Free CERTIFIED-IDENTITY-AND-ACCESS-MANAGEMENT-DESIGNER Salesforce CERTIFIED-IDENTITY-AND-ACCESS-MANAGEMENT-DESIGNER Practice Test Question

Loading demo links...

Showing 1–3 of 4 questions

Question 1 (Topic 1)

Universal Containers (UC) is setting up delegated authentication to allow employees to log in using their corporate credentials. UC's security team is concerned about the risks of exposing the corporate login service on the internet and has asked that a reliable trust mechanism be put in place between the login service and Salesforce. What mechanism should an Architect put in place to enable a trusted connection between the login service and Salesforce?

Select an option, then click Submit answer.

  • Require the use of Salesforce security tokens on passwords.
  • Enforce mutual authentication between systems using SSL.
  • Set up a proxy service for the login service in the DMZ.
  • Include Client Id and Client Secret in the login header callout.
Question 2 (Topic 1)

Universal Containers (UC) has decided to use Salesforce as an Identity Provider for multiple external applications. UC wants to use the Salesforce App Launcher to control the apps that are available to individual users. Which three steps are required to make this happen? (Choose three.)

Select an option, then click Submit answer.

  • Add each Connected App to the App Launcher with a Start URL.
  • Create a Connected App for each external application.
  • Set up Salesforce as a SAML IdP with My Domain.
  • Set up Identity Connect to synchronize user data.
  • Set up an Auth Provider for each external application.
Question 3 (Topic 1)

An Architect needs to set up a Facebook Authentication provider as a login option for a Salesforce Customer Community. What portion of the authentication provider setup associates a Facebook user with a Salesforce user?

Select an option, then click Submit answer.

  • Apex Registration Handler
  • Federation ID
  • Consumer Key and Consumer Secret
  • User Info Endpoint URL