Get Support
Recently active
Looking to see if there's a way to create a Smart Group for Macbooks already enrolled in the Jamf database. These Macbooks need to be unenrolled from Jamf on-prem server and reenrolled to the Jamf cloud. My hope is that when we move these Macbooks over without Jamf cloud seeing them as fresh out-of-the-box Macbooks and push out the zero-touch enrollment for these devices which adds all our company apps to the process. Adding 10-20 minutes of downloads and installs unnecessarily.Can there be a Smart Group that can differentiate these devices from Macbooks that never enrolled?
Running 10.42, has any one else testing Ventura seen a device entry revert to using OS version 13.0 instead of 13.0.0? This occurs at some random point after the device has done a successful recon to report as 13.0.0. A subsequent recon or inventory update corrects this version. I've only seen this so far on a device that went from 12.6.1 > 13.0.0 and have not yet seen it occur on a device that was setup in place from 13.0.0, but still fairly early in testing.
HI All, Searched all over and couldn't find this. Looking to create an extension attribute that pulls the authenticated via for a specific ssid. The use case is, we currently allow users to connect to the corporate wifi with username and password , but it gives them a limited network connect , they cannot connect to all services. that shows up as Authenticated via EAP-PEAP (MSCHAPv2)we just implemented 802.1x scep cert authentication.That shows up as Authenticated via EAP-TLSWE plan on deploying the new configuration profile for the 802.1x but want to make sure users are connecting with the new profile and not the old one
Thanks to @talkingmoose I was able to use his JSON solution to restrict the Password preference pane, since Jamf Pro PI109666 prevents that.https://github.com/talkingmoose/jamf-manifests/blob/master/macOS%20Disabled%20System%20Preference%20Panes.jsonScreenshots:
I go to the Chrome browser on my iPad which is in the school MDM managed then to settings I scroll down and turn off Discover is there a way to turn them off and have a greyed out for everyone we don't want students to see the headlines news on the chrome broswser homepage when a new tab is created is there an config profile or an app config that I can use to grey it instead of touch every iPad one by one. Any assistance be helpful Thank you. Should I try the managed bowser in Google Admin? Please advise
We have signed on with ZScaler and they have provided and .app installer. I have used Composer to convert it to .pkg and uploaded it to our repository. When I setup a policy to install the app, I get a log that states it was successful but ZScaler app is not installed on the target machines. Has anyone else run into this issue and what did you do to get it resolved? Thanks,Wil
hi,the command: Sudo JAMF policy seems not to be supported on Ventura.Terminal says..This script support MacOS Catalina, Big Sur and Monterey only.Script exit code: 1Anybody else getting this issue? and if anything was changed...
I have about 300 macs that need to be upgraded to macOS Monterey, what should be the best policy to do this and how should it be set up in jamf?
We just started using JSS this year. Everything is up and working except for one thing. Apple Apps that are made available via the Self Service portal seem to get stuck during the updating of the app. The error on the iPad is. Unable to Download Application. "App Name Here" could not be installed at this time." This error has occurred with several apps. I could really use some help with this as we just handed out 130 iPads to students and several have already seen this error.
Hello all, We have switched from DigiCert to Let's Encrypt.With the help of this old script from Jamf, which I have tweaked a bit, we were able to flawlessly generate the Let's Encrypt certificate and install it in the Java KeyStore.Unfortunately, Jamf now crashes on startup. I see a lot of messages like this: 2022-10-28 16:13:36,544 [INFO ] [startStop-1] [efaultSecurityFilterChain] - Will secure Ant [pattern='/servicediscoveryenrollment/v1/userenroll'] with [org.springframework.security.web.session.DisableEncodeUrlFilter@7b332ffb, org.springframework.security.web.context.request.async.WebAsyncManagerIntegrationFilter@7c9d12bb, org.springframework.security.web.context.SecurityContextPersistenceFilter@7bcf9bfc, org.springframework.security.web.header.HeaderWriterFilter@3d3a5b23, org.springframework.security.web.authentication.logout.LogoutFilter@2e1d93c6, com.jamfsoftware.enrollment.web.security.AuthorizationTokenHeaderFilter@690605fc, org.springframework.
We are receiving a "Tomcat SSL Certificate Expiring in 20 days" warning. Apparently, we are using the built-in Certificate authority but since we updated this a long time ago, we aren't sure what to do. Do we need to choose the first option, since we don't want our clients to lose their connection? And if so, how and where do we obtain (download) this SSL Certificate Keystore for uploading into the JSS? Your help is appreciated.
We have Cisco AnyConnect 4.10.03104 working great on Mojave-Big Sur, with users not receiving any popups. When upgrading from any OS to macOS Monterey, we receive the popup below, regarding a system extension being blocked. Our configuration profile is scoped to all devices. When reloading a Mac fresh from Monterey, users do not see the message below. It only appears to be happening after an upgrade. Just wondering if anyone has a solution.
Can we use Microsoft Office applications like Outlook Client, One Note,One Drive Business and other office applications on Mac Machines managed via Jamf Pro. If possible please help .. Thanks again. RegardsSagar
Hello, it seems that users are able to delete apps even when the box is unchecked to "Allow user to remove the app" on the specific app page.We have Lightspeed relay smart agent app that we don't want deleted. iPads on iPadOS 15 work correctly, they have a profile to allow removal of apps but the relay app does not allow removal so they can't remove it. iPads on iPadOS 16 with the same config allow removal of the app.It seems that is is all or nothing as far as app removal goes on iPadOS 16.1 Anyone else experiencing this?
Hello,Our marketing department tasked IT with providing office signage for our two offices- originally we were looking at BrightSign which seemed fairly expensive per device. With the recent discount on Apple TVs, I thought they would provide a cost effective solution as well as giving AirPlay capability to the monitors around the offices.The thought was to give each department a Managed Apple ID to drop their own photos and slides into iCloud photos and have the Apple TVs cycle through those images when not in use. And if whoever is managing that account leaves the company, we could reassign the Apple ID owner in Apple Business Manager.When attempting to sign into a managed Apple ID on the Apple TV that is enrolled in ABM & Jamf, we receive the message, "This Apple ID is not supported on this device." It has already been logged into www.icloud.com as well as on a Mac- but for whatever reason will not login on the Apple TV.Is this just flat out not possible? If not, do you hav
I'm not sure if this is even possible but is there a way to lock a computer in JAMF with a timer? Say we give a user a new mac to replace their old one but they want 2-3 weeks to transfer their data. Instead of putting it on my calendar or remembering to lock that mac when time is up, is there a policy that we can set to automatically lock that mac with either a specific lock number or random lock number that can be shown in JAMF? This would be a pretty good feature to have in JAMF.
I noticed that our macOS Monterey app still shows an older version of the app (latest is 12.6.1 but shows 12.6). Is there a way to refresh it so it can grab the latest version or is this normal for macOS updates? All other apps are up to date. I don't want users updating to an outdated version only to have to update it again.
We just ran into a problem where a users adobe suite updated from 2020 to 2023 and broke all their plugins. I tried our old 2020 install package we had initially deployed with and they wouldn't install. I went to the adobe admin site and they only allow n-1. I reached out to their support and was told basically current and one behind is it.I want to make sure that we get the updates turned off before it affects too many people, but I can't find a script/config profile to disable those auto-updates. Does anybody have a manageable way to do this?
An iPad was returned to me that was long considered lost. It was gone so long that it was deleted out of jamf. The iPad however, still has the mdm profile installed along with all of the restrictions that we push out to our student iPad. This means I cannot wipe the iPad from the iPad itself to re-enroll. So I plug it into my computer and try to wipe it via apple configurator 2. A lock icon appears when it's plugged in and will not allow me to wipe from configurator either. I then try and boot the iPad to it's "restore" mode and try and restore the iPad via configurator. It spits out an error there as well. If I had to guess I am unable to do anything because of a restriction that is still sitting on the iPad from when it was enrolled, but being that it is no longer enrolled I have no way of removing the restrictions if I can't wipe it. Am I screwed?
Good Morning, Reaching out to the Jamf community for some clarity as i can't seem to see anything online. Has something changed in Jamf 10.42 or a recent version that may cause what i'm seeing in this screenshot below? I can't edit the version manually or edit when Jamf will look for new ones automatically, am i missing something simple or is this no longer possible?
Hi All, I've had a bit of a dig around the internet and can't seem to find anything on this. I am aware of an App Configuration to allow teachers automatically on an iOS device. Is there a way to achieve the same thing with the app on MacOS (Jamf Pro)?
Hello Everyone , I have created package for Burp Suite to install on systems automatically.Post installation when I try to open the application then I get prompt to accept Terms and Conditions, thereafter getting License activation prompt to enter the License key .It would be really helpful if someone has already installed the application and there might be some way we can skip this two prompts for end user by directly accepting the terms and conditions prompt and activate the license key from backend as soon as the application is installed on the system .Since I'm new to this application ,any help will be really appreciated !!
Hi All, I am trying to uninstall app using jamf pro.However, when i tried to select uninstall from the action menu - i dont see uninstall option. https://docs.jamf.com/10.24.1/jamf-pro/administrator-guide/Uninstalling_Packages.html#:~:text=Select%20the%20Packages%20payload%20and,the%20settings%20for%20the%20package. Am i missing something here?
Wondering if there is a way to for a chrome extension to always be on, even when a user opens an incognito tab? I see posts about how to enforce an extension to always be installed and not be able to uninstall, but the way around that is to just open an incognito tab.
i enrolled my iPad into jamf, for my company. the enrollment of the iPad, was successful. i was able to see the device in jamf. And the MDM profile was successfully installed. however no prerequisite, application was installed on the iPad. would it be possible, if i installed the self service app from the app store. And would self service, contain all my company approve apps.
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!