Weekend Sale - Special 70% Discount Offer - Ends in 1d 17h 53m 6s - Coupon code: 70dumps

ChromeOS-Administrator Questions and Answers

Question # 6

A user reports that their Chrome device has been stolen. What should the administrator do?

A.

Use the Google Admin console to turn on the stolen Chromebook's webcam

B.

Use the Google Android Device Manager to locate the Chromebook

C.

Set the stolen Chromebook lo disabled mode to prevent user sign-ins

D.

Remotely wipe user data from the Chromebook

Full Access
Question # 7

How do you validate Chrome policies on a managed device?

A.

Go to the admin console and look up the policies

B.

Download device logs

C.

In the browser, go to chrome://policy to confirm that the device is receiving both user and device policy

D.

In the browser, go to policy://chrome to confirm that the device is receiving both user and device policy

Full Access
Question # 8

How would you deploy your "Terms of Services" page to all managed ChromeOS devices?

A.

Navigate to "Chrome Verified Access" and enable the policy for content protection

B.

Go to "User & Browser and "Managed Guest Session' settings to upload your terms of service

C.

ln "User & Browser Settings" upload the "Terms of Service" as a wallpaper

D.

Navigate to "User & Browser" and "Managed Guest Session" settings to upload your custom avatar

Full Access
Question # 9

Your organization is using a third-party IdP. Users report that they can only log in to the device when connected to the Internet. Which setting is causing this problem?

A.

Online revocation checks

B.

Single sign-on cookie behavior

C.

SAML single sign-on login frequency

D.

Single sign-on IdP redirection

Full Access
Question # 10

A customer has a mission-critical workload running on ChromeOS and needs devices configured to reduce ChromeOS changes. How can an admin reduce the risk of an unexpected change in an OS update affecting the customer's entire ChromeOS device domain while maintaining security and minimizing admin workload?

A.

Force auto reboot after update

B.

Enable variations

C.

Move to a Long-term Support channel

D.

Add an update rollout plan

Full Access
Question # 11

All of your kiosk devices must update only during certain hours. Which setting is required?

A.

Release channel

B.

Blackout windows

C.

Version pinning

D.

Rollout plan

Full Access
Question # 12

You want to enterprise-enroll a device that has previously been signed in to. What should you do first?

A.

Delete all consumer accounts, and then follow the same steps for enrolling a brand new device

B.

Follow the same steps for enrolling a brand new device

C.

Contact Google support to convert the device into an enterprise device

D.

Wipe the device

Full Access
Question # 13

The security department has been informed that a ChromeOS device was stolen out of an employee's car. What should you do in the Admin console to ensure the device Is rendered Inoperable while still maintaining management of the device?

A.

Tag the ChromeOS device as stolen

B.

Disable the ChromeOS device

C.

Powerwash the ChromeOS device

D.

Deprovision the ChromeOS device

Full Access
Question # 14

How should you generate a custom admin role?

A.

Add user to security admin group

B.

Add user to admin role OU

C.

Create admin role and assign privileges

D.

Set privileges on the user directly

Full Access
Question # 15

You are asked why ChromeOS devices do not require additional antivirus software. How should you respond?

A.

Every time ChromeOS updates, it automatically updates the antivirus software on the device

B.

Every ChromeOS device is pre-installed with antivirus software which automatically updates during the life of the device

C.

As part of a multi-layered security approach ChromeOS uses a read-only operating system which cannot be affected by viruses

D.

The Admin console automatically deploys antivirus software to enrolled ChromeOS devices and is included in the Chrome Enterprise/Education Upgrade

Full Access
Question # 16

Your organization has automatic ChromeOS updates implemented. Your CTO would like to review the documentation on what changes each new version has. How would you assist your CTO in accomplishing this goal?

A.

Have your CTO start a Google Chrome Support ticket

B.

Search YouTube for Chrome Update stories

C.

Open Chrome and enter chrome //updates in the address bar

D.

Direct your CTO to the "Chrome Release Notes Support' page

Full Access
Question # 17

What should you do to activate biometrics unlock for the devices that support it?

A.

Upgrade device license to "Chrome Security Plus"

B.

Buy external USB fingerprint reader

C.

Enable face unlock

D.

Enable fingerprint unlock

Full Access
Question # 18

You are enrolling several devices to send to a remote location. How can you ensure that these devices will automatically connect to the wireless network at the remote location when powered on for the first time?

A.

Add the wireless network credentials to the "Networks" section in the Admin console ensuring that they are applied to the ChromeOS devices By Device

B.

Use the Google Zero-Touch Enrollment (ZTE) process and generate the provisioning token by clicking on the 'Enroll device' button in the Admin console ‘’Devices’’ page

C.

During the enrollment process add the wireless credentials manually to each device in the Admin console ensuring that they are applied to ChromeOS devices By User

D.

Add the wireless network credentials to the 'Networks" section in the Admin console ensuring that they are applied to the ChromeOS devices By User

Full Access
Question # 19

You have been tasked to deploy shared devices using Managed Guest Sessions. Your IT policy requires blocking access to "google.com" at the parent organization. How would you prevent users from accessing "google.com" for all Managed Guest Sessions at the parent organization?

A.

Add "google.com" to "allow insecure content on these sites"

B.

Add "google.com" to "disallowed URLs in content settings"

C.

Add "google.com" to "the blocked URL exceptions"

D.

Add "google.com" to "the list of blocked URLs"

Full Access
Question # 20

As a ChromeOS Administrator, you have been asked to enroll all of your devices into a specific device OU using Zero-Touch Enrollment (ZTE). What are the next steps?

A.

Generate a ZTE pre-provision enrollment token for your specified device OU

B.

Give the company domain name to your Chrome Partner to enable ZTF

C.

Generate a ZTE pre-provision enrollment token directly for your domain root OU

D.

Generate a ZTE pre-provision enrollment token for your specified user OU

E.

Use a dedicated ZTE Admin account for device enrollment

Full Access
Question # 21

What format of certificate encoding is incompatible with ChromeOS devices?

A.

PEM

B.

CER

C.

DER

D.

CRT

Full Access
Question # 22

You have Long-term Support enabled for all devices within a particular OU. How often will these devices receive a feature update?

A.

4 months

B.

6 months

C.

2 months

D.

8 months

Full Access
Question # 23

A ChromeOS Administrator has deployed ChromeOS devices in their organization. How can the company evaluate the compatibility with future updates following Google's best practices while still gaining access to new features when they launch?

A.

Enable "Auto Updates" on all devices on the 'Stable channel*, but let the employees in the IT department run their devices on the "Beta channel* so they have time to evaluate and adapt the environment to each update before it reaches Stable

B.

Disable ‘’Auto Updates’’ on all devices and let the admin test the newest release on the "Stable channel" on their own device before rolling it out organization-wide

C.

Set 5% of the organization across several departments on the 'Beta channel"1, and configure the rest of the fleet to receive auto updates on

the "Stable channel'

D.

Set the entire fleet to update in accordance with the "Long-term Support (LTS) channel"

Full Access
Question # 24

Which feature of the Google Admin console allows you to restrict devices from remembering user passwords?

A.

Password Manager

B.

Security Token Removal

C.

Enrollment Permissions

D.

WebAuthn

Full Access
Question # 25

Your organization's security protocols require you to ensure that any unattended devices log the user out after 24 hours. You have 1000 ChromeOS devices to manage. How would you Implement this with the least amount of admin effort?

A.

Enable the 'User and Browser Settings" and update 'Maximum user session length* to any time up to 24 hours

B.

Create a corporate policy stating (he users are to manually sign out after the end of every shift

C.

You can remotely access each device and sign out of the user account using Chrome Remote Desktop

D.

Force-install a custom app to each device in question that notifies the user that they need to sign out of their device after 24 hours

Full Access
Question # 26

One of the employees of the organization you're managing is leaving, and you want to prepare the device they've been using for adoption by a new user. What is the recommended action you need to take through the Admin console to remove any previous user data from the machine?

A.

Deprovision the device, reset it, and then finally re-enroll it

B.

Enable forced-reenrollment on the device OU and then factory reset the device

C.

Delete the user from the Admin console and powerwash the machine

D.

Select “Reset" on the devices overview page, and then ‘Clear User Profiles."

Full Access
Question # 27

What are the steps to enroll a previously used, non-managed ChromeOS device in your domain?

A.

Reboot the ChromeOS device, and at the login screen, press CTRL+ALT+M to enroll it.

B.

Powerwash the ChromeOS device, complete the out-of-box experience (OOBE), and before signing in, press CTRL+ALT+E to enroll it.

C.

Use the Chrome Recovery Utility with a USB Flash drive to reimage the device's OS. Then, after completing the OOBE, press CTRL+ALT+M to enroll the Chromebook.

D.

Switch the ChromeOS device to developer mode, wipe the device, and switch back to normal mode. Then, after completing the OOBE, press CTRL+ALT+E to enroll the ChromeOS device.

Full Access
Question # 28

You have found a possible security issue with an app that your users are using. The severity of this issue requires you to quickly see who is using this app. You have enabled the Chrome Reporting setting. What is the most efficient way to see what users are using the app?

A.

Under "Reports" -> "Token", download the entire results and place those results into a Google Sheet. Search for the app and note who is using it.

B.

Under "Security" -> "Access" and "Data Control" -> "API Controls", select "Manage third-party apps access". After the list of connected apps appears, you can now search for the app in question.

C.

Under "Devices" -> "Chrome" -> "Reports", use the "Apps and Extension" report to show all used apps in your domain. Click the app in question to get the list of devices that are using the app.

D.

Under "Devices" -> "Chrome" -> "Devices" you can manually check each device. Select the device in question, click "Remote Desktop" and audit the device.

Full Access
Question # 29

Your security department wants to mitigate the risk of data loss in the case of stolen equipment. As a ChromeOS Administrator, you want to ensure that your ChromeOS devices will be able to stay enterprise-managed. What should you do?

A.

Add a disabled device return instruction message.

B.

Enable the Autocomplete domain feature.

C.

Force devices to automatically re-enroll after wiping.

D.

Allow users into your organization to enroll new or re-enroll existing devices.

Full Access
Question # 30

To allow remote users to securely connect to an internal network, the organization you're supporting is using a VPN. The organization would like you to configure the ChromeOS devices so that the Android VPN clients deployed are automatically configured with the correct hostname. How should you configure this in the Admin Console according to Google best practice?

A.

Download the Android app on a ChromeOS device, add the hostname manually then re-upload the app in the organization's private Google Play Store and deploy it lo all ChromeOS devices

B.

Contact the VPN provider and ask them to provide you with a custom installable client with the correct configuration pre-configured Then deploy that installable

C.

Add a managed configuration using JSON to the Android app

D.

Upload a JSON file with the configuration into the Google Play Store

Full Access
Question # 31

Which management feature makes ChromeOS devices a popular choice for IT administrators in educational organizations and enterprises?

A.

Inability to remotely control and monitor devices

B.

Centralized management through Admin console

C.

Remote BIOS controls and firmware update

D.

Secure management through on-prem infrastructure

Full Access
Question # 32

How many copies of ChromeOS does a ChromeOS device maintain at any given time?

A.

1

B.

4

C.

3

D.

2

Full Access
Question # 33

A school wants all new Chromebooks to be enrolled through zero-touch enrollment (ZTE) in their parent organization unit. An admin needs to create tokens.

Where will the admin go to generate the enrollment tokens for Chromebooks?

A.

Devices > Chrome > Enroll

B.

Devices > Chrome > Connectors

C.

Devices > Chrome > Settings

D.

Devices > Chrome > Devices > Enroll

Full Access
Question # 34

Your organization has automatic ChromeOS updates implemented. Your CTO would like to review the documentation on what changes each new version has. How would you assist your CTO in accomplishing this goal?

A.

Open Chrome and enter chrome://updates in the address bar

B.

Search YouTube for Chrome Update stories

C.

Direct your CTO to the “Chrome Release Notes Support" page

D.

Have your CTO start a Google Chrome Support ticket

Full Access
Question # 35

Your hardware OEM issues a recall for a safety issue. You need to deprovision devices from management before returning to the OEM. They will replace your existing ChromeOS devices with a different model. Which option should you choose when deprovisioning to make sure you can reuse your Chrome Education/Enterprise Upgrade and remain compliant?

A.

Retiring from fleet

B.

Different model replacement

C.

ChromeOS Flex upgrade transfer

D.

Same model replacement

Full Access