Get Support
Recently active
Hey Everyone,I'm looking at setting up DEPNotify again but I'm wondering if this is the best way to go with Apple's changes they've made and DEPNotify hasn't been updated in a while. What I do like about DEPNotify is that you can pop it before logging in. Looking through the MacAdmins Slack I see reports of the window getting cut off and there isn't really a way to resize it per the channel. This isn't really a deal breaker but appearances, right? There are suggestions for Dan Snelsons swiftDialog - swiftDialog. I saw his post on here a month or so back and it looked like a good alternative too.I know of IBM Notifier, DEPNotify and swiftDialog. My goal with either of these assistants right now really is to just capture some input from the tech to set the Device Name and preferably Asset Tag so the machine can get the right policies based on the naming convention of the device. Connecting it to my Jamf Pro instance via API is not necessary right now hence Asset tag is preferable. I
Hello everyone,We're about to convert our eDirectory to AD and will at the same time (finally) level up to Office 365. Today we only have local accounts on the computers but wish to have a more network based login or sync. I know that Jamf Connect is available but I don't know if it fulfills our wishes.Is there a solution so that you can log in to the computer with an Office 365 account? If so I would be very happy for more information, guides and/or links. :)Thanks.
Hello Jamf Nation, We are working on a project to require all of our users to update their passwords lengths from 8 digits to 12 digits. I already have a configuration profile setup for the minimum passcode length (see below).Additionally, I have a script setup in a policy to grab the user ID and set the device to require a change of password (see below)# Pulls the current logged in user currUser=$(ls -l /dev/console | awk '{print $3}') pwpolicy -u "$currUser" -setpolicy "newPasswordRequired=1" My question is, is there a way to add to my script to check the length of the current user password and if it meets the password requirements, to skip and not require a password change?
Hello jamf nation members,I'm facing a challenge and I'm hoping someone here can help me. I want to add a user to an MS Teams channel using a static Jamf computer group and Power Automate.Specifically, I want to set up a workflow that automatically adds a user to a specific MS Teams channel when their computer is added to a static group in Jamf. The idea is to grant the user access to the corresponding channel automatically once their computer meets certain criteria.I'm unsure about how to configure the flow in Power Automate to add the user to the Teams channel. Has anyone here solved similar tasks or has knowledge about connecting Jamf, Power Automate, and MS Teams? I would greatly appreciate your help, suggestions, or advice.Thank you in advance!Best regards,Paul
Hi All,looking for some guidance,I have approx 200 systems that where removed from JAMF via script but still have a old MDM profile. I need to get these back into a working state with a valid mdm profile. Is the best way to fix = Wipe / Re-image -> DEP enrolment or is there another way to fix it ? via script or local steps?ThanksRob
The latest version of Chrome is 114.0.5735.106 (released 6/7) but Jamf is only showing the prior one that was released on 5/29. Granted we are only a few days out from its release but wondering if that is normal/expected behavior.
Hi communityWe have noticed that recently a blocked url "empty field", no url entered, prevents the complete surfing and calling of pages.Is that an Apple thing or an Jamf Request as Bug ?Looking forward to feedback and best regardsPeter
Hi, we have some MBP 16" we purchased in Dec 2022. we were able to deploy a few using the auto-enroll process. we have a couple of devices left. when we try to auto-enroll them now, we are stuck at the remote management screen - when I click on continue, it says retrieving enrollment profile and nothing happens. we are stuck at this stage. I have confirmed the token has not expired. I have put in a new token just as it was to expire after a couple of days.I have confirmed the network setting are OK. I checked the devices under the --> Settings --> Global --> Automated Device Enrollmenthere I can see the serial numbers for the 2 MBPs in question, which shows enrollment done on 17/12/2022. it is assigned to the correct group - SG-MacBook Pro - M1. however, it does not have a device name for these 2 machines. how can i resolve this?
I'm looking for a script that will silently convert a Mobile Account to a Local account, leave AD inplace and make the user admin. Rich Trouton's script is great but requires input. However I have edited it to remove the section that unbinds from AD and also edited to make the user admin without prompt but I can't figure out how to remove user selection part and just run. I just need it to covert any mobile accounts it finds without any onscreen selection. Anyone have a something to achieve this? I know Jamf Connect can demobilize but cost is an issue.
Can we use JamfConnect just to Demobilize + Unbind Macs without the IDP setup ? I have the JamfConnect app but no green light yet to link It with our IDP.If no, what should we use instead ?
Hi, Is it possible to use JAMF Pro to set the minimum password length at all. I can see some of our users have short passwords. This is an issue until we can bind and use Active Directory. Is this possible with JAMF? If so let me know. Thanks in advance
macOS Ventura introduces an issue with Full Disk Access and i was reading apple is working on a fix (I hope).When checking the Full Disk Access on a macbook all of them are disabled.Pushing a config created with the PPPC tool to allow full disk access doesn't do anything.Our AV product still seems to be able to scan the disk un the current state.I don't expect the fix to magically enable all listed software for full disk access, will the push from PPPC work after any Apple fix?What are the options we have and what wil be the result for any fix that Apple releases?
Hey folks,I have a questions about deploying and managing versions of Adobe apps using just the clean Creative Cloud app.We're currently undergoing a merging of companies, where we also get merged into a shared JAMF instance, where we will have little to no control over packages, scripts etc. So our old method of creating and download custom Adobe packages from Adobes admin panel will be out of the question for now (this is also a tiresome method anyway). The clean Adobe Creative Cloud app is what we are left with.So, I've heard that we might be able to install and version manage Adobe apps using scripts and commands, but I can't find much information on this online (Adobes support documents are rather lackluster).Does any of you JAMF gurus here have any experience with deploying Adobe apps this way? I tried to search the forum, but didn't find what I was looking for.It's worth mentioning that we are a post-production company, so always updating to the newest version is a big no here.
I'm currently experiencing an issue with SSO via Azure. After configuring the connection as described here: Tutorialwe have the following situation:- Logon via the "Test connection"-Button from inside the AAD Application Configuration works as expected. The user is directly signed in and reaches the JamF Pro Dashboard-- Login via Jamf Pro Login (jamfcloud.com) simply redirects to the JamF Pro Logon Page.Is there anything which needs to be done to enable JamF Pro to identify, that the user trying to connect is expected to be a SSO-User?Any hint would be warmly appreciated.
Recently, my organisation had experienced theft of their property on site - an iPad was stolen. In the JAMF dashboard you can see the iPad has been wiped several times and on each occasion it would pull down our MDM profile and all apps that have been allocated to it. How does one go about trying to locate the physical location of the said item?
Anyone have a fix to this issue? FileVault is prompting our user every week to authenticate.Insight to this issue would also be appreciated, thankskey reset
How do we disable Internet sharing on macOS Ventura via Jamf. We have some success on macOS Monterey and earlier but not on Ventura. This is a User-Initiated enrollment devices.
Hello,I want to configure a lot of file extension so that's open with a specific application.By exemple, i want to all pdf file open with Apercu.I heard about the duti app, but it seems to be really old. Anyone know how to configure this easily ?Thanks you for help :)
I am an existing Jamf pro user and urgently need to remote wipe my employees computer due to potential security concerns. Two questions 1. Am I able to remote wipe a device not connected to the internet? 2. Will I be able to remote wipe data stored in icloud on those devices? Thank you
Hello, everyone,we added our existing MacBooks to jamf via UIE. The devices still have manually installed user profiles under System Settings - Profiles. Certificates were distributed with the configuration profile. Is there a way to uninstall this profile via jamf?Cheers
I did a search and found a couple of scripts, but they look like they're older threads so I figured I'd ask again. I'm doing some tests in Composer with various packages for a few different audio plugins, including Native Instruments. All computers in this lab have Native Access installed (the Native Instruments installer) and then several different instruments/effects/etc such as Kontakt, Reaktor, Guitar Rig, etc. I'm assuming if I package Native Access to be available in Self-Service, it's pretty straightforward and users can then just install Native Access as normal and pick whatever instruments they need to use, and so on...right? Or...am I better off making a package of Native Access + ALL their applications, instruments, etc...which is what we'd ideally like to provide on each workstation)? It would be sizable (like 80G) but we have plenty of hard drive space, so :shrug: .In either case, it seems like it's a pain to uninstall instruments, like if there's some kind of issue a
I got a set of iPhones/iPads with some restrictions. I can't get it to work so you can delete or move/make folders on the home screen. If I but a device in exclusions within the configuration profile it works, but not when it's in target.Se bellow:Looks right for me or is there anywhere else to set up what's allowed or not?
Hi Folks,I'm new to jamf, and just using it as a software developer because our customers want us to integrate to it, so our instance serves as test data for developing integrations.I've got a couple of iphones enrolled fine.When I try to enroll an apple laptop, I go either to https://myinstance.jamfcloud.com/enroll, or I can use the link provided by jamf when you create an invitation, which is basically the same.. https://myinstance.jamfcloud.com/enroll?invitation=somelongnumberSo I get to the enrollment screen, it says "Assign to user", so I put a user name in that box, but when I click "Enroll" nothing happens. The screen just says there as if the enroll button had not been clicked.thanksPaul
We have JAMF Pro running for a couple of years, we recently exceeded our licence count so purchased additional licences and applied the new Activation code to our instance. Our instance shows a total devices purchased as 30/270, managed devices as 26/264 and unmanaged devices as 0/0 so we do have a surplus of licences.BUT we have an alert through the lightning bolt to tell us we have exceeded our device count.Has anyone else had this issue? Any ideas on how to resolve the annoying error?
Is it possible to deploy in-house created shortcuts to the Shortcuts app on an iOS device? Is it possible to allow untrusted shortcuts in the Shortcuts app via configuration profile?
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!