Get Support
Recently active
I'm in the process of migrating our Iphone fleet from a different MDM to Jamf and for this reason we need to wipe our devices completely to enrol them on Jamf.I'd really like to not lose everything our colleagues have on their Iphone but in my tests I can see that the backup step is just before the enrolment step.If I proceed with the backup the last MDM is migrated to the device too but if I enrol the device on Jamf i lose the opportunity to have a backup at all.Is there any smart way to do this that's not just saving everything on a cloud?
Hello everyone, Once the workstation has been enrolled, some of my workstations doesn't have the folder "Remote Assist" in "/Library/Application Support/JAMF/", which is why Jamf Remote Assist does not work on these workstations. But I don't understand why it's doing this to me when it's working on other workstations. Could you help me please ?
Has anybody been able to configure the Apple Intelligence Report section in Privacy and Settings?
Hi all, We are looking to mass deploy a silent push where we can push random generated or making use builtin information for computer naming convention silently. We need to mass deploy this to our existing computers without user interaction. Does any know what the possibilities are with macos 14 and 15 and if something someone has?
I got to work this morning, logged into my Jamf console a few minutes, and noticed my entire dashboard is gone. I had a ton of items on my dashboard, and now they disappeared. Anybody else have this issue when they logged into their cloud-based Jamf console? How do I get all the items that were on there back on my dashboard?
Hi eveyrone, Rookie here. how can I upload a larger than 5GB pkg to jamfCloud? With Jumf Sync the max is 5GB. I checked the log and I get below. Failed to copy Adobe_AE to JCDS (Jamf Sync): dataRequestFailed(statusCode: 400, message: Optional("EntityTooLarge: Your proposed upload exceeds the maximum allowed size - max allowed size = 5368709120")). Adobe After Effects on its own package is 6.38 GB.
In case others need the Sonoma Safari 18.1.1 package: https://swdist.apple.com/content/downloads/07/27/072-35776-A_9GTPDVFEFP/vp2hopk2kfiw0at5uzlvvnfg6rp5z9iz8c/Safari18.1.1SonomaAuto.pkg This patches recent vulnerabilities: https://support.apple.com/en-us/121756
What methods are people using to get logs off of users systems? For example, a user will call in saying they have some issue with their system. We'll generally then take a look at system.log, install.log, jamf.log, etc. by remoting into their system, having them email us a copy, or looking at them directly. I'm thinking it would be much better if I could script a Self Service item that would upload those files to an available share, pull them with Casper Remote (without needing to Screen Share), or something similar. Has anyone done anything like this?
I am trying to renew the certificate on my IIS distribution point on a Windows server. The documentation has changed recently and the new documentation seems to have left out the part of making that request in the Certificates snapin in mmc. I can get part way through from memory but I know there were some other settings that I cannot recall. This is the documentation updated in October of 2024... https://learn.jamf.com/en-US/bundle/technical-articles/page/Using_IIS_to_Enable_HTTPS_Downloads_on_a_Windows_Server_2016_or_2019_File_Share_Distribution_Point.html Does anyone have a printed out copy of this page prior to the update? I recall that it was step 4 where they talked about making the request that I need to do. Thank you in advance for any help.
Hello Jamf Nation! We have just launched a Self Service+ 0.13.0 beta release which is the initial Public beta release version. We’re excited for your feedback and are looking forward to talking with you in the beta forum! Self Service+ 0.13.0 beta requires Jamf Pro 11.11.0 or newer, and is intended for testing and feedback purposes only. It must not be deployed to end users in a production capacity. To participate, log into Jamf Account, click "Feedback", and enroll into the Self Service+ Beta. The beta program is covered by the Jamf non-disclosure agreement; please do not share any information regarding your testing on any public forum, including the non-beta areas of Jamf Nation. Use the Jamf Nation Beta Forum or contact Jamf via beta@jamf.com with any questions. Please ensure under My Settings → Email in Jamf Account that “Don’t send me any community emails” is unchecked, or you will be unable to participate in providing feedback and interacting with
Looking into changing from DepNotify to Setup Manager. Our distribution point is not cloud based and needs authentication (this will not change) Is there a way to use Setup Manger once in the OS like DepNotify? I have done some testing adding the profile to the Prestage (but not the setup manager PKG) and setting a Setup Manager Policy with trigger on enrollment. But it does not seem to work all the time and when it did work and said it was installing packages (using jamf policy trigger) none of them installed. Any one use setup Manager in this way?
Hi all, My issue is based on jonw's script from here (big thanks for that), I used this for deploying AutoCAD LT 2025: https://community.jamf.com/t5/jamf-pro/packaging-maya-2025/m-p/320737/highlight/true#M277340 I use this line for registering the product: /Library/Application\\ Support/Autodesk/AdskLicensing/Current/helper/AdskLicensingInstHelper register --pk 827Q1 --pv 2025.0.0.F --lt USER --cf /Library/Application\\ Support/Autodesk/Adlm/.config/ProductInformation.pit The issue: When the script runs the applyLicense function, I get this error: Error (25) for adlmPITSetProductInformation_2: Error has occurred while parsing PIT file How can I write the license details into the file? Tried to change file permissions (chmod 644 and chown root:wheel) - no luck Tried to execute the command with sudo from Jamf - no luck Tried to execute the command from Terminal with sudo - no luck Tried to delete the file and create it again - no luck Tried to do a clean
Hello All,Please help me with a solution where we can hide or remove the unwanted tunnels list in the CISCO AnyConnect VPN Window.I would like to remove/hide Web Security, System scan or AMP etc.
May be a silly post but I thought I post here for some ideas if any. So i been tasked to create a green colored folder on users desktop that contains "X file". I can get this working on my local system but when I package it and deploy it to another system when the folder installs on the new system the color reverts back to default. Basically it seems like the custom folder color settings don't carry over. I've tried installing the folder in a shared location then creating a colored alias still no go. I've also tried creating a custom green icon folder and trying to redirect that icon to the shared folder location but even that is proving to be challenging. has anybody ever had to tackle a silly task like this? I've been at it for a few days already maybe I'm overthinking?
Now that Jamf Pro Admin is no longer available, is there a way in Jamf Pro web portal to upload a new .pkg file that replaces a current .pkg in an existing package? I don't see any way to do this. This was relatively straightforward task in Admin, but it seems like you have to create a new package every time you need to update a (non-Apple or non-Jamf App Store) package? I have multi-package install policies which include a dozen or more packages, which all would need to be modified every time a new package name gets added/removed? In the past, when the package name could remain unchanged and you could just update the underlying .pkg file, there was no need to worry. Am I missing something? TIA,Jim
Is anyone else seeing this problem? I can't edit the Mac app descriptions any more under Self Service. iOS still works fine... I confirmed this on multiple JAMF instances.
Hi everyone, Does anyone have experience switching Apple accounts when renewing a VPP Server token? What is the impact on applications? Can we have more than one Apple account for the VPP Server token? Thank you.
Hi all, can someone confirm this for me, (those who use sandbox) Does this have it's own JCDS?? so, if i connect via the sanbox, it's not conecting to our live cloud jcds?? TIA
I'm trying to block a specific extension in Firefox. It works if I block all extension, but not when I reference the specific extension ID. I confirmed that the extension ID is correct. Any suggestions? <?xml version="1.0" encoding="UTF-8"?> <!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "http://www.apple.com/DTDs/PropertyList-1.0.dtd"> <plist version="1.0"> <dict> <key>EnterprisePoliciesEnabled</key> <true/> <key>ExtensionSettings</key> <dict> <key>{87677a2c52b84ad3a151a4a72f5bd3c4@jetpack}</key> <dict> <key>blocked_install_message</key> <string>Extension blocked by Security Policy.</string> <key>installation_mode</key> <string>blocked</string> </dict> </dict> </dict> </plist>
Our environment runs JAMF and azure to pick up device compliance, JAMF connect status was "terminated" in Entra ID this has been fixed just wanted to know what could cause this?We followed these steps to fix: https://learn.jamf.com/en-US/bundle/technical-paper-microsoft-intune-current/page/Migrating_from_macOS_Conditional_Access_to_macOS_Device_Compliance.html
In Apple's macOS Sequoia 15.0 release notes the following is mentioned: "Executables, scripts, and launchd configuration files can be installed using MDM and stored in a secure and tamper-resistant location." How does this work in Jamf? I have searched but could not come up with the answer. Has anyone been using this and if so how do I configure a tamper resistant location?
Last week I set up the conditional access integration with Jamf, 2 test machines were added successfully, JamfAAD popup appeared and I was able to go through the authorization process in the keychain, then I registered another 10 machines, this time of other employees, but as I assume due to the fact that their main browser was not Safari, they did not receive a JamfAAD window during registration.I thought that if they do it later (when logging in, for example, to office.com, mac asks for a certificate) there will be no problem, but today, after the weekend, I noticed that the machines do not report their status in Intune, as shown in the screenshots, the first one is my test Mac which I managed to add successfully, the second is another employee who does not report the status, does anyone know how can I fix it? Today I decide to make some test with some custom settings for SSO Extention & JamfAAD, but as you can guess popup window still did not show up. My mac
So I’m sure you folks are familiar with typical Safari behavior on iOS. You can put in a search query on the same place as the URL bar. A student puts in an inappropriate query and taps Go. Google lists safe searches but isn’t always perfect. When it is not our web filter catches it. You tap on an unsafe one of them and our web filter blocks the page. The problem comes with image results and their previews in the search results. if I tap on one of those results that is inappropriate, our web filter blocks it. However, you can still see the thumbnail preview. Today that occurred for a child whose mother happened to be somebody important. Mother was very angry ‘at what her child was exposed to,” pointed out that our district has very strong filtering in her classroom and why is her kid able to see such things. She plans on asking this question of district school officials. Between the network guy and myself, We traced it down to these image previews. Network guy trou
Greetings admins! I wrote a custom migration script that reads several aspects of the users home folder and backs them up to a user specified destination. That part seems to be working OK, but when I go to write this data back to the same locations on the user's new system, it needs full disk access to work. My idea was to have the script run directly from Self service (Policy > script execute), but in order to do so, Self service needs full disk access to be able to write back to the users Library folder. What PPPC do I need to create to allow Self service to have full disk access?
Hi Encountered an weird case on some devices, after enabling internet sharing, the hotspot is unsecured even if i did set up a password for it. Does anyone have any ideea on what i could try? I'm not even sure where is that password, or the internet sharing config is usually stored.
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!