Skip to main content
Question

Big Sur Screen Sharing via ARD

  • November 13, 2020
  • 12 replies
  • 47 views

Forum|alt.badge.img+7

It looks like Big Sur breaks ARD screen sharing with Macs that already have it enabled. Anyone else seeing that, and know a way to reenable it if you are remote and can't screen share on a Mac via ARD anymore because of a Big Sur upgrade?

12 replies

Forum|alt.badge.img+4
  • Contributor
  • November 17, 2020

I have seen the same thing, but don't have a fix. I had a system that had ARD working fine in Catalina and after the upgrade to Big Sur I can't connect graphically. I can transfer files and use UNIX commands via ARD, but I can't make a GUI connection to the machine. I've tried various kickstart commands with no success.


Forum|alt.badge.img+7
  • Author
  • Contributor
  • November 17, 2020

That's my experience too @mikeo, although I do have one Mac that I upgraded where I AM able to screen share via ARD, but so far it seems like the exception. I haven't yet been able to figure out what is different about this particular Mac that is allowing it to do so.


PaulHazelden
Forum|alt.badge.img+12
  • Jamf Heroes
  • November 20, 2020

Is it a security permissions thing. I know Apple are tightening up on allowing remote access to Macs without User permissions.
How have you set the access for Remote Desktop?
In Jamf find the Mac and in the Management tab is it set to enable or disable Remote Desktop?
I currently set my Catalina Remote Desktop access via script, but that is only allowed because the Mac is under MDM management. I have not yet had the pleasure of Big Sur, so I am only offering suggestions.
Or is it a requirement for a PPPC setup for screen sharing for ARD?


Forum|alt.badge.img+7
  • Author
  • Contributor
  • November 20, 2020

It was enabled on with an ARD kickstart script. Macs were on 10.15, worked fine, but screen sharing stopped working after Big Sur upgrade. I have a support ticket open with Jamf now. They said they have other cases reporting this as well.


Forum|alt.badge.img+4
  • Contributor
  • November 20, 2020

It could be something that changed from Catalina to Big Sur @PaulHazelden , but it's not documented anywhere that I can find.

I previously setup ARD access in Catalina by allowing a local admin user to have full Remote Management access in System Preferences/Sharing. I also have a PPPC setup, similar to jared_f's 5/11/2019 comment here: https://www.jamf.com/jamf-nation/discussions/29233/enable-remote-management-full-control-in-mojave#responseChild184447 .

Please keep us posted with what JAMF says @dtmille2 . I'm going to be talking to our Apple SE soon and I'll ask him about this issue when we talk.


dlondon
Forum|alt.badge.img+14
  • Honored Contributor
  • November 21, 2020

@dtmille2 - I'll try and check but you could too. Look at the output of that script on Catalina. I haven't had a chance to follow that rabbit but I remember seeing some output from it saying it wouldn't work in future versions of the OS


Forum|alt.badge.img+7
  • Author
  • Contributor
  • December 11, 2020

I've resolved this issue today.

I've determined that in Big Sur, the following setting needs to be configured in a Restrictions configuration profile. This was not required in Catalina, but is required for Big Sur Macs:

"Allow AirPlay, View Screen by Classroom, and Screen Sharing (macOS 10.14.4 or later, enrolled via a PreStage enrollment)"


Forum|alt.badge.img+4
  • Contributor
  • December 15, 2020

I stumped the Apple Engineer with this one, but probably because it was a new MDM setting in JAMF. Thanks @dtmille2 , that did the trick!


Forum|alt.badge.img

sorry for the newbie question, dtmille2, but where can I find the Restrictions configuration profile? thx


Forum|alt.badge.img+4
  • Contributor
  • March 18, 2021

@user-GORqGytjlr , click on the Restrictions payload in your configuration profile then the Functionality tab. You'll see the screen above there.


Forum|alt.badge.img

Can I do this via Terminal to a remote MacMini? I don't have local access.


Forum|alt.badge.img+12
  • Contributor
  • May 27, 2021

I am experiencing issue with 11.4 machines. They do not even appear to be scannable by ARD. I briefly had access, but that went away. I am reviewing Config Profiles but I am not seeing the same issues with 11.3.1 devices.