Get Support
Recently active
I am experiencing problems when trying to install apps on devices with iPadOS 26. It works fine on 18.6 and older. The error I am getting is "A TLS error caused the secure connection to fail." It works fine on mobile hotspot, so it has something to do with our corporate network and the changes that Apple made with iPadOS 26.Is anyone else experiencing these problems as well?
Currently pulling my hair out with Google searches and useless tutorials. It looks easy with PreStage Enrollments, but unfortunately I have iPad that were bought before setting up Apple Business Manager. Is there a way to get shared iPads to work with manually enrolled iPads or a way to apply a PreStage profile to a manually enrolled iPad? I am using Jamf Pro non-k12. Thanks
On Saturday, December 6, 2025, Jamf Cloud Infrastructure will be patched. During this time, you will be logged out of your Jamf Pro instance. The purpose of patching is to ensure that Jamf Cloud infrastructure and the database service are up-to-date, stable, and safe from security threats. Please see the times for our regions below. Hosted Data Region Date Start Time End Time us-gov-west-1 December 6, 2025 0800 AM CT 1200 PM CT
With Jamf Pro 11.23, get more granular app controls with new Privacy Preferences Policy Control settings, new computer inventory attributes for more precise app version reporting, and use Return to Service with configuration profiles containing multiple payloads!Be sure to check out the Jamf Pro release notes for all of the exciting new features and enhancements.Thank you for your continued support and feedback!
Hi,We have several iPhones that are listed in Apple School Manager and assigned to the Jamf School portal. However, when we attempt to enroll the devices from the iPhones, we receive an error stating: "Access blocked, does not comply with Google policy."We are not facing this issue with iPads or Mac devices — only iPhones are affected. As far as we are aware, there are no active policies set in our Google Workspace that would block enrollment.Do you have any idea what might be causing this issue?
We recently upgraded from Jamf Connect Login 3.3 to 3.5 to fix a keychain popup bug from earlier this month:This had the unintended consequence of breaking the “password sync” feature of self service +:Clicking the link to “Sync password” leads to a greyed out credential screen. This screen contains the correct email address and presumably correct password.The “change password” feature of self service plus seems to work, the local password and idp password will match afterwards, but self service plus doesn’t recognize them as being synced.Initially we assumed it was because we did not update configuration profiles to match when deploying 3.5, however after some testing even valid new config profiles seem to result in the same behaviour, despite OIDC and ROPG tests working in the configuration app.Has anyone else seen the same issues in the past week or two?IDP: Microsoft Entra****************************macOS: Tahoe 26.1****************************JamfConnect:MenubarVersion: 2.13.0Buil
Hi All, We are planning JAMF Pro 11 integration with Cisco ISE version 3.2. I would like to know if it will support it and if we can have a step-by-step process for what needs to be done and how. Please need the help.
JNUC 2027 - Anaheim, CA - October 26, 27, 28Join us for the 18th annual Jamf Nation User Conference, happening at:Anaheim Convention Center800 West Katella AvenueAnaheim, CA 92802JNUC 2028 - Portland, OR - October 17, 18, 19Join us for the 19th annual Jamf Nation User Conference, happening at:Oregon Convention Center777 NE Martin Luther King, Jr. Blvd.Portland, OR 97232JNUC 2029 - Washington DC - November 6, 7, 8Join us for the 20th annual Jamf Nation User Conference, happening at:Gaylord National Resort & Convention Center201 Waterfront StreetNational Harbor, Maryland 20745 • https://www.jamf.com/upcoming-jnucs/
I’m looking to add an additional MDM solution to our devices in Apple Business Manager. With the release of OS26 (Tahoe) it appears now that devices enrolled in Apple Business Manager can use ABM Migration to change the Assigned MDM server “on the fly” without having to re-enroll the device. I’m testing this, but it doesn’t appear to be doing anything with the device I’ve moved to a different MDM server. A quick check seems to indicate that this feature MIGHT need to be enabled in our Jamf Pro account. Has anyone else had this issue or know how to do this?
On the Jamf School dashboard, I can see the 6 most active users. I’d like to know if there is a way to see who actually uses their iPad. I introduced Jamf School Teacher, Student, Class Assigner, and Apple Classroom this year. I’d just like to see if there is a way for this. The number 1 teacher has used her iPad 2200 times, the other is 1100, 3rd place is a little over 200. The rest are under. We are a Google district for majority devices.Thanks!
Hi Everyone,Ask for your help if there is a script or payload in configuration profile that can remove Wi-Fi setting in Control Center. Thank you.
We use Cisco Secure Client. It has been deployed and works great but one thing bugs me, and that is as a managed login item, it starts windowed. I was looking for a way to have the application start as a background process. If there was a global way to do it, or if I’d need to start the application another way. Thanks!
Hello. I don’t understand how to buy Jamf Protect.When I go to Jamf Protect and click “Request trial” it takes me to a page where it seems I’m registering for Jamf not Jamf Protect. I’m already enrolled to Jamf Now and I deployed Jamf Protect to the devices but I don’t see any reports/alerting and so on for Jamf Protect in Jamf Now interface. So my question is , how do I buy only Jamf Protect and integrate it into Jamf Now or how do I get visibility on Jamf Protect from Jamf Now interface as is? Thanks kindly in advance.
Previously, we deployed the following script to allow standard users to change the date and time without requiring admin credentials. However, this is no longer working on Sequoia devices. Can someone assist in enabling this functionality on Sequoia devices? #!/bin/bash # Allows any user to change the date and time on their Mac. /usr/bin/security authorizationdb write system.preferences.dateandtime.changetimezone allow /usr/bin/security authorizationdb write system.preferences.datetime authenticate-session-owner-or-admin exit 0;
The heartbeat of Jamf has always been its customers. From day one, your passion and expertise have shaped a community unlike any other. What began as a simple email newsletter eventually grew into Jamf Nation - a space to troubleshoot, share wisdom, and connect with people who just get it. Along the way, we noticed a group of customers consistently going the extra mile, and that sparked the creation of Jamf Heroes - our deeply engaged, wildly generous champions who support Jamf and the wider community in incredible ways. Whether answering questions, offering solutions, or hopping on calls to help someone out, their impact was undeniable. But over time, we realised something bigger: meaningful contributions happen across our entire customer base, every single day. So, we built a way to recognise all of it. Enter Jamf Nation Rewards. We launched Jamf Nation Rewards at JNUC 2024 to celebrate the everyday actions that strengthen our ecosystem. Joining Jamf Nation discussions and thr
We are restricting the ability to add non-corporate email accounts to the native Apple mail client (which is easy to lock down in jamf by locking the Settings) but we would like to offer Outlook for iOS app as an alternative to the native client. So...couple of questions:1. Is it possible to push a config to the Outlook app so that is sets up the users Exchange email box?2. Is it possible to lock down the Outlook for iOS app so that users can't add additional email accounts?
I just want to ask, before we deploy PSSO for better MFA authentication, does Device Compliance need to be enabled in Jamf and does the device need to be registered in Entra? Is that correct? Because I thought we could deploy the company portal and then the configuration profile based on the Jamf documentation.
Hello everyone,I’ve added many ATV to our School Manager with latest Apple Configurator 2 without any problem. But now I’ve run in to two problems. When click prepare it takes some seconds and then I get the error as bellow. It’s a ATV 4 HD with USB-C. USB-C is connected to my computer and the computer and ATV is on the same network and the devices is updated to latest tvOS and reset. I’ve tried some times to set it in recovery mode but it just wont work. Does anyone have any idea what to do?
Hi All, Can someone help me with Global System Extension to the Global Protect package to be deploy from Jamf Pro to Devices? the Global System extension need to be excutable with the deploy as well? Thanks in Advance
Dear experts,I joined here because of a issue that we cannot resolve after almost a month (yes..) of troubleshooting. The problem is as follows:Jamf Pro with iPhones. No Computers etc.Apps will not install from Self Service. The device history shows that the license for the app is not found. I looked everywhere, each history tab for devices, location, any changes or things that line up with when the issue came up, unable to pin point anything. It unfortunately just stopped working, seemingly out of nowhere, and I wish I had anything more precise to say about this. What we did so far:renewed the VPP token as well as the .p7m server token file, taken from Apple Business Manager and uploaded them again in Jamf made sure that the Apple IDs match, same email address used in ABM as in Jamf for Admin as I saw in this thread, I looked for devices with no serial number but I didn’t find any. I also did everything from this thread, including deleting everything (devices and apps) from one loca
Running a Jamf Cloud instance, and testing various methods for software update management.I pushed out a managed software update to two test devices, update was configured to allow a max of three deferrals. This is the behavior experienced by both endpoints, each time a managed update was pushed:Maximum deferrals were selected, or deferral notifications otherwise ignored. Users received notifications that their computers would restart. No updates applied, computers did not restart. Logs reported that AvailableOSUpdates had changedBootstrap tokens are escrowed for every device in our inventory. Managed updates were pushed multiple times, reporting the same error at step four each time. No new updates were published between attempts.Unless I’m mistaken, shouldn’t updates automatically authorize if a valid bootstrap token is escrowed in Jamf? Why did the available updates never apply?
We would like to create a shared mac device where multiple users can login to with their personal accounts. We are utilizing Platform Single Sign-On and have enabled “Create new user at login”.Everything works as expected and multiple users can login with their personal Entra ID account but we have a funny issue here.The first user who logs in (via prestage) gets a local account like “user@domain.com” but all other users who are logging in at the login window are getting a local account like “userdomain.com” so without the @Mappings set in PSSO as:Full Name: NameAccount Name: preferred_usernameWe would like to create local accounts of users with full email. Any thoughts?
We (finally) got zero-touch working this year, but the only issue is we’re only targeting new hires so far. What we ran into is existing Mac users getting a lease replaced machine don’t have an automated way of getting the software they use today installed on their new machines. They would have to go to ServiceNow and request it all again. I was wondering if anyone had any experience via the API or scripts to look at what they had installed on an old machine assigned to the same user and scope the new machine for the same software (using maybe an allow/block list for things like licensed software)?
Anyone having issues with the API?I was using several scripts that suddenly broke yesterday, November 24 around 9:30 AM EST.I’ve got most of them fixed, but some aren’t working as consistently as they were previously. To give a little context, I was using /JSSResource/computers/serialnumber to get location data to set fields in the Login Window. I also use the location data fields like <realname> <building> <department> to set the machine name and to create a local user account.After adjusting scripts to use a bearer token, I was able to get this to work somewhat, but had to make several adjustments to the parsing of the data with awk commands to remove whitespace and newlines.Additionally, I’m seeing script failures for no apparent reason now.Has anyone experienced anything like this?-Chris
I’m deploying Snagit 2025 on macOS Tahoe. I’m following Techsmith’s documentation to the letter at the link below. I’ve deployed older versions on older OS versions without issue. The issue I’m having appears to be a permissions issue. https://support.techsmith.com/hc/en-us/articles/115007344888-Enterprise-Install-Guidelines-for-Snagit-on-MacOSThe issue happens the first time you attempt to open Snagit. On app execution, you are presented with the error below:In troubleshooting, I’ve added permissions to everyone to the first folder and still have the same issue. The second folder doesn’t exist yet. Has anyone else had this issue?
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!