Microsoft Endpoint Administrator
Updated 28-Apr-2026
You have a Microsoft 365 subscription that uses Microsoft Intune Suite.You use Microsoft Intune to manage devices.You use Windows Autopilot to deploy Windows 11 to devices.A support engineer reports that when a deployment fails, they cannot collect deployment logs from failed device.You need to ensure that when a deployment fails, the deployment logs can be collected.What should you configure?
Answer(s): C
Troubleshooting the Enrollment Status PageTo troubleshoot ESP issues, it's important to get more information about the ESP settings that are received by the device, and the applications and policies that are tracked at each stage. All ESP settings and tracking information are logged in the device registry.Collect logsYou can enable the ability for users to collect ESP logs in the ESP policy. When a timeout occurs in the ESP, the user can select the option to Collect logs.Note: Windows Autopilot diagnostics pageOn Windows 11, you can open the Autopilot diagnostic page to view additional detailed troubleshooting information about the Autopilot provisioning process. To enable the Autopilot diagnostics page:1. Go to the ESP profile where the Autopilot diagnostics page needs to be enabled.2. Make sure that Show app and profile configuration progress is selected to Yes.3. Make sure that Turn on log collection and diagnostics page for end users is selected to Yes.
https://learn.microsoft.com/en-us/troubleshoot/mem/intune/device-enrollment/understand-troubleshoot-esp
You have a Windows 11 capable device named Device1 that runs the 64-bit version of Windows 10 Enterprise and has Microsoft Office 2019 installed.You have the Windows 11 Enterprise images shown in the following table.Which images can be used to perform an in-place upgrade of Device1?
Answer(s): B
How to Perform an In-Place Upgrade on Windows 11.To perform an in-place upgrade, you need to do two things. Firstly, you need to download the latest Windows 11 ISO file. Then, you need to run the setup from the ISO file, pick the appropriate in-place upgrade option, and proceed.1. Download the Windows 11 ISO Image FileFirst of all, you need to grab the Windows 11 ISO image file. If you don't already have one on hand, check out how to download a Windows ISO without the Media Creation tool for some easy methods.2. Perform an In-Place Upgrade Using the Windows11 ISO Image File Etc.
https://www.makeuseof.com/in-place-upgrade-windows-11/
HOTSPOT (Drag and Drop is not supported)You have a Microsoft 365 subscription that uses Microsoft Intune Suite.Your network contains an on-premises Active Directory Domain Services (AD DS) domain that syncs with a Microsoft Entra tenant by using Microsoft Entra Connect.You use Microsoft Intune and Configuration Manager to manage devices.You need to recommend a deployment plan for new Windows 11 devices. The solution must meet the following requirements:Devices for the marketing department must be joined to the AD DS domain only. The IT department willinstall complex applications on the devices at build time, before giving the devices to the marketing department users.Devices for the sales department must be Microsoft Entra joined. The devices will be shipped directly fromthe manufacturer to the homes of the sales department users.Administrative effort must be minimized.Which deployment method should you recommend for each department? To answer, select the appropriate options in the answer area.Note: Each correct selection is worth point.Hot Area:
Answer(s): A
Box 1: Windows Autopilot with OEM registrationDevices for the sales department must be Azure AD joined. The devices will be shipped directly from the manufacturer to the homes of the sales department users.Administrative effort must be minimized.When you purchase devices from an OEM, that OEM can automatically register the devices with the Windows Autopilot.Box 2: Configuration ManagerDevices for the marketing department must be joined to the AD DS domain only. The IT department will install complex applications on the devices at build time, before giving the devices to the marketing department users.Configuration Manager is part of the Microsoft Intune family of products.The Microsoft Intune family of products is an integrated solution for managing all of your devices. Microsoft brings together Configuration Manager and Intune, without a complex migration, and with simplified licensing.Configuration Manager also uses:* Active Directory Domain Services and Azure Active Directory for security, service location, configuration, and to discover the users and devices that you want to manage.Software Center is an application that's installed when you install the Configuration Manager client on a Windows device. Users use Software Center to request and install software that you deploy. Software Center lets users do the following actions:Browse for and install applications, software updates, and new OS versions View their software request historyView device compliance against your organization's policiesYou can also show custom tabs in Software Center to meet additional business requirements.
https://learn.microsoft.com/en-us/mem/autopilot/oem-registration https://learn.microsoft.com/en-us/mem/configmgr/core/understand/introduction
You have a Microsoft Deployment Toolkit (MDT) deployment share named DS1.In the Out-of-Box Drivers node, you create folders that contain drivers for different hardware models.You need to configure the Inject Drivers MDT task to use PnP detection to install the drivers for one of the hardware models.What should you do first?
By default, MDT adds any storage and network drivers that you import to the boot images. However, you should add only the drivers that are necessary to the boot image. You can control which drivers are added by using selection profiles.
https://docs.microsoft.com/en-us/windows/deployment/deploy-windows-mdt/deploy-a-windows-10-image-using- mdt
You have an on-premises server named Server1 that hosts a Microsoft Deployment Toolkit (MDT) deployment share named MDT1.You need to ensure that MDT1 supports multicast deployments.What should you install on Server1?
Multicast requires that Windows Deployment Services (WDS) is running on Windows Server 2008 or later.
https://learn.microsoft.com/en-us/windows/deployment/deploy-windows-mdt/deploy-a-windows-10-image- using-mdt
Your company standardizes on Windows 10 Enterprise for all users.Some users purchase their own computer from a retail store. The computers run Windows 10 Pro.You need to recommend a solution to upgrade the computers to Windows 10 Enterprise, join the computers to Microsoft Entra, and install several Microsoft Store apps. The solution must meet the following requirements:Ensure that any applications installed by the users are retained.Minimize user intervention.What is the best recommendation to achieve the goal? More than one answer choice may achieve the goal.Select the BEST answer.
You use Windows Configuration Designer to create a provisioning package (.ppkg) that contains customization settings. You can apply the provisioning package to a device running Windows 10.Incorrect Answers:A: Windows Autopilot is a user-driven mode designed to minimize intervention of the IT administrator.B: Microsoft Deployment Toolkit (MDT) allows you to automate the deployment of Windows operating systems in your organization. It is not used to upgrade to Windows 10 Enterprise.D: Windows Deployment Services (WDS) is the revised version of Remote Installation Services (RIS). WDS enables the deployment of Windows operating systems. You can use it to set up new computers using network-based installations. It is not used to upgrade to Windows 10 Enterprise.
https://docs.microsoft.com/en-us/windows/deployment/upgrade/windows-10-edition-upgrades https://docs.microsoft.com/en-us/windows/configuration/provisioning-packages/provisioning-create-package
Your network contains an Active Directory domain named contoso.com. The domain contains two computers named Computer1 and Computer2 that run Windows 10.On Computer1, you need to run the Invoke-Command cmdlet to execute several PowerShell commands on Computer2.What should you do first?
https://docs.microsoft.com/en-us/powershell/module/microsoft.powershell.core/enable-psremoting
You have a Microsoft Entra tenant that contains the devices shown in the following table.Which devices can be activated by using subscription activation?
Windows subscription activationThe subscription activation feature enables you to "step-up" from Windows Pro edition to Enterprise or Education editions. You can use this feature if you're subscribed to Windows Enterprise E3 or E5 licenses.Subscription activation also supports step-up from Windows Pro Education edition to Education edition.Devices must be Microsoft Entra joined or Microsoft Entra hybrid joined. Workgroup-joined or Microsoft Entra registered devices aren't
https://learn.microsoft.com/en-us/windows/deployment/windows-10-subscription-activation
Share your comments for Microsoft MD-102 exam with other users:
AI Tutor Explanation 4/29/2026 5:25:25 AM
Question 1: Correct answer: C. Extract the hardware ID information of each computer to a CSV file and upload the file from the Microsoft Intune admin center. Why this is correct
AI Tutor Explanation 4/29/2026 5:23:14 AM
Question 5: Correct answer: A. User4 and User1 only Why this is correct: - The Automatic Enrollment setting in Intune has MDM user scope: GroupA. Only users in GroupA can enroll devices via MDM auto-enrollment. - Device6 will be enrolled via Windows Autopilot and Intune, so enrollment is allowed only for users in GroupA. - Based on the group memberships in the scenario, User4 and User1 are in GroupA, while User2 and User3 are not. Therefore only User4 and User1 can enroll Device6. Quick tip for the exam: - Remember: MDM user scope determines who can auto-enroll devices; MAM scope controls app protection enrollment. When a new Autopilot device is enrolled, the signing-in user must be in the MDM scope.
AI Tutor Explanation 4/29/2026 5:17:10 AM
Why this is correct Correct answer: C. Extract the hardware ID information of each computer to a CSV file and upload the file from the Microsoft Intune admin center. Why this is correct: - Windows Autopilot requires devices to be registered by their hardware IDs (hash) before Autopilot can deploy Windows 10 Enterprise. - Collect the hardware IDs from the new Phoenix machines, save them in a CSV, and upload that CSV in the Intune/Windows Autopilot area. This maps each device to an Autopilot deployment profile. - After registration, you can assign Autopilot profiles (Windows 10 Enterprise, etc.). Other options (serial number CSV, generalizing, or Mobility settings) are not the initial Autopilot registration steps.