Summer Sale Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: ecus65

Google ChromeOS-Administrator - Professional ChromeOS Administrator Exam

Page: 2 / 4
Total 117 questions

You want users to sign in to ChromeOS devices via SAML Single Sign-On and be able to access websites and cloud services that rely on the same identity provider without having to re-enter credentials. How should you configure SAML?

A.

Enable SAML identity provider-initialed login for Google authentication

B.

Enable SAML-based Single Sign-On for ChromeOS devices and set the Single Sign-On cookie behavior to enable transfer of SAML SSO cookies into user sessions during login

C.

Enable SAML-based Single Sign-On for each application via Chrome App Management

D.

Use Chrome App Builder to enable SSO for application and force-install the application using ChromeOS user policies

You are tasked with reducing the risk of a breach of your organization's identities. What should you do to minimize the risk?

A.

Connect your LDAP

B.

Configure individual Google Accounts

C.

Set up Single Sign-On (SSO)

D.

Set up Client-side encryption

Your organization has automatic ChromeOS updates implemented. Your CTO would like to review the documentation on what changes each new version has. How would you assist your CTO in accomplishing this goal?

A.

Have your CTO start a Google Chrome Support ticket

B.

Search YouTube for Chrome Update stories

C.

Open Chrome and enter chrome //updates in the address bar

D.

Direct your CTO to the "Chrome Release Notes Support' page

Due to security threats, your security team would like to immediately prevent any apps on a ChromeOS device from being able to use USB devices. How can you as the admin implement this security practice as quickly and efficiently as possible?

A.

Create an allowlist and add apps that do not need USB permissions

B.

Create a blocklist and add apps that use USB permissions

C.

Create a blocklist, add apps that use USB permissions, and allow users to 'request' apps that are not approved

D.

Block apps by using the "Block apps by permissions settings" which will allow you to select "USB" as permission type to block

You need to create a recovery image on a USB stick. Which two steps should you take?

(Choose 2 answers)

A.

Go to google.com/chromebooks

B.

Install Chrome Recovery Utility and download the image for the correct device model to a USB stick.

C.

Go to Chrome Web Store on a Chrome device

D.

Go to Google Play store

E.

Go to Device Settings.

What should an administrator do to view the number and type of ChromeOS upgrades purchased and in use by their domain?

A.

Verify upgrades on devices page

B.

Check subscriptions in billing

C.

Contact partner to verify

D.

Check reports page for upgrades

The finance team for an organization buys a new printer to print sensitive documents without using the main office printer. How should you automatically configure the printer for finance team users?

A.

Deploy correct drivers to the finance devices

B.

Deploy the printer via Groups

C.

Add the printer directly to the user

D.

Plug the new printer directly into the router

You want to enterprise-enroll a device that has previously been signed in to. What should you do first?

A.

Delete all consumer accounts, and then follow the same steps for enrolling a brand new device

B.

Follow the same steps for enrolling a brand new device

C.

Contact Google support to convert the device into an enterprise device

D.

Wipe the device

An admin is setting up third-party SSO for their organization as the super admin. When they test with their account, they do not see the SSO screen.

What is causing this behavior?

A.

SSO settings are misconfigured

B.

The account is in the wrong OrgUnit

C.

Third-party SSO is not enabled

D.

Super admin bypassed the thud-patty

You are enrolling several devices to send to a remote location. How can you ensure that these devices will automatically connect to the wireless network at the remote location when powered on for the first time?

A.

Add the wireless network credentials to the "Networks" section in the Admin console ensuring that they are applied to the ChromeOS devices By Device

B.

Use the Google Zero-Touch Enrollment (ZTE) process and generate the provisioning token by clicking on the 'Enroll device' button in the Admin console ‘’Devices’’ page

C.

During the enrollment process add the wireless credentials manually to each device in the Admin console ensuring that they are applied to ChromeOS devices By User

D.

Add the wireless network credentials to the 'Networks" section in the Admin console ensuring that they are applied to the ChromeOS devices By User