Salesforce Plat-Arch-203 試験概要:
| 認定ベンダー: | Salesforce |
| 試験名: | Salesforce Certified Platform Identity and Access Management Architect 試験 |
| 試験番号: | Plat-Arch-203 |
| 対応言語: | 英語 |
| 受験料: | USD 200 |
| 認定の有効期間: | 維持管理が必要。通常、Salesforceリリース試験による定期的な資格維持が求められます(維持管理を継続している限り有効期限なし) |
| 試験形式: | 単一選択, 複数選択 |
| 出題数: | 60〜65問 |
| 合格点: | 約65%(Salesforceにより変更される場合があります) |
| 試験時間: | 120 minutes |
| 関連資格: | Salesforce Certified Identity and Access Management Designer Salesforce Certified Application Architect Salesforce Certified System Architect |
| 推奨トレーニング: | Trailhead ID基礎モジュール Identity and Access Management Architect Trailmix |
| 受験申し込み: | Salesforce 資格試験登録 Salesforce 資格試験ガイド |
| サンプル問題: | Salesforce Plat-Arch-203 サンプル問題 |
| 受験方法: | オンライン監督試験または認定テストセンター |
| 前提条件: | 推奨:Salesforce Certified Identity and Access Management Designerの取得、およびアーキテクトレベルのSalesforce実務経験 |
| 公式シラバスのURL: | https://trailhead.salesforce.com/credentials/architect |
Salesforce Plat-Arch-203 試験シラバストピック:
| セクション | 目標 |
|---|---|
| Salesforce IDサービス | - Connected AppとOAuthポリシー - My DomainとIDの設定 - Identity Connectと外部IDプロバイダー |
| 認証とシングルサインオン(SSO) | - OpenID ConnectおよびOAuth 2.0フロー - SalesforceにおけるSAML 2.0の実装 - SSOのトラブルシューティングと設定 |
| アクセス管理とセキュリティ制御 | - プロファイル、権限セット、およびロール階層 - セッション管理とセキュリティポリシー - 多要素認証(MFA)の適用 |
| Experience Cloudと外部ID | - 外部ユーザーの認証と認可 - B2BおよびB2CにおけるIDの考慮事項 - コミュニティログインとIDプロバイダー |
| ID・アクセス管理の基礎 | - 認証と認可の原則 - エンタープライズIDアーキテクチャの基礎 - IDライフサイクル管理の概念 |
| APIと統合セキュリティ | - トークン管理とリフレッシュの仕組み - OAuthスコープとAPI認証フロー - セキュアな統合パターン |
Salesforce Certified Platform Identity and Access Management Architect 認定 Plat-Arch-203 試験問題:
1. Northern Trail Outfitters (NTO) recently purchased Salesforce Identity Connect to streamline user provisioning across Microsoft Active Directory (AD) and Salesforce Sales Cloud.
NTO has asked an identity architect to identify which salesforce security configurations can map to AD permissions.
Which three Salesforce permissions are available to map to AD permissions?
Choose 3 answers
A) Roles
B) Sharing Rules
C) Field-Level Security
D) Public Groups
E) Profiles and Permission Sets
2. A division of a Northern Trail Outfitters (NTO) purchased Salesforce. NTO uses a third party identity provider (IdP) to validate user credentials against Its corporate Lightweight Directory Access Protocol (LDAP) directory. NTO wants to help employees remember as passwords as possible.
What should an identity architect recommend?
A) Setup Salesforce as an IdP to authenticate against the LDAP directory.
B) Use Salesforce connect to synchronize LDAP passwords to Salesforce.
C) Setup Salesforce as an Authentication Provider to the existing IdP.
D) Setup Salesforce as a Service Provider to the existing IdP.
3. The CIO of universal containers(UC) wants to start taking advantage of the refresh token capability for the UC applications that utilize Oauth 2.0. UC has listed an architect to analyze all of the applications that use Oauth flows to. See where refresh Tokens can be applied. Which two OAuth flows should the architect consider in their evaluation? Choose 2 answers
A) Jwt bearer token
B) User-Agent
C) Web server
D) Username-password
4. Universal Containers (UC) has an e-commerce website where customers can buy products, make payments and manage their accounts. UC decides to build a Customer Community on Salesforce and wants to allow the customers to access the community from their accounts without logging in again. UC decides to implement an SP-initiated SSO using a SAML-compliant Idp. In this scenario where Salesforce is the Service Provider, which two activities must be performed in Salesforce to make SP-initiated SSO work? Choose 2 answers
A) Configure SAML SSO settings.
B) Set up My Domain.
C) Create a Connected App.
D) Configure Delegated Authentication.
5. Northern Trail Outfitters (NTO) is planning to implement a community for its customers using Salesforce Experience Cloud . Customers are not able to self-register. NTO would like to have customers set their own passwords when provided access to the community.
Which two recommendations should an identity architect make to fulfill this requirement?
Choose 2 answers
A) Enable Welcome emails while configuring the Experience Cloud site.
B) Allow Password reset using the API to update Experience Cloud site membership.
C) Add customers as contacts and add them to Experience Cloud site.
D) Use Login Flows to allow users to reset password in Experience Cloud site.
質問と回答:
| 質問 # 1 正解: A、D、E | 質問 # 2 正解: D | 質問 # 3 正解: B、C | 質問 # 4 正解: A、B | 質問 # 5 正解: B、D |














1370 お客様のコメント
品質保証JPexamはIT認定試験のシラバスに従って、試験問題の範囲を正確に絞って、的中率が99%の最新問題集を捧げます。
1年間の無料更新サービスJPexamは1年以内に問題集の無料更新サービスを提供し、お客様がいつでも最新版の問題集を持つことを保証いたします。もし試験の内容が変更されたら、弊社は直ちにお客様にお知らせします。それに、弊社の問題集が更新されたら、早速メールで最新バージョンを送付いたします。
全額返金JPexamの問題集を利用すると、短時間で勉強しても試験に合格できるのを保証いたします。試験に不合格になってしまった場合、弊社は全額返金いたします。(
ご購入前のお試しJPexamは問題集のサンプルを無料で提供いたします。ご購入前にサンプルを試用して製品の品質を確認することができます。ご遠慮なく利用してください。
