Get Support
Recently active
Our company has one app that we must defer updates for, and it absolutely cannot be allowed to update during normal hours. We keep automatic updates off and have a script for pushing updates for this app overnight. Recently I had to rewrite this script due to endpoints being deprecated, and it ended up being a bit of a pain. So, I decided now might be a good time to provide some insight here in hope that someone experiencing the same situation might stumble upon this. The workflow that works with the new endpoints is: wait until scheduled time (and wait between most of these steps) > get necessary device info > send restart command to devices > change app setting to force updates > send INSTALLED_APPLICATION_LIST command to devices > send blank push to devices > revert app setting However, there is a catch. You may want to use the “/api/v2/mobile-device-groups/static-group-membership/” endpoint to get the Management IDs for devices. Currently, this endpoint has a
We are currently using Jamf Setup & Reset on our student devices. Setup is used to select a teacher classroom and set the appropriate role. We then have the students use a soft reset in Jamf Reset before the next student gets on the device.When the next student gets the device it has the Jamf Setup app on the screen. But it comes back with the All Set page even though the EA was successfully cleared. Is there a way to force Jamf Setup to open to the first selection screen other than forcing a reinstall of the entire app?
I read somewhere that with iPadOS 26 we will have an option to manage Safari like set Bookmarks and other staff. Unfortunately when i want elaborate this more further i am not able to find any offical documentation from Apple or from Jamf on this topic. Has anybody experience with this? Does Jamf already implemented into console tools to manage Safari via DDM?
8th gen ipads have only 32GB of storage, 11GB are used for OS and 3GB for system data, so, if you want to upgrade from iPadOS 18 to 26 the update requires 20GB of storage available in order to update making it almost impossible to update. The only options I see is to “restore” iPad with mac device or configurator, but just imagine doing this for hundreds of iPads, so the other option is to NOT update.If you have\had this same issue let me know if you have found better options for this update and did you, your business or school district decided to stay in iPadOS 18 or not.
Is it possible to Install Matlab R2020a silently? I have a registration key and a license.dat File.
Districts buy a lot of apps. Some get used every day. Others quietly gather dust after the first semester. The problem is that most IT teams don't find out which is which until renewal season, by which point it's too late to make a good decision. That's the gap RapidIdentity Insights is built to close.What Insights actually shows youInsights is the analytics engine built into RapidIdentity. It doesn't just tell you an app is licensed. It shows you how students and teachers are actually using it, down to the individual login. That includes:A full inventory of your SSO applications, including their status, security controls, and who has access to what Usage stats by user type, school, grade level, or location, so you can see exactly which apps are catching on and where Trend analysis and forecasting, so growth or decline in adoption shows up before it becomes a budget surprise Individual application launch events, if you need to drill down that far Engagement tracking, including which us
We have Jamf-enrolled macOS devices integrated with Microsoft Entra and Microsoft Intune for office and conditional access. Currently, a single compliance group in Jamf sends the device compliance status to Entra, where it's used for Conditional Access policies.Our client now wants to expand the compliance requirements by adding several new criteria. I'm wondering what the best approach is:Should we add the new compliance criteria to the existing compliance groupOr would it be better to create a new compliance group, validate it, and then switch Entra reporting to the new group once it's readyI'd appreciate any recommendations or tips.Thx
I have 3 devices in my org that when they hit the JAMF Connect Login screen to MFA into the device it auto-reboots. I do not have a chance to choose local login since it is instant. I'm not sure if it's a pending policy or JAMF connect causing the issue since it has not checked in since the reboot has started. I do not see any pending policies in the logs. I can't apply any current policies or check-ins since it reboots too quickly to check in to JAMF and or post a boot up trigger. 2021 M1 Macbook ProJamf Connect 2.45.0
I know this has been asked before, but has anyone been successful using Jamf Pro to accomplish either of the following on managed iPads?Prevent students from deleting their Chrome browsing history. Prevent students from signing into Chrome with personal Google accounts (either allowing only our managed Google Workspace accounts or disabling personal sign-in altogether).If you've gotten this working, would you mind sharing how you configured it? Was it done through a Chrome managed app configuration, Google Workspace policies, Jamf restrictions, or a combination of the three?
Written by Diane Meza The demand for skilled Apple IT professionals isn't slowing down. As more schools and businesses build their operations around macOS and iOS, they need people who know how to manage, secure, and support those devices at scale — and the talent pipeline hasn't kept pace.Mesa Community College is helping close that gap. Through the Maricopa Information Technology Institute (MITI), in partnership with Jamf, the college offers the Enterprise IT Professional Apple Technology course series: a hands-on iniative built to turn students into job-ready Apple IT professionals.Learning by doingUnder instructor Carl Cortez, students get more than lecture time. The initiative combines classroom instruction with real device management experience, covering how to work with macOS and iOS and how to manage them in both business and education environments. Along the way, students earn Jamf 100, Jamf 170, and Jamf 200 certifications, credentials that carry weight with employers already
Launching the inaugural Mac Admins User Group Paris meetup during Apple annual developer conference week was quite a challenge… but a good one, and I must really thank all the Jamf team for helping us to make it happen in such a short time! As a long time Mac user, I loved the energy from Apple Expo in the old days. Since its termination, Paris has long needed a localized hub for Apple IT professionals to connect face-to-face. I worked on different Mac admins events in the past (Command IT, Gete.Net Connect), but I felt that choosing WWDC 2026 as our kickoff theme for this new Paris User Group provided the perfect catalyst, uniting the community around massive technical shifts. WWDC 2026 Highlights for Mac Admins Apple made it absolutely clear this year that Declarative Device Management, aka DDM, is no longer just the future, but the present standard. Hopefully, the message was well sent, and as our favorite management tools have been updated to use DDM properly, and this transition s
I have gotten as far as the OneDrive icon prompts and says “Your IT department wants you to backup your folders” and if they click the botton it does work, but I’d like to have this just forced with no choice. This is what I have setup as far as a policy { "title": "Microsoft OneDrive Folder Backup", "description": "Silently enable OneDrive Folder Backup for Desktop and Documents and prevent users from turning it off.", "type": "object", "properties": { "KFMSilentOptIn": { "title": "Tenant ID", "description": "Microsoft 365 tenant ID used to silently enable OneDrive Folder Backup.", "type": "string", "property_order": 10 }, "KFMSilentOptInDesktop": { "title": "Back up Desktop", "description": "Silently move the user's Desktop folder to OneDrive.", "type": "boolean", "default": true, "property_order": 20 }, "KFMSilentOptInDocuments": { "title": "Back up Documents", "description": "Silently move the user's Document
Hi, We deployed self service + with jamf connect globally to our environment and computers that use local accounts are now showing a self service + login prompt. The prompt will not go away and will display over all other windows. We can log in, yes but these are shared use local accounts and we don’t want users to log in with their credentials to self service +. That would be a security concern. We’ve tried setting up restrictions for self service + and its processes but that has either not worked or the window still pops up momentarily every few seconds.
Greetings,Is there a way to determine the last time a policy was triggered? I’m doing some clean-up in my cloud environment, and have several policies created by other people that I’m reasonably certain haven’t been used in a long while; like months or years. Ultimately its my decision on whether to remove the policy or not, but having evidence to support that decision (and the knowledge of how to get that evidence anytime) is useful to me.
I have a fleet of ipads that run conference room meeting equipment. I’m trying to figure out a way to schedule them to reboot overnight, a couple of times a week. I know this can be done with a policy for macos. I’m hoping i can accomplish something similar on iOS. All the answers i’m getting seem to be related to the computer side of things. Any help would be greatly appreciated.
We have a number of machines that restart when left for awhile. These machines did not do when old MDM, but after am getting a number of complaints. Mine also does this. It is reminiscent of the M5 issue that was fixed in 26.5.1; however, none of the machines that are having this issue are M5-based including my own, which is an M3 Air.Is there a fix for this? Could it be Digital Guardian or SentinelOne.
So It seems Apple has removed some MDM control of macOS updates in macOS 27 and they are only allowing using DDM commands to do this.Wanting to know if the Defer Major macOS updates MDM profile setting will work in macOS 27 or is this gone too? (I would assume that deferring upgrading to 27 will still work since older versions of the OS still support MDM update control. This is more about the future) I see with Jamf 11.29 that the download & schedule install is now DDM and works on prem but what we are really looking for is a way to continue Defer Major macOS updates for 90 days. We are not in Jamf cloud and not really looking to move.
Anyone else having this issue?Jamf School’s app installers don’t seem to be installing apps onto my Macs properly. I have a list of apps in a device group that is sourced in the app installers - and upon a Mac joining said device group the apps stay stuck on “Installing” and they stay that way indefinitely. When I click on the stalled app to “Retry app stuck on installing” and refresh, the installation fails and I have to retry or it says “App installation timed out. Try again.”. This is really slowing down my zero-touch deployment process.
Hi everyone,I recently built a small native macOS utility called App Signing Inspector to make it easier to inspect applications and create application-execution declarations for the new macOS 27 Declarative Device Management controls.I started working on it while testing the macOS 27 beta because gathering the correct signing information and manually building declaration JSON was becoming repetitive and easy to get wrong.What it doesThe Inspector lets you select a macOS .app bundle and displays information such as:Bundle identifier Application version and build Executable path Signing ID Team ID Signing authorities Complete designated requirement Hardened runtime status Gatekeeper assessment Locally reported notarization status Apple Silicon, Intel, or Universal architecture classificationThe separate Policy Builder lets you combine multiple applications and rules into a complete com.apple.configuration.app.settings declaration.It currently supports:Allow and deny rules Signing ID and
We are a K-12 independent school preparing to implement Jamf Protect. Our immediate, high-priority goal is reigning in the highly creative gaming habits of our middle schoolers and not so much of malware protection. We recently migrated away from Santa and are hoping Protect will be our new line of defense. If you are using Protect as a method similar to this, what are some things you wish you knew when you first implemented it, or what challenges or succeses have you had with it?
So I was looking at deploying the updated Adobe apps using the Mac Apps feature rather than packaging up from the admin console and making a policy. However; Apparently you can only target one group. O.N.E. group for deployment. Since I want to stage the deployment to different labs rather than all at once (by making yet another smart group), I would have to add multiple instances of the app.Blueprints can be deployed to multiple targets, So can software updates. Why can’t Mac Apps do the same? Am I missing something?
With Jamf Pro 11.30, administrators have increased visibility with a new Last Contact field in device inventory and can configure activation conditions for blueprints. Be sure to check out the Jamf Pro release notes for all of the exciting new features and enhancements.Thank you for your continued support and feedback!
Today we are releasing Jamf Pro 11.30; highlights include:Inventory Reporting EnhancementA Last Contact field has been added to computer and mobile device inventory records. This attribute displays the date and time a computer last made contact with Jamf Pro using the Jamf binary, MDM, or declarative device management, or the date and time a mobile device last made contact with Jamf Pro using MDM or declarative device management. This attribute can also be used as criteria for smart groups and advanced searches. For additional information on what's included in this release, review the release notes via the Jamf Learning Hub. Subscribe to Jamf Learning Hub contentWhen logged in to the Learning Hub, click the Subscribe button (bell icon) on the release notes page to receive email when that content is updated (i.e., a new version of Jamf Pro is available). For more information about the Subscribe feature, see Jamf Learning Hub Watchlist. To access new versions of Jamf Pro, log into Jamf A
Hey folks, I worked on a script to deploy Autodesk 2026 (the one that uses the named user licenses). We don’t teach Mudbox, so that isn’t in the script...but Maya and AutoCAD is (along with Darwin..what a PIA to get working). I packaged the apps and deployed to /private/tmp/AutodeskApps… I have a lot of logging left in the script as Darwin is a royal pain and can fail at many different steps. I also made use of a lot of variables to hopefully make updating in the future easier. Oh, also did it in zsh.Hope you all find it useful, or at the very least, a good jumping off point!#!/bin/zshset -euo pipefail############################# VARIABLES############################YEAR="2026"TMP="/private/tmp"APP_TMP="${TMP}/AutodeskApps"LOG="/var/log/autodesk2026_install.log"DMG_LIST=( "Autodesk_Maya_2026_1_Update_ML_macOS.dmg" "Darwin.dmg" "AdskIdentityManager-UCT-Installer.dmg" "Autodesk_AutoCAD_2026_macOS.dmg")PKG_FILE="AdskLicensing-15.4.0.13093-mac-installer.pkg"INSTALL_SUMMARY=()log() {
We are excited to announce the return of the Learning Hub watchlist. To get started, log in to the Learning Hub and click the Subscribe button on any page you would like to watch. You will receive email notifications when that content is updated. By subscribing to "Release Notes" and "Release History" pages, you will be notified when a new version of a Jamf application, portal, or capability is available.Notes: You will receive a separate email from "learn@jamf.com" for each page you have subscribed to. The subject line of each email message will include "search summary". Email notifications will be sent once per day at 11 PM Central Time (UTC-5). To manage your subscriptions, navigate to My Library > saved searches.
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!