Mega Bundle | Complete Jamf Pro Study Guide for Apple Device
Management, macOS & iOS Deployment, Mobile Device Management (MDM),
Configuration Profiles, Security Policies, Inventory Management,
Troubleshooting, Practice Test Bank with Verified Answers, Detailed
Rationales, and Proven Exam Passing Strategies
Question 1: What is the primary function of a JAMF Pro PreStage Enrollment?
A. To manually enroll devices one by one
B. To automate the enrollment of Apple devices during setup
C. To uninstall applications from managed devices
D. To generate inventory reports for auditing
CORRECT ANSWER: B. To automate the enrollment of Apple devices during setup
RATIONALE: PreStage Enrollments automate the enrollment process for Apple devices purchased
through Apple Business Manager or Apple School Manager, ensuring they are supervised and managed
immediately upon activation.
Question 2: Which inventory collection method requires the JAMF Binary to be installed on the
device?
A. Apple Push Notification service (APNs)
B. JAMF Pro Server direct query
C. JAMF Agent (macOS) or JAMF App (iOS/iPadOS)
D. LDAP Integration
CORRECT ANSWER: C. JAMF Agent (macOS) or JAMF App (iOS/iPadOS)
RATIONALE: The JAMF Binary (Agent or App) is responsible for collecting detailed inventory data and
communicating it to the JAMF Pro server.
Question 3: In JAMF Pro, what is the purpose of a Smart Group?
A. To manually add specific devices by serial number
B. To dynamically populate devices based on defined criteria
C. To assign administrative roles to users
D. To store software packages for distribution
CORRECT ANSWER: B. To dynamically populate devices based on defined criteria
RATIONALE: Smart Groups use criteria such as operating system version, department, or inventory
data to automatically include devices that match the rules.
Question 4: Which payload type is used to enforce a passcode policy on iOS devices?
A. Restrictions
B. Passcode
,C. Security & Privacy
D. Device Functionality
CORRECT ANSWER: B. Passcode
RATIONALE: The Passcode payload specifically configures requirements for device unlock codes,
including complexity, expiration, and history.
Question 5: What trigger event initiates a policy when a user clicks an item in Self Service?
A. Startup
B. Login
C. Self Service
D. Check-in
CORRECT ANSWER: C. Self Service
RATIONALE: The "Self Service" trigger is specifically designed to execute policies when a user initiates
an action within the Self Service application.
Question 6: Which feature allows administrators to distribute apps without requiring an Apple ID on
the device?
A. Volume Purchase Program (VPP)
B. Manual Installation
C. User-Initiated Enrollment
D. Guest Access
CORRECT ANSWER: A. Volume Purchase Program (VPP)
RATIONALE: VPP (now part of Apple Business Manager) allows apps to be assigned to devices or users
via Managed Distribution, eliminating the need for personal Apple IDs.
Question 7: What is the default frequency for JAMF Pro inventory updates?
A. Every hour
B. Every 24 hours
C. Every 7 days
D. Upon every reboot
CORRECT ANSWER: B. Every 24 hours
RATIONALE: By default, the JAMF binary is configured to send inventory data to the server once every
24 hours, though this can be customized.
Question 8: Which log file is primarily used to troubleshoot JAMF Binary issues on macOS?
A. /var/log/system.log
B. /usr/local/jamf/log/jamf.log
C. /Library/Logs/jamf.log
D. /var/log/jamf/pro.log
,CORRECT ANSWER: B. /usr/local/jamf/log/jamf.log
RATIONALE: The jamf.log file located in the JAMF binary directory contains detailed information about
policy execution and inventory submissions.
Question 9: What is required to enable FileVault encryption via a JAMF Pro policy?
A. A FileVault Escape Key
B. A FileVault Institutional Key or Personal Recovery Key
C. A third-party encryption tool
D. Administrator sudo access only
CORRECT ANSWER: B. A FileVault Institutional Key or Personal Recovery Key
RATIONALE: JAMF Pro must manage the recovery method, either by escrowing the Personal Recovery
Key or using an Institutional Key to enable FileVault.
Question 10: Which section in JAMF Pro is used to configure email settings for notifications?
A. Global Management
B. Settings > System Settings > Email Configuration
C. User Accounts
D. Network Integration
CORRECT ANSWER: B. Settings > System Settings > Email Configuration
RATIONALE: Email Configuration within System Settings allows administrators to set up SMTP servers
for sending alerts and notifications from JAMF Pro.
Question 11: What happens when a device is removed from Apple Business Manager?
A. It remains supervised but unmanaged
B. It loses supervision and management profiles may be removable
C. It automatically wipes all data
D. It locks permanently
CORRECT ANSWER: B. It loses supervision and management profiles may be removable
RATIONALE: Removing a device from ABM breaks the MDM link, potentially allowing users to remove
management profiles if no other restrictions exist.
Question 12: Which command can be sent remotely to a device via JAMF Pro?
A. Delete User Account
B. Unlock User Account
C. Passcode Lock
D. Format Drive
CORRECT ANSWER: C. Passcode Lock
, RATIONALE: JAMF Pro can send a remote command to lock the device immediately, securing it if lost or
stolen.
Question 13: What is the function of a Configuration Profile in JAMF Pro?
A. To install software packages
B. To enforce settings and restrictions on devices
C. To create user accounts
D. To monitor network traffic
CORRECT ANSWER: B. To enforce settings and restrictions on devices
RATIONALE: Configuration Profiles contain payloads that configure settings, restrictions, and
credentials on Apple devices.
Question 14: Which scope type allows targeting specific users rather than devices?
A. Device Group
B. User Group
C. Building
D. Department
CORRECT ANSWER: B. User Group
RATIONALE: User Groups allow policies and profiles to be scoped based on LDAP or local user accounts
rather than hardware identifiers.
Question 15: What is the purpose of the JAMF Pro API?
A. To provide a graphical user interface
B. To allow external systems to interact with JAMF Pro programmatically
C. To store backup data
D. To encrypt database connections
CORRECT ANSWER: B. To allow external systems to interact with JAMF Pro programmatically
RATIONALE: The API enables automation, integration with other IT tools, and custom scripting to
manage JAMF Pro objects.
Question 16: Which authentication method is supported for JAMF Pro admin accounts?
A. Only Local Accounts
B. Local, LDAP, and SAML
C. Only SAML
D. Biometric Only
CORRECT ANSWER: B. Local, LDAP, and SAML
RATIONALE: JAMF Pro supports multiple authentication sources including local database accounts,
LDAP directories, and SAML SSO.