Blog Center
Recently active
A complete, step-by-step deployment guide - including macOS Onboarding and Jamf ConnectAuthor: Meir ElimelechWith contributions from: Omer Ninyo / @Ninyo Why this guide exists – and who should read it Jamf’s move to make Self Service+ mandatory for macOS has prompted many organizations to re-evaluate their deployment and enrollment workflows. While Jamf’s documentation covers the supported installation and migration paths, real-world environments often include a mix of enrollment models, identity integrations, and timing-sensitive workflows that are not always addressed in isolation.This guide exists to provide a single, practical reference for migrating to Self Service+ across all common macOS scenarios — from brand-new enrollments to existing fleets, with or without Jamf Connect.It is intended for Jamf administrators, partners, and consultants who want to understand not only how to deploy Self Service+, but when different approaches are appropriate. In particular, it highlights a cr
In any technology job across industries there’s an evident gender gap. As a young professional, I was fortunate enough to find role models who shared their tips on claiming a seat at the table, which helped me overcome imposter syndrome. When I think about “men’s overrepresentation” in technology, I’m always reminded that community and networking is one of the most powerful tools to make your mark.I wrote this article to celebrate International Women's Day, but even better to bring up this topic in April. Celebrating women is never wrong to do beyond the month of March. I connected with leaders I admire in the Mac Admins space about the moments which defined their career, the advice that spurred them on to pursue their dreams, and the big wins defining their career so far. Kim Trojanowski, @ktrojano Systems Administrator II - School District of Waukesha & Admin - Women in Tech Apple AdminsJamf GroupThe “oh no” moment:It was my first day at a new job and I was shadowing my new co-
As a Jamf trainer, there are two questions I’m asked time and time again:How much scripting is involved in the Jamf certification courses? How can I prepare before attending a remote instructor-led course?If you’re planning to take a Jamf certification course and want a clearer idea of what to expect, and how to set yourself up for success, this guide is for you.The Jamf Pro Training PathThere are three core Jamf Pro instructor-led courses, each designed to build on the previous one as your skills develop:Jamf 200 – Core understanding of Jamf Pro, as well as an enterprise-focused examination of the macOS and iOS platforms Jamf 300 – Deeper understanding of the macOS and iOS management capabilities within Jamf Pro Jamf 400 – Automation and APIsLet’s take a look at what scripting knowledge is expected at each level, and how you can prepare. Jamf 200The Jamf 200 course provides a solid introduction to Jamf Pro, along with an enterprise-focused overview of macOS and iOS device management.
Mac Admins Europe is a new conference built by and for the European Apple Admin community, bringing together admins from education, enterprise, and beyond to share knowledge, swap war stories, and find their people closer to home. Organizers @mischavdbent , @rob_potvin, @Armin and me reflect on what's driving the growth of the community, why now felt like the right moment and what success looks like.When you look at the European Mac admin community today versus a few years ago, how has it changed, and what made you feel the time was right for a dedicated European event?A few years ago, the European Mac admin community felt more fragmented. There were great people doing great work, but a lot of it happened in smaller pockets — local meetups, Slack channels, or at events outside Europe.What’s changed is confidence and scale. macOS and Apple platforms are now firmly embedded in education and enterprise across Europe. That’s created more Mac admins, more diverse roles, and more shared c
Before we get too far into this I want to say one thing. I am not a medical or mental health professional. I’m a Jamf Engineer who has thought a lot about this but by no means am an authority on the subject. The following article is my reflections and not any type of mental health treatment. Now that that’s out of the way…here we go! Nobody goes to school to be a Jamf Engineer or Admin. The vast majority of us ended up in this field because we like to tinker with things, eventually break them and are forced to fix them without any help or education. For a lot of us, we ended up in this field by doing other things in a job where we do have formal training.When you fix what you’ve broken, you feel great. But when you can’t fix it, some of us give up, others seek advice, some keep plugging along to find the solution. But what happens when you end up in a corporate environment and you have to tackle things that you inherited, need an upgrade or you just need to do maintenance, most of it
On Wednesday, February 18, 2026, the New York City Jamf User Group (NYC JUG, or simply “the JUG” to its members) celebrated its 12th anniversary. The date marked exactly 12 years since the group’s first meeting.Meeting an average of four times a year, NYC JUG has built a long tradition of bringing together the Apple admin community in New York City. In the dozen years since its inception, more than 400 admins have participated in the group. Along the way, the community has helped launch several spin-off groups including Women in Tech, MacAdmins LATAM, and MacAdmins NYC, all started by NYC JUG members.How It StartedBack in 2014, as a longtime member of the Apple admin community and a Jamf customer, I posted on Jamf Nation to see if there was interest in getting a group together to share ideas and build a sense of community. Apple admins were often the minority at the companies where we worked, so the idea of getting together to help each other was something I felt strongly about. Wit
A Read-only Friday post by William Smith Only those in IT would ever get it. My dad loved listening to a radio broadcaster named Paul Harvey. Wow could that man tell a story! (I’m referring to the radio broadcaster, but my dad knew how to draw a crowd of listeners too.) Paul Harvey ended his daily broadcasts with a segment called “The Rest of the Story”. He would generally start with a seemingly simple and banal story about something or someone. But as he told the story, the details would take on some life, and the tale would grow bigger until he revealed the one key element he’d been holding back that tied everything together. A really weak glue was of no use at all ‘til an office secretary found a use for it… “And that’s how Post-It Notes were invented!” Or an author was shaving one morning and thought of a story but for years no one would buy it… “Until one day Frank Capra decided to produce it as It’s a Wonderful Life.” Harvey would end every one of these stories with his signature
As MacAD.UK approaches its ninth year, and the tenth anniversary of its very first gathering, the conference has become a fixture in the Mac admin community. What began as a small, ambitious idea from a handful of passionate techs has grown into one of the most recognizable Apple admin events in Europe. This year marks another milestone: a move to the iconic Brighton Dome, a venue that has hosted musical legends To understand how MacAD.UK evolved, what makes it different from a typical tech conference, and why the community keeps coming back, we sat down with the organizers, Liam Donnelly, Ade Leader, and Alex Hawes to talk origins, ethos, and the moments that remind them why they do this work. Macaduk is now in its 9th year. What was the spark that started it all, and did you ever imagine it would grow into what it is today? The event was started by a couple of senior techs at Amsys, including David Acland, who was our CTO at the time, and Dean from Jamf, if I recall correctly. They
Overview This document walks through how to configure and use temporary privilege elevation on macOS using Self Service+.End users can request temporary local administrator rights directly from the Self Service+ app, authenticate via Touch ID or password, provide a business reason, and receive time-limited elevation, all without IT intervention.The elevation duration, reason requirements, authentication requirements, and permitted reasons are all administrator-controlled via a Jamf Connect configuration profile deployed through Jamf Pro.PrerequisitesUpdated: 3/6/25- To add clarification to Prerequisites Before following this guide, ensure the following are in place:Self Service+ v2.0 of greater installed on the target Mac. Jamf Pro access to create and deploy configuration profiles. The target Mac is enrolled in Jamf Pro. A valid Jamf Connect licence assigned to the device or user. Walkthrough Step 1: Configure the Jamf Connect Preference Domain in Jamf Pro In Jamf Pro, create a new co
I’d wanted to understand for a while how Apple structures its own support approach and what really lies behind the Apple Certified Support Professional certification. So I decided to take the exam myself. In this post, I’ll share how I prepared, which learning resources helped me most, and what I’d recommend to anyone planning to do the same. The Apple Certified Support Professional (ACSP) certification validates comprehensive knowledge in supporting and administering Apple devices. It’s designed for IT professionals, help desk staff, and administrators who regularly work with macOS, iOS, or iPadOS and provide daily end-user support. “This course introduces you to the knowledge, skills, and tools used to support and troubleshoot Apple devices in a large organization as a level 1 or 2 help desk professional.” Learning Resources and Preparation Apple offers free official learning modules on the Apple Training platform. These cover all topics included in the exam, such as user manageme
You might know Sagar Rastogi (@rastogisagar123) from his helpful replies in Jamf Nation, or from some of his Tech Thoughts blogs (here, here and here). He’s a technical architect at TCS, and he was recently named a winner in the TCS Global AI Hackathon, the world’s largest AI hackathon with more than 280,000 participants across 58 countries. It’s a huge honor, so naturally we wanted to celebrate Sagar and share more info on his great achievements. Standing Out in a Crowd of 280,000 The scale of the hackathon alone is impressive, but what stood out even more was how Sagar approached it. His winning submission was a completely self‑driven project: an end‑to‑end AI product roadmap designed to solve real‑time challenges across healthcare, finance, and energy. His ideas weren’t just creative, but they were grounded in scalability, ethics, compliance, and practical feasibility. However, according to Sagar, innovation isn’t a solo act. It’s the shared momentum of a community pushing boundari
From mid-November through the final weeks of the year, many IT teams shift into a different rhythm. Projects wrap up. User demand slows. Emergency tickets still happen, but the pace usually lightens. This quieter stretch creates one of the best opportunities to build new skills, strengthen existing ones, and earn certifications that keep you growing. Technology does not slow down when the calendar does. Platforms update, security threats evolve, and new tools enter the stack faster than most teams can adopt them. Staying sharp takes intention. If you wait for the “perfect time” to learn something new, it rarely comes. But late Q4 offers a natural runway that is easy to miss if you are not looking for it. Using this time for learning sends a clear signal to yourself and your team. It shows that continuous upskilling is not a checkbox, but a habit. Whether you manage devices with Jamf, work in security, support end users, or build infrastructure, the problems you solve tomorrow will n
We’re a year into Apple shipping Apple Intelligence (though technically still in Beta) but Apple hasn’t shipped a clear matrix of which features are on-device vs. require Private Cloud Compute (PCC). If you haven’t read part 1, then click here and go back and read it. And then follow up and read part 2, by clicking here. But what if… all that information was hiding on your very Mac in a system diagnostics, your Mac quietly generates a Model Catalog inside sysdiagnose that lists feature availability, languages, and — critically — which resources are server-side! For those that do not know, you can run a system diagnostics and explore the zip file created to potentially find some interesting tidbits about your Mac.Open Terminal.app and typesudo sysdiagnose -f ~/*** Disclaimer, system diagnostics bundles can potentially contain sensitive information *** Follow the prompt and this will create a system diagnostics zip bundle eventually in your home directory. Double click the zip file crea
🎉 Happy New Year! 🥳 It is traditional to use the beginning of the year to make plans. Conferences and the associated travel require quite a bit of planning. I keep an overview of the larger conferences in the Mac and wider Apple management and security community on my website, but thought a bit of a more detailed overview might be useful.Whether you want to "just" attend or even hand in a proposal for a talk, here is a list of conferences this year with links to their websites. MacAD.UK: Brighton, UK, April 21–22This conference in Brighton on the British coast, south of London, has been bringing together Apple management professionals from the United Kingdom and all over Europe for several years. This year, they are moving to a new venue in Brighton. ACES Conference: Minneapolis, MN, USA, May 12–13ACES focuses more on the business side of providing IT services in the Apple space and as such, is quite interesting for partners and service providers. This year, they have a new track ded
As part of Apple’s unveiling of Declarative Device Management (DDM) at WWDC 2023, Apple announced that DDM management included the ability to deploy MDM configuration profiles using DDM as the delivery mechanism in place of using MDM to deliver the profiles. Jamf Pro’s Blueprints leverages this capability to support device restrictions. Let’s see how this works using a device restriction configuration, using the example of setting the following Apple Intelligence management functions to false in order to block the corresponding Apple Intelligence functions on macOS:For more details, please see below the jump.As of Jamf Pro 11.18.0, there is not a Blueprints template available for creating blueprints which manage device restrictions so the blueprint will need to be configured manually. To do this, use the following procedure:1. Log into Jamf Pro.2. Select Blueprints3. Click the Create blueprint button.4. Give it a name when prompted and click the Create button. For this example, I’m usi
Earlier this week, our Community team brought members of Jamf Nation together for a special event — an hour of inspiration, celebration and gratitude. World-renowned keynote speaker, author and all-around good guy, Chris Schembra, led the conversation: Jamf Nation 2026: The Power of Human Connection. As the largest online community of Apple admins in the world, Jamf Nation members understand the power of connection. They’ve been using it to move mountains in the Apple space for the better part of two decades. But as the environment around us changes, Chris challenged the group to consider mindset shifts that could lead to even better outcomes. He encouraged them to move both fast and slow, referencing the Emilia-Romagna mindset of “holding the tension of opposites to achieve world-class excellence.” He asked, Where in your life do you need to go slower? Where in your life do you need to go faster? How do you hold the tension between those two? The chat lit up. Thoughtful, deeply mea
It must be 8 or 9 years ago that I started supporting customers with ZuluDesk (now Jamf School). This was my first step into the device management world. Before that, I was a repair technician. As my curiosity grew, I was lucky enough that my employer allowed me to do the Jamf 100 and 200 courses. Managing iOS devices is all good and well, but with Mac you need a little more tools. Things like setting a wallpaper sound easy, but they actually require a bit more work than I expected. Welcome to the world of Mac Admins! I discovered that for everything I wanted to figure out how to do, there is usually someone with the same question, and maybe they’ve already found a solution for it. Coming in as a completely new Mac Admin, it might be a bit difficult to find your way. But knowing the right people, tools or places to ask for help are really valuable and make all the difference. So I thought, why not try and create some sort of list with starting points for f
Enrolling in a Jamf Training Course is an exciting step in expanding your skills, but once your class is scheduled on the calendar, you might wonder: How should I prepare for training? What devices should I use? How should I set up my workspace? While Jamf will send you important setup instructions prior to your course beginning, here are additional preparation steps and strategies you can take to ensure you’re fully ready to succeed. 1. Review the Student Setup GuideOne week before your training begins, you will receive an email from Jamf Training with important details about your course. This email will look like the following: This email will contain:Instructions to log into Jamf Account to view customer requirements and prerequisites A link to access the remote training session the following week A link to the Student Setup Guide A contact for your instructor. If you have questions, you can reach out to them. The Student Setup Guide is essential. It outlines:Device Requirements R
Originally posted in MacAdmin Musings Why I Try to Stop Working Before Everything Is Finished For a long time, I treated the end of my workday as a finish line.I’d keep going until the problem was solved, the task was complete, or I was too drained to continue. If something was still broken or unanswered, I felt pressure to push through it before logging off. Ending the day with loose ends felt like failure, like I wasn’t completing my tasks.Over time, I realized that approach was quietly working against me.Not because unfinished work is bad, but because how you leave work unfinished matters. The Hidden Cost of Draining the Tank When you work until you have nothing left, you don’t just end the day tired. You also make tomorrow harder.The next morning starts cold:You have to remember what you were thinking You have to reconstruct context You have to re-load mental state before you can make progressThat ramp-up cost is real, whether you’re writing small scripts or a large project. Moment
If you’re not using any enrollment progress tool in your Mac Environment now, or if you’re shopping for a replacement, consider Jamf Setup Manager. When exploring options, we wanted something easy to configure. Something we’d be able to set and forget. And if configurations needed tweaking later, it’d be easy to update. I am lazy. There, I said it. Enter Jamf Setup Manager (JSM). Setup Manager is the best gift I gave myself this Holiday Season. The best part is that we pass this onboarding experience to our customers and technicians. No heavy lifting. No scripting skills are needed. Just add these two ingredients and you’re on your way. The Setup Manager Package A new Setup Manager configuration profile Add the two items to your Prestage The folks at Jamf added a QuickStart guide to help you get started. I’d recommend giving this a read. This helped me generate ideas for customizing Setup Manager for my organization (more on that below). &nb
Here’s the problem we need to address: many of the things IT teams do aren’t documented because they’re seen as busy work, there’s no time, people forget, or they just don’t want to. But here’s the thing: documentation may take some time, but it takes exponentially more time to research a solution every time you need it. For example, it might take 20–30 minutes to create a quality document. Researching a solution can take 10–15 minutes, and if you need to research it 2–3 times, that’s 20–45 minutes of research. Meanwhile, it only takes about 5 minutes to re-read a well-written document. So, let’s get started on how to do this. It happens all the time: you figure out a solution or process, implement it, and move on to the next task on your never-shrinking to-do list. A few months later, you need to do the same thing again and must dig through scripts, tickets, blogs, Slack, or wherever you found the solution, trying to recreate it. It takes a lot of time, and you think, “I really should
As an Apple Partner (I work for an Apple Premium Partner in Belgium) Managed Apple Accounts are a bit of a challenge. Last November we concluded our transition after a 2 year adventure. I’ll spare the details I cannot talk about and focus on what’s the same for everyone.There generally are 5 parts of your Managed Apple Account quest:1) Verify your domain2) Lock your domain3) Capture the domain4) Federate with your Identity Provider5) Provision new accountsBefore you get started with this, please know your why. Currently there are not that many reasons why you would absolutely - need - Managed Apple Accounts. Generally we only start the capture (and federation) part with customers of ours whom want to use Account Driven Enrollment (e.g for BYOD purposes). That being said we do advise any customer to verify and lock their domains to prevent issues in the future.Step 1: Verify your domainThe first part is the easiest. You can add a domain in Apple Business Manager and you will be asked to
When I look back on where I started, joining the Matter Career Readiness Institute (MCRI) was one of the most defining decisions of my tech journey. What began as an opportunity to learn about career readiness quickly became a launchpad into a world of innovation, purpose, and growth. Laying the Foundation: Learning Beyond the CodeAt MCRI, I didn’t just learn how to code, I was taught how to be a better professional and, honestly, a better person. Through communication workshops, critical thinking sessions, and collaborative projects that mirrored real-world work environments, I discovered that being “career ready” in tech isn’t just about what you can build, it’s about how you approach problems, adapt to change (roll with the punches), and connect with others.One of my biggest takeaways from the program was understanding the importance of continuous learning and curiosity, realizing that in technology, the moment you stop evolving, you risk falling behind. From Learning to Building:
Jamf announced in January that the Jamf Pro Classic API will no longer support basic authentication in a future release. Classic API scripts can still run—administrators just need to make a simple change in how they authenticate. Let’s look at why this change is coming and how to convert Classic API scripts to use bearer tokens for authentication instead of usernames and passwords. The token obtained during this workflow will allow authentication to either the Classic API or the more modern Jamf Pro API. We’ll cover: How bearer tokens improve security Request the first token Parse the token Use the token to send an API command Expire the token Renew the token How bearer tokens improve security This change to move away from supplying usernames and passwords as credentials for authenticating to Jamf Pro is a good thing. Bearer tokens improve security by reducing the number of times credentials are sent to the server. Instead of sending them with every request, a token is sent instead,
A Bold Leap Into AppleIt was the summer of 2024 when we were asked to do something our company had never done before. We were going to introduce MacBooks into an environment that had always been 100% Windows. Naturally, questions started flying. How would we manage them? What tools would we need? And, most importantly, how could we ensure the experience was seamless for our users? The hardware part was easy. We knew we could purchase them from Apple anytime. So, the MacBooks were purchased and ready to go, eagerly awaiting their release into our environment. The real challenge was management and integration. After speaking with our team and several vendors, we made our decision: we decided on Jamf. Paperwork signed, onboarding scheduled, and a new chapter began.One Year Later: A Transformation We Didn’t ExpectFast-forward to October 2025, about a year plus, and what a journey it’s been! We’ve faced challenges, learned a ton, and grown stronger as a team. Looking back, we couldn’t have
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!