nerdexam
Cisco

500-220 · Question #47

Company iPads are enrolled in Systems Manager without supervision, and profiles are pushed through Systems Manager. Which outcome occurs when a user attempts to remove the "Meraki Management"…

The correct answer is C. The "Meraki Management" profile is removed. All the profiles that Systems Manager pushed are. Option C is correct because on unsupervised iOS devices, the Meraki Management profile acts as an anchor for all other MDM-pushed profiles. When a user removes it, iOS treats every profile that was delivered through that management relationship as dependent on it - so they are…

Cisco Meraki Management and Operations

Question

Company iPads are enrolled in Systems Manager without supervision, and profiles are pushed through Systems Manager. Which outcome occurs when a user attempts to remove the "Meraki Management" profile on an iPad?

Options

  • AThe "Meraki Management" profile cannot be removed.
  • BThe "Meraki Management" profile is removed and then pushed automatically by Systems
  • CThe "Meraki Management" profile is removed. All the profiles that Systems Manager pushed are
  • DThe "Meraki Management" profile is removed. All the profiles Systems Manager pushed remain.

How the community answered

(45 responses)
  • A
    2% (1)
  • B
    7% (3)
  • C
    89% (40)
  • D
    2% (1)

Explanation

Option C is correct because on unsupervised iOS devices, the Meraki Management profile acts as an anchor for all other MDM-pushed profiles. When a user removes it, iOS treats every profile that was delivered through that management relationship as dependent on it - so they are all wiped simultaneously. The device effectively leaves MDM enrollment.

Why the distractors fail:

  • A is wrong because profile removal is only blocked on supervised devices. Supervision is what gives MDM the authority to make itself irremovable. Without supervision, the user has full control.
  • B is wrong because once the management profile is gone, Systems Manager has no channel to re-push anything - the device is no longer enrolled and the MDM loses its connection to the device entirely.
  • D is wrong because the dependent profiles do not survive the removal of the management profile. They are tied to it; they fall with it.

Memory tip: Think "supervision = padlock." Without a padlock (supervision), the user holds the key to the management profile - and pulling it out takes the whole keychain (all pushed profiles) with it.

Topics

#Meraki Systems Manager#Profile Management#iOS Enrollment#Unsupervised Devices

Community Discussion

No community discussion yet for this question.

Full 500-220 Practice