Get Support
Recently active
Is there a way to automatically have Safari 18.1.1 install on all end user MacBooks? I 'thought' if we pushed 14.7.1, Safari 18.1.1 would be included/installed at the same time. That does not seem to be the case as users still have to manually go into Settings -> software updates -> updates safari there.
Anyone using EntraID for IDP with JC have any best practice suggestions for what claims to include in the ID Token? We plan to use the Admin Elevation feature for particular groups.
Hello fellow Admins, My company has recently implemented Jamf Connect to do a "pre-provisioned" style setup for refreshes. We are stuck on our new hire setups as Okta is not setup yet for a new hire, but the login requires your Okta credentials. I have seen the option to list a help button that takes the new hire to the Okta portal to finish the setup:https://community.jamf.com/t5/jamf-connect/jamf-connect-okta/m-p/259033. We also have OICD and group access via Okta for our users. Has anyone else run into this situation at their company, and if so, what solutions have you implemented or considered? Feel free to PM me responses as well if you are not comfortable putting any information out in the open. Thank you in advance!
Hi all, I have a client whose company has very strict policy about data protection and privacy. We are developing an App for this client that will utilise the Apple Dictation function. Due to the data protection and cybersecurity requirements, we want to use the Apple Dictation function in offline manner, which is possible. However, Apple documentation did not provide option to exclude audio and text data using in audio transcription process to be uploaded to Apple servers. Hence we are looking to use JamF to block such traffic. In fact, we want to block most traffic to public internet, except those necessary for operating the devices, MDM and app. For example, we will allow list of servers used for certificate validation. My question to JamF community and JamF experts is if JamF can help us achieve our objectives, which including network traffic filtering at OS layer (blocking even iOS traffic to Apple servers)?
I have deployed BeyondTrust's remote support client to my test machine. However, if I set the configuration profile to Allow Standard Users to Allow Access for ScreenCapture, the app doesn't seem to realize it's been authorized. It continues to prompt to allow. Even if I check it with an administrator account. As you can see in the screenshots, even the Accessibility and Full Disk Access are also showing denied, even though they are set to allow in the configuration profile.The fun part is (on a fresh image) if I set the ScreenCapture to Deny, then use an administrator account to allow while on the computer, it actually does allow it.
I'm in the process of migrating our Iphone fleet from a different MDM to Jamf and for this reason we need to wipe our devices completely to enrol them on Jamf.I'd really like to not lose everything our colleagues have on their Iphone but in my tests I can see that the backup step is just before the enrolment step.If I proceed with the backup the last MDM is migrated to the device too but if I enrol the device on Jamf i lose the opportunity to have a backup at all.Is there any smart way to do this that's not just saving everything on a cloud?
Hello everyone, Once the workstation has been enrolled, some of my workstations doesn't have the folder "Remote Assist" in "/Library/Application Support/JAMF/", which is why Jamf Remote Assist does not work on these workstations. But I don't understand why it's doing this to me when it's working on other workstations. Could you help me please ?
Has anybody been able to configure the Apple Intelligence Report section in Privacy and Settings?
Hi all, We are looking to mass deploy a silent push where we can push random generated or making use builtin information for computer naming convention silently. We need to mass deploy this to our existing computers without user interaction. Does any know what the possibilities are with macos 14 and 15 and if something someone has?
I got to work this morning, logged into my Jamf console a few minutes, and noticed my entire dashboard is gone. I had a ton of items on my dashboard, and now they disappeared. Anybody else have this issue when they logged into their cloud-based Jamf console? How do I get all the items that were on there back on my dashboard?
Hi eveyrone, Rookie here. how can I upload a larger than 5GB pkg to jamfCloud? With Jumf Sync the max is 5GB. I checked the log and I get below. Failed to copy Adobe_AE to JCDS (Jamf Sync): dataRequestFailed(statusCode: 400, message: Optional("EntityTooLarge: Your proposed upload exceeds the maximum allowed size - max allowed size = 5368709120")). Adobe After Effects on its own package is 6.38 GB.
In case others need the Sonoma Safari 18.1.1 package: https://swdist.apple.com/content/downloads/07/27/072-35776-A_9GTPDVFEFP/vp2hopk2kfiw0at5uzlvvnfg6rp5z9iz8c/Safari18.1.1SonomaAuto.pkg This patches recent vulnerabilities: https://support.apple.com/en-us/121756
What methods are people using to get logs off of users systems? For example, a user will call in saying they have some issue with their system. We'll generally then take a look at system.log, install.log, jamf.log, etc. by remoting into their system, having them email us a copy, or looking at them directly. I'm thinking it would be much better if I could script a Self Service item that would upload those files to an available share, pull them with Casper Remote (without needing to Screen Share), or something similar. Has anyone done anything like this?
I am trying to renew the certificate on my IIS distribution point on a Windows server. The documentation has changed recently and the new documentation seems to have left out the part of making that request in the Certificates snapin in mmc. I can get part way through from memory but I know there were some other settings that I cannot recall. This is the documentation updated in October of 2024... https://learn.jamf.com/en-US/bundle/technical-articles/page/Using_IIS_to_Enable_HTTPS_Downloads_on_a_Windows_Server_2016_or_2019_File_Share_Distribution_Point.html Does anyone have a printed out copy of this page prior to the update? I recall that it was step 4 where they talked about making the request that I need to do. Thank you in advance for any help.
Hello Jamf Nation! We have just launched a Self Service+ 0.13.0 beta release which is the initial Public beta release version. We’re excited for your feedback and are looking forward to talking with you in the beta forum! Self Service+ 0.13.0 beta requires Jamf Pro 11.11.0 or newer, and is intended for testing and feedback purposes only. It must not be deployed to end users in a production capacity. To participate, log into Jamf Account, click "Feedback", and enroll into the Self Service+ Beta. The beta program is covered by the Jamf non-disclosure agreement; please do not share any information regarding your testing on any public forum, including the non-beta areas of Jamf Nation. Use the Jamf Nation Beta Forum or contact Jamf via beta@jamf.com with any questions. Please ensure under My Settings → Email in Jamf Account that “Don’t send me any community emails” is unchecked, or you will be unable to participate in providing feedback and interacting with
Looking into changing from DepNotify to Setup Manager. Our distribution point is not cloud based and needs authentication (this will not change) Is there a way to use Setup Manger once in the OS like DepNotify? I have done some testing adding the profile to the Prestage (but not the setup manager PKG) and setting a Setup Manager Policy with trigger on enrollment. But it does not seem to work all the time and when it did work and said it was installing packages (using jamf policy trigger) none of them installed. Any one use setup Manager in this way?
Hi all, My issue is based on jonw's script from here (big thanks for that), I used this for deploying AutoCAD LT 2025: https://community.jamf.com/t5/jamf-pro/packaging-maya-2025/m-p/320737/highlight/true#M277340 I use this line for registering the product: /Library/Application\\ Support/Autodesk/AdskLicensing/Current/helper/AdskLicensingInstHelper register --pk 827Q1 --pv 2025.0.0.F --lt USER --cf /Library/Application\\ Support/Autodesk/Adlm/.config/ProductInformation.pit The issue: When the script runs the applyLicense function, I get this error: Error (25) for adlmPITSetProductInformation_2: Error has occurred while parsing PIT file How can I write the license details into the file? Tried to change file permissions (chmod 644 and chown root:wheel) - no luck Tried to execute the command with sudo from Jamf - no luck Tried to execute the command from Terminal with sudo - no luck Tried to delete the file and create it again - no luck Tried to do a clean
Hello All,Please help me with a solution where we can hide or remove the unwanted tunnels list in the CISCO AnyConnect VPN Window.I would like to remove/hide Web Security, System scan or AMP etc.
May be a silly post but I thought I post here for some ideas if any. So i been tasked to create a green colored folder on users desktop that contains "X file". I can get this working on my local system but when I package it and deploy it to another system when the folder installs on the new system the color reverts back to default. Basically it seems like the custom folder color settings don't carry over. I've tried installing the folder in a shared location then creating a colored alias still no go. I've also tried creating a custom green icon folder and trying to redirect that icon to the shared folder location but even that is proving to be challenging. has anybody ever had to tackle a silly task like this? I've been at it for a few days already maybe I'm overthinking?
Now that Jamf Pro Admin is no longer available, is there a way in Jamf Pro web portal to upload a new .pkg file that replaces a current .pkg in an existing package? I don't see any way to do this. This was relatively straightforward task in Admin, but it seems like you have to create a new package every time you need to update a (non-Apple or non-Jamf App Store) package? I have multi-package install policies which include a dozen or more packages, which all would need to be modified every time a new package name gets added/removed? In the past, when the package name could remain unchanged and you could just update the underlying .pkg file, there was no need to worry. Am I missing something? TIA,Jim
Is anyone else seeing this problem? I can't edit the Mac app descriptions any more under Self Service. iOS still works fine... I confirmed this on multiple JAMF instances.
Hi everyone, Does anyone have experience switching Apple accounts when renewing a VPP Server token? What is the impact on applications? Can we have more than one Apple account for the VPP Server token? Thank you.
Hi all, can someone confirm this for me, (those who use sandbox) Does this have it's own JCDS?? so, if i connect via the sanbox, it's not conecting to our live cloud jcds?? TIA
I'm trying to block a specific extension in Firefox. It works if I block all extension, but not when I reference the specific extension ID. I confirmed that the extension ID is correct. Any suggestions? <?xml version="1.0" encoding="UTF-8"?> <!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "http://www.apple.com/DTDs/PropertyList-1.0.dtd"> <plist version="1.0"> <dict> <key>EnterprisePoliciesEnabled</key> <true/> <key>ExtensionSettings</key> <dict> <key>{87677a2c52b84ad3a151a4a72f5bd3c4@jetpack}</key> <dict> <key>blocked_install_message</key> <string>Extension blocked by Security Policy.</string> <key>installation_mode</key> <string>blocked</string> </dict> </dict> </dict> </plist>
Our environment runs JAMF and azure to pick up device compliance, JAMF connect status was "terminated" in Entra ID this has been fixed just wanted to know what could cause this?We followed these steps to fix: https://learn.jamf.com/en-US/bundle/technical-paper-microsoft-intune-current/page/Migrating_from_macOS_Conditional_Access_to_macOS_Device_Compliance.html
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!