JAMF 100 Computer Policies and Self Service Questions and Answers — Questions and Answers
Question 1: An administrator needs to automatically run a script that mounts a specific network share every time a user's Mac connects to the office Wi-Fi network. Which policy trigger is best suited for this task?
- Network State Change (Correct answer)
- Login
- Recurring Check-in
- Startup
Correct answer: Network State Change
The "Network State Change" trigger is designed to execute policies when a computer's network connection status changes, such as joining a new network or acquiring a new IP address. This is the most direct and efficient trigger for actions that are dependent on network connectivity.
Question 2: A policy is configured with a "Recurring Check-in" trigger and an execution frequency of "Once per computer". If this policy successfully runs on a Mac, what prevents it from running on the same Mac again during subsequent check-ins?
- The computer is automatically added to the policy's exclusion list.
- A local receipt file is created on the Mac, preventing re-execution.
- The Jamf Pro server records a policy log for the computer, marking it as complete. (Correct answer)
- The policy is automatically disabled after its first successful run.
Correct answer: The Jamf Pro server records a policy log for the computer, marking it as complete.
When a policy with a "Once per computer" frequency runs successfully, Jamf Pro creates a log entry for that specific computer and policy combination. During the next check-in, the server references this log and knows not to issue the policy command again for that machine, thereby enforcing the "once per computer" rule.
Question 3: An administrator wants to provide a software application in Self Service for users to install at their convenience. They have already created a policy with the package payload configured. What is the crucial next step to make this policy appear in Self Service?
- Set the trigger to "Recurring Check-in".
- Enable the "Make the policy available in Self Service" option in the Self Service payload. (Correct answer)
- Scope the policy to a static group named "Self Service Users".
- Add a script to the policy that launches the Self Service application.
Correct answer: Enable the "Make the policy available in Self Service" option in the Self Service payload.
For a policy to be visible and usable by end-users in the Self Service application, it must be explicitly enabled within the policy's settings. This is done by selecting the "Make the policy available in Self Service" checkbox within the policy's "Self Service" payload.
Question 4: Which of the following items can be made available for users to install or run on-demand through Jamf Self Service for macOS?
- Smart Group Memberships
- Extension Attributes
- PreStage Enrollments
- Configuration Profiles (Correct answer)
Correct answer: Configuration Profiles
Jamf Self Service provides users with a curated catalog of resources. This includes running policies (which can install software), installing Configuration Profiles (for settings like Wi-Fi or VPN), accessing bookmarks, and installing apps and books. Smart Groups, Extension Attributes, and PreStage Enrollments are administrative objects within Jamf Pro and are not user-facing items in Self Service.
Question 5: An IT administrator needs to create a policy that will locate and delete a specific temporary file from the `/private/tmp/` directory on all managed Macs. Which policy payload should be used to accomplish this without using a separate script?
- Maintenance
- Packages
- Files and Processes (Correct answer)
- Software Updates
Correct answer: Files and Processes
The "Files and Processes" payload is specifically designed to perform commands related to the file system and running processes. It includes an "Execute Command" field where an administrator can run shell commands, such as `rm /private/tmp/filename.tmp`, to delete files directly.
Question 6: What is the primary function of the "Recurring Check-in" trigger for a computer policy in Jamf Pro?
- To execute the policy every time the computer starts up.
- To have the Jamf Pro server initiate the policy on computers at a set interval. (Correct answer)
- To allow the user to run the policy on-demand from Self Service.
- To force the computer to submit a new inventory report immediately.
Correct answer: To have the Jamf Pro server initiate the policy on computers at a set interval.
The "Recurring Check-in" trigger is the standard, server-initiated trigger. When a computer checks in with the Jamf Pro server (by default, every 15 minutes), the server instructs it to run any policies that use this trigger and are in scope for that computer.
An administrator needs to automatically run a script that mounts a specific network share every time a user's Mac connects to the office Wi-Fi network.
Which policy trigger is best suited for this task?