Hi Jamf Nation,
Is anyone using Jamf and Centrify, particularly leveraging Centrify GPOs to enforce Smart Card login on Macs 10.11 to 10.13?
I've read that others have had their fair of issues with Centrify (UUID permissions and network login issues). Everybody seems happy to move away from Centrify to Jamf.
Our ORG is currently on 10.12 & 10.11. Until the CIS 10.13 benchmark comes out, we can't upgrade to 10.13 to enforce Smart Card login. Plus, Centrify says that Multi-Factor Authentication for Macs is still in beta. Is anyone usin multi-factor login on Macs?
Ideally, I'd like to wait for the CIS 10.13 benchmark, then upgrade our ORG and force Smart Card login that way. But I've been given a quick deadline now to make it happen.
Can anybody share their experience with Jamf and Centrify? I'm a bit worried about an admin applying their GPOs and other weirdness.
To get Centrify to work, I'd have to unbind and re-bind using Centrify's tool. I saw some scripts and I know Jamf supports Cenrtify binding in the JSS. But the whole process and ensuing troubles worries me.
Thanks for any of your thoughts and experiences!