Your network contains an Active Directory domain named contoso.com. The domain contains four servers. The servers are configured as shown in the following
table.
You plan to provide users with the ability to use Workplace Join for their personal device when they connect to the internal network.
You need to recommend a certificate configuration for the planned deployment.
What should you include in the recommendation? To answer, select the appropriate names in the answer area.
Hot Area:
Explanation:
Workplace Join client devices will attempt to discover the Device Registration Server by combining the user account name with a well-known Device Registration
server name.
Configuring Device Registration
Correct.
https://blogs.technet.microsoft.com/matthewms/2013/11/01/why-windows-server-2012-r2-step-by-step-workplace-join-bringing-peace-of-mind-for-byod/
—————————–
Configure Active Directory Federation Services
On the AD FS server you will need to enroll the certificate from the article above on configuring your Enterprise CA. When you bring the cert in you will want to make sure you configure it with the follow attributes
Subject Name (CN): adfs1.contoso.com
Subject Alternative Name (DNS): adfs1.contoso.com
Subject Alternative Name (DNS): enterpriseregistration.contoso.com