Using Microsoft Intune Suite, you plan to use Microsoft Cloud PKI for email signing and encryption. What is the first step you should take?
Choose an answer
Tap an option to check your answer.
Correct answer: Create a root certification authority (CA)..
Why this is the answer
The first step in using Microsoft Cloud PKI for email signing and encryption is to create a root certification authority (CA). A root CA is the foundation of any PKI hierarchy, establishing the trust anchor from which all other certificates in the system derive their validity. Without a root CA, no other certificates can be issued or trusted. Creating an issuing certification authority (CA) is a subsequent step, as an issuing CA relies on a root CA for its own certificate. Creating device compliance policies, device configuration SCEP certificate profiles, or device configuration trusted certificate profiles are all later steps that depend on an existing PKI infrastructure to function correctly.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed