Network Services Management Flashcards
6 cards from real ACSP practice questions. Tap to flip, then mark Knew It or Still Learning — missed cards come back until you master them.
Read the first 6 Network Services Management flashcards as text
What is Apple Business Manager (ABM) and what does it provide for enterprise Mac deployment?
Answer: ABM is Apple's web portal for business that enables Automated Device Enrollment (ADE), Volume Purchase Program (VPP), and Managed Apple IDs for enterprise Mac management
Apple Business Manager is a web-based portal that enables: Automated Device Enrollment (ADE/DEP) for zero-touch MDM enrollment, Volume Purchase Program for bulk app and book purchasing, and Managed Apple IDs for organizational accounts separate from personal Apple IDs.
What is MDM (Mobile Device Management) enrollment and what types are supported on macOS?
Answer: MDM enrollment registers a Mac with a management server; types include Automated Enrollment (via ADE/ABM), User Enrollment, and Device Enrollment (profile-based)
macOS MDM enrollment types: Automated Device Enrollment (ADE, via ABM — supervisor-level, cannot be removed by user), Device Enrollment (user installs profile — can be removed), and User Enrollment (privacy-preserving BYOD enrollment that separates personal/managed data).
What macOS feature allows administrators to distribute configuration profiles, and what can these profiles configure?
Answer: Configuration profiles (.mobileconfig files) are XML-based files that configure Wi-Fi, VPN, email accounts, certificates, restrictions, and many system settings, distributed via MDM or manual installation
Configuration profiles are XML-based .mobileconfig files that can configure virtually any manageable macOS setting including Wi-Fi, VPN, email/calendar accounts, certificates, passcode policies, system restrictions, app configurations, and security settings.
What is the purpose of a Certificate Authority (CA) certificate and why would a company need to install one on managed Macs?
Answer: A CA certificate establishes trust in the company's own certificate infrastructure, allowing Macs to trust internal HTTPS sites, VPNs, and network authentication without security warnings
A root CA certificate, when installed on managed Macs, makes macOS trust all certificates signed by that CA. Companies install their internal CA to enable trusted HTTPS for internal web apps, WPA2-Enterprise Wi-Fi authentication, and VPN certificate authentication without browser warnings.
How does macOS directory services integration with Active Directory work for user authentication?
Answer: Macs can join an Active Directory domain via System Settings > Users & Groups > Login Options, allowing AD users to authenticate with their domain credentials
macOS has built-in Active Directory (AD) integration. Macs can join an AD domain through System Settings > Users & Groups > Login Options > Join, or via the Terminal command 'dsconfigad'. Once joined, AD users can log in to the Mac using their domain username and password.
What is Zero Touch Deployment for Macs and what technologies enable it?
Answer: Zero Touch Deployment uses Apple Business Manager + MDM to automatically enroll and configure new Macs out of the box, requiring no IT hands-on setup before delivery to the user
Zero Touch Deployment combines Apple Business Manager (Automated Device Enrollment) with an MDM solution (Jamf, Intune, Mosyle, etc.) to automatically configure Macs upon first boot — apps install, settings configure, and the device is fully managed without IT touching the hardware.