Get Support
Recently active
Hi, how do you install an app on a managed iPad of a student?Thanks
I gave deploying printers via the Configuration Profile payload a try. Most of the printers had no issue deploying, but I ran into issues with deploying our more complicated printers.We run Ricoh C6502 MFCs for our follow-me printing and these by standard have a large capacity tray and finisher. We print from the Macs via PostScript.When uploading via Jamf Admin and deploying via Policies, the large capacity tray and finisher options are preserved.When attempting to deploy these printers via Configuration Profile, the tray and finisher settings are not preserved, which causes options for trays, stapling, and other finishing operations to not be present.Wondering if anyone else came across this in their testing or if my printer settings in question have issues. I tried this across Ventura 13.4 and Sonoma 14 Beta 4 and submitted feedback on the latter version.Looking in the /etc/cups/printers.conf, does not appear to be a difference between the Policies and Configuration Profiles install
Hey @jamf11 its time for ModernAuth to be STANDARD!!! I hate to say this, but in this area you are TRULY LAGGING WELL BEHIND EVERYONE ELSE! This is a HUGE security issue and coming from all of us, this needs to happen soon!! You're focus on security is well documented but why is this such a blackhole for you?
Is their a way i can configure notification emails to alert token expiration dates?
Is there a way to run a report that will list lost sheep history site wide for a date range?I am looking to create a list of all the computers that entered lost sheep on date X and did not connect until date Y.
Hello All! We have successfully blocked VPN's on our mobile iOS devices by checking for restricted apps and then locking down the device. It obviously does not see a VPN if a user manually sets one up? Is there any criteria I could use to find if they manually setup a vpn (not with an app)? I may try to do this more at network level if I have to. ThanksJared
In the process of removing admin from our users. I want to create configuration profiles for any software app permissions that are devs use that I'm not aware of yet. I can pull applications installed and from that try to find code requirements / team identifiers but that doesn't help without knowing what permissions to give it. This will be a process to research each software. Is there a way I can pull this information at least for the Privacy & Security tab? Checking System Report or these locations I am not finding the info I am looking for exactly. /Library/Preferences//Library/PreferencePanes/System/Library/Preferences/System/Library/PreferencePanes Ideally, I would have a script run in JAMF to collect this data combine it if possible. Thanks for any and all help or thoughts!
Just for anyone else who happens to stumble across this in 2023 and is like, "What does this do?" The answer is NOTHING and DOES NOT WORK. Quote from a ticket earlier that address this very question. "Thank you for reaching out to Jamf Technical Support!To summarize, the feature “Computer administrators may refresh or disable management” is not working.Unfortunately, after some investigation, Jamf created a Ticket with Apple, but this appears this feature is not going to work. We tested on our end, and it is also not working.At this point, we will be marking this case as inactive. If there are any additional questions or concerns, let us know, and reference this case number to allow for us to continue working from where we left off."
Hi there, So when jamf notified us for APNS renewal, Instead of using the apple id assigned to renew the current certificate on the one on APNS. We have accidentally used a different apple ip and created a new certificate in APNS causing jamf to produce a new certificate on Jamf with a new topic. This has caused the managed laptops and phones enrolled on the previous certificate to lose the functionality to get any remote commands from jamf. The laptops still checking in and working fine, but the remote commands functonality has been lost. We have found the original apple id which was used to renew the certificate now. My question is if we renew mdm again on jamf with the certificate that was originally used in apns, will it make those devices receive the remote commands again or will it break the entire devices to be unmanaged? Hope this makes sense, any recommendation will be greatly appreciated.
how to customize Management Action window message
Hey everyone, I'm thinking to start integrating our Jamf Pro instance with Intune just for the sake of having confidtionl access, what do you think? any issues that I will encounter? tips?Thanks
I'm trying to find what is removing/hiding the default Mail app from our devices, this is not effecting all of our devices just ones in a set of Smart groups. The devices are enrolled to JAMF via an enrolment profile that is installed via Configurator 2, the devices have the Mail app up until the enrolment profile is installed and they get their configuration profile from JAMF. I've checked the configuration profile settings and can't find anything in restrictions about disabling, hiding or removing the app. The configuration profile is also set to Allow all apps under App restrictions. Any clues would be much appreciated. Thanks
Has any one tried setting up a Synology as a JAMF Pro File Share Distribution Point with http support?
Hi all,We are in the process of setting up 802.1x, using EAP-TLS wifi authentication.We deploy a configuration profile with SCEP/Network/Certificate payload at a computer-level, since we use Jamf Connect and recently found out that we cannot push configuration profiles at a user-level as we were initially planning (the solution of re-enrolling all devices is a no-go).Everything seems to be working, but our cyber security team challenged this configuration because Macs use that certificate to authenticate to the wifi regardless of the user logged in (for example a user could create a local account and authenticate to the wifi, which apparently it's not something they like).My question is: is there any way to manage which user accounts are allowed to use that certificate? Example: only specific users, or only domain accounts?Thank you!
Hello All, I was looking for a solution to uninstall Nexthink collector from mac device, if I run the uninstaller extracting from .dmg file which contains 4 .pkg it says uninstaller” can’t be opened because the identity of the developer cannot be confirmed. Should I run rm -rf /Library/Application\\ Support/Nexthink and rm -rf /Library/Application\\ Support/NexthinkVersions or do we have a better solution on this?
Hello,once again we have the problem, that at one school the wifi key was leaked.tbh we really don't know how, because the wifi is pushed via jamfschool profile.So it cannot be viewed with IOS 16.What other settings in jamf restrictions do you recommend to prevent that?thanks
I am trying to deploy Office 365 to my clients, all of whom have Office 365 accounts tied to their email. I would like to deploy through JAMF Pro using the VPP Mac App so the apps will update automatically. My problem is the $69.99 per year page before the sign in option. I don't want my clients scared of signing in. I want them to be prompted for sign in immediately, without the purchase prompting. Does anyone know of a way to script past this prompt? Below is the Screen that I'm hoping to avoid:
Does anyone know how to deploy SmartNotebook v.23?I downloaded SmartNotebook and uploaded the pkg to Jamf Pro and created policy and set for Self Service and it fails everytime.It looks like the SmartNotebook pkg has a packaged with a tool that checks the computer to see if it is compatible to be able to install.I have a feeling that this might be causing the pkg to not install. Does anyone know how to get past this feature?
Hey guys, Is there a way of wiping a iPhone with a script ? let me know if this is possible. Thanks
is there a way to remove the recovery lock password on Apple Silicon Macs without unenrolling/erasing them?
Hello,I'm currently working on a mass deployment of Jamf Connect Login for Azure. The primary goal is to demobilize accounts on a mass scale. However, I am keen on ensuring that this deployment process is as silent and non-disruptive to our users' workflow as possible.Here's what I have for my current .plist configuration for Jamf Connect Login:<?xml version="1.0" encoding="UTF-8"?><!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "http://www.apple.com/DTDs/PropertyList-1.0.dtd"><plist version="1.0"><dict><key>AllowNetworkSelection</key><true/><key>CreateNewUserHide</key><true/><key>CreateJamfConnectPassword</key><true/><key>LicenseFile</key><data>*license key value*</data> <key>OIDCAdminAttribute</key><string>roles</string><key>OIDCClientID</key><string>*client_id*</string><key>OIDCNewPassword</key><false/><key>
Hi everyone,does anyone have issue with jamf connect being grey out? currently on jamf 2.6
Hi people,I'm currently testing this MS plug-in for SSO for iPads I've had some success with it - when building a new iPad, I sign into the iCloud and, when entering the MAID, it loads MS Authenticator and makes that link. Then when I open MS Teams, I don't have to input any credentials, I just tap on the account and I'm signed in.It also works with safari, but with other 365 iOS apps (Word, Powerpoint, Excel, OneNote and OneDrive), I still have to input the email address. The account doesn't automatically appear like it does in teams.Does anyone have experience in SSO in Office 365 apps within Jamf School? Attached is our current SSO settings.Thanks
Hello there, we use Apps with exam modes. The Teachers would love to control the in App functionality via Jamf Teacher.Vote here if youre interested in this feature.https://ideas.jamf.com/ideas/JN-I-27324
Hello I'm trying to set an app configuration for Outlook on iOs using : <dict><key>com.microsoft.outlook.EmailProfile.AccountType</key><string>ModernAuth</string><key>com.microsoft.outlook.EmailProfile.EmailAccountName</key><string>Mail XXX</string><key>com.microsoft.outlook.EmailProfile.EmailAddress</key><string>$EMAIL</string><key>com.microsoft.outlook.EmailProfile.EmailUPN</key><string>$EMAIL</string><key>IntuneMAMAllowedAccountsOnly</key><string>Disabled</string><key>IntuneMAMUPN</key><string>$EMAIL</string></dict> So far it's working perfectly. But i want to enable/disable more settings.So i followed the information available on microsoft website :https://docs.microsoft.com/fr-fr/exchange/clients-and-mobile-in-exchange-online/outlook-for-ios-and-android/outlook-for-ios-and-android-configuration-with-microsoft-intu
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!