Get Support
Recently active
Hello I am trying to create a local account with a policy. I went through the setup, assigned a test laptop to the scope. The account creates successfully but when I try to sign in i just get the spinning circle and get stuck on the login profile page.After some research I see that it might be related to a Filevault issue? Am I doing something wrong? Would writing a script be easier for this or would I still run into Filevault issues if that is the source of the problem?
Has anyone experienced this and if so what was your fix.This seems to be limited to our HP printers.Issue started with MacOS 10.13.6 for us. Any help is greatly appreciated.
Hi all,Following instructions https://learn.jamf.com/bundle/jamf-pro-documentation-current/page/Supervision_Identities.htmlat the point where I need to need to import the certificate into Keychain I get an error password incorrect: Double-click the supervision identity ( .p12) file.When prompted, select the System keychain from the Keychain menu and click the Add button.Enter the local administrator password.Enter the password for the .p12 identity certificate.Any idea how to solve this?
We're going to start testing a new VPN solution at my company, and I've been asked to come up with some Mac specific test cases. What are some of the things you check off in testing, aside from ensuring connection to the JSS is working properly, Self Service is working, and any other items that are VPN dependent (in our case, Kerberos SSO).
If I have a class of iMacs, is there a command way or using Apple Remote Desktop, that I can remotely log in all iMacs at once using the same user. The iMacs already have the users created of course. Our iMacs don't have automatically log in enabled. Students can also log in using their individual AD logins.But sometimes, I would like to log them all in using a same local accounts and quickly show things to the students. Once logged in, I can use Apple Remote Desktop to bring up the same App.Thanks.
Hi Everyone, Has anyone come across a device dropping compliance after an OS update? We have seen this with macs on Sonoma primarily. If a machine is being updated to 14.3.1 for example, and our compliance is set to 14.3 and above… it drops the compliance. Not all machines, but some do. this is also integrated with intune. anyone heard of an issue like this?
Hi all,I've been poking around to try and find a method in changing the password change popup notification message. Unfortunately, I've not found a lot of success. We only have the Jamf Pro product and do not have Connect. Does anyone have an article or resource to point me toward in finding a solution to edit this message?
Hi there, We're currently using Installomator/swiftDialog scripts to handle patch management in our environment on Jamf Pro. We noticed some behaviour from the end-users, specifically how they tend to ignore the prompts for most application updates. There are some key applications that when we push updates to, must get updated as soon as possible. What solutions do you use for this? What I had in mind was a means to "nudge" end-users to update followed by a separate workflow to kill app process and update.
Hi, We have a custom colour set for Word which is in .xml format which we copy to a location but we're looking for a way to set this as default. The set as default option is on the design ribbon in word. I have tried using composer to capture changes to see what file its updating but i haven't had any success, could someone point me in the right direction please? thanks
Hi all looking for some information to make an PPPC for automatic graphics switching on Intel Macbook 2019 (so the user can change this) (for some reason there is an flicker on the screen when you working on the battery)thanks
Hi,I am trying to delete a Managed Local Administrator Account from a number of our Macs via Policy Push. Of the number of devices this policy is targeting 6% are failing and the log simply states 'Unable to delete User ****'. When manually performing on any of the 6% via terminal and triggering the cmd 'sudo jamf policy' a permission prompt appears requesting terminal to have 'File and Folder' Access. Once permitted the account is deleted however my question is why are these devices different to the rest of the devices in our fleet?I have reviewed devices that successfully ran the policy against the failed devices and I do not see any differences in their configurations i.e. enrolment, policy's/profiles applied.Has anyone experienced this issue before or have any insight that may help identify whats preventing 100% Policy success?
Hi thereI need to deploy a new M2 Air, the device is enrolled on ABM and the Jamf server as the MDM server. Issue I am facing is that it fails the handshake and reverts back to an unmanaged setup. I did see the time on the Mac is incorrect even after changing to different regions, I suspect this might have something to do with it. If I try to change the time from terminal I require the 'Setup User' password which is an unknown so I can't go down this route.Any suggestions would be appreciated
Hello All,Please help me a payload to upload in jamf pro to grey out "Launch Automatically after login" option under DisplayLink.Thank you.
I have a 5 member cluster: 1 database, 3 client tomcat nodes, 1 admin console. If I bring memcached into the equation, I am able to add at most one extra Ubuntu server to support memcached. What kind of memcached configuration settings would be optimal for my environment? We currently have about 6000 1 to 1 DEP enrolled iPads and about 500+ Macs. I am planning on some but not a great amount of expansion...a thousand iPads or less. Do I need two memcached servers or is a single one sufficient? I don’t want overkill but I don’t want to ask the VMWare guys for more than a single additional VM. Thoughts or input? Can’t move to a Jamf hosted solution though. Sorry tagged post wrong with netinstall and it won’t let me change.
Currently we have 2 phone numbers saved in our Apple IDs for Apple Business Manager and iCloud that are tied to individuals. When we receive SMS verification codes, one of those 2 individuals needs to be able to answer to give the code.We were looking for a web-based SMS service that can receive SMS MFA codes. We found one called TextFree that does allow this with a paid subscription. However it does warn that not all vendors support sending MFA codes to their provided phone numbers.Does anyone use a solution for this currently or does anyone use TextFree for this?Thanks.
I am frequently tasked with updating the many agents we run on our Macs. Often, the update process does not involve simply running a package that would register a failure if the policy failed to run the install for some reason. If the update process is driven entirely by a script, and the update is not a success, Jamf Pro will show that the policy completed. It did actually complete but the update was a failure. When I noticed that this was happening with one of my recent updates, I added a conditional statement to check if the version of the app was the newer version. if [ $Version = "7.13" ]; then echo "Upgrade to version 7.13 was successful" exit 0 else echo "Upgrade to version 7.13 failed" exit 1 fi Since I have noticed that some Macs did not get the latest version of the app and the policy shows as completed, I'm obviously not doing this right. What else do I need to do to get Jamf Pro to show the policy as failed instead of completed?
I'm testing out Zoom installer and will the new change, when it installs on the device, it's not showing under installed. Does anyone know. I was previously testing last week and when a device would complete, it would move it to installed. Is this a time issue?
I see some responses but nothing ideal for this question. We use single sign on. Invariably, when i am working on jamf, it will auto log me out. I then have to click logon again, and it just logs me on again with my sso credentials. However often the thing i was working on is not still there.... Surely this is configurable somewhere? It makes no sense to have an auto signout on a sso login, as the login will just auto log in again after the session times out. I assume this would be for if you were using credentials on a public computer and forgot to log off, but this does not apply to SSO obviously, as it does nothing for security and is just annoying. I dont want to install a third party script, which seems to be the way to do this from what i see. Surely there is a checkbox somewhere on jamf backend that would allow me to set the auto logout to something reasonable like 8 hours, or remove it entirely. please let me know. its not a huge deal, but its annoying enou
I've had a compliance policy I've been working on for months, going back and forth with our security group, and now I can't open the .jce file. The 'Existing Project' has never recognized the .jce file so I've usually just double-clicked on the .jce file to open Compliance Editor and get back into the settings.But suddenly that only opened Compliance Editor (version 1.3.1 to be specific) to the splash screen to create new, or existing project. So I can't get back to the policies I've been working on.I know the path to the .jce is embedded in the file and moving it can break things, but I haven't moved it.Any suggestions?
Hello, I keep running into issues when logging in with Jamf Connect. I get a caution sign with an exclamation point in the middle with the option to click on "Okay". When I click okay it takes me back to the log-in screen. I'm not sure what is causing this and cannot get past that screen. Has anyone encountered this issue before? I already have an open case with Jamf but I'm not so sure if they even know to fix it.
Hello,Has anyone else noticed that the Action buttons are missing in the Patch Management logs? Flush All Failed Patches is also grayed out. It seemed to happen after our instance was updated to 11.4.1. Is this a know issue?
Hi all,we are about to move several hundred Macs from one Azure AD tenant to another as we consolidate a number of business units into one main AAD. Does anybody have any experience of this and what sort of issues to look out for? If not, I guess I'll be coming back in a couple of months with some good stories to tell :-) Bill
Good afternoon,Prior to this summer, all of our Apple TVs were on various versions ranging between 13.x to 16.x. I went around and updated them all to 16.6 at the time and turned on auto-update so I didn't have to manually do this again for 350+ devices across 11 buildings. However, we forgot to block tvOS 17 along with iPadOS 17 and iOS 17, so about 20% of our fleet updated over the course of two weeks overnight. Not the end of the world, it was working fine.After awhile though, on tvOS 17 only, the device will lose WiFi connection and will not pick it back up.Our configuration is simply no remote pairing and always use conference room mode. In order to bypass this, we have to:Internet sharing via USB-C to ethernet to the Apple TVUpdate inventory to make sure it's connectingDrop it out of the configuration profile or naming schemeAdd it back to the networkRe-adding it to the configuration profile or naming schemeI usually don't have to do this more than once per device. But
Got this message in Jamf pro server tools in the Tomcat tab after upgrading to 11.4.1: Error: failed to start the server: could not find the service named "Tomcat8". But the Apache Tomcat 9.0 service is running. Is this a "cosmetic" error. Gui version 3.1.1.Everything seems to work despite this error message.
Hello !I just read that Jamf Admin will be discontinued for Jamf Pro 11.6.0. I always use this app to add printers in Jamf Pro and it's really easy to do this with it ! Now, without Jamf Admin, I have to change the way I add them in Jamf Pro and I took a look of how it was configured to find how I can manually add printers in Jamf Pro.For the CUPS name, model, location and device URI, no problem. But for the path to PPD file, I have a problem. For example, I have a printer called "Printer HR", CUPS name "Printer_HR", model: RICOH MP C3003 PS, location: Building 2nd, URI: it's DNS name and path to PPD file: /Library/Printers/PPDs/Contents/Resources/Printer_HR.ppd. The problem is: I have no Printer_HR.ppd in that folder. But it works as expected, so how could it work like that ? I have this PPD's name in /etc/cups/ppd, is it this path that I have to use ? In /Library/Printers/..., I have PPDs with the model names of printers (RICOH MP C3003 PS.ppd), not with the name I use (Printer_
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!