Get Support
Recently active
I need to manage some Linux Ubuntu laptops. How do I Install/Config for Linux OS laptops? Some insight/vids would be great.
Hi Everyone,I have some kindergarteners - 2nd graders that I would like to have auto-login to their MacBook Airs using Mojave. They all have the same username and password. These students are unable to fully read or type so I want to have each computer automatically login upon startup (as well as have the computer never prompt for a password if the computer goes to sleep or the lid is closed). Is there a script(s) that will allow me to do this that anyone is willing to share? I prefer not to use the configuration profiles section since this really limits the future flexibility of the machine for each individual user. Thank you in advance.
Calling all Jamfers (not sure if that's a word for all Jamf Nation members, but it is now haha),Ok, so like a lot of mac admins out there I've had my share of AD binding breaking in the past, but the information making the rounds regarding "bindpocalypse cve-2021-42287" seems pretty scary. I know that Apple has been encouraging mac admins to get away from AD Binding for a while now, but here's the thing...it has worked really well in terms of being easy and mostly reliable for enterprises, esp. those that like my situation (K-12 public school) have mac labs and not a whole lot of mobile devices (laptops). It has been an easy way to allow AD users to authenticate and mount their network home folders. There's NOMAD and Jamf Connect...I deployed NOMAD a year or so ago when we were having some binding and there for login issues. It was ok, but I didn't love it. The issue of what happens when users change their AD password on one NOMAD iMac what happens when they try to log into anothe
We are having a hard time printing PDF's this school year using Monterey on both Intel and Apple Silicon machines. Most are stopping in the print queue with a "Stopped - 'Filter' failed" error.The only way we've found to get them to print most of the time is to do a Save As and then save as a JPEG. This is occurring with both direct print queues as well as print queues we share from a Windows Server using generic PostScript drivers. Most research (which doesn't show many recent discussions) shows to reinstall or update the drivers, which I've tried with our direct print queues, and also to try a right click>Reset Printing System and then reinstall printers, which I've also done with no change. Because this is happening with both manufacturer drivers as well as the Generic PostScript driver, I'm guessing it's a macOS issue? I did update one of my laptops from 12.4 to 12.5.1 in the process of troubleshooting and found it removed all of my print queues and
Hi,I have seen people talk about a plist that stores the server addresses in the go- connect to server - server address box.I can't seem to see a plist on any of my machines even if I add a server address manually.Any help appreciatedthanks
We a new to Jamf School this year 2022 - switching over from Securely - and right now i am starting to regret the switch. We were told during a sales call that this was the system and that all our answers could be found on Jamf Nation and or during support calls. Well lets say that JAMF nation offers NO help and when you post something NO one reply's. I have support ticket open now for over a month and it is now at HIGH and the still NOTHING. I have teachers and administrations complaining of why we went to this system!! It shouldnt be this HARD. Please tell me we are not the only school distict with this issue!! I need some sort of Management contacts - I need resolutions ASAP so our teachers can actually Teach and use the applications as they were meant to be used.
I know it's not a priority compared to other areas of Jamf but the Patch Management Definitions for OneDrive aren't aligned with the OneDrive release cycle (Insider, Production, Enterprise) which Microsoft are working to: Patch management is currently reporting 19.086.0502 as the current version however 19.103.0527 is currently deploying to the Production ring and virtually all my fleet is now reporting an unknown version in Patch Management. I know this will always be a moving target but it's something that really needs to improve as it's kinda awkward when management look at the Patch Reporting and ask why we don't know what version of an app clients are running.
Why is it that the only option this gives you is to purchase more licenses? It would be so much better to have a link that brings you to the number of devices you have enrolled vs. the number you have exceeded by so you can actually see where the issue is? Very frustrating.
I recently started a new job where the company had me install Jamf on a brand new MacBook and I am wondering what exactly hand logs, more precisely, if the websites I go to, how much time I spend on those, what softwares I download (if I download a VPN) and where I log in from
I see on Wacom's site that they have a fully compatible with Apple Silicon and Big Sur driver for the Cintiq displays (among others). So, that has to mean no more kernel extension, right? From their description of granting permissions during the install, I assume they are still not thinking about us higher education lab supporting folks. Since there is no mention anywhere of them supplying a PPPC file to support their hardware, has anyone already generated a functioning one for Big Sur? I'm trying to think ahead to this summer's builds.
We will start with a grade to use students shared ipads 1:1 and we have doubs about the initial configuration: What recommended, shared ipad profile or normal profile with a lot of capabilities? SharedShared Ipads could be a lof of restrictions when the ipad will be personal for all the course NormalWithout shared option, how can we prevent students to use their personal icloud account to lock school ipads and force them to use only the Apple ID School managed? Thank you a lot.
Looking for a way to prevent a user from deleting files when put in the trash. Is there a script (or such…) to lock the trash so that files could not be placed in or preventing them from selecting Empty Trash?
We have a script we add to to Teams, Edge and Office when updating that removes /Library/Application\\ Support/Microsoft/MAU2.0 and /Library/LaunchAgents/com.microsoft.update.agent.plist. For Edge and Teams, the apps are still auto-updating by themselves. We want to be able to control the updates. Any assistance would be great. Thanks
Hi all,I have recently been brought on to my organization and am working with Jamf Pro for the first time. I've tried coming through the posts to look for topics that would help clarify things for me on issues that we're having, but I just cannot seem to find the answer.Problem:All of our new MacOS devices with 12.3 or newer do not automatically launch DEPNotify, older MacOS devices such as 12.2 will automatically launch the package and begin the configuration process. From what I have read, there may need to be some verbiage changed in the scripting process or potentially another package? I could use some help getting pointed in the right direction. Thanks for any help and feedback on this.
I wanted to share my configuration XML for those wanting to rollout zoom to IOS and lock it down. I am working through Zoom's documentation here:Using MDM to configure Zoom on iOS The following is the configuration I used: <dict> <key>SetSSOURL</key> <string>yourdomain</string> <key>SetEmailDomainsRestrictedToLogin</key> <string>yourdomain.org</string> <key>ForceLoginWithSSO</key> <integer>1</integer> </dict>
I have a CSV with a list of all the departments and buildings. Is there an easy way to bulk import it into Jamf? I looked at MUT, but don't see how to do it with that. I think it can be done with the API as well, but if anyone has a working solution it would be helpful. Thank you
Have never been able to figure this one out. Configuring a policy to add Adobe Illustrator to a dock will always fail and show a "?" All of the other Adobe CC apps seems to work fine. Adobe Illustrator CC 2018 file:///Applications/Adobe%20Illustrator%20CC%202018.app/ I have a theory that the OS cannot translate the upper case"I" double lower case Ls ("ll") properly. Any other theories?
Hello All,Has anyone implemented this solution? Basically it ends a meeting 5 minutes early to give the conference rooms, etc for turnover. Here's the link with Windows specifics.https://help.onaskcody.com/hc/en-us/articles/360004769820-Ending-Appointments-and-Meetings-Early-in-Outlook
Hi everyoneStarting from today my users are receiving an "unexpected error" while connecting with our VPN profile.We are using the built-in mac os VPN client to establish an ipsec connection with our firewall and everything worked fine until today. The profile is set up with JAMF.Everything works fine if we set up manually the vpn interface.The JAMF-made interface is giving us the "unexpected error".The JAMF-made interface works fine if we push the interface with the field "account" not blank (we usually push that blank because the account name is different from the mac username).Any tips?
Hi folks,Some parts of our network have recently been upgraded, and we've noticed with our Lab Macs that are on the upgraded network, when logging in, every user is met with the prompt below:To clarify, authentication isn't required to have a working network connection - devices are already connected and able to access the network / internet. Each user can go into System Preferences and disable this, however this isn't viable with a Lab setup as multiple different users will use multiple different devices each day, with any accounts created on the devices cleared overnight.I've had a look online at some resources to see if there is a way to disable this. There are some proposed scripted solutions:https://community.jamf.com/t5/jamf-pro/get-802-1x-authentication-status-for-ethernet-via-script/m-p/164047However, unfortunately the prompt appears immediately after logging in, before any login scripts can start. I have also attempted to see what process is kicking off this prompt to see
First post - here we go!Some context for this post: Our Company picked up Jamf Pro in 2019. Since that time we have slowly been building up the platform. Primary goal being to get to a zero-touch state with our devices (wanting to cut out IT as the middle-man for having to manually setup new Macs). We hit a snag with this process in that our devices rely on certificate based authentication to connect our users to various services.The machine based certificates would deploy relatively quickly after login; however, we could not get the user based certs to deploy due to a missing flag for the user account on the Jamf side. The flag being “MDM Capable User”. Without the username populated in this field - the user cert config profile would not deploy to the Scoped Macs. It was originally due to us skipping account creation in pre-stage and leveraging Jamf connect to complete that step. This left the user without a secure token and would require fully unenrolling the device from Jamf vi
Hello Jamf Nation, Today we are releasing Jamf Pro 10.41. To learn more about this release and the product issues it addresses, review the release notes here. Cloud Upgrade Schedule Your Jamf Pro server, including any free sandbox environments, will be updated to Jamf Pro 10.41 based on your hosted data region below. Review this guide if you need assistance identifying the Hosted Data Region of your Jamf Cloud instance. Hosted Region Begins Ends ap-southeast-2 16 September at 1400 UTC 16 September at 2300 UTC ap-northeast-1 16 September at 1500 UTC 17 September at 0100 UTC eu-central-1 16 September at 2200 UTC 17 September at 0800 UTC eu-west-2 16 September at 2300 UTC 17 September at 0600 UTC us-east-1-sandbox/us-west-2-sandbox 17 September at 0000 UTC 17 September at 0900 UTC us-east-1 17 September at 0400 UTC 17 September at 1700 UTC us-west-2 17 September at 0700 UTC 17 September at 2
Hello,We have bunch of intel, m1 and m2 Macs.I am trying to lock them with activation lock so that no one can erase the mac the device.Currently, the Macs can be forced into recovery mode and use "erase MAC" to fresh install the OS.Can someone guide me to lock with company ABM please?Any help is appreciated! Cheers
Hey everyone near Toronto. Was considering starting a user group for us. Just trying to gauge how many people would be interested. I’d be hosting in Toronto distillery district where I work. We have a top facility in Toronto and we keep getting featured in magazines Anyway add your comment if you’d be interested in attending I’m working with Jamf on content and such. Once I have everything sorted I’ll actuslly create it under user groups.
When trying to set an expiry time for mobile account have found that even if you specify a time when saved the nominated time always reverts back to "0" and "hours". If this is the only time available in this pane, why is it there? Nothing that I have read on the Admin Guide gives a clue to how it is supposed to be configured / set. We do have scripts that do a similar job if the title is correct, but having some issues with the scripts on later macOS. Thought that Configuration Profiles would be better to use maybe not if the only value is "0 hours"
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!