design their interior decoration options. To simplify the registration to gain access to the community site (built in Experience Cloud), the CTO has requested that the IT/Development team provide the option for customers to use their existing social-media credentials to register and access.
    The IT lead has approached the Salesforce Identity and Access Management (IAM) architect for technical direction on implementing the social sign-on (for Facebook, Twitter, and a new provider that supports standard OpenID Connect (OIDC)).
    Which two recommendations should the Salesforce IAM architect make to the IT Lead?
    Choose 2 answers
  • Question 65

    Universal Containers (UC) wants its users to access Salesforce and other SSO-enabled applications from a custom web page that UC magnets. UC wants its users to use the same set of credentials to access each of the applications. what SAML SSO flow should an Architect recommend for UC?