Get Support
Recently active
Hello guys,we have some problems with our jamf school solution. We are currently running around 2k iPads in different locations. The wifi settings are deployed via a wifi profil.We selected following options:[X] Auto join[X] Enable if target network is not open or broadcasting[X] Disable MAC Address RandomizationOur Wifi-SSID is not broadcasting and set to WPA2-Personal.Most of the iPads are connected properly but couple one arent or taking like 2 hours of time or not connecting at all.If i look in jamf, the correspondent ipads got the profile pushed and installed... A reset of the iPads is working but inconvenient. Sometimes also iPads that already connected, loosing the connection and do not reconnect at all...We are running a guest network, hidden, vlan tagged but open to the internet. Most of the iPads are running 16.4 or newer...Thanks in advance for your helpKind regardsConrad
I use Jamf patch management definitions to help with our patching process, as it makes it easy to build the correct Smart Computer Groups using the criteria.I just noticed that the current version of Microsoft Teams (standalone) that can be downloaded from macadmins.software is showing version 1.6.00.11156, or "61156" as the CFBundleVersion displays it. I confirmed this right now by downloading the latest version linked there and examining the pkg in Suspicious Package.Yet, in Jamf's Patch Management, I'm seeing this for versions of Microsoft Teams.There is no version "611156" listed in the patch definition. Am I just missing something or did Jamf miss one of the versions for this title? Maybe 611159 it was supposed to be 611156?This is the first time I've run into a missing version in patch management that I can actually verify is a version I can obtain from the vendor.
We recently updated App Installers section of the Jamf Pro Admin guide (in 10.40) to provide more detail on the App Installers workflow.As we call out in this section, App Installers uses the InstallEnterpriseApplication MDM command as its deployment mechanism whereas other app deployment workflows such as policies and patch management use the Jamf management binary. The MDM command does not provide us with the same amount of control as we have with the Jamf binary and depending on how the original software vendor designed their installation mechanism, the installation experience can be quite different than that of an installation that was triggered either via a policy or with a GUI triggered installation (i.e double clicking the installer).This has resulted in a less than ideal end user experience with a number of the software titles that are being updated by App Installer such as apps being killed whilst the end user was running the app with no warning, strange dialogs, etc.To
Knowledge sharing is the most rewarding experience any of us can have. As technology professionals, we have all likely had an occasion or two where we shared something we know with someone who could benefit from the information. Many of us create videos and keynotes to train and conduct presentations. As a Learning Experience Designer within Jamf’s Customer Education department, I make a lot of videos and keynotes. I’ve found that great keynotes focus on graphics over text to aid in visual storytelling. Consistent spacing, easy-to-read font, and clean animations also add to a fantastic keynote. When delivering your keynote, make sure to bring energy and passion to excite your participants and energize them to learn. To help you create a great future video or presentation, here are six resources I frequently use to design and deliver amazing content. Keynote Apple’s Keynote app is a mainstay in the presentation landscape. Keynote is well-known for its stunn
I'm not sure if anyone here has tested the updated version of Configurator or was aware that they added the ability to install apps with the App Store disabled. My excitement over this feature dwindled when I found an iDevice enrolled in Casper would error out if an app was added to Configurator and pushed to it. Removing the enrollment profile and using a profile created in Configurator allowed the feature to work. Bummer.
Hi,Can someone take a look at my Printer management profile and see if you can tell what is off? It's not working, but I feel like I'm close. Device URI: smb://oesprint.oes.edu/LS_XeroxCopier_MacOS (This should be correct it's working in Jamf Pro)Display Name: OESPRINT_LS_XeroxCopier_MacOS (this is the CUPS name of the printer)Location: blankModel: "Xerox Color C70, 5.7.2"Printer locked? Not requiredPPD path: file://localhost/Library/Printers/PPDs/Contents/Resources/ Xerox Color C70 Xerox Color C70.gz I'm really not sure about the PPD path. I installed the Xerox drivers on the computer. There is a "Xerox Color C70.gz" file in the path where the PPDs are, but I'm not sure what to do with it because it appears to be zipped and not a .ppd file.
Hi,We are looking at increasing the amount of characters needed for passcode in the config profile.Is the "Change at Next Authentication" a one time change and if not how often does it repeat? Cannot find an answer in Jamf documentation.Thanks.
Hi, I tried using JAMF school to set the names for all new devices. Under device placeholder I updated "Set Device Name" in JAMF and the Macbook device Computer Name did changed but when I use terminal to check hostname is it different. Is there a way to change all names at once?Thank you
Has anyone worked on chrome extension I want to user to block installation of chrome extension and existing extension should work without any issue.
Hi,Trying to figure out if I did this correctly. The EAs said it's okay, but the CIS Report says the script failed even though the configuration profile is there.Is this how you would do the configuration profile? Maybe I got the "string" detail wrong. @jmahlman
I'm sure this has already been covered somewhere, but I can't find anything helpful. Under Patch Management and a given App (e.g. Visual Studio Code), the patch report showing the devices with a given version provides a "Last check-in" time. What I am seeing are times very much in the future (appears to be 4 hours). And, I cannot find a setting anywhere that would allow this to be adjusted to my timezone (assuming it is just a time zone setting). There is the setting for my account, which is set to NY (UTC -4). Any ideas??
We have a policy that uses the Software Updates payload to force users to install macOS updates. By default it's set to run once a month, so users get prompted to install updates, but sometimes there aren't any updates to install. So it pesters users for no reason.Ideally, I'd prefer that the policy check for available macOS updates, and only prompt the user if updates are available. Is anyone already doing this? If so, how?If there isn't an existing solution, I'll try and create my own. I've been thinking about how to best accomplish this.Perhaps using two policies, like so:Policy #1 would run daily and check for updates using whatever method works (perhaps this):softwareupdate -lIf Policy #1 finds an update, it would use a custom trigger to run policy #2, which would force an update using the Software Updates payload. (I would allow users to defer it for x days, (where x is a number chosen by our security team).Advice (and constructive crit
Hey Guys, I'm new to JAMF Nation and Casper - and need to create Apple ID's for our 250+ ipads. Looking at the Batch Creator on https://github.com/aaronfreimark/Apple-ID-AppleScriptIt's really great, but i'm not so great on Apple Scripting - so I think there is things in the script relating to the US Apple Store but I can't find it. Does anyone have anything thats worked in Australia, on Itunes 12.1 and Yosemite. Also does anyone have a Verify script for Gmail to then verify all of these newly created Apple ID's. Any help would be appreciated. Thanks
Hello, Most users currently running Jamf Connect app 2.19. I myself have been running the 2.22 app version for a month or so now (just updated to 2.23 today. Our Jamf Connect Login and Jamf Connect Menu Bar configuration profiles are set for the 2.19 version of preference domain. I am wondering if I should change the preference domain version AFTER I deploy the latest version, or BEFORE I deploy the latest version. Does the timing matter? My computer has been running fine using the 2.19 preference domain while being on the 2.22 and 2.23 Jamf Connect app versions. We do not have Auto Updates setup for Jamf Connect as I would like to manage update manually and controllably.
I am not sure if it is a coincidence or not, but we have seen the following problem happen on devices after updating to iOS 16.4 +.We have web clips on our devices that point to MS forms pages on our SharePoint environment. They will load once, but any other reloads bring up a blank page. All other web clips (non-Microsoft) work fine. These devices do have a Content Filter Configuration Profile installed on them. When we remove it, the SharePoint web clips work as expected. So the problem is with the filtering. I am hoping someone has had a similar issue and was able to determine the additional site that need to be added for Forms in SharePoint to load properly. I really do not want to enter in the long list of servers that Microsoft has, in the link below. We did test it on Edge, thinking it might be Microsoft being Microsoft, but unfortunately with the same resultsMicrosofts Listing of Servers Did try diagnosing with Charles Proxy and WireShark, but the sites we got th
Hey all,We found that some of the parental controls from screen time on our MacBooks cause issues with test loading in TestNav and we have to disable them. Im now trying to create an extension attribute to show if the user has screen time enabled so we can send a message to these specific students and parents.During covid we provided instructions for parents to enable screen time on their kids devices, but now have to send messaging out to have them disable it for the tests.Anyone have any suggestions?
Trying to figure out the update process. I'd like to keep my macs up to date with the latest versions, especially when i see the notes identifying an issue I'm having. The problem is, I can't see how to scope an individual machine, or several machines, to test the latest update. Is that even possible?
I recently updated my Jamf Pro instance to the latest version, but I am unable to locate the Jamf Pro Laps feature. Can anyone provide guidance on how to set it up? The "Jamf Pro API Changes and Enhancements" section has been updated since the initial publishing of these release notes to clarify information in a note about how the local administrator password solution (LAPS) feature works with a secure token.
I've installed the connector according to Jamf documentation on a server running Windows server 2016 and different one running 2022. I have found multiple posts on the Jamf forum regarding setting up a service account as the identity on the ADCSproxy. I created a service account, switched the identity, I added the same service account to the IISUSR group on the machine, and to the local admins. Port 443 is open on the device, port 443 is open on our network. When I try to test the site from within the IIS Manager, I get an error: ERROR_CONNECTION_RESET. Certificate invalid, site not secure. Any ideas?
Hello everyone,We have encountered a problem that we have never encountered before. When we enrolling our new M1 Macs, the computer restarts or shuts down after we have logged in at the remote management.The only thing left to do is to reinstall the computer again. If we're lucky, the problem won't reoccur. But we have had to reinstall some computers several times.The devices ship with macOS 12.3.0 and we're running on-prem Jamf Pro 10.30.3, if that makes any difference.What could be the error? Does anyone know? Is there any solution? Seen others with the same problem on this forum but not with any confirmed solution.
I have created and configured a lot of Jamf Pro servers over the years. While creating a new one today to use for testing, I ran into an issue I have never seen before. While following the steps for installing Jamf Pro on Ubuntu I am not prompted to create a root user password during the MySQL install process. I'm also not prompted to use legacy authentication. The Jamf article I am using is here:https://learn.jamf.com/bundle/technical-articles/page/Installing_Java_and_MySQL_on_Ubuntu_for_Jamf_Pro_10-14-0_or_Later.html#concept-5140What, if anything, could I be doing wrong? MySQL installs. I'm just not being prompted. Even though I have followed this process many times I always pull up the instructions published by Jamf to ensure that I complete all steps and catch any new or modified steps. Fortunately I have a snapshot of my server so I can revert back to the base install of Ubuntu quickly.
I just configured Teamviewer Remote integration after watching this videohttps://www.jamf.com/resources/videos/jamf-pro-and-teamviewer-supporting-users-wherever-they-are/and the documentationhttps://docs.jamf.com/10.32.0/jamf-pro/administrator-guide/TeamViewer_Integration.html All went well but there is an issue if I click in Jamf on the manage computer and and Management I dont see the option for Remote Management in the list!!Is it buggy or what could be missing that it is not working?
I feel like I'm playing whack-a-mole with these but our students with macbook airs are finding ways to get around everything I have in place and still managing to install VPNs Students have a standard accountI have a profile in place to prevent adding chrome extensionsI have the App Store set to updates onlyStudent devices have Securly at home filtering set up The latest VPN they have is StarVPN it doesn't show up as running, the only way to see it (so far that i've noticed) is it adds a network service, which they shouldn't even be able to do without admin permissions. any suggestions on preventing this further? We are being forced to hold off on device collection until the last day of school and are worried that VPNs will prevent us from locking computers that aren't returned.
Hello,I hope someone have a suggestion how to sovle this in Jamf ProI want to have two Search Invetory Groups1. One that list all Macbooks we have that are managed but never wiped with remote command.2. All Macbook we have still in Jamf, but they have been wiped with Wipe Computer command = not in use anymore.The reason for this is that we must keep all computers in Jamf that we have taken out of use, but still remain as proof that we have done a remote wipe on them.
Can anyone tell me the location of the Self Service company branded icon.This is not the Jamf icon found in Applications/Self Service.app/Resources/AppIcon.icns I am after the branded icon that you upload into the Branding section of Self Service in Jamf Pro. The reason I ask is I wanted to add this to messages we send out using Jamf Helper and -icon "full path to icon location" I would have thought this would be locally on the machine somewhere, but I have had no luck looking for it on the machine, or within Jamf Nation posts. Many thanks
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!