Get Support
Recently active
Hello, Our K–12 district has reached its purchasing limit for Apple devices directly from Apple for this year. However, we still have a need for additional iPads. I wanted to ask whether it is possible to use User-Initiated Enrollment to enroll devices that were not purchased through Apple (apple.com) (ex: CDWG.com, BestBuy.com etc.), and if so, whether there is any way to remove the “Remove Management” option from those devices. If removing the management option is not possible, is there a way to automatically enroll these devices into Apple School Manager using Apple Configurator? Any assistance or guidance you can provide would be greatly appreciated.
I'm looking to setup, add a domain (DRC WIDA testing) to a configuration profile with "Relaxed Domains" for our iPads. I don't see it anywhere I've looked in Jamf Pro configuration profiles, but Apple and WIDA have references to it. This would allow us finally to not have to manually toggle Cross-Site tracking to "on" on each iPad!!!!I've setup a custom configuration as described but I'm hoping there is a non-custom method that I'm just missing. This functionality is supported by a key in the Domains payload CrossSiteTrackingPreventionRelaxedDomains. From WIDA / DRC InsightCross-Website Tracking and Device SupervisionImportant: Sites using iPadOS 16.2 and higher no longer need to enable Cross-Website Tracking aslong as the device is supervised and the domains are relaxed following the instructions below. This can bedone using Automated Device Enrollment and MDM software or by using Apple Configurator.Note:Sites using iPadOS 16.1.2 and below must still enable Cross-Website Tra
In the Other changes and Improvements from the release of 11.22 there was a mention that the deferral of updates with some payloads was deprecated with the 26’s and to use Blueprints going forward However in the Configuration Profiles for both devices and computers it is not stated that this setting is deprecated.
I have a single machine that is active and online and running policy, but the inventory has not completed for any policy since May. I am unable to remotely access this machine to re-enroll and I am unable to tell who is using it as the stale inventory record only shows the account of one of our local techs, who I have confirmed does not have the machine.Any ideas?
Created label for the installation of Dockanchor :dockanchor)name="DockAnchor"type="zip"downloadURL="$(downloadURLFromGit bwya77 DockAnchor)"appNewVersion="$(versionFromGit bwya77 DockAnchor)"expectedTeamID="4XW3W377NX";; I am getting the following error :Script result: 2025-11-13 15:44:54 : REQ : : shifting arguments for Jamf 2025-11-13 15:44:54 : INFO : dockanchor : setting variable from argument NOTIFY=silent 2025-11-13 15:44:54 : INFO : dockanchor : Total items in argumentsArray: 1 2025-11-13 15:44:54 : INFO : dockanchor : argumentsArray: NOTIFY=silent 2025-11-13 15:44:54 : REQ : dockanchor : ################## Start Installomator v. 10.9beta, date 2025-08-07 2025-11-13 15:44:54 : INFO : dockanchor : ################## Version: 10.9beta 2025-11-13 15:44:54 : INFO : dockanchor : ################## Date: 2025-08-07 2025-11-13 15:44:54 : INFO : dockanchor : ################## dockanchor 2025-11-13 15:44:56 : INFO : dockanchor : Reading arguments again: NOTIFY=silent 2025-11-13 15:44:5
Hello,Is it possible to configure Custom Analytic if someone unenrolls their device from Jamf Pro (i.e., uninstalls the Jamf MDM profile)?
Have a weired Webex issue that started a month ago. When the user opens his Webex, to join a meeting, he get's the error message "Webex quit unexpectedly and you can click reopen, report or ignore. The first time it happened, we just did an uninstall/reinstall and it worked for a couple of weeks. It's happened a couple more times. I recently tried using the webex uninstaller, we also checked the webex dependicy folders they provided to make sure there wasn't anything left over. I updated webex on my Mac and it worked, so I created a package using composer, but it keeps getting the same error. Below is a script I found that the user ran and after the uninstall, he restarted an not luck after. I do see something about checking keychain and resetting the TCC permissions which I'll try today. #!/bin/bash# Get the currently logged-in userCURRENT_USER=$(stat -f "%Su" /dev/console)USER_HOME=$(eval echo "~$CURRENT_USER")echo "Starting Webex residual file cleanup for user: $CURRENT_USER"# Defin
We are trying to load an in-house app into Mobile Device apps. We started to make the new record, uploaded the file in archived app file, but had to cancel the attempt. Trying a 2nd time, it reports there is already an ipa with that name. Where can I go to delete that or can I just select that?? I did not find it in Settings > Packages.
Is there any way to get the password sync status from the new Self Service+ as Extension Attribute?Would be really nice to see if Google and the local user are in sync. Other ways to archive it are welcome 😀
Has anyone gotten jamf2snipe working with Jamf Pro Cloud API Roles & Clients (OAuth client ID/secret)? All documentation I see is for Classic API, which is blocked here
Hi Everyone,Need your help if you have a script that can mount and unmount SMB the can be use as repository of screenshotsThank you.
HelloIn the process of testing single sign on extension for managed Ipads, I have deployed the Authenticator app and the single sign on profile with following plist.SSO is working great on all apps except outlook, I think it has something to do with how Outlook use SSO/ auth method it uses. <?xml version="1.0" encoding="UTF-8"?><!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "http://www.apple.com/DTDs/PropertyList-1.0.dtd"><plist version="1.0"><dict> <!-- Existing Keys --> <key>AppPrefixAllowList</key> <string>com.microsoft.,com.apple.,com.jamf.,com.jamfsoftware.</string> <key>browser_sso_interaction_enabled</key> <integer>1</integer> <key>disable_explicit_app_prompt</key> <integer>0</integer> <!-- Managed App Config for Intune --> <key>IntuneMAMUPN</key> <string>$EMAIL</string> <!-- Required for Microsoft Enterpris
Hi everyone,I’m trying to figure out whether it’s possible to distinguish between devices with a physical SIM, devices without a SIM, and eSIM devices using Smart Groups. I’m not sure if anyone else is seeing the same behavior I am.My Environment:Jamf Pro On-Prem 11.22.1-t1762179835791 (Windows Server)Devices under management:iPhone (China version) iPad (China version)What I try to Achive:Create Smart Groups that can identify:Devices with a physical SIM inserted Devices without a SIM card Devices using eSIMWhat I’ve tested so far:Using Phone Number: Some devices can’t retrieve the SIM’s phone number. Using Current Carrier Network: All devices running iOS 26 and later fail to return this field. However, devices that could read the phone number on iOS 18 can still do so after upgrading to iOS 26. Using Current Mobile Country Code and Current Mobile Network Code: These values are available for devices with a SIM card on both iOS 18 and iOS 26. However, I also found that unactivated eSIM d
In our Jamf Protect tenant, we have a multitiude of devices that have been retired and no longer in use. They still show in Jamf Protect unless we manually delete them and skew our results. Is the correct process to keep our Jamf Protect Computers inventory tidy to manually delete them from Jamf Protect? Does Jamf Protect have any auto-expire policies? For example, if disconnected for 6 months then purge device from Jamf Protect.
Does Jamf know when this will be resolved? An important part of the logs are missing, and i haven’t heard any mention of a resolution. Is there another way to find out who deletes machines or locks them?Also would like to point out that Details for all actions are blank.
Hello everyone, I come in search of a glimmer of hope.I am trying to use BeyondCorp Enterprise to enroll iPads on Jamf and be able to use G Suite with users under an advanced OU (Organizational Unit).Now, among the needs declared by Jamf, there is "Basic iOS mobile management enabled for your organization's Google integration."Has any of you ever managed this with the settings set to "advanced"? I fear it might not be feasible.
Hey, all! Does anyone recommend a nice/pretty way to use with iPad's ADE as in "user-will-be-in-awe-to-go-through-this-setup" ?I'm trying to setup some sort of onboarding for the iPads (1:1, not shared) in a similar way that we have for macOS, but I couldn't find anything (or, quite possibly, that I'm not searching in the correct ways in here ). I've tested the ADE with a prestage and it's working fine, plus the few Config Profiles that I'm doing testing with are landing correctly...just I need to make a more personalized "Corp-feel-like" experience...Btw, I'm using Jamf Pro - I need a way to have the user guided through the few hurdles with Compliance (Register with Microsoft), Zscaler, etcThe enrollment customization part I have it sorted out, but it's not going to "enforce" the user to "click-here...run-this"...I think I need more of the 1st app to be triggered right after the ADE completion (maybe running temporarily as single-app mode?), where I can put some instructions on what
I have Jamf now and I added Jamf protect on my blueprint. It shows that Jamf protect was deployed but I expected to see the Jamf protect reports or alarming and so on in the Jamf now interface but there’s nothing of the sort. Can someone please explain what I’m missing? Thanks kindly in advance.
My daughter’s school causes to have the Jamf Trust app downloaded on her iPad 10th generation, and the school is currently only allowing it to update to iPadOS 26.01. However, even before the update, the iPad has started showing connectivity issues. After school hours, the school allows students to download and use personal apps, which would be blocked during school hours. However, when she uses apps such as TikTok, she often faces connectivity issues and signs saying “No Internet Connection”, even when the internet is completely fine. This still happens when the iPad uses her phone’s hotspot, or any other Wifi. Is it possible that the Jamf Trust app is messing with her internet connection?Recently, her Discord app has faced many issues. After her iPad battery died and the iPad restarted last Wednesday, her Discord has been having connectivity issues. Moreover, after she logged out of the app, she has since been unable to log back in. Whenever she tries to log in, it says “Oops! You’ve
Hi everyone,I'm currently trying to deploy Jamf Protect across my company, where about 90% of the users are developers.Since deploying Protect, we have noticed a massive slowdown during npm install — installation time is multiplied by 4 to 5, depending on the machine and project.To try to fix this, I added the following exceptions: Download Event exclusion Override Endpoint Threat Prevention – Process exclusions However, instead of improving performance, these exclusions seem to make the scan even slower.Has anyone experienced similar slowdowns with Protect during package-heavy operations (npm, yarn, brew, Xcode builds, etc.)?Do you have recommendations for: the correct type of exceptions to configure, paths or processes that should be excluded, or general best-practices for developer-heavy environments? Any help would be greatly appreciated — this is currently blocking our deployment.Thanks!
Has anyone had success deploying Cisco Secure Client XDR with Jamf School? We have a fleet of Macs that we’ve been trying to deploy this out to, but everything either fails, or does not install silently.Is there a guide or anything specific for Jamf School?
I am trying to use Jamf Trust in conjunction with my Ubiquity hardware and cannot connect to it. I am trying to use the application ‘Wifiman’ to [teleport] into my office (https://help.ui.com/hc/en-us/articles/5246403561495-UniFi-Gateway-Teleport-VPN) ideally this would be the network route for all non ZTNA connections. I am still trying to figure out how to get all of the DNS to play nice in this ticket. Any insight or similar deployment notes would be great help. I don’t think I am the only person trying to implement this particular solution stack.
Unfortunately, we’re unable to start Jamf Remote Assist. We’ve already tried reinstalling the application and have granted the required permissions in iOS. However, we keep receiving an error message saying that the connection cannot be established.
How can we property set up Jamf Remote Assist to connect to our computers and Mac Minis. We confirmed it is enabled in Jamf and the settings are correct as far as we can tell, but we are not able to connect using the remote session command. Anything we need to configure on the computer settings?
Jamf Pro 11.5 has disabled classic API authentication by default, but soon it may be removed altogether. If you are interested in integration with Power BI, please visit this link and vote for integration. https://ideas.fabric.microsoft.com/ideas/idea/?ideaid=1d1acbef-5e21-ef11-8ee8-000d3a7c8d70
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!