Get Support
Recently active
Unlike the old interface, the new one doesn't tell you how many inactive devices you have over a configured time period.The old one would alert me (based on the default 14 day setting) if any devices hadn't checked in for 14 or more days, the new one requires me to sort the list by "Last Connected" in descending order just to get the same information, which isn't an 'at a glance' type display like the old one was.
Hi JN Team,I’ve successfully configured Power BI with Jamf and am now looking to create a reporting dashboard to track key metrics such as macOS versions, managed devices, and installed applications.If anyone has a Power BI dashboard template (PBIX file) related to Jamf reporting, I would greatly appreciate it if you could share it with me. It would be incredibly helpful as a starting point for building out our reports.Thank you in advance for your assistance!
In previous versions of Mac OS I was setting users home page in Safari with a PKG that copied a com.apple.Safari.plist to their own /Library/Preferences/ folder or in a policy under Files & Processes and running the jamf command to enable home page. I also use to be able to dismiss the Welcome startup screen and change the default open behavior from Favorites to Homepage. I've had no success testing with El Capitan and wondering what is working for others? Any help is much appreciated. Thanks,
Does any one know why when you create multiply admin accounts via a policy it shows all the separate accounts on the one user profile in Jamf? So for example if i create a managed admin account via 3 individual policies for Tom, Alex and Jane when i go to - locals accounts payload for Tom i can see Alex and Jane too (however no come directory path) I can also see the accounts in directory utility on Toms local machine too
Hi,I am trying to replicate a smb distribution point using jamf admin, but whenever it's trying to mount the share it adds http to the path. Is that expected / am I missing something? It also adds the share name at the end twice, which doesn't make sense to me? So it's trying to connect to:smb://http://sharename.domain.com/jamf/jamfbut the address should be:smb://sharename.domain.com/jamf/ - at least that's how I can connect manuallyOr does jamf admin use some other way to connect I'm not aware of?Thanks,Georg
Hi! How can i do individual appleid for every mac? Now we have 1 for every mac in admin user, but with that locator doesnt work well. What i want - 1 mac 1 appleid to locate them.
HI,Does anyone have a working script to add asset numbers to iPad records using a csv file?We want to scan serial number and asset tag at 1 to 1 rollout, and then upload to put asset number into the iPad record.Thanks!Sandy
Hi, is there a way to prevent users signing in to the MacBook with an Apple ID? In a Configuration Profile in Restrictions, I have the following: Preferences -> -> Disable Selected Items -> Apple ID Preference Pane, iCloud, Internet AccountsFunctionality -> Disable -> Allow Internet Accounts modification in System Settings (macOS 14 or later, supervised) But users can still go into System Settings and sign in to their Apple ID.
Jamf support has been nothing but useless the last week regarding the issue that all users who update from 12.0.x to 12.1 are being demoted from Local Admin to Standard User.Anyone any clue why this is and how to prevent it?Nothing has changed on our pre-enrollment side. Once we wipe a demoted device and re-enroll it the user is local admin again, but now on 12.1
We are using Jamf Connect for our Macbooks and during provisioning, there is a way to make it call DEPNotify without a user logging in. We can't use Jamf Connect on our labs because we could not make it work the way we wanted to with Google as the authentication source. So we're stuck with NoMAD for now, which is fine but I wanted to be able to run DEPNotify similar to how Jamf Connect does it (without a user logging in). Anyone have suggestions how we can achieve the same?
A couple of questions that are interconnected: 1. Jamf needs a user to log in first in order to escrow the secure boot token required to be able to wipe the device from Jamf, right?2. What's the best way to create an auto login user during the provisioning process? I'd like to use this account to run DEPNotify (as it doesn't run without a user apparently; happy to be corrected if wrong) immediately upon enrollment completion and then delete the auto log in user and itself once it has completed it's run. This will also hopefully cause Jamf to escrow the secure boot token.
How can we apply a single wallpaper on the login screen on public computers through Jamf?
I'm trying to install JAMF 11.7.1 on a new RHEL 9 box, I'm receiving the following error, "Verifying archive integrity... All good.Uncompressing Jamf Pro Installer 100%Starting the Linux Jamf Pro InstallationChecking installation requirements...Checking for a 64-bit OS...OKChecking available disk space...Warning: Available disk space is below the recommended 150 GB to install Jamf Pro. Ensure your server has adequate disk space before proceeding.Proceed? (y/n): yContinuing installation requirements...Executing set-java-home...JAVA_HOME is ''...Setting JAVA_HOME to '/usr/lib/jvm/java-21-openjdk-21.0.4.0.7-1.el9.x86_64'Checking for Java 11...Verifying JCE Unlimited Strength Jurisdiction Policy files...Could not install Jamf Pro because the following requirements were not met.Java Cryptography Extension (JCE) Unlimited Strength Encryption Required.For information on installing Java and MySQL, see related Knowledge Base articles on Jamf Nation.Checking if Tomcat is running...Passed To
At a state agency, employees are required to request and get an approved exception to perform work outside the USA. See how we use tools and reporting from multiple Jamf services to enforce and monitor these requirements. We will also focus on potential security incidents to look out for when users travel and discuss some related use cases for Jamf Executive Threat Protection that may fit the needs of your organization.I'm putting the final touches on the presentation. Any recommendations/topics that may increase interest to focus on are much appreciated.https://reg.jnuc.jamf.com/flow/jamf/jnuc2024/sessioncatalog2024/page/sessioncatalog/session/1711629202398001pwEE
Hi All,I am trying to install nexthink collector in my Mac but ended up getting the error "the installer encountered the error that caused the installation to fail. contact the software manufacturer for assistance" . Need help with installation.
We are using MS365 as our identity provider and collaboration/productivity platform with Jamf School. Our students will have access to Shared or 1-1 iPads on the Elementary ages.Does anyone have any suggestions on how we can simplify student sign-in so students can sign in securely without MFA/hardware key on Jamf School enrolled iPads?
Today we released Jamf Connect 2.38.0. This release includes the following changes and improvements: Suppress Google Consent Prompts in the Jamf Connect Login WindowIf you use Google Cloud as an identity provider (IdP) and unexpected consent prompts display during each user login with Jamf Connect, see the Suppressing Google Consent Prompts in the Jamf Connect Login Window troubleshooting instructions. This configuration change resolves PI118708. Notice of Upcoming Support Removal for Jamf UnlockThe Jamf Unlock mobile app will no longer be supported when macOS 15 Sequoia releases. Devices using Jamf Unlock can be unpaired via the Jamf Connect menu bar under Paired devices. Improvements to Jamf Connect LogsAdministrators can now collect crash reports by using the Collect logs button to help troubleshoot customer and product issues. By default, the crash reports can be found in /Library/Logs/DiagnosticReports. Other Changes and ImprovementsTemporary elevation features can now ski
We have Macs that get purchased from a 3rd party vendor and they informed me that it takes 1 - 2 weeks from when they are delivered until they show up in Apple School Manager. Waiting 2 weeks to set up a computer after it arrives is a bit much.Does anyone else see delays this long in ASM?
Please vote on my idea to bring back the old Inventory user interface at https://ideas.jamf.com/ideas/SCH-I-315
I have a user that I deployed TUP to that finds that it no longer works after it was previously successful:User has been able to elevate rights first time aroundCount down timer expired (which we have set to 60 minutes)User selects 'Request admin privileges' again from JC menuJC authenticates with our IdP (Entra) successfullyAuthentication window closes, JC menu item still reads 'request admin privileges', countdown timer doesn't start, as if nothing happened.User is still a 'standard' user in 'Users & Groups'Has anybody else witnessed such behaviour?
As per the title - after the enforced interface update, doing an Export in Devices/Inventory and selecting Model Name results in all iPads showing as "iPad" and not, say, "iPad 9th Gen (Wi-Fi)" or similar.This makes it horrendously difficult to do any forward planning for replacement of old devices, let alone across 30 instances of Jamf School to get total numbers.Is anyone else encountering the same issue, or is it just my instances?~~~~~~(Steps to recreate - go to Devices/Inventory, click Export, click Select All, or even just Model Name, then open the downloaded CSV and check the Model Name column)
i keep seeing this message in the JAMF Pro server logs.2024-05-17 07:33:26,762 [INFO ] [duledPool-3] [CsaTokenMonitor ] - CSA accessToken expiration: 2024-05-19T00:13:27Z, refreshToken expiration: 2024-05-31T00:13:27Z2024-05-17 07:33:26,762 [INFO ] [duledPool-3] [CsaTokenMonitor ] - Did not refresh token pair.anyone know what the token is and where i update it Be kind new to JAMF
Hey everyone, I didn't manage to connect our Macs to our wifi network that is using 802.1x authentication at Jamf Connect login window ! Our Macs are not binded to AD and we would use user credentials.Can you shed some light on how to configure it properly to make it work? Thanks in advance
Greetings ProgramsWith the upcoming macOS Sequoia, do you know if there are any profile keys or MDM commands that can control Apple AI services, or disable them (for example Siri)?Thank you!
Hello All, I've seen some older posts on here in regards to logging users out of their iCloud account but can't get them working as of right now. We are looking to disable iCloud across our org, but some users are logged in. I've tested disabling iCloud via a config profile, which works, but doesn't log anyone out of iCloud that's already logged in. Does anyone have a working script that logs a user out of their iCloud account?
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!