Get Support
Recently active
Has anyone else seen this? is there a fix? not a cache issue, nor a browser, happening in all of them.
I'm getting worried about the future of the Jamf Admin and Composer apps. Composer is the only one that has been updated for Apple Silicon, but it is basically the exact same app it's always been since version 9. Composer's interface could use some updating. New package manifests are painfully out of date (My god, it still lists Shockwave!). Jamf Admin really is unchanged since version 9. Jamf Admin REALLY needs to be updated for Apple Silicon and to support Dark Mode. It also needs improved error reporting and recovery. When there's a problem (interrupted connection, bad pkg, wrong phase of the moon, I'm wearing the wrong aftershave to work...) it can take hours for broken uploads to be removed so we can try uploading again.Jamf Admin is a far more efficient method of uploading and editing packages (when it works) than the JSS web interface. I like that I can upload multiple packages at the same time and then edit them afterward. The web interface only allows one upload at a tim
Is there a way for me to make a certain AD user an admin on a mac cart of 30 macbook air's?
Afternoon All Hoping someone can help who being using Jamf app catalogue longer than we have.We recently started using Jamf app catalogue to manage some of core apps for patching etc. I noticed yesterday that there was a new update from chrome it appeared to install fine and chrome seems to be working on the latest version 126.0.6478.183.However we get below error message when going to About chrome, I have noticed it on a handfull of machines but I expect its probably on all of them. Reinstalling chrome doesnt seem to help either have raised a ticket with Jamf support but that hasnt turn up much so far. The logs show chrome updating without error so I'm somewhat puzzled.As anyone else come across this issue with managing chrome via jamf App catalogue?Thanks
Hi all,We use NinjaOne RMM alongside Jamf PRO for remote management of our MacOS devices, and in order to provide remote support we use the NinjaOne remote access app (NC Streamer).It requires these permissions to run:I've created a configuration policy with the scope - Computers with NC Streamer, config below:It isn't applying the permissions remotely. Have I got the right configuration?Many thanks,
Hi there, I am running into an issue. I am trying to pull from our LDAP attribute "phone number" into the Jamf users' profile. Though the mapping is correct, and if I test the LDAP, I do receive the phone number, but it is not populated in the user profile. Other values such as Username, Full Name, Email, and Position are synced. Does anyone have an idea how to solve this? What makes me wonder is that in the Attribute Mappings the Phone number attribute is called "phone" and in the user profile it says "phone number"...
Hello, I have seen that the FortiClient is causing difficulties for some users. However, I have just been able to create a relatively simple solution with which the config files can also be made to work by default. My requirements: macOS 11.2.3 (intel) / Jamf Pro / DEPNotify 1.1.6 complete installation on one system upload the install.mpkg to Jamf Admin start Jamf Composer and create a pkg with the following path incl. all subfolders (all custom settings are saved here): /Library/Application Support/Fortinet new policy: select both pkg-files, I first selected the config-pkg and then the Install.mpkg. That´s all. I had success with this. FortiClient is running perfect with custom settings. No restart needed.
Hi, we will only just now make the update where we lose access to Jamf Admin. Is there any alternative to Jamf Sync for managing our Distribution point? Jamf Sync seems rather barebones to me, you cant even change the categories from there. Losing Jamf Admin really is a step down as there is no replacement that is equal or better. Yes the UI was old, but it worked fine in my opinion. Kind regards
I am using custom schema policies for google chrome browser and in my case, it is not working as of now.Can someone please share the pilist to skip the first login experience in Google chrome browser.
I'm seeing occasional issues where a machine going through our self service provisioning process occasionally get interrupted by our 'catch all' post deployment pushes (designed to catch machines that for whatever reason didn't get an app install/update when we were pushing out during the change request - it's on a recurrent check-in with a smart group of the app not being installed). For this particular app it cuts off all internet traffic until the user signs into the app and during the deployment as the last application installed for this reason, but we're seeing our 'catch all' policy trigger on some devices while the provisioning policy is running and install the app before the other apps are done. What would be the easiest way to put a check in to prevent the catch all policy from triggering while the device is provisioning?
If dlp is installed on the ipad, can an administrator use dlp to view the contents of the ipad's photos app or the contents of a video sent via AirDrop?Also, if dlp is installed on the ipad, can it be viewed in the vpn and device management section of settings?Is there a case where it does not show up?
Hello,Any businesses using conditional access model here? I would like to raise a forum to get some knowledge about practices you use once migrating from legacy Intune integration to new MacOS device Compliance. As JAMF have no way to migrate for now and current legacy integration have issues of its own we have now a dilemma:Should we wait for Jamf Solution to migrate smoothly? Or should turn off legacy and integrate new one without migration? If we go this way - all macs will lose office 365 access and will need to re- register every single device.That will create pretty big service disturbance. Just wonder what practices other companies' approach to deal with this?
Scenario is this tried to add macbook to ABM via Apple configurator 2 it worked but checked mdm server it shows correctly, but when we boot macbook, after the wifi connection it doesn't redirect to the policy pop-up via jamfpro can anyone face with this issue?
I've recently been tasked with getting intune complaince/jamf working to test if its viable to go forward with. I've been working on setting it up on our sandbox environment and was wondering if anyone's tried setting up the conditional access policy on the Microsoft side. Like what they used for testing or anything they had to tweak or change to get working. Id to know what you guys used for a test policy thats easy to see quick results. -In theory if a mac isnt compliant things like "Unable to sign into outlook" would be possible or some kind of email notification to prompt the user to update. -What have you guys used the integration for that you've been pleased with?
HiThe fields bar code 1 and bar code 2 in a computers inventory / general list, can they be references from the mac? if so where is the file that data comes from?https://learn.jamf.com/en-US/bundle/jamf-pro-documentation-current/page/Computer_Inventory_and_Criteria_Reference.html
Overview:I was really struggling to configure SMTP with M365. We have a distribution list that our Operations team are all apart of and wanted to receive email notifications from Jamf for a variety of reasons.Our environment has MFA enabled and I was continuously fighting with both Jamf/Azure to figure out a workaround to the authentication errors I was seeing in the Jamf Server Logs.It wasn't until after creating a service account without MFA applied it(account being authenticated in Jamf SMTP) and enabling "Send As" and "Send on behalf" in the distribution list by adding the service account to the delegates list that mail was delivered.Lets look at a couple server logs I was experiencing first. Server Log Error generated from an account with MFA enabled:javax.mail.AuthenticationFailedException: Authentication unsuccessful, the request did not meet the criteria to be authenticated successfully. Contact your administrator.With the error above I messed around in Azure quite a bit a
I discovered that this model only has an HDMI and power cable connection. Previous TV models have connected to our network with a network cable, so how does one get this 3rd Generation connected and enrolled in JAMF? This new device configuration has prevented me from configuring them as I did before with a cabled connection.--The TV is present in Apple School Manager and enrolled in JAMF Pro.--I cannot find the TV in our JAMF inventory by searching on serial number. (makes sense as it has not connected to any WiFi yet)--When powered on and connected to a monitor, the TV sees but will not connect to our open guest network: " The WiFi network requires further authentication to connect. Use your iPhone or iPad to continue". Choosing this option goes nowhere. So I then try a secured WiFi network... --We created a special wireless configuration for TVs to auto-join a secure WiFi network, but this is not automagically working as with previous generations. It appe
Seems like I cannot finish jamfproinstaller mysql Ver 8.0.35 for Linux on x86_64openjdk version "11.0.21" 2023-10-17 LTSInstalling...Executing set-java-home...JAVA_HOME is ''...Setting JAVA_HOME to '/usr/lib/jvm/java-11-openjdk-11.0.21.0.9-2.0.1.el8.x86_64'Starting Tomcat InstallationDetected previously installed Tomcat...Upgrading Tomcat service...Reloading system daemon...Enabling Tomcat to run at startup...Copying backup of Tomcat (/usr/local/jss/tomcat) to /usr/local/jss/backups/tomcat/2023-11-07_07-53-12...Copying Tomcat files...Setting permissions...Restoring /usr/local/jss/tomcat/conf/*.xml...Transforming the server.xml...Error: Could not transform the server.xml Any thoughts?
I am unable to find a way to added Cisco Thousand Eyes Uninstall to Managed Login Items as it is a EXEC file it doesn't have a bundle id or team identifier. Hoping someone has setup a different EXEC that might know what I need to add the config profile. Thanks
Hi all, I'm wondering if anyone has had success in packaging Maya 2022 with a non-network server license key, which our institution is able to put on 1200 machines. I tried referencing this post, but havent been able to successfully deploy the program with my modifications. Any help would be appreciated. Thank you.
Hello All,We were using following script to rename the computer name and it was working before 2 months.#!/bin/bash# jamf ApiapiUser="####"apiPass="####"jssURL="our_jamf_instance_url"serial=$(system_profiler SPHardwareDataType | awk '/Serial\\ Number\\ \\(system\\)/ {print $NF}')serialc=$(system_profiler SPHardwareDataType | awk '/Serial\\ Number\\ \\(system\\)/ {print substr($0,length-5)}')base=$(curl -H "Accept: text/xml" -sfku "${apiUser}:${apiPass}" "${jpsURL}/JSSResource/computers/serialnumber/${serial}/subset/Location" | xmllint --xpath "/computer/location/building/text()" -)echo Building:$basescutil --set ComputerName $base-$serialc-Mscutil --set HostName $base-$serialc-Mscutil --set LocalHostName $base-$serialc-Mcname=$(scutil --get ComputerName)echo ComputerName:$cnameexit 0 Now the script is returning error cript result: -:1: parser error : Document is empty^Building:scutil: invalid option -- 8usage: scutilinteractive access to the dynamic store.or: scutil --prefs [
First time I've attempted an OS upgrade in Jamf. Trying to upgrade some devices at work from Monterey to Ventura. I have a Smart Group to show me how many devices are running Monterey. In Jamf, I went to "Software Updates", found the name of my group and selected the checkbox, then clicked "Update 1 selected".Then selected “Download, install, and allow deferral” and set “Target version” to the most recent version of Ventura (13.6.8). Set the deferral value to 1. End users have received plenty of notifications by now, but thought I'd try to make the upgrade process as painless as possible for them.Did this about a week ago. None of the devices installed the new OS. When I query a specific device in Jamf and look in "Management > Management Commands", I see this: Not sure what I've done wrong.
Hi Guys, We are building out our login workflows, and a good question was asked. Why are we going Local and not using Mobile Accounts when we bind anyway? Most videos seem to hint that local accounts are the recommended option, but I can't seem to find a hard list of Pro/Cons for reasons to go local over mobile. Any insight as to why we would go local over mobile would be helpful. We are using the Kerberos SSO Extension to give user's Kerberos tickets after they login. The concern is that user's don't get a Kerberos ticket upon login which I believe is what a mobile account would do for us. Thanks in advance!
Have a lab of 20 Mac Minis using Jamf Connect & Google IDP. The login screen shows Sign in with Google as it should but it'll randomly resize the login window which is behavior we're not looking for. Sometimes it'll show the complete Sign in with Google box including the Create Account & Next button, and further down. Other times it'll load a much smaller cropped window with a scroll bar (showing the field for the e-mail or phone login but missing the ability to see the Next button without scrolling down) and place it towards the bottom of the screen instead of centering it on the screen. All systems are using the same model of monitor, same resolution. Not sure if anyone else has experienced this behavior? My thought is maybe it's the newest version of MacOS as they've now been upgraded to 14.5 and this was not happening on 13.x. Just very odd behavior that it'll sometimes load properly then you reboot the machine and it's a 50/50 chanc
I have been tasked with setting up a Ring deployment for all my supported platforms. JAMF is the last on my list.I cannot figure out how to setup a Ring deployment approch within JAMF. Does this management platform support such a deployment model?
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!