Has anyone found documentation for the new "Enable Escrow Personal Recovery Key" option in JSS 9.101.0 in order to support Recovery Key escrow in macOS 10.13 High Sierra? It looks like Jamf hasn't updated the documentation to report best practices for the "Escrow Location Description" or "Device Key for Escrowed FileVault Recovery Key" variables:
Page 2 / 2
would be nice to have a Smart Group option if the recovery key is actually present on JSS as the Valid/Not Valid is not useful at all... many get invalid even though they are valid and there is no way to get actual macs which do not have the recovery key at all.
Would love to have an EA that I can target for machines that need to reissue the FV key or that don't have the FV key in the JSS. Cant seem to find any way to actually get a clean report stating that Yes a key does in fact live in the JSS.. Cant find an API to pull for this either and all the FileVaiult options have nothing about if the key is stored or not in the JSS.
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.