Get Support
Recently active
Enrolling in a Jamf Training Course is an exciting step in expanding your skills, but once your class is scheduled on the calendar, you might wonder: How should I prepare for training? What devices should I use? How should I set up my workspace? While Jamf will send you important setup instructions prior to your course beginning, here are additional preparation steps and strategies you can take to ensure you’re fully ready to succeed. 1. Review the Student Setup GuideOne week before your training begins, you will receive an email from Jamf Training with important details about your course. This email will look like the following: This email will contain:Instructions to log into Jamf Account to view customer requirements and prerequisites A link to access the remote training session the following week A link to the Student Setup Guide A contact for your instructor. If you have questions, you can reach out to them. The Student Setup Guide is essential. It outlines:Device Requirements R
Originally posted in MacAdmin Musings Why I Try to Stop Working Before Everything Is Finished For a long time, I treated the end of my workday as a finish line.I’d keep going until the problem was solved, the task was complete, or I was too drained to continue. If something was still broken or unanswered, I felt pressure to push through it before logging off. Ending the day with loose ends felt like failure, like I wasn’t completing my tasks.Over time, I realized that approach was quietly working against me.Not because unfinished work is bad, but because how you leave work unfinished matters. The Hidden Cost of Draining the Tank When you work until you have nothing left, you don’t just end the day tired. You also make tomorrow harder.The next morning starts cold:You have to remember what you were thinking You have to reconstruct context You have to re-load mental state before you can make progressThat ramp-up cost is real, whether you’re writing small scripts or a large project. Moment
Jamf Pro has superior automation and scripting tools. Jamf School has a simple interfaces and blueprints. Do you feel the loss of customizable security features and scripting is worth the trade off for the tools given by Teacher and Student apps?
Hello all you IT Rockstars! I’d like to get some of your thoughts on Patch Scheduling. Since there are so many tools available to use with Jamf Pro, it really gives us a wealth of options for customizing. What and When:The way I look at things, there are 3 basic categories of patching urgency on macOS.Feature: Non-Security OS Patches, New macOS versions, and specific software that is a deliberate manual rollout. Example: corporate VPN software. This is something that we would want uniform version across the fleet. These are planned and don’t have a standard cadence.Critical: Security OS Patches, Zero-day patches, and other applications that the security issue addressed by the patch is important to your organization. I am thinking of having these install once a week, short deferral period, force update within 24 hours.Routine: Basically, all other application patches. I am torn between doing these on a weekly basis with the critical patches, or draw th
Starting in March, you will no longer be able to log in to Jamf School using a Jamf School account. Instead, you will need to log in using Jamf ID or single sign-on (SSO) through Jamf Account. Note: This post will be updated when a specific date for the change is determined. To receive updates for this post, click Subscribe. What you need to know: ✓ Already using Jamf ID or SSO through Jamf Account to log in? You are good to go—no further action is needed. ✓ Don't have a Jamf ID yet? Create a Jamf ID now, or wait and one will be automatically created for you in March. If a Jamf ID is automatically created for you, your Jamf ID credentials will match your Jamf School account credentials. After your Jamf ID is created, you can log in to Jamf School by navigating to your Jamf School instance URL (e.g., "yourdomainname.jamfcloud.com") and using your Jamf ID credentials. ✓ Two-factor authentication (2FA) changes: SMS based 2FA will no longer be supported. 2FA through a third party app will
Hey Jamf Nation,Your favourite time of year is just around the corner...the JNUC Call for Sessions! 📣This year, we’re doing something a little different for our Jamf Nation community. We’re bringing the inner workings of JNUC and the session selection process straight to you!Join us for a live session with two of our very own JNUC session team, where we’ll cover:• Tips and tricks for submitting a standout JNUC session• The 2026 subject themes• When the Call for Sessions officially opensWe’ll also hear from a community member and past JNUC presenter, who’ll share how their session idea came together and what they learned along the way. 🗓️ Date: Wednesday, February 25⏰Time: 9–10 a.m. CST / 10–11 a.m. EST / 8–9 a.m. MST / 7–8 a.m. PST / 3–4 p.m. GMT / 4–5 p.m. CET / 8:30–9:30 p.m. IST / 11 p.m.–12 a.m. SGT / 12–1 a.m. JST+1🚨 REGISTER HERE ➡️ https://jamf.it/JamfNationEvents Have a question for the team? Add it to the thread below!Don’t forget to register! See you soon!
I need to use the JAMF School API to retrieve a list of devices. When I call the /api/devices/ API in PowerShell, it returns *all* the devices as part of the JSON response - which could run into many thousands. That’s a response size of tens of MBs, probably larger.This could cause problems with the code and the memory of server on which the script is running. I don’t see a way to paginate the response. Neither the documentation nor the Postman project have any information about paging the response to keep the response to a reasonable size.Am I missing something in the documentation that could allow me to paginate the response? Or is there another API that I can use to retrieve devices in smaller sets?
Is there a way to disable iPad access during certain hours of the day?!--a=1-->
Hello all, Does anyone know how to build a Static Computer Group from a list of computers? It doesn’t matter what the list format is. That should be simple enough to reformat. Any help or ideas are appreciated.-Pat
A workflow improvement to Import would be to have a default assumption that if the Asset Tag is already defined and is blank in the device CSV that the system maintains the same asset tag.Currently if you fail to enter the asset tag on a subsequent import, the data is wiped. If you are rapidly setting up classes, you may not have the asset tag information - you have the serial number and the student details. Finding it again from previous data and then adding it to a device placeholder adds unnecessary time to the process. In the cases I’m working through, the system already knows the asset tag, and it hasn’t changed - and it won’t change for the life of the device.If the asset tag should be reset, allow a character like dash - to signify please reset / delete the asset tag.
I received this feedback from one of our teachers testing out Jamf Teacher- When I take control and lock them in an app, it literally clears their ipads from all other apps. Which is great! Except when I clear the locks on my end, all of their apps end up in different locations on their device. So I had a few angry students that spend hours organizing and categorizing folders and apps then suddenly I come along and clear things and then their apps are all messed up and scattered. That isn't a nice feature of this app for sure. I get it. I love having my iPad organized by apps I use and in folders. It's a shame that this developer didn't think of that aspect of things when designing the app. Just a little feedback for you. Are others experiencing this?
I am a Jamf Pro customer and think Jamf Teacher has great potential! However, our teachers are struggling to fully integrate it because of some missing key features. 1.) We are not enforcing the home screen layout payload so students can customize their iPads and organize their apps in a manner that works best for them. After restrictions are cleared, their apps lose their organizational structure and end up anywhere on their iPads. Apps that were in folders don't stay in those folders. 2.) Lack of status window/confirmation pop-up to see when you have a lesson in progress or have issued a command to student iPads. Teachers would like more visibility/confirmation as they issue commands and place restrictions.
Since November 2025 you can find the warranty information for your Mac devices in Apple Business Manager. You can call this information using API calls. Is there any information if Jamf is going to make an Jamf integration? This warranty information would be a cool feature to have in Jamf. As an MSP it would be great for Life Cycle Management for our customers.I’ve seen no information from Jamf jet.Sofar I've been working on local scripting in python to get the ABM warranty information in Jamf as an Extension Attribute. For Computers I've succeeded I'm however not successful yet for mobile devices. The Jamf Classic and Pro API’s won’t let me update Extension Attributes for mobile. So I'm stuc.Anybody there who would like to help? Or can somebody tell me how to update an extension attribute for mobile, if it is possible and not blocked in api.Kind Regard Remco.
We currently have the “Erase All Content and Settings” option blocked on our student iPads. However, we would also like to block the “Transfer or Reset” option, or at least the “Reset All Settings” option, on those devices.Is this something that can be configured? Thank you
Hello all,I just started with an existing system that isn’t really documented. This means I have to do a lot of jumping around to determine what something does, where it applies, and even if it is working. I want to create some good documentation for this, but I’m don’t know what the best method for doing this would be.Thank You in advance,-Pat
We manage our ipads using Jamf Pro. We load the students google email accounts onto the device using a Jamf configuration profile with the Google payload. The mail account will appear on the device (ipad iOS mail app) and prompt user to enter google password. The user enters the password and the iOS mail app will display the students google email. However, several times through out each day, the iOS mail app will stop displaying google email and prompt user to re-enter their google password. After re-entering the google credentials, the Mail app will not always start working again. I have had Jamf support review our config file with the google payload - they said it is set up correctly. I have contacted Google and they said that it is a Jamf issue. Has anyone else experienced this issue? How did you resolve it? thanks.
Howdy everybody! Time for my annual post about how we all need to get our budgets prepped and ready to go for all the hardware we need to replace that Apple is dropping from its OS Compatibility list!I've modified my previous regex statement to take out the models that were lost to us this year to the latest macOS version. It looks like Apple is taking a big ole axe to the intel macs, minus only a couple of exceptions that seem to tie to the devices that were still being sold at the time of the M1 release. One tricky piece are the specific intel MacBook Pro's that Apple has listed. In that grouping are the MacBookPro16,x models, where x is 1,2 and 4, but not the 16,3 model, so keep that in mind. If anyone has details that contradict that, please let me know here and i'll quickly change the posted regex.I've tested this in my own Jamf instances to verify its returning the data that i'd expect to see, and am confident this will be able to match everything that is no longer supported by M
After poking around Jamf Pro and Jamf Protect, it seems that JSC/RADAR/Wandera is the only source of storage for CVE-level details for managed client app inventories. I can plainly see them in the default web dashboard. So I set up a Risk API key, and enabled the option to see user and device details.Both the docs [1] and manual exploration seem to conclude that only “Device risk” can be gathered from the public API, whereas things like “Average CVSS score” (or anything related to CVEs) cannot. Which would be fine if those two had a tight relationship, but I can plainly see things like an endpoint with six (6) high-scoring app vulnerabilities (including a 10 and a 9.8) per CVSS that only has two (2) app vulnerabilities reported per device risk and grading overall as low-risk.I did notice that app vulns as a category can be force-upgraded from low to high to influence device risk more, but it’s possible that device risk will entirely miss the presence of vulnerable apps and this still d
Hello Jamf Nation!We’ve released Jamf Pro 11.26.0 beta. This release includes updating session duration and time out within Jamf Account, automatic device registration with Microsoft Entra when using Simplified Setup for Platform Single Sign-on (Platform SSO), various bug fixes and more! For full details, check out the release notes after enrollment.How to join the beta: Enroll in the Beta Program under Product Feedback at account.jamf.com. Click “Join Community” to join the beta forum once enrolled. If you encounter an error on Jamf Nation joining the beta forum, please log into Jamf Nation and then click “Join Community” again. Please also check out this recent blog on Configuring SSO in Jamf Account prior to testing Compliance Benchmarks, Blueprints, and App Switcher. Email beta@jamf.com with questions.The beta program is covered by the Jamf non-disclosure agreement; please do not share any information regarding your testing on any public forum, including the non-beta areas of Jamf
You got this. TGIF!Have a great weekend!Feel free to share to your memes or express that you are glad this moment has finally arrived and the weekend will soon be upon us.
We are currently using a pre-stage created managed account and the LAPS process for passwords on that account. Since we use Jamf Connect, we have ‘skip account creation step’ turned on.I am finding that this account is not getting the bootstrap token escrowed or a secure token after MDM enrollment. Is this intended? How can I change this? Ideally, I’d like to have a hands off option that doesn’t require a manual installation so that we always have the bootstrap token escrowed and a secure token on our managed account. What am I missing in this step? I am finding when we do need to use the local admin account, it’s not able to take some actions, like install a new OS.
👋🏻 Hi everyone!We are organizing a Mac Admin community event on April 30th in Leiden (Netherlands) and wanted to share an early heads-up here.This is not a vendor or company event — it’s very much by the community, for the community, Inspired by established Mac Admin conferences and from years of local community meetups. Expect practical talks, shared experiences, and plenty of time to talk with other Mac Admins.More details coming soon, but feel free to reach out if you’re interested or want to know more. 🙂Website is https://macadmins-eu.org.LinkedIn page is https://linkedin.com/company/mac-admins-europe.Hope to see many of you there! ✌🏻
Greetings all, We are trying to enforce screen lock time limits (which InfoSec wants), but when we do, it also enforces a particular screensaver module (which InfoSec doesn't care about in the least). Some of our users don't like "Flurry" and want to set their own. These two seem joined at the hip in the GUI. Copilot had a suggestion using a script, but it didn't work for me. Does anybody have these two things functioning, but separately. It doesn't seem like a big deal to me, but some of our users are really not happy about not being able to set their preferred screen saver.
If you’re not using any enrollment progress tool in your Mac Environment now, or if you’re shopping for a replacement, consider Jamf Setup Manager. When exploring options, we wanted something easy to configure. Something we’d be able to set and forget. And if configurations needed tweaking later, it’d be easy to update. I am lazy. There, I said it. Enter Jamf Setup Manager (JSM). Setup Manager is the best gift I gave myself this Holiday Season. The best part is that we pass this onboarding experience to our customers and technicians. No heavy lifting. No scripting skills are needed. Just add these two ingredients and you’re on your way. The Setup Manager Package A new Setup Manager configuration profile Add the two items to your Prestage The folks at Jamf added a QuickStart guide to help you get started. I’d recommend giving this a read. This helped me generate ideas for customizing Setup Manager for my organization (more on that below). &nb
Hi all I have a fleet of Mac Pros all sitting behind a firewall. All traffic - IPs, ports have been allowed as per the Jamf documentation. All Macs can sync and restart however apps can't be deployed or updated. Am I missing something? I even have the entire APNS IP range allowed but still nothing. Any help or advice would be much appreciated
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!