Just ran into this for the first time when trying to boot an M1 Pro into Recovery mode-- laptop was just reset using "Erase all content and settings" and has macOS 13.2.1 installed. I was intending to update the macOS to the latest by reinstalling the operating system from the Recovery console-- but alas, I ran into this "Recovery lock" blocker for the first time. So, with a little research, I find that the password should be cached in Jamf Pro, and I look it up-- a freaking 39-character password??? And when you type it in slowly on the computer in question, it doesn't show up as you type. Is this all the default behavior Apple has created? What a fricken pain in the butt.
I don't see the need for this overbearing security roadblock. All my users are local admins and living remote, and in eight years of managing Macs with Jamf, I have not regretted that once. Everyone's remote now, and they need to be able to do some troubleshooting, Jamf Pro helps us keep the drives encrypted, no auto-login, so if a laptop is stolen, the drive can only be wiped, no data can be accessed, what more do most small companies need?
From my searching around, there appears to be some script I can run to disable this computer by computer-- I just want something in the Jamf config profile to forget the whole feature, or at minimum set the password to blank automatically, nothing I need to remember to do each time. Is there any way to do this?
Apologies if I just missed something obvious somewhere. I would not be surprised.
Thanks
Solved
New "Recovery Lock" -- how to completely disable it?
Best answer by mickgrant
It is in the prestage.
There is a checkbox to Set Recovery Lock and then a drop-down to select if you want the auto-generated code or a single manually enterable code to apply to all computers.
So I would go turn that off there if you don't want it set on Macs you set up in the future.
For the Macs you have already deployed, you will need to use a script to make API calls to remove them.
Here is a really good one https://community.jamf.com/t5/jamf-pro/m1-m2-recovery-lock-management-script/td-p/279965
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.
