DRAG DROP
Your network contains an Active Directory domain named contoso.com.
You need to ensure that third-party devices can use Workplace Join to access domain
resources on the Internet.
Which four actions should you perform in sequence?
To answer, move the appropriate four actions from the list of actions to the answer area and
arrange them in the correct order.
Which four actions should you perform in sequence?
DRAG DROP
Your network contains an Active Directory domain named contoso.com.
You need to ensure that third-party devices can use Workplace Join to access domain
resources on the Internet.
Which four actions should you perform in sequence?
To answer, move the appropriate four actions from the list of actions to the answer area and
arrange them in the correct order.
i think the answer should be:
1. Install a Certificate from a trusted 3rd party CA
2. Install and config ADFS
3. Enable the Device Registration Service.
4. Install and config a Web Application Proxy.
http://blogs.technet.com/b/keithmayer/archive/2013/11/08/why-r2-step-by-step-solve-byod-challenges-with-workplace-join.aspx
+1
I agree.
https://technet.microsoft.com/en-us/library/dn303423.aspx
Step 1: Join a Computer to a Domain
Step 2: Enroll an SSL Certificate for AD FS
Step 3: Install the AD FS Role Service
Step 4: Configure a Federation Server
Step 5: Configure a federation server with Device Registration Service
Step 6: Add a Host (A) and Alias (CNAME) Resource Record to Corporate DNS for the Federation Service and DRS
Step 7: Verify That a Federation Server Is Operational
Step 8: Deploy the Web Application Proxy
Finally, this gif, https://i-technet.sec.s-msft.com/dynimg/IC707919.gif, from https://technet.microsoft.com/en-us/library/dn550982.aspx, shows that Web App Proxy is needed for Workplace Join from the Internet.
I think the answer should be:
1. Install and config ADFS
2. Install and config a Web Application Proxy
3. Install a Certificate from a trusted 3rd party CA
4. Enable the Device Registration Service
this link describes the setup of a leb environment where the certificate is installed before AD FS is installed: https://technet.microsoft.com/en-us/library/dn280939.aspx
this link for 70-413 exam describes that you must perform an additional step when the web application proxy is installed BEFORE DRS is enabled:
https://books.google.nl/books?id=mZLqAwAAQBAJ&pg=PA153&lpg=PA153&dq=device+registration+service+web+application+proxy&source=bl&ots=hPBzUmlX83&sig=7nVHCaJy8mnwoz_qyNww3npIExw&hl=nl&sa=X&ei=RAoLVcyxCbLY7AbP8YGACA&ved=0CFwQ6AEwBw#v=onepage&q=device%20registration%20service%20web%20application%20proxy&f=false
1) install SSL certificate
2) install and configure AD FS
3) enable device registration service
4) web application proxy