Get Support
Recently active
Hi, I am trying to update 60 MacBook Air. I pushed JAMF School to update 13.5 from 13.3 skipping 13.4.1 etc.It keeps failing. I tried updating to 13.4.1 and it stops at 10/15%.I tried restarting and redo but still failed. Any advise pls.🙏
On our student iPads we are having messages pop-up in IOS Safari saying "You cannot browse this page at 'fill in the blank' because it is restricted." So far they have been blocked by a Google form and a link inside Google doc to a BuzzFeed article. Works fine on another devices that students use. I have a "fake student" account and iPad for testing that shows the same behavior. I removed the config profile on my testing iPad with all the restrictions.No difference. I switched to a wifi hotspot with no filtering to see if there might have a filter in between, no difference. So, what or who is causing the restriction? Any thoughts?
Local Admin Password Solution (LAPS) addresses security vulnerabilities of common admin workflows by supporting a unique and randomized local account password per device, that rotates after viewing, and that is accessible to a subset of authorized users. This security feature ensures an organization can maintain control over end user privacy and sensitive data. LAPS is an automated approach that allows IT administrators to maintain security, comply with regulations, improve efficiency, and maintain accountability by knowing who accessed the password and when. With Jamf Pro 10.46.0, Jamf introduced LAPS support as an API-first solution for better securing shared IT admin accounts on computers. This implementation was specific to the admin account created during Automated Device Enrollment using a PreStage enrollment. Jamf Pro 10.49.0, as part of User-Initiated Enrollment settings, Jamf expands LAPS support specifically for the Jamf Management Account specified. This soluti
Hi Team,Hope everyone had a great weekend.Question: I just purchased a new M2 Mac for my organization and I was able to enroll it into JAMF pro and all of the policies came down as it should. My issue is, I'm getting this error (See screenshot below) when trying to connect it to VPN.We had this issue in the past where we needed to remove the old computer name of an older machine in intune in order to get it processed as well as create a second local admin profile to connect it.So far, this is the only Mac with this issue and it happens to be an M2 machine.I was wondering if anyone has seen this or resolved it?Just to add, when we click "copy to clipboard", it takes me to the JAMF console and nothing happens. Thanks.
I'm trying to apply the same wallpaper image to multiple monitorsI set up the CP / Restriction / Functionality / Lock desktop picture to /Users/Shared/Wallpaper/Wallpaper.jpg It sets the wallpaper on the primary monitor but does not set on the secondary one.I've tried with a script also to test #!/bin/zsh wallpaper_path=/Users/Share/Wallpaper/Wallpaper.jpg osascript -e "tell application \\"Finder\\" to set desktop picture to POSIX file \\"$wallpaper_path\\"" Am I missing something or is this an Apple "feature"?
Here is what I'm trying to do. When we do 3rd party patching, we have to do them in phases, alpha, beta and uat. We currently have 10 applications that we update monthly. For each application smart group, we have to add the group manually to each one. For example, this is what it would look like. On day one we add Alpha group and the next we add Beta group. I've messing with different scripts, but keep getting 404 error. It would be nice to run a script that would add the groups instead of going in to each one. Not sure if this even possible.Here is what our update groups look like.This is one of the scripts I was trying.#!/bin/sh# API login infoapiuser="xxx"apipass="xxx"jamfProURL="xxx"# Smart group IDSmartGroupID="120"SmartGroupAPIURL="JSSResource/computergroups/id/${SmartGroupID}"# XML header stuffxmlHeader="<?xml version=\\"1.0\\" encoding=\\"UTF-8\\" standalone=\\"no\\"?>"# Get the current smart group criteriacurrentCriteria=$(curl -sSkiu ${apiuser}:${apipass} "${jamfProURL}
Happy Friday All, So, I am testing a Smart Card configuration profile to Enforce Smart Card use; more specifically, I am currently testing the Use Case scenario of, what happens if someone loses their Smart Card. So I attempt to remove the profile so that they could use their username and password to log in however, the removal of the profile is not occurring, it is stuck in pending. Any tips or tricks that could help me solve this? Our environment consists of:On-Prem Jamf ServerRequired VPN / Hardwired connection to the network to communicate with Jamf ServerForced FileVault EncryptionFrom my test computer, which is locked out, I am hardwired and can ping the Jamf Server from recovery mode. I am wondering if because FileVault is enabled it cannot remove the profile because the disk is in an encrypted state. Not sure though. Any advice is appreciated. Thanks
Hello experts. I'm new to jamf and this community so apologies if this has been answered already as I haven't been able to find a recent solution response. I have a policy that enables users to run a script and management wants to know who has run it via self-service. So far, I've been able to get this computer-by-computer, but is there a better way? My solution uses: Finds a subset of computer history data by ID (jamf.com) with the subset set to PolicyLogs. With thousands of computers scoped for the policy, that's a large number of API calls to make. Ideally I would use Finds a subset of data for a policy (jamf.com); however, there is no subset for PolicyLogs. Any advice or solutions you can offer?
So I'm using a policy with a trigger of Login so it's basically a LaunchAgent ... does the command get stored somewhere on the client so I can verify that it made it there? Where do the output and errors go ... jamf.log or do I need the script to redirect everything?
I'm not able to get FUS working on Mojave, wondering if others have a working script/config to get it running. I've tried all previous documentations and nothing has worked. Thanks in advance.
I would like to understand the difference between device and user level in configuration profile. Thanks in advance
Hello everyone, I am try to create a smart group that would allow me to identify computers that have company portal on them. It seems like in Ventura, Jamf Pro is not reading installed Mac Apps from the server.My Situation:I have deployed company portal as well as MS Remote Desktop from Jamf Pro via Mac Apps. This is going to 2 machines, Ventura and Monterey. On my mac with Monterey, I can see the apps showing as Company Portal.app and Microsoft Remote Desktop.app. However on the Ventura mac neither of these are showing in the Inventory. I can see them on the mac though. I have added the ~/Applications/ folder to the inventory search to no avail. Anyone have any thoughts?
Hello Jamf Nation!We are pleased to announce the availability of Jamf Pro 10.49.0 Beta.This version includes some exciting new features, including updates to LAPS, a new restriction for iOS Widgets on Mac, and a new UI to manage client credentials. We also have exciting new in-app feedback submission, documentation, and a video covering the Beta's new features we'd love your feedback on as we iterate on making it easier to participate in our Beta Programs.How to join the beta: Enroll in the Beta Program under Product Feedback at account.jamf.com. Once enrolled, you’ll see a link to the Jamf Nation Beta Forum. Note: There will be a short delay between enrollment and Beta Forum access; you will receive a notification in Jamf Nation to join. When you receive the invitation, click "Join this group Hub". Email beta@jamf.com with questions.The beta program is covered by the Jamf non-disclosure agreement; please do not share any information regarding your testing on any public forum, includin
The networking team for our district is trying to move all of our mobile devices onto a MAC Address whitelisted Wifi network. Is there a way I can export in bulk specific information (like the MAC address) from the Hardware page of each iPad?
Hello everyone,We're on Jamf Cloud with version 10.48.1. We've enrolled some computers now during the summer with no problems. But the latest three we have enrolled doesn't get any date in the Enrollment field (latest enrollment). Last was at 2023/08/02. Am I alone with this problem?The thing is that without the date some policies doesn't work.
Hi Guys. I have a MacBook Air (new) and I manually registered in ABM with Apple Configurator. Then, I registered this device in Jamf (I see it in Prestage), but when I restore and reinstall MacOs (ventura), I select Language, region and wi-fi, the "Remote management" appear and I clic to "Continue" but not advanced. It shows "configuring profiles" but it never continues.I have restored and erased Macintosh HD in various occasions and tried personal hostpot and other networks, but these problems continue.
Hello all, I was wondering if anyone has had success getting the service desk asset scan to work properly for Macs. I am having a little success with network scanning and running the provided scan script on a single machine. Looking for any advice. Thanks!
To give some context here is what I'm trying to accomplish.I want to create a config profile to push to my mac user's for the Checkpoint Endpoint VPN client without having it install the Checkpoint firewall app. Whatever package I download from checkpoint (the pkg, the dmg, the zipp) it seems the checkpoint firewall app is bundled into the installer. I've tried going to composer route to run the installation of the endpoint vpn client, then deleting the firewall app but it looks like starting with version 84.30 the plist, configuration files don't push out so I can't replicate that install from the created pkg from composer to other machines. Checkpoint provides information on how to create a config file to push to users but it still bundles that firewall app in there. https://dl3.checkpoint.com/paid/68/6899355a6a3c45aee11e6fbb4633ce27/Endpoint_Security_for_Mac-MDM_Deployment_Guide.pdf?HashKey=1625763756_e9cb2b2f4a4fb4288fdd80cbce03c7b3&xtn=.pdf Has anyone figured out a way to r
I see an error quite often when looking at the command history of our IOS devices that reads:"Settings - Time ZoneThe setting being applied is restricted."Any thoughts on what might cause that?Thanks in advance,Rob
Hi,i create an In-House eBook which is a pdf file (using hosting location is web server) and i distributed to our organization ipads devices, but the eBook did not deploy to any device its give me an error (The MDM request is invalid) .i read some articals that i shoud not use space in ebook display name and i have to use a version but nothing worksi hope that someone can help me on this !!
I'm looking to sit the Jamf 100 Exam but when I click the purchase button it takes me to a logon screen and after validating my account it then presents the message: UnauthorizedIt looks like you don't have access to this service. Is there something special I need to do so that I can book this exam? I can't see that I'm doing anything wrong but if anybody knows why this isn't working I'd be glad to hear it!
Hello, has anyone had any experience with using the Hidden app in collaboration with Jamf? If so, what are some positives/negatives you have encountered? Thanks!
Hi Wondering if anyone has fixed this solution. We are getting a growing number of machines getting the following error while using 4.9 / 4.10 AnyConnect on Big Sur. Settings for the Config Profile are below, its scoped only to M1 ComputersCould anyone suggest any problems that i might have? Thanks!
Hello Team,I never used AWS S3 CDP before, I used standard Jamf cloud CDP, I was just curious to know if the AWS S3 bucket is already integrated with Jamf Pro cloud, then there will be any change in the way to upload a package in S3 CDP for deployment through JAMF policy? Or it is just same like Jamf cloud CDP, I can manually upload the package or use Jamf admin app to upload the package?
Does anyone have a method for having Self Service auto login on Monterey/Ventura? All the methods I found via search have been depreciated. Thanks!
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!