HI All,
Been struggling getting our DEP environment to be zero touch by IT dept.
Ideal world :
the staff member gets a new Mac
Open box and agree to DEP enrolment
computer shows login window for user to login with AD credentials
User logs in
after login unbind from AD
policy kicks in which runs a script to rename computer based on users input
new computer name would then bind to AD
User continues with Self service to grab apps they need while in the background Tier1 apps are installed
What is really happening:
Computer sent to IT deput
IT dept start machine
run through DEP process
get prompt to create local account
log in and see that DEP has created the correct admin account from DEP process
JAMF binary not installed but the MDM profile is (strange)
it dept go to url to enrol device
once policy has kicked in and script to rename all works then reboot and hand to end user
What am I missing here?
Why does the device prompt for user creation when a user is created through DEP?
Why does the binary not install?
Why does only the MDM profile install?