Get Support
Recently active
Hi everyone,the previous Administrator at my Workplace used the Model identifier with like "Book" and not like "Book" to sort the Macs into MacBooks and all the other more Stationary Macs.After the first departments bought the new M2 MacBooks Pro, we noticed that Apple had removed the word Book from the Identifier, meaning that the MacBooks were suddenly treated like an iMac or Mac-Mini.My solution for this would be to evaluate the value of Battery Capacity. For iMacs and Mac-minis it says N/A, while MacBooks always have a percentage there.Out of curiosity, how do you implement this distinction, if at all?Would anyone recommend another way?
I have a user group, that has only site level access. But I'd like to have it setup to where the group has the ability to use jamf admin for only their site.If I'm understanding correctly how JAMF has this setup, what I'd like to be done is not possible. It looks like to give some access to JAMF admin, they have to have full access. Am I correct? or am I missing something?Thanks!
This is a feature request. On the view of individual Smart Groups, please add the list of items that are scoped to all devices in the smart group (applications, policies, profiles, etc.).
Hi everyone!We're looking for a workflow on how to do a double Inventory Update after the policy has run. Specifically, we're installing Jamf Connect via a policy, and while there is already an inventory update set to run as a maintenance task after the policies execution, this inventory update does not yet include Jamf Connect in the list of installed applications. So we need to have another one run a little bit later, which then reports Jamf Connect app as installed, which uninstalls other profiles from the computer. How could we go around doing that?
Hello... I thought this would be easy but I'm struggling. I need to create a report that contains all "FileVault 2 Enabled Users" per machine that is rolled into Jamf. I can click on an individual machine and check it manually per machine at the disc encryption section, but I can't figure out to have this automated into a report via an Inventory search/Smart Group. Anyone?
Hi all, Is there a way for script remove computers on jamf protect with more than 30 days no contact? The goal is if they connect again they will be added but if not they are gone gonethanks Carmelo
Hello,I have DEP in place and working fine.I have some Macbooks that require User-initiated enrolment.As far as I am aware, I can invite the users by enrolment invitations or sending them the link https://companyName.jamfcloud.com/enroll/I have LDAP (Google) setup but why is it asking for the user to login. Shouldn't it just let the user search their name via LDAP and download the profile to install once I invite them to download or send them the link?I have attached 2 screenshot. To login, I can only use my Jamf admin account to login and then it let me use LDAP to search for the employee to download the profile. By this way, I need to give my admin credentials to the employees to login. Am I missing some options to ignore the login screen or this is the only way?Any help is appreciated. Cheers!
Figured I'd start a chat thread for commenting/chatting during JNUC 2022. So the keynote is about to start. Are you hyped? :) Will we blown away? Or will it be mostly "meh"? :)
Resorting to posting my issue here because Apple has been no help when I try to explain what is going on. I can't find anything useful as nothing I come across seems to be the problem we are running into. This is in regards to updating our user machines which are a mix of both Big Sur and Monterey throughout the company. We use Nudge as a means to steer our end users to install the most recent versions of macOS. We were seeing issues with downloads failing, even after reviewing firewall rules with the system admins and Zscaler exceptions as outlined on Apple's own website. We have also tried to install the install assistant for testing, and that failed due to a "could not communicate with a helper application" failure message. All of these issues require us to direct the end users to boot into safe mode, which so far is the only way that we have seen any success with getting these things installed. We are a pretty small team and our company is rapidly growing, so I would like to g
Hello All, I Have a macbook that will not update inventory. This device was recently updated from High Sierra to Big Sur. When looking in JAMF Pro it shows that the device is checking in properly but hasn't updated inventory since last July. Any suggestions?
During the setup of Jamf connect, is there a way to push out the network info during setup, for example, Zero Touch? The user opens up and starts the Mac for the first time. Get to connect to Network, and then needs to choose which network to connect to. I understand that this can be done via configuration profile, but what about prior setup? I would like users to use the work network but don't want to give out any PW. Currently, I have to direct them to the Guest network, or home network. Is this something that is even possible during the Zero Touch process?
Hello everyone, Hope you are all enjoying the holidays. I (UNCA) need some help writing a script for the deployment of Monterey. I found a few guides for Big Sur. From Jamf, Github, and a few others. Thank you in advancehttps://community.jamf.com/t5/jamf-pro/mac-os-monterey-update-via-self-service/td-p/254256Jamf Pro - Upgrading Macs to latest operating system - IS&T Contributions - Hermes (mit.educhrome-extension://efaidnbmnnnibpcajpcglclefindmkaj/viewer.html?pdfurl=https%3A%2F%2Fhcsonline.com%2Fimages%2FPDFs%2FUpgrade_Big_Sur_Jamf.pdf&chunk=true
Hi,I have a MacBook that seems to have lost any connection to the Jamf Pro Server (on premise). All SelfService Options Display a "failed" message if the user uses them. The last time it made an inventory update or a check in was almost two months ago.To make matters worse there are no credentials to the local admin account and the firmware password blocks access to the recovery mode. The OS is 10.14.6 because the user seemingly never updated it, but that cant be the reason for this all, or can it?Anyways some tips would be really appreciated.Kind regards
Hi is there anyone on here that has created a smart group for Macs that have CrowdStrike Endpoint protection installed? It doesnt install as a app so having trouble. Goal is to make a smart group to see which machines actually have it installed, since on my policy it says completed but in logs failed for some reason
Hello All,I am in need of assistance in regards to Trusting CA's on both Laptops and IPads,I been trying it via Configuration Profile, yet when scoping it the fleet of Laptops and Ipads, they seem to Fail to install,below are screenshots of the configure, any suggestions will be beneficial.(sorry for the links i dont yet have permissions to upload photos)Network Configuration and in the Certificate section i have uploaded the 2 certificates, would anyone know whats going on?The Laptop Configuration and Ipad Configuration are pretty much identical, and they both have the same issues Thanks
Hi :) My AVP discussed this yesterday, he wants to give Macs to some VIPs who use SAP as their main job tool. There are couple of apps that can be used to run SAP but I wanted to know if anyone has SAP for Mac users?Any challenge or suggestions will he helpful. Thanks much!! :))CS
Hi all,I'd like to have this available in Self Service. When I try it the way I have some applications set up, it just drops the DMG contents into the "/" directory. The DMG for Wireshark contains additional packages for ChmodBPF, so do I need to add those packages individually to Jamf? Should I use Composer to group the .app and the ChmodBPF packages into one Package? Just curious on how others are doing it, and if you have a good way, I'd rather not recreate the wheel here. TIA,Joey
Is anyone else having issues with the SSO extension just randomly stop working? This is happening more and more often, more so on M1 devices. The only way we have been able to resolve it is to wipe the device and set it up fresh. Seems like JAMF is pushing their other products and making it harder on us who choose not to use JAMF Connect which is becoming frustrating.
We are rolling out NXLog to our Macs. I have the installer working, but don't have any security info to configure things like PPPC or System Extensions. I was able to manually tick the box for Full Disk Access, but I am still getting an error message saying that im_maces|in NXLog requires Transparency, Consent, and Control (TCC) approval to connect to Endpoint Security.If I can find the Bundle ID and Identifier, I should be able to roll that info a PPPC configuration profile which will flip the switch to turn on the Full Disk Access during install, so I don't have to manually do that. Then to clear the error message I am getting above, I likely need a Team Identifier and/or System Extension type for the System Extensions portion of the Configuration Profile in JAMF.I have checked their website and don't seem to find anything there in the documentation or message boards about any identifier. Is there a way to find this info out by looking on a system that has the softwa
We have a set of loaner/multiuser Macs with touch ID. Users log in with AD accounts. I am noticing that each new user that logs in is asked to set up touch ID. Is there a way to turn off the Touch ID setup prompt? I have Restrictions payload > "Allow touch ID" unchecked. This does not disable the set up prompt. I see a setting within prestage enrollments, I am pretty confident that only turns the touch ID prompt off for new enrollments.
Hi all, We are seeing a problem deploying MacOS Monterey. We are running our employees as a standard user and when the Monterey update tries to run it gives them the following prompt: "You must provide authorization for this volume by setting it as your startup disk. You can relaunch the installer after authorization has been provided"Even when I unlock the startup disk and make sure to boot into it I receive the same error.
Hello,I have a script being run as a policy that uses the sudo jamf policy -event eventtrigger format multiple times to run multiple policies that install applications. Is there a way to have it wait for the previous process to finish installing before kicking off the next install, it seems that none of the apps are installing correctly even though it returns with a succesful in JAMF. Example of code: # Installs app1/usr/local/jamf/bin/jamf policy -event app1# Installs app2/usr/local/jamf/bin/jamf policy -event app2# Installs app3/usr/local/jamf/bin/jamf policy -event app3 echo " All done with installs" Thanks for any help in advance!!
Hey JAMF nation!I'm a fairly new JAMF admin that inherited an on-prem instance that is about to be retired. I've also been tasked with researching what to replace our current setup with. I know a lot of you guys are working in the cloud so it's been kind of hard to find a lot of info for on-prem JAMF setups. For the people with on-prem setups, what does your hardware look like? This is our Current setup: * 4 physical Servers (clustered) the JAMF Pro Web App on Red Hat enterprise. Dell Power Edge R430's * 1 Physical box we use as a load balancer on Ubuntu, Dell PowerEdge R610 * 3 physical distro points running Ubuntu, PowerEdge R430's * 4 Mac minis serving as distribution points at our “imaging” site * 14 mac minis that we have set up as Caching servers for Apple content * Our JAMF SQL database lives on a VM running Cent OS I think my main question is there any benefit
Hello, I have an Ipad working with Jamf Pro. I pushed to the device the Jamf Self Service App and on the Parent App scanned the QR code. While it looks like they are linked, the Parent app is not causing any changes to the Ipad. Under "Device" I see the battery usage is 100%, when it's actually much lower; so I don't think something is connected right. I am able to push policies and App's to the device but I'm not sure what I might be missing? Thanks!
Hello All, I am having a problem with the FileVault personal keys which are being saved to Jamf pro server. All keys appear with a long string of characters. I got stuck with recovery screen and need to have recovery key to proceed. I did check multiple articles but couldn't find much information on the key retrieval. Here are my FileVault configuration profile settings. Can you please help me on this?
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!