You have a Microsoft Azure Active Directory (Azure AD) tenant named contoso.com.
You add an app named App1 to the enterprise applications in contoso.com. You need to configure self-service app access for App1.
What should you do first?
A . Assign App1 to users and groups.
B . Add an owner to App1.
C . Configure the provisioning mode for App1.
D . Configure an SSO method for App1.
Answer: C
Explanation:
The provisioning mode (manual or automatic) needs to be configured for an app before you can enable self-service application access.
Incorrect Answers:
A: If you’re assign App1 to users and groups, the users will not need to use self-service to request access to the App. They would already have access to the app.
B: The app does not need an owner. You would configure an owner to delegate control of the app.
Without an owner, a Global Admin could configure self-service.
D: The SSO method depends on the provisioning mode.
Reference:
https://docs.microsoft.com/en-us/azure/active-directory/manage-apps/manage-self-service-access
https://techcommunity.microsoft.com/t5/Azure-Active-Directory-Identity/Employee-Self-Service-App-Access-for-Azure-AD-now-in-preview/ba-p/243966