Get Support
Recently active
Hello. I can get these commands and scripts to work just fine when running them locally on my Mac, but they seem to fail when getting pushed from Jamf.Scripts.1: #!/bin/sh defaults write NSGlobalDomain "AppleShowAllExtensions" -int "1" && killall Finder 2: #!/bin/sh defaults write NSGlobalDomain "AppleShowAllExtensions" YES && killall Finder Both work fine, surprisingly. Whether I run the scripts from Terminal, or I run the commands themselves directly from Terminal, it works both ways. But if I run either of the two scripts via a policy through Jamf, it doesn't work. The script runs and I see Finder quit/restart, but the setting for 'Show all filename extensions' does not change.I was going to try a Configuration Profile instead, but cannot figure that out. I had started something like this:Preference Domain: com.apple.finder <?xml version="1.0" encoding="UTF-8"?> <!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "http://
I'm trying to get Jamf Protect offline client/policy talking from Mac to SIEM. It appears that protectctl is only useful with the full cloud product, or else my clients are broken. If protectctl needs cloud version, why is it installed on my Macs? And how do you debug without it. The files in the db folder are totally opaque for debugging. It appears that protectctl diagnose is also useless without cloud. Ideas?
Hello everyone, I would like to implement Installomator to manage the installation and updates of the applications I use, in order to streamline the process and avoid the repetitive task of manually searching for each package for every application. I watched the Patch That App Up (By Using Installomator) session presented at JNUC 2023. In the video, it is recommended to create a smart group based on the "Patch Reporting" criterion to identify devices running a version older than the latest available. Additionally, it is advised to create a second group containing the members of the first one, as Jamf does not allow targeting a group directly based on the "latest version" criterion. Is this still the best method today? Do you have alternative approaches to suggest?
Hello everyone, I'm looking for advice on how to integrate SwiftDialog with Installomator. When I update an application, it closes automatically without notifying the user, which can lead to the loss of their current work. Should I configure specific parameters when adding the script to the rule ? Modify the Installomator script directly ? Or use SwiftDialog to notify the user beforehand ? Thank you in advance for your help!
Getting back to testing OneDrive since we're moving to it this year. For the most part it looks like it's working, but one issue I'm having is, when launching OneDrive, it's not populating the email address on the first step. The below is what we have setup. We're trying to match with Windows settings are going to be, but it looks like some settings are available on the Mac side like, Continue syncing on metered networks Continue syncing when devices have battery saver mode turned on <dict> <key>DisablePersonalSync</key> <true/> <key>DisableTutorial</key> <true/> <key>DefaultFolder</key> <dict> <key>Path</key> <string>~/OneDrive - CompanyName</string> <key>TenantID</key> <string>ourtenantID</string> </dict> <key>AutomaticUploadBandwidthPercentage</key> <integer>30</integer> <key>Fil
Today we released an upgrade to Mac Endpoint Telemetry. The new version of telemetry primarily uses the macOS Endpoint Security API and includes updates for new and existing endpoint logging. The telemetry configuration page has been redesigned and now offers multiple event categories to choose from, allowing for more granularity and customization when choosing events. New telemetry configurations now automatically include both admin-level and user-level activity. This new version of telemetry provides unprecedented visibility into macOS systems, with a few examples being: User elevations Authentication Persistence creation System operations To learn more about Jamf Protect’s endpoint telemetry for macOS, visit our blog.
Hey there, I was wondering if there is an easy way to remove user-added web clips from the home screen, or preventing them from being added in the first place. I see that someone had asked this question a few years ago but there was no accepted solution from what I could tell. At my district we have 1:1 iPads in K-2 and it helps to have the layout configured so that our managed apps and web clips are where our teachers/student expect them to be. Sometimes a web clip will get added by a student/teacher and the teacher will want it removed, but they lack the permissions to edit the layout themselves. Jamf school does not have any way to view/remove user-added web clips to my knowledge. Is disabling the profile with the managed layout or wiping the device the only ways to circumvent this? Thank you! Ben
I haven't seen any documentation so I'm not sure if this is possible but I'd like to show days until password expiration on Jamf Connect Menu Bar. Does anyone have any info on how to do this if it is possible?
I am setting up Zscaler for my Org and this requires adding several processes to the MacOS native firewall. We are hoping to use Jamf for this however we seem to be limited by Zscaler not knowing the bundle ID of their products as well as the format not meshing well with the Jamf Firewall allowlist. Has anyone configured this in the past?I'm looking to allow the following: (from https://help.zscaler.com/client-connector/zscaler-client-connector-processes-allowlist)Zscaler: InboundZscaler: OutboundZscalerService: InboundZscalerService: OutboundZscalerTunnel: InboundZscalerTunnel: OutboundZscalerUpdater: OutboundUPMServiceController: InboundUPMServiceController: Outbound/Applications/Zscaler/.Updater/autoupdate-osx.app/Contents/MacOS/ZscalerUpdater: Inbound/Applications/Zscaler/.Updater/autoupdate-osx.app/Contents/MacOS/ZscalerUpdater: Outbound/Library/Application Support/Zscaler/ZDP/bin/zdpd: Outbound/Library/Application Support/Zscaler/ZDP: Inbound/Library/Application Support/Zsca
Today we released Jamf Connect 2.43.0; this release includes minor bug fixes and improvements. To access new versions of Jamf Connect, log in to Jamf Account with your Jamf ID. The latest version is located in the Products section under Jamf Connect. Product Documentation For additional information on what's included in this release, review the release notes via the Jamf Learning Hub.
Hello Community, I am trying to install wazuh agents in our organisation's computers in an effective way, and i wanted to use jamf pro for this. Any one have an idea on how to do this? or any alternative way?
I've setup the "Device Compliance" in Jamf as well as the "Partners Compliance Management" in Entra ID successfully and syncs daily with Jamf. However, it appears that after a macOS device has registered in Entra ID, a day later it's no longer compliant and "MDM" is no longer reporting as "Microsoft Intune" but as "N/A". In Intune, all macOS devices are also not reporting any compliance status. Any suggestions?
Is anyone currently using Platform SSO, specifically with Microsoft as the IdP? I’m impressed with its capabilities so far, but I’m not entirely confident about deploying it just yet, as it still feels like an early-stage product. Initial testing has been positive—Kerberos tickets authenticate to all resources seamlessly, and much of what we rely on Jamf Connect and NoMAD for is covered. One issue I’ve noticed, though, is that Microsoft Teams prompts users to reauthenticate almost daily when using SSO—something that doesn’t occur without it. Has anyone else run into this Teams reauthentication issue, or have feedback on the overall stability of Platform SSO?
Hello,in our school, students can no longer create an Apple icloud.com account.I tested, with the latest update, without restriction, on two different networks, by changing the date of birth but during the configuration, I always have the same error message "unable to create the account at the moment".Do you have a solution?Do we have to use managed identifiers? Thnks for your help
We've trialled Platform SSO fairly successfully, I'd like to use this more broadly but have a user-friendly workflow which follows enrolment.Using Prestage enrolment with SSO for account creation, only to then follow a separate process with company portal to register the mac in Intune and complete the user integration seems a bit odd, to a degree a duplicate step. Has anyone developed a smooth workflow with platform sso integration and PSE?
Good morning, I'm looking for help on updating or new fleet of Apple Silicon MacBooks. We wrote a script that worked perfectly with our old intel MacBooks, but with the new Silicon MacBooks the scripts get stuck waiting for admin user or an user with secure token to input their credentials. I found that Jamf "Software Update" does not work well for our MacBooks in our environment. I found two scripts that works well with the new Silicon devices, but we still run into the issues with enduser having to type in their information. The scripts I used were S.U.P.E.R and Erase-Install I'm looking for a workflow like this if anyone has one. Prompts the user there is an Update Allow the User to defer if time is not right, but forces them after they reach their limit Checks to make sure MacBook is connected to charger Performs the update without needing users credentials Thank you guys in advance for any help or suggestions
Hey Community, I am facing an issue and need to identify the solution for that. I have couple of enrollment customizations which are working fine with PreStage enrollment. But I wan enrollment customization for user initiated enrollment. For example, I want to guide the users how to install the MDM profile once downloaded. But I can see enrollment customization works only with PreStage Enrollment. Any ways to achieve this for user inititated enrollment? Thanks in advance.
Hi all,So we are using the MakeMeAnAdmin script for almost 3 years without a hitch.Now we are having the first macoS 12.3.1 devices and the MakeMeAnAdmin script does not work anymore. On older macOS versions everything works fine.Anyone else experiencing this issue?
macOS 13.6Connect 2.29Azure/EntraLogging in seems to work fine. Once in, click on the JC icon > change password, box comes up with microsoft asking for our email address, enter and get redirected to our page, then a blank white box. At the bottom is our password change rules and a done button, but no place to change the password.Verified in the menu config that thechangepasswordurl = https://account.activedirectory.windowsazure.com/changepassword.aspxWhen I click on the url, I get to the page. Jamf Connect license is present in its own file.Any suggestions on what might be going on?
Has anyone had any luck getting these to work? or am i just doing something stupid?
Hello!We are using JAMF School, and I wanted to update the logo in DEP. Unfortunately, every time I try to change it in the settings under "Appearance," I receive an error with the following message:"An error occurred while saving - The following error occurred: Our development team is notified about this problem. Problem identification:" The size and format are correct, and the file is quite small. Are there any specific rules?
Hello,I've been testing how to recover a device in the case an employee logged into their iCloud account with their personal credentials on a supervised machine. I was able to successfully boot into recovery mode, erase the machine then after rebooting again use the MDM recovery key in JAMF to regain control over the machine. However, I tried another scenario where I used the personal iCloud account to remotely lock the machine. I was not able to find a procedure to recover the machine in that case.Is there a process for this, or is there a way to disable remote lock via iCloud in Jamf Now?
Hello everyone,We've been using Bitdefender in our organisations in almost five years now without and problems with the distribution/installation through Jamf. But recently it happen after updating the package. We get a result in the process bellow I don't really understand and don't know to solve.I would appreciate it if anyone knows what the problem is and hopefully how to solve it.1. Executing Policy Antivirus - Bitdefender2. Downloading antivirus_for_mac_arm.pkg...3. Downloading https://euc1-jcds.services.jamfcloud.com//download/952aecdf92e54c788e0e69144d29572e/antivirus_for_mac_arm.pkg?token=4937184d5be64b5d96ccb6c40b9d18cbxw42zber37n0ivx90oh2s2vii50bnmfg...4. Verifying package integrity...5. Installing antivirus_for_mac_arm.pkg...6. Installation failed. The installer reported: installer: Package name is Endpoint Security for Macinstaller: Installing at base path /installer: The install failed. (Installeraren stötte på ett fel som förhindrade installationen. Kontakta programv
Hello everyone, If a user restarts her Mac device and the computer does not recognize her computer password does that mean there is a a syncing issue with the local account password and the network credentials? What would be best practice to resolve this sort of issue?
Hello everyone, I wanted to know if there is a terminal command or best practice for dealing with a user receiving the image attached to the post.
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!