Get Support
Recently active
About 75% of the apps I'm trying to push to an open enrolled freshly provisioned Macbook Pro aren't installing, I am using Jamf Now Plus and have test a variety of apps including Keynote, Numbers and Pages. I have "purchased" a pool (100 licenses) through Business Manager and they show up correctly in my Jamf portal. However when trying to install I am getting a "License Not Found" error dialog (with the Mac App Store icon) on the Computer and an "Installation failed. Will retry in 24 hours." error inside of the Device profile on Jamf. The odd thing is I've tried with some paid licenses such as Pixelmator and that worked and in some cases Pages work but Keynote and Numbers keep failing.
Hi All,I have noticed a strange issue after upgrading to 12.4. Post upgrade, automatically the device's registration status has been changed to "Unregistered". I tried registering the device from self-service portal and it got registered. However, compliance information is not getting updated in AAD and due to that unable to access office resources. I did force update of sending Intune integration logs from Jamf Pro --> Device's history --> "macOS Intune Integration Logs" and it's sending the update to Intune. Somehow the compliance is not getting changed.As part of troubleshooting deleted both the entries from AAD and re-registered the device but still the compliance is not getting updated. Any help is much appreciated.
Hi there,I have some machines with standard accounts and users are being prompted to install the helper tool which is frustrating them...I was under the impression that installing apps via polices / self service would prevent this from happening? The main culprits being ClickShare & Slack! My apologies if this is basic stuff, I'm a Windows guy transitioning over to Mac! Any guidance is seriously appreciated. Thanks in advanced,K
Hi all, After upgrading several of our Macs from older versions of the OS, we have started getting pop-up dialogs asking users to provide admin credentials to add helper tools for various apps (Skype, Brave Browser, Spotify, etc). Most users just click Cancel to dismiss the boxes but I'm concerned we're not staying updated. Also it's pretty annoying. Google led me down a rabbit hole with Skype that didn't fix the problem, and this seems to be happening to several applications. Has anyone seen these pop-ups and if so, what's the fix? Thanks!
Hi Everyone,!I am working with a client who renewed their APNs certificate using a different Apple ID. This resulted in a Topic ID mismatch within their Jamf Pro instance. While some devices are approaching their MDM profile expiration, a majority are set to expire by the end of the year. Because the current APNs certificate is inactive for these devices, the "Renew MDM Profile" command is failing with a "Topic ID mismatch" error. Does anyone have suggestions for automating the re-enrollment of devices that still have valid MDM profiles but are tied to the old APNs certificate? I am looking for a way to transition them to the new certificate without manual user intervention.!--tgqphd|[]-->
We had touch fail on an iPad so we purchased a replacement. The original iPad is for a special education student and has a lot of specialized and customized apps on it. Is there any way in Jamf that we can transfer the apps and their configurations over to the replacement iPad? Thank you!--a=1-->
Today we released Jamf Connect 3.9.0; this release addresses the following product issue:Fixed: WebAuthn authentication methods, such as passkeys and FIDO2 keys, incorrectly display as Duo Mobile in the Jamf Connect login window. To access new versions of Jamf Connect, log in to Jamf Account with your Jamf ID. The latest version is located in the Solutions section under Jamf Connect.Product DocumentationFor additional information on what's included in this release, review the release notes via the Jamf Learning Hub.
Hello all Apologies if this has already been asked and I have missed it, but has anyone got away of collecting the applications installed by home brew?
getting a few of these, has anyone figured a way to disable them completely?
Hi. Started seeing this error on applications pushed to Macbooks through DeviceGroups during enrollment. Apps are set to automatic installation. Tried to resync licenses with ASM without luck. Trying to reinstall the app sometimes gives the same error, or it works. I have been unable to see any reason for when this is happening. It seems totally random, and happens on all sorts of applications.Update! This also happens on random OnDemand applications where students adds them from Jamf Student.Anyone else seeing this, or know how to resolve it? This is how it looks from the Jamf Student application. The students are not able to retry, the teacher is not able to redistribute the app. Only “solution” is to hope that a reinstall from the managment site works. This is hit or miss.
One of my users cannot register for platform single sign-on. She can complete step 1, which is to authenticate with her Mac login password. Next, she can enter her email address. That’s when the process goes awry. After entering her email address, the window goes blank white. Behind it, we can see that Company Portal is doing something in the background. There’s the spinning progress icon. After seeing this, I removed and reinstalled Company Portal and ensured that the latest version was installed. She’s running macOS 26.3.1 and will have 26.4.1 soon since I just started enforcing that update. Has anyone seen this behavior and solved it? The PSSO login type used is Secure Enclave. We can’t do anything but cancel the registration.
I am testing Connect 2.45 and have had a popup appear on the Login Screen.Its a really "Helpful" Popup. All it says is SecurityAgentHelper wants to make changes, and it asks for an Administrator username and password. None of my users are Administrators, so they will not be able to fill this in.Is this a bug? Is there a way to fix it so that it does not pop up? What process is it that wants this access? Thanks Paul
I found out on a Monday evening in July, riding the subway home from work. I opened Gmail on my phone somewhere under Manhattan and saw I'd won the Jamf diversity scholarship, and I couldn't stop smiling the rest of the ride. I texted my partner right away. I'd applied because my department couldn't afford to send anyone, and JNUC had always lived in my head as this glowing space from the way senior engineers at old jobs talked about it. JNUC was in Nashville that year. I'd been to the city before for work, but never really gotten to enjoy it. Walking into the venue I just thought, wow, this is huge. I loved the vendor floor, finally putting faces to the account people I'd only ever emailed, and I got to meet up with an old coworker from a previous job, which made the whole thing feel less like a solo trip. One moment I keep coming back to: I was heading up the escalator and a woman struck up a conversation with me. Turned out she was also from NYC, and we ended up talking tech and Jam
PI-1152 involves the MDM Device Identity Certificate not being trusted on new enrollments after updating to version 11.26.PI-1153 concerns Device Identity Certificates being marked as untrusted in Keychain Access during enrollment in version 11.26.1.
• Starting as early as the next major software release, Apple operating systems (iOS, iPadOS, macOS, watchOS, tvOS, and visionOS) might refuse connections to servers with outdated or non-compliant TLS configurations due to additional network security requirements.• Requirements: Servers must support TLS 1.2 or later, use ATS-compliant ciphersuites, and present valid certificates that meet ATS standards. For complete network security requirements, reference the developer documentation• Link: https://support.apple.com/en-us/126655
I’ve had a bunch of Macs suddenly fail to get the Network Filter config apply for Defender. (Configured as instructed by Microsoft below)https://learn.microsoft.com/en-us/defender-endpoint/mac-jamfpro-policies?view=o365-worldwide#:~:text=Step%208:%20Configure%20Network%20ExtensionThis is resulting in a prompt "com.microsoft.wdav" Would Like to Filter Network Content that repeatedly appears in the middle of the screen and prevents users from working.It is effecting 90 macs out of over 1000, across different versions of macOS and on both Apple Silicon and Intel. Those affected are seemingly random, although only seems to affect our Lab environments connected via ethernet, not our staff devices on WiFI.Reseting a Mac and pulling down the same config seems to ‘fix’ the issue, so I’m guessing the issue is not with the config profile.I’ve tried descoping and rescoping the config and uninstall/reinstall of Defender to no avail. I’m thinking now the issue lies with the extension com.microsoft.
Fixed
What’s NewWe are excited to announce the next step in helping admins configure their user’s experience in Self Service+. With this extended beta release, admins will be able to configure the order of items in the left navigation bar, the presence of sections on the home page, and the appearance of the Self Service+ menubar item. With this first phase of the release, these three options above are configurable by configuration profile using the schema included in the release notes.In addition to this change, we are also currently working on a blueprints implementation within Jamf Pro to make changing these settings even easier. As we work through your feedback on these changes, we also want to be bringing even more customizations to help you bring a more tailored experience to your users. If you have any ideas for Self Service+ experiences that you would like to configure, we ask that you also share your ideas for us to consider as we prioritize next steps for customization.What we're
Today we are releasing a maintenance version of Jamf Pro; highlights include: Tomcat Version InstalledJamf Pro 11.27.1 includes Tomcat 10.1.54.Font Payload AlertAn alert has been added to the Font payload in configuration profiles to inform administrators that large font files or fonts scoped to large device groups can degrade performance or cause Jamf Pro to stop responding. Known issue: The alert message currently displays as a raw string rather than a formatted alert. Both the English and localized versions will be resolved in the next minor release. Resolved IssuesJamf Pro Server: Security IssuesJamf provides the CVE-ID for security issues with high or critical severity when possible.[PI169754] Fixed: A known vulnerability in a third-party library (CVE-2026-22752).Jamf Pro Server[PI-1133] Fixed: The Jamf Pro interface displays some policy payloads only in English, regardless of language settings [PI170473] Fixed: If a computer does not have an escrowed Activation Lock bypass code w
Hi all - has anyone managed to change Jamf-related notifications (Self Service, Jamf Connect, Management Framework) from persistent alerts to banners on macOS?On our supervised Macs, these are stuck as persistent, the alert style is greyed out, and users can’t change them.I tried pushing a custom Notifications profile (setting everything to banners), but it didn’t override the behaviour while the Jamf automatic notifications setting was enabled.When I disabled “Automatically install a Jamf Notifications profile”, my custom profile worked and switched them to banners - but it broke Self Service (lost the Elevate Admin option), so I had to roll it back.No other conflicting profiles in place.Just wondering if anyone has found a clean way to allow banner notifications without impacting Self Service, or if this is just expected behaviour with Jamf’s default setup.Thanks 👍
Hello,Since iOS 26.2, a passcode is required when using AirDrop, which quickly becomes cumbersome in a classroom setting.Is there a way to disable this requirement via Jamf School? I haven’t been able to find a relevant setting.Thank you in advance for your help.
• PSSO Utility is a native macOS app for inspecting and monitoring Platform Single Sign-On (PSSO) status. It queries the system app-sso tool and presents key metrics, IdP details, and raw JSON output in a clean interface. A menu-bar item is available for quick troubleshooting.• Link: https://github.com/jamf-concepts/psso-utility
Hey everyone, I have been going through different posts across here and Reddit, and I could really use some help. I am attempting to use the Jamf ADCS connector to push a machine certificate to a MacBook, which I can get it to do successfully. In the same profile, I have the network configuration in place there as well. The issue that I am running into is not anything with the certificate/Jamf side, but with the Windows RADIUS server. I have an unbound AD object for the machine created, but I am unsure what I need to do with the object. The machine currently is successfully attempting to authenticate with the certificate, but NPS is rejecting it for error 8 - User account does not exist. Does anyone have this set up in their environments, and is there a better way to do things? My security and systems teams won't let me domain bind the Mac devices, so I am using Jamf Connect for authentication, and I assume this is also why I am having account issues.
I am trying to make a smart group to see what computers have the PaperCut Client installed but i don’t see anything in the /Applications/PaperCut Print Deploy Client/ directory that i can select as the .app in the smart group. What can I use create this smart group?
I’ve read most documentation and searched the forums but I’m having trouble finding out how devices that are assigned to users are kept assigned to users during and after the migration. We have 1200 Mac devices and about 4k ipads that need to keep their assigned user during the migration. We plan to use the migration tool in Jamf Pro. Currently we are using LDAP Username and not email for the user assignment. However each user has an email brought in as well. Should we update LDAP values first in order to make the transition? Would it be better to use the API to pull all devices and users, do the migration, then put them back with new usernames? Any insight into the migration tool and things to look out for also welcome.
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!