Courseiva

MD-102 Prepare infrastructure for devices Practice Question

You are the endpoint administrator for Contoso, which uses Microsoft Intune. You need to enroll 200 new Windows 11 devices into Intune with the least administrative effort. The devices are currently running Windows 11 Pro and are connected to the internet. You want to avoid imaging or manually installing agents. What should you do?

⚠ Common exam trap

The trap here is assuming that a separate Intune agent must be installed on Windows devices, when in fact enrollment is natively integrated into the OS.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

Configure Windows Autopilot deployment profiles and register the device hardware IDs.

Windows Autopilot is designed to simplify and automate the enrollment of new Windows devices without reimaging. By registering hardware IDs, you can assign deployment profiles that automatically configure and enroll devices into Intune. This approach minimizes administrative effort and ensures devices are ready for use with minimal user interaction.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✓

    Configure Windows Autopilot deployment profiles and register the device hardware IDs.

    Why this is correct

    Windows Autopilot leverages the existing Windows installation and hardware ID to enroll devices into Intune without reimaging. By registering hardware hashes, you can assign deployment profiles that automatically join devices to Microsoft Entra ID and enroll them in Intune. This meets the requirement of least administrative effort and avoids imaging.

  • ✗

    Deploy the Intune agent MSI to each device using a logon script.

    Why it's wrong here

    There is no separate Intune agent MSI for Windows 10/11 devices. Enrollment is built into the operating system and managed through MDM channels. Deploying a logon script would require additional infrastructure and does not leverage modern enrollment methods, increasing administrative effort and complexity.

  • ✗

    Manually enroll each device by having users sign in with their Microsoft Entra ID credentials in Settings.

    Why it's wrong here

    Manual enrollment requires user interaction on each device, which is time-consuming and error-prone for 200 devices. It does not meet the least administrative effort requirement and lacks automation. Additionally, users may not have the necessary permissions or knowledge to complete enrollment correctly.

  • ✗

    Use Group Policy to enable automatic MDM enrollment for all domain-joined devices.

    Why it's wrong here

    Group Policy automatic MDM enrollment requires devices to be domain-joined and configured with a MDM user scope in Microsoft Entra ID. However, this method still requires devices to be joined to on-premises Active Directory and does not work for devices that are only Microsoft Entra joined or workgroup-joined, making it less suitable for cloud-first management.

Go deeper

Related to this question

About these practice questions

Courseiva writes every MD-102 question from scratch — 556 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written and reviewed by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

Last reviewed September 2026 · checked against the official Microsoft exam blueprint

This MD-102 practice question is part of Courseiva's free Microsoft certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the MD-102 exam.