FC0-U71 Applications and Software Practice Question
A technician must install a critical security update on 150 Windows 11 computers overnight without visiting each desk. The update is distributed as an .msi package, and the organization already uses Active Directory Domain Services. Which method should the technician use?
⚠ Common exam trap
The trap here is assuming any centralized Microsoft update tool can deploy a custom .msi, when Windows Update for Business only distributes Microsoft-authored updates.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Group Policy software installation
Group Policy software installation is the built-in Active Directory mechanism for silently deploying .msi packages to many domain-joined computers at once. Manual USB installation requires physical access, the Microsoft Store only handles Store apps, and Windows Update for Business only manages Microsoft updates, so Group Policy is the only method that meets all constraints.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
Windows Update for Business
Why it's wrong here
Windows Update for Business manages Microsoft-sourced quality and feature updates, not third-party or custom .msi packages. It cannot deploy an arbitrary security update the organization received separately. While it is centralized, it does not accept .msi files, so it cannot fulfill the deployment described in the scenario.
- ✗
Microsoft Store automatic updates
Why it's wrong here
Microsoft Store updates apply only to Store-distributed applications, not to arbitrary .msi packages provided by the organization. A custom security update would not be published through the Store, so this method cannot deliver the required package. It also offers no administrative control over a specific .msi file.
- ✗
Manual installation from a USB drive
Why it's wrong here
Manually installing from a USB drive requires visiting each computer, which directly violates the requirement to avoid desk visits. It also scales poorly to 150 machines and risks inconsistent versions. Although it works technically, it fails the scenario's central constraint of centralized, unattended deployment.
- ✓
Group Policy software installation
Why this is correct
Group Policy can deploy .msi packages to domain-joined computers at startup or to users at logon, which matches the requirement to update 150 machines without desk visits. Because Active Directory is already in place, this is the native, centralized method for silent .msi deployment, making it the correct choice.
Go deeper
Related to this question
About these practice questions
This FC0-U71 question is part of Courseiva's 988-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official CompTIA exam blueprint
This FC0-U71 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the FC0-U71 exam.