質問 1:Refer to the exhibit.
Outfitters (NTO) is using Experience Cloud as an Identity for its application on Heroku. The application on Heroku should be able to handle two brands, Northern Trail Shoes and Northern Trail Shirts.
A user should select either of the two brands in Heroku before logging into the community. The app then performs Authorization using OAuth2.0 with the Salesforce Experience Cloud site.
NTO wants to make sure it renders login page images dynamically based on the user's brand preference selected in Heroku before Authorization.
what should an identity architect do to fulfill the above requirements?
A. Authorize third-party service by sending authorization requests to the community-url/services/oauth2/authorize/cookie_value.
B. For each brand create different communities and redirect users to the appropriate community using a custom Login controller written in Apex.
C. Create multiple login screens using Experience Builder and use Login Flows at runtime to route to different login screens.
D. Authorize third-party service by sending authorization requests to the community-url/services/oauth2/authonze/expid_value.
正解:D
解説: (Topexam メンバーにのみ表示されます)
質問 2:Universal containers (UC) is concerned that having a self-registration page will provide a means for "bots" or unintended audiences to create user records, thereby consuming licences and adding dirty data. Which two actions should UC take to prevent unauthorised form submissions during the self-registration process? Choose
2 answers
A. Use hidden fields populated via java script events in the self-registration page.
B. Use open-ended security questions and complex password requirements
C. Primarily use lookup and picklist fields on the self registration page.
D. Require a captcha at the end of the self-registration process.
正解:A,D
解説: (Topexam メンバーにのみ表示されます)
質問 3:Universal containers (UC) built a customer Community for customers to buy products, review orders, and manage their accounts. UC has provided three different options for customers to log in to the customer Community: salesforce, Google, and Facebook. Which two role combinations are represented by the systems in the scenario? Choose 2 answers
A. Facebook is the service provider and salesforce is the identity provider
B. Salesforce is the service provider and Facebook is the identity provider
C. Salesforce is the service provider and Google is the identity provider
D. Google is the service provider and Facebook is the identity provider
正解:B,C
解説: (Topexam メンバーにのみ表示されます)
質問 4:In an SP-Initiated SAML SSO setup where the user tries to access a resource on the Service Provider, What HTTP param should be used when submitting a SAML Request to the Idp to ensure the user is returned to the intended resourse after authentication?
A. RelayState
B. DisplayState
C. RedirectURL
D. StartURL
正解:A
解説: (Topexam メンバーにのみ表示されます)
質問 5:Northern Trail Outfitters (NTO) uses Salesforce Experience Cloud sites (previously known as Customer Community) to provide a digital portal where customers can login using their Google account.
NTO would like to automatically create a case record for first time users logging into Salesforce Experience Cloud.
What should an Identity architect do to fulfill the requirement?
A. Create an authentication provider for Social Login using Google and leverage standard registration handler.
B. Implement a Just-in-Time handler class that has logic to create cases upon first login.
C. Implement a login flow with a record create component for Case.
D. Configure an authentication provider for Social Login using Google and a custom registration handler.
正解:C
解説: (Topexam メンバーにのみ表示されます)
質問 6:A company's external application is protected by Salesforce through OAuth. The identity architect for the project needs to limit the level of access to the data of the protected resource in a flexible way.
What should be done to improve security?
A. Select "Admin approved users are pre-authorized" and assign specific profiles.
B. Leverage external objects and data classification policies.
C. Create custom scopes and assign to the connected app.
D. Define a permission set that grants access to the app and assign to authorized users.
正解:C
解説: (Topexam メンバーにのみ表示されます)
弊社は失敗したら全額で返金することを承諾します
我々は弊社のIdentity-and-Access-Management-Architect問題集に自信を持っていますから、試験に失敗したら返金する承諾をします。我々のSalesforce Identity-and-Access-Management-Architectを利用して君は試験に合格できると信じています。もし試験に失敗したら、我々は君の支払ったお金を君に全額で返して、君の試験の失敗する経済損失を減少します。
弊社のSalesforce Identity-and-Access-Management-Architectを利用すれば試験に合格できます
弊社のSalesforce Identity-and-Access-Management-Architectは専門家たちが長年の経験を通して最新のシラバスに従って研究し出した勉強資料です。弊社はIdentity-and-Access-Management-Architect問題集の質問と答えが間違いないのを保証いたします。
この問題集は過去のデータから分析して作成されて、カバー率が高くて、受験者としてのあなたを助けて時間とお金を節約して試験に合格する通過率を高めます。我々の問題集は的中率が高くて、100%の合格率を保証します。我々の高質量のSalesforce Identity-and-Access-Management-Architectを利用すれば、君は一回で試験に合格できます。
安全的な支払方式を利用しています
Credit Cardは今まで全世界の一番安全の支払方式です。少数の手続きの費用かかる必要がありますとはいえ、保障があります。お客様の利益を保障するために、弊社のIdentity-and-Access-Management-Architect問題集は全部Credit Cardで支払われることができます。
領収書について:社名入りの領収書が必要な場合、メールで社名に記入していただき送信してください。弊社はPDF版の領収書を提供いたします。
TopExamは君にIdentity-and-Access-Management-Architectの問題集を提供して、あなたの試験への復習にヘルプを提供して、君に難しい専門知識を楽に勉強させます。TopExamは君の試験への合格を期待しています。
一年間の無料更新サービスを提供します
君が弊社のSalesforce Identity-and-Access-Management-Architectをご購入になってから、我々の承諾する一年間の更新サービスが無料で得られています。弊社の専門家たちは毎日更新状態を検査していますから、この一年間、更新されたら、弊社は更新されたSalesforce Identity-and-Access-Management-Architectをお客様のメールアドレスにお送りいたします。だから、お客様はいつもタイムリーに更新の通知を受けることができます。我々は購入した一年間でお客様がずっと最新版のSalesforce Identity-and-Access-Management-Architectを持っていることを保証します。
Salesforce Identity-and-Access-Management-Architect 認定試験の出題範囲:
トピック | 出題範囲 |
---|
トピック 1 | - Access Management Best Practices: This topic covers methods of multi-factor authentication (MFA), assigning roles, profiles, and permission sets during SSO, auditing and verifying activity post-login, and configuring settings for a Connected App.
|
トピック 2 | - Salesforce as an Identity Provider: In this topic, you'll find information on OAuth flows, configuring Connected Apps for authorization, and implementation concepts of OAuth. It also recommends Salesforce technologies to provide identity to third-party systems.
|
トピック 3 | - Accepting Third-Party Identity in Salesforce: It discusses cases where Salesforce acts as a Service Provider (SP), methods for provisioning users from identity stores (B2E, B2C), appropriate authentication mechanisms for accepting third-party identities, and ways to provision users to enable SSO while applying access rights. Moreover, the topic also addresses auditing, monitoring approaches, and tools to diagnose IdP issues.
|
トピック 4 | - Community (Partner and Customer): Here, you'll find details on customizing user experiences in Experience Cloud, supporting external IdPs in communities, understanding External Identity solutions and associated licenses, and when to use embedded login based on different scenarios.
|
参照:https://trailhead.salesforce.com/help?article=Salesforce-Certified-Identity-and-Access-Management-Architect-Exam-Guide
弊社は無料Salesforce Identity-and-Access-Management-Architectサンプルを提供します
お客様は問題集を購入する時、問題集の質量を心配するかもしれませんが、我々はこのことを解決するために、お客様に無料Identity-and-Access-Management-Architectサンプルを提供いたします。そうすると、お客様は購入する前にサンプルをダウンロードしてやってみることができます。君はこのIdentity-and-Access-Management-Architect問題集は自分に適するかどうか判断して購入を決めることができます。
Identity-and-Access-Management-Architect試験ツール:あなたの訓練に便利をもたらすために、あなたは自分のペースによって複数のパソコンで設置できます。