Get Support
Recently active
I'm having an issue with my local admin accounts on machines enrolled in JAMF Pro.The admin account was added during prestage enrollment. Now that the devices are enrolled, the laptops will not take admin password, when needed for admine prompts. I also noticed that the local admin sign has been disabled in the plist file as well, so from the main login screen it will not allow you to sign in as an admin. It comes back with an error message that says, local authentication is restricted.
Does anyone have insight on upgrading ssh on 10.13x and 10.14x machines?
Hi, How can I create new admin user using command line and user home will be delete automatically when remove from System Preferences?I successfully create new admin user using the following command but when I delete this user from system preferences the home folder will not delete automatically compare to users create manually from system preferences.Any advice?Thank yousudo sysadminctl -addUser Admin -fullName "Admin" -password admin123 -home /Users/admin -shell /bin/zsh -admin
Our Cisco Secure Client is prompting to export the "Microsoft Workplace Join Key" installed by Jamf. Not so sure if this is a good idea to export the key. Any suggestions to prevent the Cisco export prompt from popping up?
It's very glad to push the OS software updates with the recent software update feature through JAMF Pro.But it will be great to provide any tracking of these deployments, as once we push the software updates we couldn't track them and unknowingly deploying further deployments to the same target machines and it causes the issues with this feature.
Heard today that there is no option for Virtual Attendance at JNUC 2024. ------------------------------------------------------------------------- EDIT 02/15/24 - It appears that recorded sessions will be made available in November. Information regarding this was buried in the FAQ for the event. Still a bummer though. The original message below may be ignored. ------------------------------------------------------------------------- This development saddens me, and I'm sure it will make others sad as well. Charge us more to attend virtually if you must to make things happen this year. Many customers cannot attend live for whatever reason. Some may not be able to get hotel rooms to make the stay, others may not be able to break away from work. Having the virtual option keeps us all in the loop, without it, it is like being on the outside of a movie theater during a major summer release. Don't shut out your customers Jamf. Be more inclusive tha
Hi,We have a couple of apps/certs that require the email field in Jamf to be filled out. Currently we do not use Jamf connect or have LDAP integration set up, our users are shipped a Mac and then set up on their own then later a tech manually updates the email field.If we add LDAP to Jamf I believe we should be able to pull the email address field, but I'm a little lost on what the steps are after LDAP has been added to Jamf. When a new computer is enrolled is the user prompted for their AD credentials during set up? What happens to Macs that are already enrolled into Jamf? Sorry for the dumb question, just trying to wrap my head around once LDAP is configured, how Jamf then gets the correct user mapping and if the end users get prompted and what that prompt looks like. Thanks
We would like to open up use of iCloud on our iPadOS devices, but only want to allow users to log in with their managed iCloud account. Is there a way in Jamf Pro to either pre populate the domain and/or user and lock the user into only signing in with their managed AppleID?
When I filter a list of computers in Jamf Pro there is a column heading that says BOOT FULL. What does this mean? Thanks,Jim
We had a script that renamed the MACS (Building Name:Serial Number). Very simple but it no longer works. Jamf Support hasn't been able to help me and I am stuck. It has worked for years, and now has stopped working. Thoughts, help?#!/bin/sh# Name: rename_from_building_api.sh# Description: This script renames a computer# Created: 2017-10-03# Last Modified: 2018-06-11# Created by: SWeinstein###### Wait for dock to loaddockLoaded=$(pgrep -x Dock)echo "Waiting for user to login..."while [[ "$dockLoaded" == "" ]]do echo "Waiting for dock to load." sleep 10 dockStatus=$(pgrep -x Dock)donesleep 5loggedinuser=$(/bin/ls -l /dev/console | /usr/bin/awk '{ print $3 }')echo "$loggedinuser is logged on!"##### Set computer name from user nameloggedInUser=$(python3 -c 'from SystemConfiguration import SCDynamicStoreCopyConsoleUser; import sys; user
Hi All,While trying to setup SSO for our mac devices, we've discovered that this is a bit of a headache trying to work with Chrome unless the devices are enrolled in Intune (which we are not looking to do at the moment), so we are looking to switch our users over to Safari, as we have managed to get SSO up and running. Our issue is that some basics are missing, such as the home button - if this can be pushed out through a config file rather than getting every user to manually toggle it on this would save us a lot of hassle - and we would also like to set some general restrictions on things like; blocking installing extensions, block changing the default search engine etc (as these are student devices).If anyone could provide any pointers to configuring this it would be greatly appreciated! Cheers!
Hi everyone, please, what is your best method to retrieve the uninstallation figures of a Mobile Device App in a dashboard, in order to monitor this ?
Hi, I recently setup "Citrix Files" in our Self-Service to be available for users to install as needed to use with ShareFile. The installer runs correctly and installs everything, but Catalina blocks a system extention the app needs to run and only an admin can authenticate to allow it. How do I get around this? Thanks in advance.
Hello Jamf Nation! I am encountering a rather vexing issue with Forcepoint's Safari extension. The extension is prompting for users to enable it, however upon enabling the extension they are still prompted every few minutes that the extension is not enabled. Closing and reopening Safari causes the extension to once again show as disabled and continue to prompt the user to enable it. I've had mixed success with rebooting machines causing the extension to finally stay enabled however this has been incredibly inconsistent, sometimes requiring 2-3 reboots or sometimes not working at all. Has anyone else seen behavior like this with a Safari extension or have any pointers on where to even look with troubleshooting this? I admittedly don't have a very strong understanding of how extensions for Safari work and could use any and all advice! Thank you!
I have been able to successfully add dock items but I would like to remove several default items from student users docks. Do I need to add them to the Dock Items and then delete them? I don't see any information on how to remove default items like facetime, etc. I am new to jamf and have new macs to set up for our classroom labs. Any help is appreciated.
I updated 4 MacBook's and a Studio that where still running macOS 12 about 3 weeks ago, and JAMF still show them running the old OS how can i force the full scan of the systems
All,Have a question remotely accessing a macOS device that has FileVault 2 enabled via JSS. I have a few machines at one location that perform utility functions and were previously not encrypted with FV2. Once connected to the VPN I would access with ARD or Jamf Remote. With new compliance parameters these utility devices are now encrypted with FV2 via JSS Configuration profile. The issue that I'm running into is that when I have to reboot the device I can't log in remotely because the device has decrypt with the local user login. Once logged in I can access remotely but this becomes an issue because with any needed reboot. Looking for some suggestions or recommendations from anyone who may have run into a similar situation in their enviornment. Thanks in advance for any feedback.
Today we are releasing Jamf Pro 11.7. Highlights include: Managed Software Updates Now Generally AvailableThis release of Jamf Pro includes the following enhancements: Improved interface with higher visibility of update statuses when viewing software update information in an individual device record Added an event store view which was previously only available via the Jamf Pro API Improved stability and functionality, including resolutions to issues that caused software update plans to not complete Automated Certificate Management Environment (ACME) payload supportThe ACME Certificate payload is an alternative for SCEP and is used to obtain certificates from a certificate authority for computers and mobile devices enrolled with Jamf Pro. For additional information on what's included in this release, review the release notes via the Jamf Learning Hub. See the latest release notes video for a brief overview of new features and enhancements. To access new versions of Jamf Pro
Has anyone figured out how to push bookmarks to Chrome on iOS from JAMF? I can add them to Safari without an issue but can't seem to add them to Chrome.
Is there a way to push bookmarks into certain browsers via JSS onto managed IPads?
Does anyone know anything about Jamf's plan to support the ACME feature introduced in macOS 13 (and to be enhanced in macOS 14)https://support.apple.com/en-us/guide/deployment/depb95c66a07/web
Best practice for devices that are lost/stolen?Is it possible to create a group policy and or group of computers that we can select all and send a wipe command/lock when it comes online? If so what's the best approach.Thank you!
Hello,I am having trouble setting up device compliance in Jamf Pro. I followed the instructions found here: https://learn.jamf.com/bundle/jamf-pro-documentation-current/page/Device_Compliance.html but when I got to the part where I was redirected to the Microsoft Intune webpage, nothing happened. The Microsoft login window appears; I enter my email address and am then brought back to Jamf Pro with a "Registration Request" error and another warning below that states it is "Establishing connection" with directions to "Open consent URL." I click on the open consent URL, get to the Microsft login window, enter my Azure email address, and am then brought back to the Jamf Pro screen with these same two messages. I have Azure GA rights and have tried two different browsers (Safari and Edge) with no success. Has anyone else come across this issue? I figured that I'd try here before submitting a ticket with Jamf. Here is the error and warning messages Registr
Hello,Our JAMF API integration has been working fine for a few years now, but suddenly its stopped workingI've done two things to try to make it work:1. Changed passwords to be 15 characters2. Enabled "Allow Basic authentication in addition to Bearer Token authentication" in settings > system > password policyBut still we are getting 401 unauthorized.Here's our codeSet creds = "%username%:%password%"Set base64 = base64 "%creds%"HTTPHEADER "Authorization", "Basic %base64%", "string"Set tokenjson = HTTPSEND "https://%domainname%/uapi/auth/tokens", "application/x-www-form-urlencoded", "" And we also tried to get a bearer token, with the same issuesSet creds = "%username%:%password%"Set base64 = base64 "%creds%"HTTPHEADER "Authorization", "Basic %base64%", "string"Set tokenjson = HTTPSEND "https://%domainname%/api/v1/auth/token", "application/json", "" As I said this was all working, so I don't think there's anything wrong with the code, any ideas ?
Hi all, I was curious if there is a way to deploy a unique wallpaper to each iPad in our organization showing their asset tag identifier using a payload variable? This is sort of what I'm looking to do, but my organization doesn't use Jamf School, we use Jamf Pro. Thanks!
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!