Get Support
Recently active
Dear All, i have trouble deploying Nexthink collector though JAMF. I have re-package the 'Nexthink collector' installer using "composer", I do not have any error on deloyment but we lack files. Does anyone of you know a proper way to deploy the Nexthink collector with Jamf?
We are implementing 802.1x using Cisco ISE on the back end. Currently, the project is in a testing stage, so we are using very basic configurations on the client side. The protocols used are PEAP and MSCHAPv2. I’ve created a configuration profile that enables PEAP in the login window context and deploys the certificate. When this configuration profile is deployed, the 802.1x connection can be made manually in the Network system preference pane and it works as intended – prompting the user for credentials and placing the connection in the appropriate VLAN. Our Macs are all joined to AD. We would like our users to authenticate to the 802.1x network at the login window. All the guides I found for this seem to imply that this is a basic configuration that should work with the settings I’ve deployed. I’ve tried using ProfileCreator and Jamf to create the configuration profile with both producing the same results. The only thing I’ve really been able to try is adding the
Hi,one of my clients has requested that I distribute some files so that they will be added not only to the currently existing accounts on the mac, but also to all that are created in the future. I think that should be possible by adding the files into the default file structure that is copied by macOS each time a new user is created, but I can not find them and I have had no luck with googling. Can anyone help me out or suggest a different solution to the problem? Much appreciated!
Hello, Does anyone know how to add JNUC 2022 badge to the profile? Please help.Thanks!UPD. and 2021, too
Hi, Users are not able to login to their Mac device as their Azure password are no longer accepted This issues arised after few weeks of enrolling their device by User-Invitation method
Hey, there are some machines that have SSH enabled with the following Startup Configuration: Now I am looking for a way to disable it. I found the following script: sudo systemsetup -f -setremotelogin off Will disabling SSH interfere with anything related to JAMF? My common sense tells me it won't but I thought I'd ask anyway. Better safe than sorry :)
Hello,When installing teams, the language is in English. I would like to know which file modified to switch the language to French.Here is a snapshot of Composer.
Hello Jamf NationWe are using Okta as SSO and LDAP directory. It's working fine for authentication on the prestage pane, but I'm unable to pre-fill a user account during setup assistant. The fields are always empty (and not locked), no matter what kind of authentication I try to use in Prestage Pane (LDAP or SSO). I've tried with the "Device owner's details" and Custom, using $FULLNAME and $EMAIL as variable, but it's not working either.When I test the LDAP, all the mappings seems correct.Is there a place where I could find logs or anything that could help me why the account is not filling ?Thanks for your help !
Why do we encounter the "VPP redownload call timed out <MDMClientError:72>" error on all Mac Appstore apps? I read that it is not an Apple issue, but a Jamf issue?Will it try agan later?Can i run a command or push a script to re-try? Maybe some document of Jamf that can help here?
Filevault was disabled at our organization due to issues with secure tokens. A lot of devices are in student labs, or shared between co-workers. Enabling filevault caused issues when the previous user didn't logout, or the device experienced power failure/random restart. The device was locked until the user came back and signed in. This caused problems when students wouldn't log out. The device was rendered useless. Could not deploy commands to the device. The only solution was to erase and reinstall the OS. We've been told by Jamf support Filevault is does not work well in environments with multiple users logging into devices. We have intels and M1s sprinkled throughout the company. Our Security departmnets wants this enabled, and I'm not sure where to start. What is best plan? Just create bootstrap tokens? create institutional keys? Are those two things related?
Hi all !!New on Jamf Pro, and perhaps my question is all-ready answered in an other post but I just could'nt finde it.Is there any place in Jamf where I can find library of Scripts with his behavior ??Thanks a lot in advance !!Cheers !
I'm curious as to what happens when a computer hits the "MDM Profile Expiration Date". Will MDM commands stop working?Will the profile be renewed automatically or do I have to issue a new profile using 'Action' -> 'Send Remote Commands' -> 'Renew MDM Profile'? Thanks!
Does have information on how to enable PPPC for webex?Identifier ID, type , etc.
I'm working on a plist to remove cloud storage and to remove enhanced security. I'm able to get the cloud storage removed, via a script I found here and added a things. Here is the main body of the plist. Not sure why it changed the format.<key>cGeneral</key><dict><key>bToggleCustomOpenSaveExperience</key><false/></dict><key>cServices</key><dict><key>bToggleAdobeDocumentServices</key><false/><key>bToggleAdobeSign</key><false/><key>bTogglePrefsSync</key><false/><key>bToggleWebConnectors</key><false/><key>bToggleMobileLink</key><false/><key>bToggleDocumentCloud</key><false/><key>bToggleDocumentConversionServices</key><false/><key>bUpdater</key><false/><key>bEnhancedSecurityInBrowser</key><false/><key>bEnhancedSecurityStandAlone</key><false/>  
Hi to all.I'm new here, and new using JAMF Pro.I need to create a report to list all machines without CyberArk installed, and the name of the local admin account existing.My question is: How can I create this report? I know how to create reports, but I'm failing with the criterias.Thank you in advance.
We have an issue whereby users trying to login to JAMF Self Service via SSO fail to pass conditional Access.The issue appears to be that the SSO login that pops up seems to be some stripped down browser that does not send any of the relevant details such as details of the Browser or the Device ID of the device. Is there a setting I am missing somewhere or is this just a bug in JAMF ?? Please help
Hi everyone,If we have Jamf Connect going with Okta and a passcode policy defined for Okta accounts, and the user is required to change their computer password at the next reboot/login, will the Okta password requirements be enforced when the user is setting a new password, or do we need a passcode policy for the computers as well?Thanks!
Hey members,I have got some good resource like script to update mac OS in particular version on M1 Mac Patches and security updates) like 10.1.2.....10.3.5......10.4.1 etc. and (as I understand this script works in 3-4 stages 1. Free space check 2. Deferment notification 3. Run software update according to the users deferral) till postpone response it works fine till 2nd stage but after user postponing it at last day it seems doesn't enforces user to forcefully download and install updates.can somebody please help here?you can refer the script repo here Regards,Vinayak
Has anyone built a system extension profile specifically for the McAfee Client Proxy application? The only article they have is for kernel extensions back on 10.13 & 10.14. They also have a full disk access article, but none of the binaries listed are actually installed with the Client Proxy app. I've asked that our proxy team reach out to McAfee, but they have been less than useful so far.
Hi everyone,our corporate policy requires us to enable the Mac OS Firewall, doing so causes Airplay / Airdrop and other Services like Sonos to not work anymore, due to blocked incoming connections.I searched in this forum and online but couldn't find a solution yet.As of Monterey all the scripting possibilities are blocked, did anyone of you get it configured correctly and can share how he/she did it ?ThanksChris
Hi JamF Community Members, We are required to use Yubikey's as a MFA option. Ideally we'd like to push this configuration through Jamf Pro. Can anybody point me in right the direct or provide a link to the relevant documentation?
Currently, we're using the below script that works with renaming our machines and randomising the machine's name.#!/bin/bash num="$((RANDOM % 9999))" size=${#num} toadd="$((6 - $size))" for (( i=1; i<=toadd; i++)) do num=0$num done compname=PREFIX-$num if [ ${compname} ]; then sudo scutil --set HostName $compname sudo scutil --set ComputerName $compname sudo scutil --set LocalHostName $compname fi echo $compname Attempting to further improve this so machines do not end up with a duplicated name (no matter how small a chance!) there is. Is there a way to do an inventory check for all machine names on Jamf Pro and then either a) add those numbers to an exclusion list so they're never chosen, or b) re-roll the randomiser section, after checking, if the name already exists? How would the above be edited / shortened to make this a thing?What possible improvements could be made to the above as well? Any help is greatly appreciated :) !
Hi everyone,Has anyone had an issue where during a new computer setup and in the Enrolment Customisation window, after the Okta authentication, a Jamf Pro window pops up, asking the user to select a secure question and answer in order to create an account in Jamf Pro? Getting it for the first time today.Thanks!
...a complete newbie here, please be easy on meI plan to cache a PLIST and a PKG using a policy and use a script to trigger the installation (they have to be in the same directory when installing per the vendor). I am struggling with such a script which I figured would find somewhere in this forum but I could not. Can anyone help?I tried to execute the following command from the File and Processes section, installer -pkg /Applications/Open Client/installer_10.22.pkg -target /but I get this errorResult of command:installer: invalid option Roaming Usage: installer [-help] [-dominfo] [-volinfo] [-pkginfo] [-allowUntrusted] [-dumplog] [-verbose | -verboseR] [-vers] [-config] [-plist] [-file <pathToFile>] [-lang <ISOLanguageCode>] [-listiso] [-showChoicesXML] [-applyChoiceChangesXML <pathToFile>] [-showChoicesAfterApplyingChangesXML <pathtoFile>] -pkg <pathToPackage> -target <[DomainKey|MountPoint]> any help appreciated please, thanks
I have just written a blog post on how to automatically update Google Chrome using Jamf if anyone is interested. You can find my blog post here: https://lew.im/2017/03/auto-update-chrome/I have seen a few different methods posted here, but most require some admin intervention (uploading new packages, changing version numbers etc.) but this method is fully automated. Create the Extension Attribute, Smart Group and Policy and you're good to go! Every time Google release a new version of Chrome, this script will automatically grab it and install it on your Macs.
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!