Get Support
Recently active
We have had a cloud instance for a while now, and we've only been managing machines in our region, we're taking over the management for another region soon, and would like to use Sites to manage those. Having created a new site, one for ourselves and one for the other region, I see that all existing config, devices, policies and settings fall under the Full Jamf Pro default site. We haven't yet added any settings for the new region or any machines, so right now I'd just like to move all existing data into the site created for our region. Does anyone have a checklist of all the things that need to be attributed to a site? Or any other clever ways of doing this?
Hi,We need to deploy a browser extension for a software called Torii.For Chrome, it was pretty straight forward.However, for Firefox, I was unable to follow along the documentation here - https://support.toriihq.com/hc/en-us/articles/5148326594203-Deploy-the-Firefox-ExtensionIs there any documentation on how to deploy firefox extensions with Jamf Pro? I couldn't find anyThanks!
Is there any official way to study/review the Jamf 200 course materials without actually being present for the class? I'm asking because I've taken the course before but didn't pass the test and I want to be more prepared the next time around. I am planning on taking the course but not until probably next year at this point. Thanks everyone!
Hi,I am unable to block Google Drive app using Restricted Software in Jamf ProI have tried "Google Drive", "Google Drive.app", "Google Drive*" for process name but none of these works.Previously, adding "Backup and Sync" for process name was blocking the app.Please let me know if you have any suggestions or workarounds.Thanks!
Hi,We are having a weird issue in our environment. Few users are not able to complete Intune registration. While triggering Intune registration from self service app, Company portal is prompting for authentication in a loop. After 3 times, it would eventually fail.troubleshooting tried so far:-Deleted device from AAD-Deleted device from Intune-Removed company portal cache and also re-installed company portal app-Deleted the device from JAMF, removed MDM profile and re-enrolled the devicePer sign-in logs in AAD, there is a success for company portal sign-in. Just wondering if you have experience similar issue ? Any troubleshooting would be helpful. Thanks!
I have a task assigned to me. install Square app on 1 device in Jamf Pro. I've added the application to Apple Business Manager. What is the next step? I just need to push this app to one device in Jamf Pro. I don't yet see the app available in volume content and understand it will take another sync cycle? After it does sync. what are my next steps? Apologies. Newbie to Jamf pro here.
Hi everybody, Please, Can you tell me if it's normal that I can't boot on Apple Internet Recovery with the adapter Belkin white USB-C/Ethernet (F2CU040) on MacBook Pro (2017). it's working with the same adapter but with MacBook Pro 2016 versions ... We've tried with black Dell adapter multi-ports (DA-200) too but with no success (on MBP 2017). Thanks for your help.
Hello! I manage my school's Jamf Pro instance. My users would like to use the Shortcuts app to create custom shortcuts, but when they open the app they get this message:"Restrictions Enabled - certain apps, features, or services can't be seen or used when Restrictions are on. To use this app, turn Restrictions off."From what I can tell, I haven't restricted the Shortcuts app at all, and all other apps I've deployed with SelfService work fine.Does anyone know which setting I should change to fix this? Some googling has suggested the "Allow Unrestricted Shortcuts" setting but from what I can tell that setting is deprecated, or at least no longer showing in Jamf pro. Thanks a lot!
This is such a weird thing, and it's likely a glitch of some kind, but I would like to see if there is a workaround or a way to prevent this from happening. This happens only on computers with a brand-new install of Sonoma, not any earlier OS versions. Once I connect to the internet and allow enrollment to begin, the computer completely blacks out and cannot be resurrected without a nuke and pave. If it weren't for the touch bar lighting up, the computer looks and acts completely dead.Whenever I install an earlier OS, it works exactly as it should. Enrollment completes and the user has a fully functional computer. They can then upgrade to Sonoma without issue. It doesn't black out the computer. Has anyone else experienced this? The first time it happened, I chalked it up to it being an older computer, and didn't really think much of it or investigate. But it has now happened twice more on brand-new machines.
Hi everyone,I’m converting from DEPNotify to Jamf Connect’s native Notify function and I am struggling with Jamf Connect not executing my script, instead displaying the generic “Reticulating splines Again…” message. I have rebuilt all configuration items multiple times to no avail and have opened a support ticket with Jamf but their recommendation of a metapackage with permissions that do not match their documentation did not resolve the issue. I feel like I must be missing something and hope that someone here can point me in the right direction. Any assistance you can provide is greatly appreciated!Configuration:-macOS 14.3.1-Jamf Connect 2.32.0-Using unmodified sample script found at jamfconnect/scripts/Notify/Jamf-Connect-Notify-Script.sh at main · jamf/jamfconnect · GitHub-Sample script packaged with Composer, signed with Jamf Pro built-in CA, and deployed to /Users/Shared/jamfconnect/Jamf-Connect-Notify-Script.sh-Both /Users/Shared/jamfconnect/ folder and Jamf-Connect-Notify-Scrip
its bad enough @jamf11 refuses to resolve this outstanding, imperative, massively insecure fault that has been acknowledged worldwide, but wha makes it even worse is the fact that Jamf claims to have security at the top of their list. their flagship product in JamfPro CANT ACCOMMODATE this feature request and its constantly being looked over. Jamf, YOU NEED TO FIX THIS AND NOW!!! https://ideas.jamf.com/ideas/JN-I-16171 has an. INSANE response from microsoft claiming that this basic auth isnt even going away. at least today it says that its "Planned" but this has been an ongoing issue for YEARS!!! fix yourself jamf!!!
Hello all, Here's the scenario, I want to install a script in /Library/Scripts on a computer and I want the script to work :-)What permissions do I need to set to ensure it will work?I'm aware of the chmod u+x terminal command to make it executable. After running that command the permissions were listed as -rwxr--r--However a different script that was successfully packaged and installed using the composer method has different permissions: -rwxr-xr-x Also the owner is root...Do I need to change/set the owner to root in Composer? And do I need to change the permissions?Added info for the specific script I had a plist file in LaunchAgents to call the script.
I'm working with a customer and they want to use Jamf Login/Connect. I got this all deployed and setup. The issue I see is since this creates a new user account on their Mac what can we do with the old account data. They want all the data that was on the old local account. Is there a script that would be good to run so they can migrate data over? This is a deployment with out MDM yet.
So I am watching the Jamf Training video to setup my new Jamf Pro instance. I get to the part where I set and confirm our tenant name, and create the instance for Jamf Pro. Success there, the Instance Status shows as 'Operational', and I move onto the next step as described in the video by clicking the "Log in" button to the right of the newly created instance.From what I see on the video, clicking on that button should take me to the newly created instance and pull up the Software License and Services agreement so I can continue on with the Jamf Setup Assistant process.... but instead when I click on the link, it shows me "404 Error" and says "You've cat to be kitten me right meow. This URL Does not exist on the server. Verify that the URL is correct." What on earth do I do???
Don´t know if this is the right forum to ask, but I have a issue I simply cannot solve - even it should be quite easy. For some reason, when sending mails and I want to send some pictures, the pictures is not attached anymore - but inserted direct in the mail I have googled a lot on this issue and some claim it is something with signature etc, but still it does not help anything. I have try and update to latest 11.2.6 IOS , but it is still the same issue Do any have a clue how to change such an "simple" setting
How does one go about calling data from the JSS for use in BASH scripts? For example, I have the following code: /System/Library/CoreServices/ManagedClient.app/Contents/Resources/createmobileaccount -n $username -h /Users/$username -S -v For $username I would it to equal "Username" from a targeted computer within JSS> ComputerName> User and Location> Username. My use case would be for users of Casper Remote who were to migrate Network managed users to Local managed users. They would select the target machine within Casper Remote and a script that basically performs the above. They don't really need to lookup who the user is because JSS knows what user this computer belongs to. So for them, this process is very easy because I am leveraging JSS's database.
In the computer lab where I work, we use a generic student user account for all students on our Mac computers, and for privacy reasons, all web browsers are set to run in private "incognito" mode. Recently, with the introduction of the new Microsoft Teams (Work or School) app, I observed a couple of issues related to user logins. First, users could automatically be logged in by simply clicking their names on the splash screen when Teams loaded. Second, sometimes a Teams user would remain logged in even when the macOS user had logged out. To address these issues, I conducted some research and found that Microsoft's recommended solution is to delete Teams login information from the keychain. However, they do not specify which keychain entries need to be removed. After spending some time investigating, I identified the keychain entries related to Teams. It's worth noting that some of these entries are stored in the "Login" keychain, while others are stored in the "Local Items" k
Links for the macOS Monterey and Ventura specific Safari 17.4 installers on Apple's CDN: macOS Ventura: https://swcdn.apple.com/content/downloads/30/42/052-59885-A_5IXDIWICU3/q9megna20yvg9mnjssbc92f9ogq8w5itbx/Safari17.4VenturaAuto.pkg macOS Monterey: https://swcdn.apple.com/content/downloads/08/43/042-52122-A_3QCC9W93M1/33p5cnqc6qjqbedklpbl7ssbjh7fkbrka6/Safari17.4MontereyAuto.pkg Upgrading Safari to version 17.4 on macOS Sonoma requires installation of the macOS Sonoma 14.4 update.
First Post!Started a new MacBook Pro from Prestage Enrollment yesterday morning, looked great at first. I pulled up the Applications folder and sorted by Date Modified (newest) so I could keep an eye on the Apps as they popped up. Just Protect popped up. The rest never did. Checked the progress in JamfPro (Cloud) and all the apps are in Pending status. Looked again this morning, still pending, Checked all the scopes and looks fine. Just for giggles I put together a .pkg, wrote a policy to push it out to that laptop and two others that had used same pre-stage successfully. Those two grabbed the .pkg almost immediately, the other didn't. Those two were scoped identically to the third that failed.yes - The computer is checked in the pre-stage enrollment in Jamf.no - it did not inventory much at all except the basics, did not pull in the user info, current apps list, etc, that you would expect to see when a Mac does that first inventory upon enrollment. A little bird to
After the update to iPadOS 17, our iPads show the *.jamfcloud.com certificate as expired.All iPads that show this error have stopped checking in to JAMF.Even though the expiration date is shown as March 2022, the iPads that are still on iPadOS 16.x are still checking in right now.Our profile doesn't allow resetting the iPads or adding a new MDM, and I can't push a changed profile because the iPads are not checking in.We don't have a device that can run Apple Configurator either, so we can't batch reset them.Is there any way this problem can be solved?
Is there anyone here who has successfully deployed Equitrac and printed using Xerox, deployed from Jamf Pro in their environment? I have it working intermittently, but the inconsistencies would be a nightmare for the service Desk and no doubt create endless tickets. I have followed instructions from their support service called Kofax, created a script, packages and PPPC's, run locally and deployed from Jamf Pro, but still the process of printing using Equitrac continues to encourage grey hairs at an alarming rate. We have tested on M1, M2 and M3 chips. Monterey, Ventura and Sonoma. The inconsistencies are never-ending. We have scenarios where the EQLoginCotroller.app, will not appear. Sometimes it will appear but give an error saying "Unable to connect to print server". Sometimes it appears, allows you to authenticate, but never sends the print to the server. Sometimes the print cost preview will pop-up, other times it will not.On a good day, it'll work consistently on d
Hello, I've been using Jamf Connect for a while to sync users account, but since (I believe) the upgrade to Ventura, the login screen for Jamf Connect is always skipped on reboot.We are using Filevault, so usually I would simply run the command bellow to set the Jamf Connect login screen back in. This worked for every MacOS upgrades since Mojave./usr/local/bin/authchanger -reset -jamfconnect But since Ventura, the Jamf Connect login screen won't show up after a reboot. Even if I use the authchanger reset command. I just updated Jamf Connect to 2.24 unfortunately resulting to the same problem.Did this happen to anyone else ? Were you able to fix it ?
I am attempting to get policy statuses for computers from the API. I found a few older posts (from around 2015) saying it wasn't possible, but I also found this post (https://community.jamf.com/t5/jamf-pro/extract-a-jamf-policy-status/m-p/252920) that gave me some hope. I connected with PowerShell and was trying this:$url = "https://domain.jamfcloud.com/JSSResource/policies/id/318" Invoke-RestMethod -Uri $url -Method Get -Headers @{"Authorization" = "Bearer $token"}I get a response, but without any information:xml policy --- ------ version="1.0" encoding="UTF-8" policyAny ideas on returning policy statuses with the Jamf Pro API?
Hello - we are just starting to roll out Jamf Teacher, and I believe we have Jamf Pro because the actions are fairly limited. If a teacher wants to block Safari, but still allow students to go to Google Docs (not the app) is this possible? If you put the website on the allowed websites, but disable Safari, does that work? Or do you need to allow Safari and put the allowed website? Thanks for your help!
Hello everyone, We are looking for a solution to deploy a configuration profile on a local profile (MacBook).We need a local "exam" account for our students, which would only allow access to a list of authorized URLs.We can set this up with a configuration profile (Parental Controls).The problem is that we want to apply it to a local account, is that possible? Thanks in advance for your answers!
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!