Hi there
At my school we have a wireless network solely of the purposes for new students to use when enrolling their iPads into Jamf. Once enrolled they would get a config profile with settings for another secure SSID their iPads then join.
We had some firewall rules on the enrollment SSID, locking it down so the only destinations accessible was the on-site Jamf server and the apple 17.0.0.0 subnet
This had previously proven effective, users would enroll their iPads successfully without using this network to access the wider internet. However as of late enrollment is failing, and will only work if I remove the firewall rules and allow traffic to anywhere.
Does anyone else out there use a similar method to allow users to enrol?
Thanks