Get Support
Recently active
Hi All, 1st Post been trying to get up to speed with our Jamf infrastructure. I have done allot of Googling and searching for information these past few months to get 0 touch working and things look great, now we are trying to get our AD bound mobile accounts demobilized and unbound with the impending Microsoft Vulnerability patch coming that is going to stop communication from our Bound Macs to our Domain controllers. I am automating as much as i can so that i dont have to baby sit this process. i have smart groups for this and they all seem to be in working order. The one function that is not happening how i would like is the actual Jamf Connect Demobilize funcition. I have the Configuration Profile set with the Demobilize function (only setting). But the demobilize only happens on log off and log back on , NOT on reboot. I cant find any information on this specific criteria. It does say in the article "This involves having users log in to complete the demobiliz
When a Jamf Connect user reboots their Macbook, is unable to log into the system if not connected to wifi. Model: MacBook Pro (14-inch, 2021)Model Identifier: MacBookPro18,3
Hello Community, Hoping someone might be able to help me figure out how a user was able to upgrade their Mac to macOS Ventura when I have the installer being blocked using Restricted Software. Is there a log or something that will tell me what triggered the upgrade? I have seen two users do this now. Thoughts?
Hey folks..Management is wondering if / how we can prompt the user to enter Okta 2FA / Okta Verify app pursh or code every time the user logs into their Mac.is this possible? I personally don't want it, but I'm just following orders.
For past one week, we have have issue with personal IOS devices losing compliant status after new IOS update 16.5. We have to do 'Send Blank Push', and 'Update Inventory' manually for each device in order to device come back to Compliant status every day. More over, the device will not stay compliant not more than a day. We have to repeat the same process everyday for all personal devices.
We performed the Jamf 10.46 upgrade last week, ever since all of the ticked Sef-Service categories for mobile device apps have disappeared. the categories are still there but have become unticked. We are trying to manually go through all of our apps and re-add the assigned categories back under the Self-Service tab of the mobile device app configuration. However, we have noticed a bug now with categories, that sometimes, when creating a new category, it will either fail to add (spitting out a 404) a new category, or instead edit the last added category. I thought it might have been an issue w/ ampersands, spaces or colons, but even with 'plain' names, without spaces, it is still bugging.
Hi engineers, I am configuring "Cloud Services Conection" but, when i enter my credentials and clic on "Save" message "No assets found for this account" appears. How do I solve it ?? Thanks.
Hi all,We use Apple Remote Desktop (ARD) to send restart commands to a fleet of Macs in our classrooms. These computers are set to auto-login to a user account (these are computers behind locked doors and monitored). That user account is configured to not have windows reopen upon restart. com.apple.loginwindow <TALLogoutSaveState</key> <false/> That works great on a restart initiated manually from one of the client computers. No open windows reopen upon restart and auto login. Unfortunately, it does not seem to work when initiating a restart from ARD. I haven't determined why this is.At first I thought maybe it's because it's sending as the root user and that might be changing/ignoring something. So I tried sending the restart with a Unix Command from an admin account: echo "localAdminPass" | sudo -S shutdown -r now Well, that command worked fine, but the windows still reopened.Does anyone have any idea of why this is
Hello everybody,is there a way to give users the permission to edit the network-settings (example dns-settings).Do i need a MDM-Payload for it (com.apple.dnsSettings.managed)?And what is the easiest way to create a payload for things like that (Settings, permissions...).Thanks
Hello, I have found many old threads about this topic, but nothing new. I have tried and I don't think it's possible still (I see threads going back to 2017!), but I would like confirmation. Webclips can or cannot be added to a folder in a Home Screen Layout? Thank you!Dan
1. How do you set the homepage for iPads for Safari using Jamf Pro?2. Is it possible to set the homepage for iPads for Chrome using Jamf Pro?
I am trying to figure out (in detail) how to connect the two. Fortunately all of our computers are listed in ABM but I am not sure how to connect the two systems.In ABM all computers and devices say No MDM Server and Edit MDM Server is grayed out. I can select All Devices and Edit MDM Server but the only option available is to Unassign from the current MDM.Based on what I am seeing is the only option to unassign all computers and devices and then re-enroll them? If so what enrollment option is correct?It is obvious I have not been down this path before so I would appreciate any guidance in connecting Jamf Pro and ABM and getting all existing computers properly configured.
(Source - https://appleshare.it/posts/jamf-nation-life-2023/)This year Jamf Nation Live is coming to London (9th June), RheinMain (13th June), Paris (15th June) and last location will be Amsterdam (20th June).If you haven’t registered yet, make sure you register below!London @ Tobacco DockRheinMain @ RheinMain CongressCenter, WiesbadenParis @ 3 MazariumAmsterdam @ Taets Art and Event ParkCan't wait to see you in person at one of the locations! Therefore, I want to provide some useful information that can help you if you are coming to one of the events!Useful informationBesides seeing the great opening keynote, there will be many other great presentations, interactive sessions, and panels where you’ll hear from Jamf and other members of Jamf Nation community on the latest regarding managing and securing your devices.App to help you organise the dayTo help you organize your agenda and see where you want to go, Jamf has created an exciting app this year (more details will be inc
Hi everyone, I wonder if someone could help or, if I am missing something here.We are setting up Jamf Radar, and when we try to do the UEM connection with MS Endpoint manager, the permissions get granted. However, the tenant ID does not populate. Would this need to be done by a GA on both sides?
Hi Community/Hi Jamf AdminsWhen you lock apps in the Teacher app, they visually disappear from the iPad. However, they are brought back to the iPad in an arbitrary order when you unlock the apps again. So the order created by the kids is always goneand created folders etc. disappear.Is there any way to change this? Jamf Feature Request ?Thanks for feedback and suggestions.Peter
Hi All, I just wanted to know if I want to customize the nudge agent in every after 3 Hrs then in my composer can I open the launchagent package(downloading it from github) and put the value accordingly in the plist and save it or still I need to create a new launch agent and build the package to deploy it? Second question, if I get the Nudge popup and set it for tomorrow after selecting Defer button then where this settings gets stored to popup tomorrow? If I want to reset this settings what should I do now?
Hi all,I inherited a messy JAMF situation. We are current on Jamf Now with a IT advisory firm, they no longer want us as customers since 1) the previous bills didn't get paid on time 2) we simply wasn't using their service, so they can't bill us for anything. I looked into it and think JAMF Now is actually what we need since we have less than < 10 ppl. But, our push certificate has long expired, I tried to follow the documentation, but I keep running into issue saying signing certificate has expired. I do have admin access to the JAMF Pro instance, but I am not sure what's missing on my end. I did try create JAMF ID, but I can't associate it with my JAMF Pro instance...All I want is to unenroll the few laptops we have and start from fresh, but the IT firms want to charge $400 dollar to renew the push notification, which seems high. I also don't like the fact that my laptops are essentially being held hostage...Open to any ideas.
Hello,We are trying to enroll an iPhone 7 Plus on Software 9,2 that was factory reset. It goes through the ABM Pre-Enrollment, then hangs at Configuring iPhoneWaiting final configuratyion from <company name>In JAMF the device shows as"Enrollment Method: PreStage enrollment: Initial Enrollment"Where should I start looking to solve this issue? Thank you.
Hi AllHave anyone updated their JAMF pro from 10.14 to the latest? I know we are way back in pastDue to the end of support for Windows sever 2012R2 have to update the server OS to Windows sever 2019 and need to update the JAAMF as well.have anyone done this before if so Can we directly jump from 10.14.x to 10.44.x without the Incremental Upgrade?What are the important things that I should consider before updating?Thanks
I get many error messages on all computers under Management commands. We do not have nor did we ever have Jamf Protect. I searched just about everywhere in Configuration Profiles & Settings to no avail. We have a cloud server, not on prem. I thought I would reach out before opening a ticket. Any way to stop these messages from happening? As far as I know it isn't affecting anything, so is low priority. Remove Jamf Protect PPPC and System ExtensionProfile with identifier 'com.jamf.protect.daemon.pppc' not found. <MDMClientError:89>
Hello Jamf Nation!We recently released Jamf Protect 4.2.0.This release includes two resolved issues:Occasionally, computers with a large queue experienced high CPU usage if disconnected from the Jamf server. This has been resolved and in the event of a disconnect, queue uploads will pause until reconnected to the server.Previously, the ProcessDisguisedAsApple analytic was being erroneously triggered due to an issue interpreting the process signing information. This has been resolved and the alert should no longer be communicating a false positive for this analytic.Product Documentation For additional information on what's included in this release, review the release notes via the Jamf Learning Hub.Thank you!The Jamf Protect team 0 Kudos Share
It's been a while since I posted anything, so, for (future) me & for you I am posting this script that dynamically updates Static Group membership. You might be saying to yourself, "Dynamically updating a Static Group is impossibly dumb, because, that's what Smart Groups are for...", but, here is my dilemma: I need to assess an endpoint state for which there are no good client-side attributes to collect. In this particular case (if you must know, Microsoft modern vs. basic authentication) there is no definitive data on the endpoint that accurately reflects the sheer number of highly-variable user login behaviors in my environment. It's not that it's too hard, it just can't be accurately done (&, yes, I've talked to Microsoft... https://techcommunity.microsoft.com/t5/exchange-team-blog/notes-from-the-field-does-outlook-for-mac-insist-on-using-basic/ba-p/3629510). The user login data I need (i.e., email addresses that are using basic auth) is available, however, in the Exchange l
I found this thread for an Intune EA, but am getting conflicting information. I check if a user is enrolled in Jamf by navigating to their computer, clicking the History tab, then navigating to macOS Intune Integration Logs. The extension attribute will return "None" despite the user being enrolled with Intune (see screenshots attached). I have tried to find documentation on creating a smart group based upon the Intune Integration reporting Jamf already has, but have not been able to find any. I also quickly glanced through the Jamf Pro API reference and documentation to see if this could be accomplished via the API but was unsuccessful. Any help would be appreciated! Thank you for your time!
I'm looking to set up a sandbox instance of Jamf Cloud. Does anyone know how many certificates the APNS portal supports? I'm a little nervous in selecting "Create new certificate" when I have a production instance and certificate deployed. I'm "assuming" that the "Create new certificate" wouldn't impact my current & valid production certificate, but rather be safe than sorry and ask the group. Any impacts to currently deployed certificates when creating a new one in the APNS portal?
Hello,Could you please advise me on the following?I have Jamf Connect deployed via Jamf Pro (with Azure AD) anf FileVault enabled via a Configuration Profile.At the booting and restarting, macOS login window first appears to ask for Password and then presents the Jamf Connect Window where I supply the Azure Credentials.At the logout, it presents the Jamf Connect window.is it the way it should appear? Since FV enabled, it requires to be unlocked first and then JC login window appears there.if there is no FV, it straightaway presents the Jamf Connect Login Window.(User Migration has been chosen with Jamf Connect Configuration.) Thank you,Arun
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!