CCA Self Service Configuration and Management 1 — Questions and Answers
Question 1: What is the primary purpose of the Jamf Pro Self Service application?
- To allow administrators to remotely wipe managed devices
- To provide end users a portal to install approved apps, policies, and resources without IT intervention (Correct answer)
- To configure network settings on enrolled devices
- To generate compliance reports for auditors
Correct answer: To provide end users a portal to install approved apps, policies, and resources without IT intervention
Self Service is a user-facing portal that empowers end users to install approved applications, run policies, and access resources without requiring direct IT assistance.
Question 2: Where in Jamf Pro do you configure branding settings such as the Self Service icon and header image?
- Settings > Computer Management > Policies
- Settings > Self Service > macOS (Correct answer)
- Management Framework > Branding
- Computers > Configuration Profiles
Correct answer: Settings > Self Service > macOS
Self Service branding, including the app icon and header image, is configured under Settings > Self Service > macOS in Jamf Pro.
Question 3: How do you make a Jamf Pro policy available in the Self Service application?
- Enable the 'Make Available in Self Service' checkbox on the policy's General tab (Correct answer)
- Add the policy to a Smart Group scoped to Self Service users
- Deploy the policy via a Configuration Profile
- Enable the policy in the Jamf Pro Self Service API
Correct answer: Enable the 'Make Available in Self Service' checkbox on the policy's General tab
On the policy's General payload, checking 'Make Available in Self Service' exposes it to scoped users in the Self Service app.
Question 4: Which of the following item types CANNOT be distributed directly through Jamf Pro's Self Service?
- Mac App Store apps via VPP
- Configuration profiles
- Firmware updates requiring Apple T2 chip authorization (Correct answer)
- Policies with package installations
Correct answer: Firmware updates requiring Apple T2 chip authorization
Firmware updates requiring Apple T2 chip authorization cannot be distributed through Self Service as they require specific Apple hardware-level mechanisms outside Jamf's Self Service scope.
Question 5: What is the purpose of the 'Featured' section in Jamf Pro Self Service?
- To list only items scoped to administrators
- To highlight selected apps and resources prominently at the top of the Self Service interface (Correct answer)
- To display items that are mandatory and will auto-install
- To show only recently added items from the past 7 days
Correct answer: To highlight selected apps and resources prominently at the top of the Self Service interface
The Featured section displays selected apps and resources prominently, allowing administrators to draw attention to important or commonly used items.
Question 6: Can administrators require users to log in to Self Service before accessing its contents?
- No, Self Service is always available without authentication
- Yes, login can be required and tied to Jamf Pro accounts or LDAP/IdP accounts (Correct answer)
- Yes, but only using local macOS accounts
- No, authentication is handled automatically via device enrollment certificate
Correct answer: Yes, login can be required and tied to Jamf Pro accounts or LDAP/IdP accounts
Jamf Pro allows administrators to require users to log in to Self Service using Jamf Pro accounts or directory service accounts (LDAP/IdP).
Question 7: What happens when a scoped user clicks 'Install' on a policy displayed in Self Service?
- A request is sent to the Jamf Pro administrator for approval
- The policy runs immediately on the device triggered by the user action (Correct answer)
- The device is added to a static group associated with the policy
- The policy is queued and runs during the next scheduled check-in
Correct answer: The policy runs immediately on the device triggered by the user action
When a user clicks Install in Self Service, the policy executes immediately on the device using the 'Self Service' trigger without requiring admin approval.
What is the primary purpose of the Jamf Pro Self Service application?