Courseiva
Manage applications →hardMultiple Choice

MD-102 Manage applications Practice Question

An organization uses Microsoft Intune for Windows 10 device management. They need to deploy a custom Windows app (.exe) to kiosk devices. The app requires admin privileges to install, and the devices are shared. Which deployment method should be used?

⚠ Common exam trap

Candidates often confuse 'device context' with 'system context', not realizing that LOB apps cannot handle .exe files and that 'available' assignments run in user context, which fails for admin-required installs on shared devices.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

Use a Win32 app with install context set to 'system'.

Win32 apps in Microsoft Intune can be configured with the install context set to 'system', which grants the necessary admin privileges for installation and ensures the app is installed for all users on shared kiosk devices. This method uses the Intune Management Extension to run the installer with SYSTEM account privileges, bypassing user-level restrictions and supporting per-machine installations.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✓

    Use a Win32 app with install context set to 'system'.

    Why this is correct

    Win32 apps with install context set to system run the installer as SYSTEM, granting the admin privileges needed for installation on shared kiosk devices. This satisfies the requirement for privileged installation on shared Windows 10 devices.

  • ✗

    Assign the app as 'available' for user-install.

    Why it's wrong here

    'Available' user-install lets standard users trigger installation themselves, but the app needs admin privileges and kiosk users are shared, so installation fails or exposes credentials. It is tempting because available assignments suit optional apps for licensed users, and would be correct for per-user apps not requiring elevation.

  • ✗

    Deploy as a line-of-business app with device context.

    Why it's wrong here

    Line-of-business apps with device context install without user interaction, but they cannot elevate to admin, so a custom .exe requiring admin rights fails. It is tempting because device context suits shared kiosks, yet Win32 apps needing elevation must be packaged as Win32 (Intune Management Extension) apps instead.

  • ✗

    Package as a Microsoft Store for Business app.

    Why it's wrong here

    Microsoft Store for Business distributes packaged MSIX/APPX apps, not arbitrary .exe installers requiring admin rights, so it cannot deliver this custom app to shared kiosks. It is tempting because it centralises store-based app licensing and deployment, and would be correct for repackaged store apps or offline store distribution.

Go deeper

Related to this question

About these practice questions

This MD-102 question is part of Courseiva's 556-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This MD-102 practice question is part of Courseiva's free Microsoft certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the MD-102 exam.