Skip to main content
Question

Scope Policy to LDAP Group in 9.3?

  • April 15, 2014
  • 3 replies
  • 21 views

Forum|alt.badge.img+12

Hello,
I know we used to be able to limit a policy to a particular user or group. Of course, this would only work for Self Service. I have a new policy that I am trying to scope out to our Help Desk staff, however, I am not seeing those limitations anymore. We never really used them, so I don't know when they stopped being available. We are running JSS 9.3.
Currently we have Self Service to prompt for a password, but not require it. I have verified that LDAP integration works and I can log in to Self Service using any LDAP user account.
So, does this option not exist in 9.3 anymore?

3 replies

Forum|alt.badge.img+12
  • Author
  • Valued Contributor
  • April 15, 2014

I really don't know what changed, but now when I go into the "Limitations" section, LDAP User and LDAP Group are there. They weren't there just a few minutes ago.


mojo21221
Forum|alt.badge.img+12
  • Valued Contributor
  • April 15, 2014

The feature doesn't work as well as it should. A work around by creating extension attributes to display AD information may be more helpful. https://jamfnation.jamfsoftware.com/discussion.html?id=7292 was a resource I used when looking into this.


Forum|alt.badge.img+4
  • Contributor
  • April 16, 2014

IIRC, you either need to make the policy available via Self Service or with the Login trigger before the the tab for Limiting via LDAP group appears.