Get Support
Recently active
There was a few questions in regards to what artists were being played between sessions at the JNUC so I figured I would share that list and the reasons behind the choices. Since we are a midwest company every song that was played was from a local artist, either based or connected to the Twin Cities or Eau Claire, WI. If you liked any of the songs you heard I highly recommend purchasing albums from any or all of these artists as they are all stellar. Just another reason why we love the midwest as much as we do. JNUC - Artists: 4onthefloorAstronautalisAtmosphere The Bad PlusThe Beads Bob Dylan Bon IverBrother AliBuffalo GospelCalamity And The OwlCaroline Smith & the Good Night Sleeps Charlie ParrCloud CultThe Daredevil Christopher WrightDark Dark DarkDead Man WinterDessaDoomtreeFarewell MilwaukeeFat Maw RooneyGayngsThe God Damn Doo Wop Band Haley BonarHalloween, AlaskaHappy AppleHobo Nephews of Uncle Frank Hüsker Düi like you.The JayhawksJeremy MessersmithKid DakotaLifte
Hi everyone,To give a little context. The company I work for is doing our compliances and I need to ensure that the numbers of computers I have in JAMF are equal to the Crowdstrike console. Right the numbers are not right in Crowdstrike, lots of computers are not showing because of bad deployments, the version of Falcon and MacOS is not up to date, etc. So I'm trying to push the system extension profiles and full HD access and I often get those errors below.Even tho I uninstall Crowdstrike and still push those profiles, I get the same errors (below). I followed the instructions by the book from Crowdstrike here: https://falcon.crowdstrike.com/documentation/22/falcon-sensor-for-mac , nothing... I get errors. Is this a JAMF issue of Crowdstrike not being up to date with the MacOS? My environment is Mac with Monterey, Big Sur, Catalina and some Mojave. I still have lots of Intel and getting more M1 now. I get errors on Monterey with Intel and M1 so I don't know exactly what
Is this happening to anyone else?https://apps.apple.com/us/app/jnuc-2022/id1388365624
Can't find on Apple Safari 13 installer. Available via Software Update, but I would like to package it in deployment policy. Please share download URL - Thanks! :)
Does anybody know how to get the URL to auto-populate when installing Anyconnect? I know it only takes a minute, but looking to get it added.
Happy Friday Jamf Community! I was wondering if it was possible to push a configuration profile as part of a policy. I built out the Wacom PPPC per this excellent post and can scope existing Wacom users to it. My hope is there would be a way to link it to the install policy for any new installs.We have roughly 700 Macs enrolled in Jamf and currently 25 people needing the policy. I'd hate to have to push it to all 700 just to catch a small handful of people that may need to install it for the first time in the future. I appreciate any guidance you can offer.
Greetings Jamf Nation!Many organizations are likely running software updates on their fleets this week, as well as with new Jamf Pro versions. As a Jamf who knows a few things about macOS software updates and their various nuances, I want to share a couple tips, as well as explain a bit of what goes on behind the scenes in the macOS update process, specifically by way MDM commands on macOS 11.2 or greater.Some organizations deploy macOS updates leveraging a full installer and the startosinstall command, some will use tools to compel users to update on their own, and other will use Jamf policies or MDM commands to update.As the macOS 11.6 release is not yet distributed in a full installer by Apple, there can be some downstream consequences to an organization's preferred software update workflow, including issues updating to that version via MDM commands due to PI-009722, explained later in this post with workarounds. tl;dr – Summary is all at the bottom... Why MDM-based update
Has anyone had this issue before where packages in self service keep failing to install due to not being able to mount the distribution point? I can manually mount the distribution points on the machines and get into the folders but it keeps failing when trying to do so via self service to install apps. Currently running the latest OS and Jamf Pro 10.2.1. I have tried changing the user account on the distribution point for read and write access and sometimes that works to fix this but sometimes it doesn't. The time is correct on both the client machines and the server that jamf is hosted on.
Over the years, you, our Jamf Nation members, have given us feedback around how we could improve your community experience. And for that, we’re so grateful! It led to the remodeling of this very community last summer and allowed us to create more meaningful spaces for you to connect and learn from each other. But you want more, and we want to give you more! You (singly and collectively) communicated that you want a space within Jamf Nation where you can share deeper, more detailed technical thoughts. You want to hear more creative and common ways to use Apple and Jamf to achieve success in your environments. You want a technical blog space to share these ideas and workflows. Well, folks, we’re happy to announce we heard you, and we’re making it happen! We’re excited to introduce Tech Thoughts, a technical blog that’s dedicated to serving as a space where Jamfs and Jamf Nation members alike can share their expertise on important, time-sensitive technical topics. You are all a wealth of
Hi all,as 12.3 is out just couple hours I went and gave it a try on my lab machines. At first I was surprised taht JAMF Connect (2.10.0) was not shown at user login screen and instead I was presented with native system login. I have discovered that 12.3 is reseting login database and therefore to revert to JAMF Connect login screen there is a need to re-apply authchnager command. In my case I created smart group for all machines installed 12. and scoped policy which only has file and process payload defined with following command "/usr/local/bin/authchanger -reset -jamfconnect" to the smart group earlier created.Big thanks and creds to TTG and his guide: https://travellingtechguy.blog/re-enable-jamf-connect-login-window-after-major-macos-upgrade-monterey/
Hi I recently found a device with an unknown profile installed by an user. I don‘t know how to delete it or how to find devices with the same profile (smart group doesn‘t work)
Hello,I am new to Jamf Pro and I am trying to configure a web clip to automatically open with the Google Sheets app. There is a way to open a google docs using googledocs://... with Google Docs apps.Is there a way that we can have a spreadsheet web clip to open up with Google Sheets?Any advice or work arounds with this?Thank you!
Cannot run Following on policy curl -o '/Users/Shared/agent.zip' https://ggd.masked/csm/profile/downloadMacAgent/id ; unzip -a /Users/Shared/agent.zip; cd /Users/Shared/AgentSetup; installer -pkg CAG.pkg -target /Gives me Error on PolicyResult of command:% Total % Received % Xferd Average Speed Time Time Time Current Dload Upload Total Spent Left Speed 0 0 0 0 0 0 0 0 --:--:-- --:--:-- --:--:-- 0 0 0 0 0 0 0 0 0 --:--:-- 0:00:01 --:--:-- 0 28 27.7M 28 8162k 0 0 4676k 0 0:00:06 0:00:01 0:00:05 4704k 100 27.7M 100 27.7M 0 0 11.8M 0 0:00:02 0:00:02 --:--:-- 11.9M Archive: /Users/Shared/agent.zip checkdir error: cannot create AgentSetup Read-only file system unable to process AgentSetup/. checkdir error: cannot create AgentSetup Read-only file system unable to process AgentSetup/CAG.pkg. checkdir error: cannot create AgentSetup Read-only file system unable to process AgentSetup/config.data. /bin/sh: line 0: cd: /Users/Shared/AgentSetup: No such file or directory installer: Error - the
Please let me know if you have problem with wifi connection to corporate network after upgrade macOS to version 12.5. Now in our environment every Macbook prompt users for credentials before connect to wifi instead of using installed certificate. In version 12.4 everything worked fine. I would be grateful for the tips. Thanks!
Hello, I am looking for a script for activating the right click for an apple mouse.Thanks for your help,
I am setting up ipads for a shared class environment using the Shared iPad prestage enrolement.I have set up a config profile to tie down the iPads. When the iPads log out they clear all the browsing data etc but I want to be able to disconnect the guest user from the wifi. Does anyone know a way of disconnecting from wifi automatically when the iPad logs out?Also does anyone know does they prestage enrolement timeout session actually work? Thanks
I've noticed that if you do a mass-action command to upgrade iOS devices (say 10k), the DB load increases a LOT for the next couple of days. My guess why this happens is because devices are locked and Schedule OS update is sent over and over. Or the OSupdatestatus command is instead sent over and over since the devices don't actually update for some time as the users don't explicitly do the update when prompted or the device remains locked for a few days.I'm assuming the increased load comes from that JAMF needs to keep track of all these devices until they update. But isn't there a smarter way to do this? For instance, why does it need to send the Schedule OS update over and over? Why does JAMF need to send OSupdatestatus over and over, especially since JAMF pro doesn't do anything with the data collected?Just thinking that this flow could and should be optimized as it is currently a bad idea to use for a larger number of devices. Any dev for JAMF pro that has any input on these thoug
Dear community,I'm trying to write a small script which helps me to automatically upload the photos of our students that our teachers can see them in the JAMF teacher app and the Classroom app. I found the following very promising endpoint: https://api.zuludesk.com/teacher/uploadPhoto (https://api.zuludesk.com/docs/#api-Teacher-uploadPhoto)Currently, I have the following issue: I'm trying to authenticate the teacher with the following route: https://api.zuludesk.com/teacher/authenticate (https://api.zuludesk.com/docs/#api-Teacher-Authenticate). Before doing that, I need to get the company ID with https://api.zuludesk.com/teacher/companies (https://api.zuludesk.com/docs/#api-Teacher-Get_companies) but I get the error "404 - Not found". The request is set to "POST" and authentication to "Basic Auth" with username "Network ID" and password "API Key". Other endpoints are working fine (i. e. https://api.zuludesk.com/users/groups).
At one point, I was able to create, edit, save Scripts in Jamf Pro using my Standard User account that had Full Access/Administrator. I am now using my LDAP User account that also has Full Access/Administrator. Now the LDAP account and my Standard User account are no longer able to create, edit, save Scripts.When I try to save the script, I get error "403 Access Denied. Contact your IT Administrator for assistance". From Jamf Pro User Accounts & Groups, I've confirmed all the checkmarks are there (although they're grayed out).Am I missing setting that will allow me to save scripts?
Hello all,I'm a new JAMF administrator for a University employing around 3500 individuals. Had a situation pop up last week with one of our departments, and while I'm finding similar threads in the JAMF community I haven't stumbled upon one quite in the situation we are in. We met with one of our department heads recently. The department has purchased approximately 60 new iPhones to replace 60 aging iPhones for her personnel. All are managed via JAMF Pro. Unbeknownst to us, Apple IDs were created by the department and setup on all 60 iPhones. These Apple IDs are being managed by the department head who is now finding its becoming quite tedious to manage all these Apple IDs. We as an organization have not restricted the ability to sign in with a personal Apple ID. I've been asked to look into if there's a way to remove the use of these 60 or so privately managed Apple IDs on the new phones that are going to be deployed. The department head though is asking if we have the
Hi, I would like to know if it is possible to download a report about the Jamf Users & Groups from the setting( not computer/device users), or if it is possible to create a smart group with only the Jamf users in it.
I'm attempting to switch computers from Jamf Now to Jamf Pro. I created a configuration profile for disk encryption and it's showing the device is encrypted. However when I view the settings on the device via inventory in Jamf, there's no Disk encryption configuration and the PRK is "unknown". When I try to reissue, the policy just sits at pending despite logging out/in or rebooting. I haven't been able to find anything helpful in documentation or on the web. Thanks.
We have just received our first M2 mac and it seems off the bat that there are some issues with enrolling it - usually during enrollment from our JAMF site (that we carry out with M1 and Intel macs) we could profiles installed onto the machines but with M2 I see for the first time it needs a QuickAdd package installed that completes installation. This always fails and then when I try manually enrolling with sudo jamf enroll -prompt I get the message - An error occurred while enrolling computer: The jamf binary could not connect to the JSS because the web certificate is not trusted. Checking in the background for policies that use the Enrollment Complete triggerEnroll return code: 70 We are currently using the in built JAMF CA cert...would this be causing it?
Hi,I was wondering if anyone can point me to a resource or a script that I can run via policy using Jamf Helper that will check the version of the installed O/S and if it's not equal to the latest we're supporting will advise the user how to upgrade and will potentially remind them once every week until it's done. I do not want to force the upgrade just remind users and give them the steps to update ie: Apple Menu-About This Mac-Update. If there's a better way to do this without a script I'm also open to that alternative but I think Jamf Helper might be the best way. Thanks in advance!
I have a case opened with support but hopeful maybe someone else has an idea for this. We have a few Apple TV 4k's we are trying to enroll in jamf. I was able to get it to show in AC2 and I prepared and wiped the device and it showed up in our DEP. The device shows up in my prestage in JAMF but no actual device exists in my inventory. When I try to step thru the apple TV, I get to the screen asking about remote management, when I click continue, I get an error saying Invalid Profile. Anyone seen this or how to fix this?
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!