
Master 2021 Latest The Questions Level 2: Administrator and Pass Okta-Certified-Administrator Real Exam!
Penetration testers simulate Okta-Certified-Administrator exam PDF
NEW QUESTION 21
On a Windows machine, which is the right behavior if you try to sign into your Okta org and agentless DSSO is properly configured for it?
Solution: You will be automatically redirected to your end user's apps dashboard without entering any credentials
- A. No
- B. Yes
Answer: B
NEW QUESTION 22
Can you map the Okta user ID as an Office 365 Immutable ID?
Solution: Not possible and not intended to be possible as it cannot work like this
- A. No
- B. Yes
Answer: A
NEW QUESTION 23
In order for SAML to work, there is a need of an IDP and an SP and we know that already, but why is it so? Because:
Solution: An SP sends SAML assertions, while the IDP receives and validates them
- A. No
- B. Yes
Answer: A
NEW QUESTION 24
Whenever you make an API call, you will then get back:
Solution: Okta events under '/events' endpoint
- A. No
- B. Yes
Answer: A
NEW QUESTION 25
With Okta you federate the 'Office 365 tenant name' (which is the default Microsoft domain you have) or the 'Office 365 domain'?
Solution: You federate with Okta only the 'Office 365 tenant name'
- A. No
- B. Yes
Answer: A
NEW QUESTION 26
If you want to remove an attribute's value in Okta, for example a value coming from AD that is not useful in any way, you have to:
Solution: Intentionally map a blank value to that specific attribute in the user profile
- A. No
- B. Yes
Answer: B
NEW QUESTION 27
In Okta's KB articles the set of functions under the 'Provisioning' concept are referred to as CRUD. This is a concept you also meet when referring to CRUD APIs. What about its meaning here, in Okta's vision?
Solution: In 'Provisioning', CRUD stands for Create, Read, Update, Delete
- A. No
- B. Yes
Answer: A
NEW QUESTION 28
The SCIM protocol is <response_is_entered_here> for provisioning and managing identity data on the web.
Solution: An application-level SAML protocol
- A. No
- B. Yes
Answer: A
NEW QUESTION 29
How can SAML provision attributes via JIT? Or even create users?
Solution: By including specific information in the assertion
- A. No
- B. Yes
Answer: B
NEW QUESTION 30
As an Okta best-practice / recommendation: Okta encourages you to switch from Integrated Windows Authentication (IWA or DSSO) to agentless Desktop Single Sign-on (ADSSO). Okta is no longer adding new IWA functionality and offers only limited support and bug fixes.
Solution: Both statements are true
- A. No
- B. Yes
Answer: B
NEW QUESTION 31
When using Okta Expression Language, which variable type results out of this Okta Expression? isMemberOfGroup("groupId") Solution: Array
- A. No
- B. Yes
Answer: A
NEW QUESTION 32
In an agentless DSSO (Desktop Single Sign-on) scenario Okta is the one decrypting the Kerberos ticket, finds then the user name, authenticates the user and passes back a session to the browser.
Solution: The statement is entirely valid
- A. No
- B. Yes
Answer: B
NEW QUESTION 33
Regarding Access Request Workflow, when a user requests an app - he can also include a message to the approver. But you can also designate an approver group.
Solution: Both statements are false
- A. No
- B. Yes
Answer: A
NEW QUESTION 34
There might be specific AD attributes, which - apart from others - do not appear in the Okta user profile. Can those extra attributes be mapped and provisioned towards an app?
Solution: Yes, if you map those attributes from AD to Okta and then Okta to App, as an example
- A. No
- B. Yes
Answer: B
NEW QUESTION 35
In Okta's KB articles the set of functions under the 'Provisioning' concept are referred to as CRUD. This is a concept you also meet when referring to CRUD APIs. What about its meaning here, in Okta's vision?
Solution: In 'Provisioning', CRUD stands for Create, Read, Update, Deprovision
- A. No
- B. Yes
Answer: B
NEW QUESTION 36
When does Okta bring LDAP groups into Okta?
Solution: Only during LDAP JIT
- A. No
- B. Yes
Answer: A
NEW QUESTION 37
As an Okta admin, when you implement IWA, you have to know how to successfully test it to see if it's working. For this you:
Solution: Restart AD Domain Controller and go into IIS and see if you have IWA references in there
- A. No
- B. Yes
Answer: A
NEW QUESTION 38
When a user signs out of Okta, if they are using IWA, they'll be redirected to the Sign In page and without inputting credentials they'll be signed back in Solution: Statement is true, but then they'll be displayed a 403 HTTP code (Forbidden)
- A. No
- B. Yes
Answer: A
NEW QUESTION 39
When you are trying to federate (via WS-FED) Office 365 with Okta:
Solution: You can choose to skip importing user groups and group memberships into Okta
- A. No
- B. Yes
Answer: B
NEW QUESTION 40
Whenever you make an API call, you will then get back:
Solution: Response headers
- A. No
- B. Yes
Answer: B
NEW QUESTION 41
Which of the following is / are Okta required attributes?
Solution: sAMAccountName
- A. No
- B. Yes
Answer: A
NEW QUESTION 42
......
Penetration testers simulate Okta-Certified-Administrator exam: https://www.prepawaytest.com/Okta/Okta-Certified-Administrator-practice-exam-dumps.html