Get Support
Recently active
Hello, I downloaded and got the Big Sur installer which is 12.21 GB.When I try to package it with Composer, the pkg is only 15.6MB and damaged. I tried with Composer versions 10.25.1 and 10.26 beta. Do you have the same problem ? Thank you for your help
What is the best way to release a device when it's no longer in your organization? You are able to do it through Jamf School or Apple School Manager, which option should you use?Thanks!
Hello Everyone, Not sure why these config profiles I am using with Jamf connect are failing. Does anyone have a way to remove the failed commands? How can I run JAMF Connect and have no failed commands as the outcome
Is there a way, on User enrolled devices, to take away admin privileges to be as close to a Pre-Stage enrollment as possible? Just starting to integrate Jamf in with our creative Team , they use Adobe with a lot of plug-ins and file transfer services, I sent out one pre-stage enrolled device and got alot of backlash in blocking the users workflow.That being said, I want to be able to test with a user that I can work closer with but is User enrolled so the circumstances are a little different. Let me know any suggestions , Thanks
Hi,I created a teacher, a student and a class. In the Classroom App I can see the class and the student and can manage the iPad. in Jamf Teacher I can see the class, but the student's iPad shows "not present". What info is missing?
Can anyone help me with this error I have not been able to find anything on why my MDM profile cert is failing. I am trying to use user initiated enrollment to test some things and getting this return error after my CA Cert downloads and installs.
Helloi am new to JAMF. Since iOS ScreenTime is a piece of crap, I’m looking for alternatives. installed JAMF profile in an iPhone running 12.5.7 for testing. Set up Blueprint. Configured 1 WIFI network. The device is using the blueprint. this iPhone can connect to the WIFI network without problem. Brought the iPhone outside and do some testing. It can still connect to public WIFI networks! what’s up with this?
Hi, I'm new to Jamfu (School). And I have a newbie question:)We migrated with our fleet of school iPads from MDM Mosyle, where we could set up the lockscreen elements very nicely. Jamf's options are more limited in this, so I'd like to make my own custom conf. profile.How do you go about creating a custom profile? Maybe I'm looking wrong, but I couldn't find any best practice on the Jamf website.
Hi,one of my supporting admins moved all devices on our Apple School Manager to one MDM Server by accident. Is there any way to reverse this?Kind regards
I have a small collection of loaner Macs that I need to give to staff, sometimes for a day, sometimes for a few weeks.My current process had been to issue a 'Wipe' command through Jamf. I am wondering, hoping if there's a better and quicker solution. I've read some people say that you could delete the user and their home directory. Would that be suitable?Basically, I just want a way to wipe their data and account without having to re-enroll the device in Jamf over and over. We do use Jamf Connect for our SSO.
I'm trying to add a mac with macOS Sonoma via BYOD enrollment. iOS devices are set up correctly and already do work, but when I'm trying to login via Settings -> Privacy and Security -> Profiles -> Work or School account, I'm getting the following error:Did not receive an enrolment profile from your MDM server. Contact your administrator.
Hello Jamf Nation!Jamf Pro 11.1.0 Beta is now releasedWe're excited to announce that this beta includes Remote Assist and macOS Self Service Onboarding along with many other features and fixes. How to join the beta: Enroll in the Beta Program under Product Feedback at account.jamf.com. Once you enroll you'll receive an invitation to join the Beta Forum, click "Join this group Hub" to gain access. Email beta@jamf.com with questions.The beta program is covered by the Jamf non-disclosure agreement; please do not share any information regarding your testing on any public forum, including the non-beta areas of Jamf Nation. Use the Jamf Nation Beta Forum or contact Jamf via beta@jamf.com with any questions. Thank you to all who participate in this program!
My org's NetSec guy wants to do a "Mock Ransomware drill" and wants to have a way to shtudown all of our Mac/Apple Computers/Devices ASAP through Jamf. I know you can initiate a shutdown of Mobile Devices as a mass action command, but it doesn't appear that the same functionality exists for MacOS Computers. Does anyone have any ideas on the best way to achieve this? I know a policy could be created to force a shutdown, but is there a way to force all computers to check-in for policies immediately? I've experimented with the Lock Device MDM command, it does restart the computer into a locked mode but it appears to still have network functionality. I'm guessing if we're trying to stop the malware from spreading across our network that isn't going to do much?
We have 5 different brands and each brand has its own Entra ID, I was wondering if we could setup JAMF Connect PreStage enrollment tied with the specific IdP.Only one Entra ID worked and that is because the SSO on JAMF Pro has been configured and linked to that Microsoft tenant. I'm really confused. Help is much appreciated.
Is it possible to restrict what kind of account can sign into Google apps on 1-1 iPads? What we're seeing is students signing in with both their personal google account and their 1-1 G-Suite for Education account and they are using their personal account to create Google Classrooms where they can chat with each other....
Hi all. Hope everyone is having a great Friday. We're relatively new to Jamf Pro, and brand new to iOS. We are deploying some iPads which I have setup with Apple Configurator 2 and ABM and tied those to Jamf Pro. Things are looking good with restricting the App Store, and whitelisting only approved apps. We use Google Workplace, so we are deploying all the Google Apps. We'd like to restrict these iPads to only be able to login with the corporate Google accounts. I am able to do this on the Mac side with Chrome Managed Browsers to prevent personal accounts from logging in to Chrome. Is there any way similar to this to accomplish this on the iOS side with Google Workplace or Jamf Pro? I believe I've seen that the school district does something similar on my son's school iPad, so I believe it's possible. Thanks all!
Hello, I have an iPad that is used as a permanent Time Clock in single app mode. I am hoping to find a way to make it restart automatically on a weekly basis. Does anyone know what the JAMF API script would be to do so? Thanks!
We are trying to install Unity Hub to an iMac Lab that has standard users. We created the Unity Package using Composer and created a Policy in Jamf Pro. When anyone launches the app we get the below message attachment.I realize there are a few post opened for this but we can not seem to grant the correct rights to bypass this message.We have tried the following:Created the app with rights to Applications set to Owner: Root Group: AdminSet Permissions to Apply to Owner and Group to Applications and All Enclosed ItemsCreated the app with rights to Applications set to Owner: Root Group: WheelTried changing rights to Application/Unity/Hub/Editor Get Info - Sharing & Permissions changed from Read to Read/Write.We also tried using a Patch Management to update from 3.6.0 to 3.6.0 (which has not run yet). Has anyone had success in installing Unity Hub to a standard Mac user without continuously being prompted with helper?
Of 19 computers in Jamf Protect, 3 are showing as not connected in over a month even though they have the latest Threat Version and Protect Version. Jamf Pro shows them recently signed in and I can see that some have updated to Sonoma in the last few days so they must have restarted. Any ideas on why this might be happening and how I can fix it would be appreciated.
Not really sure what the point of having a pure white and blinding GUI is but I can't seem to find where to turn on Dark Mode with the new v11 update.Also find the new GUI to be very difficult to use with everything looking the exact same.
With some machines lately some profiles won't install. In the management record the error is "The current system configuration does not allow the requested operation."I know Apple silicon machines don't like kexts but not all Apple silicon fails. Confusingly for some that say failed in the management record when I look on the machine the profile is there. I can't tell if I'm making profiles wrong or not.
Greetings,Curious if anyone has run into this scenario;We are using JSS cloud, devices enrolled in Apple School Manager and assigned to the JSS, scoped to a Prestage Configuration that bypasses all steps in Apple Setup except Location Services, Registration & FileVault. We're also using an Enrollment Customization Configuration. We do not create a local admin account in our PrestageThis Prestage is the only one in use and has not changed in years. While setting up a new or freshly-erased-with-new-os Mac:Start the computer, which initiates Apple Setup.Step through the screens to the Remote Management screen.Let the JSS enrollment complete.At the Account Setup screen, Shut the computer off.The scenario here is that a setup tech could finish up for the day and rather than continue setup, shut the computer down, or let it go to sleep. I've only been able to replicate if the computer is shut down.Restart the computer.At this point, the computer boots to a log
Hey all, I want your input on our current provisioning workflow, cuz I think it needs to be adjusted somehow Through prestage enrollment, we create our managed administrator account and choose the type of local user account as "Admin" .. the end-user account gets a secure token but not our managed administrator's one cuz we don't login with it as a first account. We use a script that the end user has to run from Self Service to grant the secure token to our managed administrator account . What do you think? is there something we can do to skip running that script from self service and grant a securetoken to our managed administrator account? Any tips are very appreciated
Today we are releasing a maintenance version of Jamf Pro. Jamf Pro 11.1.1 fixes the following product issues: Jamf Pro Server: Security Issues [PI115207] Updated a third-party library to resolve a known vulnerability (CVE-2023-34055). Jamf Pro Server [PI111014] [PI109336] Enrollment for computers no longer fails when user-initiated enrollment and PreStage enrollment settings are configured with identical management account credentials. [PI111120] The user account creation step of Setup Assistant for macOS is no longer incorrectly skipped when a PreStage enrollment is configured to skip the "Transfer Information" and "Location Services" steps. [PI111481] [PI103338] The user account creation step of Setup Assistant for macOS is no longer incorrectly skipped when a PreStage enrollment is configured to both create a management account and enable FileVault. [PI113195] The user account creation step of Setup Assistant for macOS is no longer incorrectly skipped on computers with macOS 14
Hello Jamf Nation! Jamf Pro 11.2.0 Beta 2 is now released. Now with Dark Mode!! There are also many additional features and fixes, please view the release notes for further information. How to join the beta: Enroll in the Beta Program under Product Feedback at account.jamf.com. Once you enroll you'll receive an invitation to join the Beta Forum, click "Join this group Hub" to gain access. Email beta@jamf.com with questions. The beta program is covered by the Jamf non-disclosure agreement; please do not share any information regarding your testing on any public forum, including the non-beta areas of Jamf Nation. Use the Jamf Nation Beta Forum or contact Jamf via beta@jamf.com with any questions. Thank you to all who participate in this program!
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!