Skip to main content
Solved

Apparent local login prior to seeing Jamf Connect login window

  • January 27, 2023
  • 5 replies
  • 20 views

GreenPanda
Forum|alt.badge.img+7

Hi Everyone. I'm running into an interesting issue (maybe?) with Jamf Connect and Ventura. I have my workflow setup and it is deploying correctly to my test machine. After initial login, the local and IdP account mapping/creation works and everything else seems fine. What's interesting is when I reboot my laptop: I get the local account login which accepts my IdP credentials, then it takes me to the Jamf Connect login screen where I have to sign into my IdP account twice (Once to log in and then second time to verify the password). It's like I have to unlock locally before Jamf Connect can take over. Has anyone run into this issue? I feel like I'm missing something simple...

FWIW:
I have my login agent delivered through the Jamf-provided pkg, not via config profile.
The laptop in question has Jamf Connect deployed via workflow, not PreStage Enrollment.

Best answer by GreenPanda

Posting "solution" since I never got around to doing so:

If FileVault is enabled, then first screen is FileVault - gotta unlock the disk first - the next screen will be Connect taking over. You're not "signing in" two times, you're unlocking the disk THEN signing into the machine. 

5 replies

GreenPanda
Forum|alt.badge.img+7
  • Author
  • New Contributor
  • January 30, 2023

Adding additional info: We are running Ventura and in the configuration there is a key to enable passthrough.

I enabled the passthrough and that took one of the logins away. But still have to "sign in" into the local side before reaching the Connect login prompt. Maybe some kind of launch daemon issue?


Forum|alt.badge.img+3
  • New Contributor
  • February 3, 2023

I am having the same issue with our macs enrolled via user enrollment. Has anyone found a solution for this?

thanks


Forum|alt.badge.img+5
  • Contributor
  • April 11, 2023

Do you have Filevault enabled in your environment?


GreenPanda
Forum|alt.badge.img+7
  • Author
  • New Contributor
  • July 5, 2023

As a busy Mac Admin, I feel the need to apologize for taking so long to respond. 

Yes, we do have Filevault enabled. 

Fun note, the issue persists through the beta upgrade to Sonoma. 

 


GreenPanda
Forum|alt.badge.img+7
  • Author
  • New Contributor
  • Answer
  • January 26, 2024

Posting "solution" since I never got around to doing so:

If FileVault is enabled, then first screen is FileVault - gotta unlock the disk first - the next screen will be Connect taking over. You're not "signing in" two times, you're unlocking the disk THEN signing into the machine.