Get Support
Recently active
This seems promising but I know nothing about it. I wonder what kind of performance impact we can expect by implementing this (in a clustered environment.)
I am seeing an issue where suddenly my App Installers that I have setup for automatic updates are no longer functioning, but Self Service app installs work fine. Seems to have started when 11.10 was released. I have tried recreating policies from scratch but issues remain the same. No App Installers set to automatic function, everything stuck in progress but no signs the update command is ever sent. When I look at the deployment status, none of the scoped machines are visible, but if I look at a Self Service policy, they are there. Is anyone seeing anything like this and any idea how to resolve it? I do have a case open with JAMF but so far we haven't got it figured out.
Hello everyone, We use Jamf Pro Cloud 10.42.1 and we have an issue with macOS Ventura. When we prepare a Mac with our prestage enrollment, we have a message : You do not have permission to use the application "SafariSupport". We use exactly the same configuration profiles for Big Sur and Monterey and we never had this message. You can see screenshots of our Restrictions Configuration Profile. Applications folder is in Allow folders so we don't understand why we have this message.And if we add Safari in Allow Apps, Safari opens but we have the dialog box again.Anyone had this issue or understand what is wrong with our Restrictions Configuration Profile ?
I've been trying to get a config profile for a screensaver to work in Somona (14.6) and have had no luck. For those of you that have had success, what path did you use in the field for 'Use Screen Saver Module At Path'? It can be any basic built in screen saver, nothing custom.
Hello all, We would like to deploy our Macs with a set of standard applications in the dock, but not disallow the end user to move and resize the dock. Is there a way to insert or set apps with the dock without locking out the user entirely? Thanks much -
Hi, I've recently setup 30 mac minis to be used for directory displays around my institution. I was looking for a config profile...or policy to block all notifications from popping up. I've already set DND to run 24-hours a day, everyday. Thoughts? Thanks, Danny
Hi All, I have an Zoom screen sharing issue within Configuration Profile, the Policy for Zoom is not working after an App, Do anyone have any information on how to resolve this issue, once there Zoom app update?
Hi y'all, We are trying to deploy the HP printer app that is necessary for connecting and using our HP printers on our new Macs. However, we don't allow App Store access to our devices. For the most part that hasn't been an issue but it looks like HP's app is only downloadable through the App Store. Is there a way through this? I don't think there's a workaround that lets you download the app from HP itself etc , but maybe there's a way to deploy it through the Mac Apps etc that gets it from the App Store but doesn't require a login to it?
Hi,I've installed the Ripple Tool extension on several devices, but I'm having trouble getting it to turn on automatically. Whenever a user logs in and opens Safari, they get a pop-up asking if they want to enable the "Ripple Tool" extension.I’ve tried using a script to automate this, but it keeps failing because it can’t find the com.apple.Safari.Extensions.plist file in preferences. The Ripple Tool was downloaded and installed from the Apple Store.I also tried using a configuration profile to enable the extension, but that approach didn’t work either. #!/bin/bash# Define the extension's bundle IDEXTENSION_BUNDLE_ID="com.ripple.tool"# Safari’s extension preferences filePREFERENCES_FILE="/Users/$USER/Library/Preferences/com.apple.Safari.extensions.plist"# Check if the plist file existsif [ -f "$PREFERENCES_FILE" ]; then# Add the extension to the plist (this approach might vary depending on Safari version)/usr/bin/defaults write "$PREFERENCES_FILE" "ExtensionsInstalled" -array-add
The Jamf Pro 11.12.0 Beta Release features new restrictions including support for bypass screen capture alert, the ability to restrict Apple Intelligence features and more! How to join the beta: Enroll in the Beta Program under Product Feedback at account.jamf.com. Once you enroll you'll receive an invitation to join the Beta Forum, click "Join this group Hub" to gain access. Email beta@jamf.com with questions. The beta program is covered by the Jamf non-disclosure agreement; please do not share any information regarding your testing on any public forum, including the non-beta areas of Jamf Nation. Use the Jamf Nation Beta Forum or contact Jamf via beta@jamf.com with any questions. Thank you to all who participate in this program!
for a device which has jafm Manuel enrollment payroll MdM, would the administrator be able to see if a file was airdropped from said device to another device? I’ve seen conflicting information as some stuff says that airdrop is encrypted and not allowed because of apple’s privacy, but also seen other stuff. in any case, would there be a log of the file that was sent and the device it was sent to?
Hello, Jamf is running on my MacBook although its not part of any MDM system. I also don't have any profiles installed. How do I get rid of Jamf altogether? Removing it from Applications/LaunchAgents/LaunchDaemons doesn't help, it just reinstalls itself and starts up again. I can see that there is something when I run `sudo protectctl info` but I don't know what that is? Can this be a left over from migrating from an old mac that had a MDM running? Any help is greatly appreciated as the jamf security extension is using all the network bandwidth which is extremely annoying when tethering. Thanks and cheers, Karsten
So, with new Opt-In to Beta versions on iOS and iPadOS 16.4, how do you disable this option on your managed iPhones & iPads?
Hi Team, I'm working on deploying EndNote 21.4 to multiple devices, along with configuring the "Find Full Text" feature via script. My approach involves modifying the $HOME/Library/Preferences/com.ThomsonResearchSoft.EndNote.plistfile to include the required settings. However, when I deploy the script and launch the EndNote app, it doesn’t appear to recognize or pick up these configured values. For context, I’m setting up the "Find Full Text" preferences as described in the following guide: weblink: https://guides.library.uq.edu.au/referencing/endnote/find-full-textThis includes: Enabling checkboxes for Web of Science, DOI, PubMed, and OpenURL Setting the OpenURL Path to xyx.com Leaving the "Authenticate with URL" field blank Could you advise on why the app might not be picking up these settings from the plist file, or if there’s a recommended alternative approach to automate the setup of these preferences?
Hello All - we're experiencing an issue with the Kerberos extension asking users to log in again and again. Seemingly this is the same issue as this below linked discussion -- the extension is asking to verify "user presence" as per our settings in JAMF. https://community.jamf.com/t5/jamf-pro/kerberos-sso-extension-help/td-p/252043 We have two concerns by solving this issue by setting user presence to "skip" - one, is there is a security concern we are not thinking of by asking it to skip, and two, if we do set this to "skip" will this prevent the extension from updating the keychain without the user signing in and / or prevent the users from accessing shares? Does anyone know?
We are using the Kerberos SSO Extension, and every time a user logs in, a Mac centric box appears that says "Kerberos is trying to authenticate user" with an option to put in their password. If they cancel that box, another box appears having them put in my password to connect to the domain. This happens after they originally synced their local and AD passwords and got confirmation that it was successful and after testing, it was successful. The first time they synced their passwords, a box appeared that stated "Would you like to automatically sign in from now on?" and they chose yes, but obviously that's not working. I would rather not have my end users having to log in multiple times (Once to get into the device, and then another to validate password syncing). Thanks in advance for any help.
In WWDC Apple announced the ability to set a minimum OS version during the ADE process. This was in their "What's new in managing Apple devices" presentation Now I know Apple Configurator was specifically mention, but are we able to utilize this feature set?
Hello everyone, I'm having a problem with self service. When I download an app, it takes a long time to load and finally I get the message 'operation could not be completed' When I don't get this error message, I get this one: no license was found for the app "xxxx" I have this problem on all of my iPads (gen 9 and gen 10) iPadOS 17 and iPadOS 18 (kCFErrorDomainCFNetwork erreur -1001.) I use JAMF PRO V.11.10.2 Do you have an idea ? THANKS
Can anyone clarify what happens if our server is not connected to the VPN, but all other devices are connected to the GlobalProtect VPN? Currently, I have content caching enabled, and it works for devices on the local network that are not using GlobalProtect. My settings: Content Cache for: Devices using a custom local network (with all IP ranges added) My local network: Using a custom public IP address and added TXT record in local DNS.
Need to whitelist / blacklist some URLs.. for all browsers.. toying with Parental Controls.. which now invokes ScreenTime... while it kinda works.. the user is presented with this dialog... and they can 'add' the site.. and even get a dialog that its now allowed.. but.. its not.. all rather clunky.. Any way to disable this dialog? Any other suggestions for blocking / whitelisting.. trying to not add another product / cost / overhead
I am having a handful of systems with Configuration Profiles stuck in pending state. Does anyone know of a fix for this? These systems are all Automatic Device Enrolled, they are checking regularly to jamf. I have tried having them reboot, sending blank push from management commands. These commands have been pending for months.
Happy Monday all, is anyone having any luck resolving the outlook issue of Error 1001? noted and acknowleged here "https://support.microsoft.com/en-us/office/error-something-went-wrong-1001-signing-in-to-microsoft-365-desktop-applications-6f63238d-d83c-437c-a929-de72fe819793#:~:text=Some%20of%20the%20scenarios%20that,to%20Microsoft%20365%20desktop%20applications." MS says its ONLY affecting macOS 14.1, but we're seeing it on all versions at this time. the root cause, in my opinion and tested as well, is that theres an issue when connecting to the MFA portion of the outlook authentication. taking away that MFA in testing resolves the issue, but certainly not a risk anyone wants to take! office online is aour current workaround, but I'm hoping someone has had better luck. FYI we're on the current version of office for mac and using Azure/entra to authenticate.
Can we enable location access to specific app on MAC if yes what is the best way. Can we deploy a code on MAC using Jamf or Mosyle. Or any config profile, any help would be appreciated.
Hi, Is there a plist or config I can manually push to devices that allows me to defer an update for more than 90 days? When Apple releases a new major OS, we typically wait until they are in the 14.3.or 14.4 version since I started working in a company with Apple enviornment as we have see many bugs popup for various apps. Some of the apps we use on company level take couple months as well
Tried resetting the dock, reinstalling self service but the icon is always larger than the other icons in the dock. Any reason why? Theres no magnification enabled or anything obvious I can see, the icon uploaded to Jamf is 512x512 as per the recommendations, even the stock icon appears larger than other dock icons.
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!