Skip to main content

Hi all,

We need to stop personal iPhone/iPad from connecting the work macs. We have tried deploying this one: https://github.com/jamf/jamfprotect/tree/main/device_controls/restrict_mobiledevices_syncing_with_finder

This one is actually effective partially in stopping Finder to do the sync with iPhone. However, in Photo.app and Image Capture.app, there's still personal device.

Is there a specific preference domain or key we will apply to stop all iOS/iPadOS from connecting to the work mac?

No, what you are wanting to do is outside of the bounds of MDM. You are looking in to something called DLP, and will need a tool specifically for this function. Something like Forcepoint, Broadcom or Trillix to give you DLP controls over USB connections. Jamf Protect can also block reading and or writing to USB devices.


Reply