Get Support
Recently active
We are excited to share that we’ve updated our Privacy Notices across our services to enhance clarity and transparency.Our Privacy Policy has been revised to provide greater transparency regarding our use of AI within our Services, specifically for automated email sentiment analysis, which enables us to better understand and support customer needs while maintaining data privacy standards.Jamf is certified under the EU-U.S. Data Privacy Framework (DPF), the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. DPF — international frameworks that ensure robust data protection standards. In alignment with these frameworks, we have updated our Employee Privacy Notice to reflect our continued commitment to the DPF principles. We have also refined the language and defined terms in the notice.You can access the updated Privacy Policy and Employee Privacy Notice on the Jamf Trust Center Privacy page. We encourage you to review these updates. If you have any questions or concerns, please contact
Since the A16 iPad doesn’t have serial numbers engraved anymore, I need a way to identify iPads in cases where the screen has died (water or physical damage). Are there any solutions like this that integrate with JamF School? If not, are there any recommendations?
I’m testing Jamf App Installers.One of my tests is Google Chrome and the other is Firefox.The other day I had an update for Chrome and received this message: When I checked the version of Chrome, it has updated and is now 142.0.7444.176 (Official Build) (arm64) which matches the version in the App Installers I struggled to find a log on the Mac, However, there is an item under Jamf Pro → Device → History → Management History on the server and that has an entry InstallEnterpriseApplication - Google Chrome - 142.0.7444.176 18/11/2025 at 10:29 AMWhich is a week ago not 24/11/2025 when I had the messageSo, I’m confused. Why the error message about the failure? What was the failure? How can I find out what it was? Can I suppress messages like this?
I am looking for the code for the Configuration dictionary for IXL iOS app to set the custom domain in the app. There is a setting for it in iOS Settings - IXL. Unfortunately IXL is anot aware of how to set this via MDM commands.
I'm looking to use an extension attribute to list a user's Azure AD group membership status. Once that is identified, I would like to then parse this information for certain data, such as a specific group, and then create a smart group based on this information. Once the device enters that smart group, I can then have certain policies (such as licensed software) automatically deploy there. Has anyone done this? Thanks in advance!
For strong certificate mapping, can two SAN types be used in the Subject Alternative Names field? Official guidance specifies using only the SCEP URI, and although the current configuration with multiple SAN types appears to work, it seems unreliable, as I’m seeing additional certificate-selection prompts. This change was made while I was out, so I need to confirm that this approach follows best practice.
Hello,I wanted to install Freeform on our iPad, but unfortunately I can't find the app at Apple School Manager.What can I do?Best Regards,Ralph
We’ve never fully standardized on having everyone in our org sync their Desktop and Documents folders to their OneDrive, and I’ve been working on getting that done recently. First step: create an extension attribute that shows the OneDrive redirection status on each Mac so I could build some smart groups.I kept it simple and just had it look to see whether the user’s Desktop and Documents folders were in their default locations, or if they had OneDrive in the file path of their locations. If it’s the former, it displays “Disabled.” If it’s the latter, it displays “Enabled.” If only one of the two folders are synced to OneDrive, it displays “Partial.”Just wanted to share in case this was useful for anyone else!#!/bin/bash# Extension Attribute to check if Desktop and Documents are syncing with OneDrive (KFM)# Author: John William Sherrod jwsherrod@mac.com# Version 1.0, Date: 08-28-2025# Get the currently logged-in user:loggedInUser=$(scutil <<< "show State:/Users/ConsoleUser" |
Hello Jamf Nation!We’ve just released our last Jamf Pro Beta of 2025, Jamf Pro 11.24.0. This beta features automatic Jamf Protect Tenant registration, a new Profile setting to remove apps from camera restrictions by bundle ID and moreHow to join the beta: Enroll in the Beta Program under Product Feedback at account.jamf.com. Click “Join Community” to join the beta forum once enrolled. Please also check out this recent blog on Configuring SSO in Jamf Account prior to testing Compliance Benchmarks, Blueprints, and App Switcher.Email beta@jamf.com with questions.The beta program is covered by the Jamf non-disclosure agreement; please do not share any information regarding your testing on any public forum, including the non-beta areas of Jamf Nation. Use the Jamf Nation Beta Forum or contact Jamf via beta@jamf.com with any questions. Thank you to all who participate in this program!
Starting from scratch (new Jamf instance), how do you establish a baseline for configuration profiles that will be pushed to iPhones and iPads. Do you keep them separate for each type of device and should there be a config profile for every setting/configuration?
How does everyone utilize static groups and smart groups in your Jamf instance? Seems there's more ways than one to make it efficient. Would like to know particularly how it's used in a hospital or school environment where iPads or iPhones are the bulk of the devices being managed.P. S. I know the difference between the group types. Just want to get ideas on how different orgs might use them more efficiently.
Hi All, Does anyone know how to create uninstall button in self service for an application? Thanks in Advances
Just in time for macOS Tahoe 26.2, a major update to Mac Admins’ new favorite, MDM-agnostic, “set-it-and-forget-it” end-user reminder for Apple’s Declarative Device Management-enforced macOS update deadlines — now with Configuration Profile support and a demo mode for easy reminder dialog testing OverviewWhile Apple’s Declarative Device Management (DDM) provides Mac Admins a powerful way to enforce macOS updates, its built-in notification is often too subtle for most end users to notice. DDM OS Reminder fills this gap by providing persistent, customizable reminders that ensure users are aware of upcoming update deadlines.New in 2.0.0Configuration Profile Support: Easily deploy and manage DDM OS Reminder settings via Configuration Profiles, making it simpler to customize reminders across your organization. Demo Mode: Test reminder dialogs effortlessly with a new demo mode, ensuring your configurations look and behave as expected before deployment.Continue reading …
A Bold Leap Into AppleIt was the summer of 2024 when we were asked to do something our company had never done before. We were going to introduce MacBooks into an environment that had always been 100% Windows. Naturally, questions started flying. How would we manage them? What tools would we need? And, most importantly, how could we ensure the experience was seamless for our users? The hardware part was easy. We knew we could purchase them from Apple anytime. So, the MacBooks were purchased and ready to go, eagerly awaiting their release into our environment. The real challenge was management and integration. After speaking with our team and several vendors, we made our decision: we decided on Jamf. Paperwork signed, onboarding scheduled, and a new chapter began.One Year Later: A Transformation We Didn’t ExpectFast-forward to October 2025, about a year plus, and what a journey it’s been! We’ve faced challenges, learned a ton, and grown stronger as a team. Looking back, we couldn’t have
Is there a trick to removing “information” notifications?I have 25 of them now, everytime I manually refresh all devices, I end up with one.I can’t mark them as resolved (the whole thing just freezes / does nothing), and I can’t delete them because they aren’t marked as resolved.Some of them date back a couple of months now.
I have a TV app I would like to prevent from updating, but when I try to uncheck the boxes regarding auto updates they are greyed out and fixed to checked: Did I enforce that somehow for all apps, or is there a way I can uncheck the box to automatically force app updates?
I know that you can push WebClip profiles to shared iPads using the user deploy method but I can’t seem to get it working while using Shared iPads in Guest mode only. Has anyone been able to get WebClips sent to Shared iPads using the anonymous guest logins? I have tried every way I can think of and nothing seems to work.
Hello, maybe someone can help me. The iPads are linked to Apple School Manager and JAMF School MDM. I can see the iPads in JAMF School, add location and profile, but nothing happens on the iPads themselves. During setup, it keeps asking me to log in with my Apple account; it doesn't show up as a managed iPad.Here's what I'm doing: I'm using Apple Configurator 2.- Connect the iPad to my MacBook, select the country and language, connect to Wi-Fi, and activate it.- Then I prepare the iPad using the Configurator.- In Apple School Manager, I assign the JAMF MDM instance.- In JAMF School, I assign the location and profile.- The Configurator then sets up the iPad, resets the system, and restarts it.- On the iPad, I select the country and language again and connect to Wi-Fi.- It says "Registering iPad."However, it doesn't say "This device is being remotely managed." Instead, I can click through the setup process until I get to the Apple account login.``` The strange thing is, one iPad is onlin
Here is a return to service script we use for resetting all our retail devices nightly if you don’t have access to jamf routines. We run this as a scheduled task from a windows server. API permissions on the account i’m using for this: View Return To Service Configurations, Update Mobile Devices, Read Mobile Devices, Read Smart Mobile Device Groups, Read Static Mobile Device Groups, Delete Return To Service Configurations, Send Mobile Device Remote Wipe Command, Edit Return To Service Configurations, Send MDM command information in Jamf Pro API import requests, json, osfrom datetime import datetime# =========================# Config# =========================JAMF_URL = ""CLIENT_ID = "" # API Client IDCLIENT_SECRET = "" # API Client SecretGROUP_ID = # Smart Group ID you want to RTSDRY_RUN = False # ⚠️ Change to False to actually send RTSLOG_FILE = r"C:\Jamf Scripts\RTS.log" # Where to write logs# =========================# Helpers# =========================def l
So we using Jamf School and it works great most of the time. We use Jamf Teacher and Apple Classroom in our schools, teachers use Macbook Air and the students Ipad gen 9.Now I have one colleague with a problem I havent seen before. Everything works fine with Jamf Teacher, classes, groups, add apps, lesson templates no problem. But Apple classroom dosen´t works at all. No classes showing at start screen, only the option to create classes manually. Anyone seen this problem?
All the sessions from the 2025 Jamf Nation User Conference are on YouTube. • https://www.youtube.com/playlist?list=PLlxHm_Px-Ie0DkjJe6xzYhFhwIn2SUhHJ
Hello. When we first started using RTS, in our presages, the device would change its name to the one designated in the PreStage. Now when we do RTS on an iPad, the previous name is retained. This broke a smart group controlled config profile installation (and uninstall) that we use during our enrollment process.Is this a feature or bug? The Global settings for re-enrollment makes no mention of device name retention or deletion.
This is a minor thing, but I’m trying to limit the amount of unnecessary popups that people are exposed to when logging in to our lab machines and I was wondering if there’s a way to set the “Welcome to Jamf Connect” splash screen that comes up when you log in to be off for all users? I know you can check a box to say not to display it again after the first time, but I’d rather be able to just set it to never show up.I thought the option in Jamf Connect Configurator to “Show welcome window” controlled this, but I have it unchecked and the welcome window still shows.
Hello everyone,I’m fairly new to Jamf administration and I’m looking for some guidance on deploying Cisco Webex on macOS.Is there a recommended way to:Install Webex silently via Jamf Pro (I deployed it via Mac Apps from Jamf Catalog) Pre-approve or suppress the Webex EULA prompt(Cannot make it happen :() Enable automatic sign-in for users (Created a configuration profile with Custom settings and Schema but it’s not working)Any advice, documentation, or examples would be greatly appreciated.Thanx
Hey Jamf Nation!Do you have questions around Admin SSO or are you running into issues configuring it? We are here to help!We’ll be hosting our third session of our Admin SSO series on Wednesday December 10th at 2PM CST. These sessions will occur twice monthly for an hour with an open format where Jamf experts will be online to help you through enabling Admin SSO and answer any questions you may have!To sign up for an upcoming session please email beta@jamf.com. These sessions are capped at 10 customers and are first come first serve to best support a small group conversation and ensure you leave with answers or guidance towards setting up Admins SSO.We’re excited to hear from you!
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!