Get Support
Recently active
Working on setting up a few shared machines and I was asked to force Safari to always be in Private Browsing. Chrome has that ability in the plist but I don’t think Safari has the same. If that isn’t possible, we would also be OK with clearing browsing data when Safari is closed. Is there a way to do either? I haven’t found anything like that on the interwebz. Thanks!
I have created VMware Fusion 11.5.1.pkg file by using Composer/Package tool. while I tried to install it in new Mac installed successfully when opening the VMware Fusion getting attached error. if I use the same package for upgrade the VMware fusion from older version to new version(11.5.1) it works. Does anyone know how to do this?Any help would be appreciated. Thank you
Hi, I have an issue with one my macbooks. It is not checking in with Jamf since a week after it was enrolled. I’ve run the following commands on the affected macbook. Sudo Jamf ReconSudo Jamf policySudo Jamf checkJSSConecction These haven’t fixed the issue. The macbook was enrolled by user-initiated enrolment by going to our server url /enroll Do you know what else I can do to resolve this issue thanks
It’s already November, and that means the end of 2025 is clearly in sight. Can you believe it? It’s been an eventful year at Jamf, especially for the Jamf community and User Groups! Earlier this year, we officially launched the User Group program with the goal of connecting as many Apple Admins as possible. We created a starter kit to help new groups get up and running, complete with all the information and resources they need. We also introduced a brand-new community platform, featuring a User Group landing page and an interactive Groups map that displays all the groups around the globe. It’s been a great year! To end on an even higher note, we want to give an extra boost to all the groups thinking about getting started. We’ve heard from several soon-to-be User Group leaders who are eager to start but haven’t yet hosted their first meeting. While it’s a busy time of the year, it’s also the perfect time to gather your community, whether in person or online. To help make that happen,
Hello all!We want to give an extra boost to all User Groups that have expressed interest in starting but haven’t yet hosted their first meeting. It’s a busy time of year, but also a perfect moment to kick things off with your first gathering, whether it’s in-person or online. That’s why we are doing a special ‘holiday bonus’ promotion for all new User Groups started between now and the end of the year. 🎁 User Group Holiday Special ⛄️ Here’s what’s in store for new groups who host their first meeting before the end of the year: Double budget for your next meeting when you host your first one before year-end 1,000 Jamf Nation Rewards Byte points for User Group leaders who host their first meeting Flexible format: Meetings can be in-person and social, or online and interactive Optional holiday Kahoot hosted by me or a team member to add some festive fun to your online gathering Please reach out if you have any questions or would like to take part and get your group going tod
I am trying to test out Single App Mode so we can fulfill a request a user has when their new Ipad comes in. They want it to only allow access to Safari and not allow any websites except the sign in page they set up. I have been able to restrict other sites with no issues, but the Single App mode is causing me issues. I created a Configuration Policy and selected Safari from the Lock to App drop down. When I scope it to my test group, it does attempt to apply, but fails due to "The field “Identifier” contains an invalid value.". Even when I chose "Specify Build ID" and enter "com.apple.mobilesafari" as the build ID, I get the same error. This happens for all apps in the drop down.I have confirmed the Ipad is supervised and all other settings I set up have applied with no issues. It is just this one thing that will not apply. Any assistance anyone can provide would be appreciated.
We are using Jamf Connect and one of the Login Window configurations is to display an RTFD document with our EULA. Prior to version 2.45.0, and the big interface change, the Eula displayed like in the following image:On newer version it now displays like so:It seems the only way to center the text is to push the margins in the text document to something like the following. Left: 5.75” and the right 14.75” for the following result (I am still playing with it):We don’t want the text spanning the entire white space at it makes it more difficult to read unless the font size is increased significantly. Also still unsure how this will be affected on different display sizes.So the question is there a better way to handle this?
Updated to JSS 11.22.1 last week and I am no longer seeing a “New” button on the Computer->PreStage Enrollments page (it is there on the Devices->PreStage Enrollments page). Tried both Chrome and Safari with same result. Anybody else having this issue? I did hit the support portal to raise the issue but all I’ve gotten so far is “It works for me” which is less than helpful.
Why is there an option to only scope this to 1 smart group? While every other policy that installs apps lets you scope multiple things. Or am i missing something?
I was planning to send a message to end user through Swiftdialog via a JAMF policy but it has to be after a specified time like after 50 mins or 80 mins. Any way is there? I cant see any such flag in Swiftdialog, if anyone knows about it please let me know.
I have some policies which daisy chain from one to the other because they use the same Custom Event. They are numbered at the beginning of each policy name just so I can control the order they execute. The whole chain gets triggered by using an excellent script from Richard Trouton https://derflounder.wordpress.com/2017/04/08/running-multiple-jamf-pro-policies-via-custom-trigger/I’m trying them in Self Service+ and it looks like Self Service+ stops showing that the policy chain is still running. When I check the jamf.log the policy chain is still running - it’s just Self Service+ that thinks it’s doneI mostly use this for an initial setup chain of policies so I can make sure they run in a particular order.Is there anyone else doing this sort of thing and have you seen this behaviour? Any thoughts?
We’ve got FUS disabled through a configuration profile, but it appears the menu bar/control center extra bypasses this setting. Users can enable the extra and then use it to switch accounts.Not a major security issue I don’t think, but my org doesn’t use FUS. Is there a way to block specific menu bar/control center extras?
Hi,I tried to find a similar request among the existing discussions, but I haven’t been able to locate this exact situation yet.(Newbie here, so please don’t judge too harshly!)At the moment, updates for basic apps from the App Store are failing to install, resulting in:Failed command – Unhandled exception.(Emptying the list would result in recurring errors) So far, I haven’t noticed any correlation between macOS versions (ranging from 14.7.2 to 15.6.1) or hardware (M1 to M4 Pro), since updates have stopped installing for everyone.From the installation logs, it looks like this (screenshot attached). As far as I've understood, after bugging out with that script, ( cpuFeatures.split )Would anyone be able to suggest what might be causing this issue and how it could be resolved?
I’m unsure if this effects iPadOS 26.0 as I have just pushed out iPadOS 26.0.1 to devices this week. We have a Single App Mode profile for TD Snap (though app doesn’t really matter). After the device is rebooted it looks like on the home screen you can’t unlock the device.Swiping up just shows “No older notifications” but does not unlock the phone and take it to the Single App locked mode to TD Snap.Has anyone else experienced this?This iPad is on iPadOS 26.0.1. Didn’t have this issue prior to the update.
Hey Jamf Nation!Do you have questions around Admin SSO or running into issues configuring it? We are here to help!Next Monday November 17th at 2PM CST we’ll be hosting the second session of our Admin SSO series. These sessions will occur twice monthly for an hour with an open format where Jamf experts will be online to help you through enabling Admin SSO and answer any questions you may have!To sign up for an upcoming session please email beta@jamf.com. These sessions are capped at 10 customers and are first come first serve to best support a small group conversation and ensure you leave with answers or guidance towards setting up Admins SSO.We’re excited to hear from you!
Hello, We have been testing out Jamf Connect 3.5 the previous configuration we used with worked just fine with Jamf Connect 2.45.1 but after testing out Jamf connect 3.5 seems like no log in option appears during login it just shows the user. Normally we had options for SSO, local login, restart and etc. Thank you for any help in advance.
Hi All,Does anyone know a reliable method to adjust the default search provider in Safari on iOS - I am expecting it will be a custom plist.We need to shift the default search provider away from the usual google result, to “https://www.google.com?udm=14&q=<searchterm>”This forces the results into Web mode only, and prevents the AI overview returning results that are normally filtered out by Safe Mode set to Strict.Thanks
Does anyone know how to uninstall the DockUtil tool? We have been using the tool to set the Dock initially for users but macOS Big Sur does not list as supported so we want to remove it before our users upgrade. Thank you.
We look forward to JNUC all year. Then - in the blink of an eye - it’s over. Even though we’re tired (really tired), we miss it. Well, friends, you can now relive JNUC in our recap video!📸 Check it out!👉🏻 Did you see someone you know? Tag them below!👉🏻 What highlight did you like the best? Let us know in a comment. 👉🏻 Just loved the video? Shout out our talented Marketing team! Thanks for watching! I hope to see you next year!!!
Mac Admins’ new favorite, MDM-agnostic, “set-it-and-forget-it” end-user messaging for Apple’s Declarative Device Management-enforced macOS update deadlines Overview While Apple’s Declarative Device Management (DDM) provides Mac Admins a powerful method to enforce macOS updates, its built-in notification tends to be too subtle for most Mac Admins.DDM OS Reminder evaluates the most recent EnforcedInstallDate entry in /var/log/install.log, then leverages a swiftDialog-enabled script and LaunchDaemon pair to dynamically deliver a more prominent end-user message of when the user’s Mac needs to be updated to comply with DDM-enforced macOS update deadlines.Features 76-second Test-drive Implementation SupportContinue reading …
I have been tasked by our security team to limit the terminal app to only allow admin accounts to open it due to a vulnerability. Any suggestions or best practices/advice on this? I do not want to rescrict the app completely because we use it for troubleshooting but we want the standard user to be locked down as much as possible.
I was trying to deploy a screensaver custom on MacOS via jamf but wanted to understand how to do so ?
Hi everyone,I’ve recently taken over maintenance of the Jamf Protect Batch Delete project to bring it back to life and ensure it stays compatible with the latest Jamf Protect updates.The app now includes a few quality-of-life improvements most notably Select All and Deselect All buttons for easier batch management.I’ve also created a .zip release so the tool can be easily downloaded and used right away.I’d love to hear your feedback, feature ideas, or improvement suggestions to make the tool even better for the community.Feel free to comment here or open a new issue with your ideas!You can grab the latest version here:👉 Download Release v1.0Thanks for supporting this project let’s keep it alive together!— Bryanhttps://github.com/Layer-Group
Hello. This is more of a Microsoft question, but i'm not having luck down that route yet. We want Jamf Cloud to manage all of our institutionally owned iPads with MDM. We want Intune to manage all user-owned Apple devices with Application Protection Policies. The problem is, users only have 1 account. So if they sign into a corporate iPad, they get a mix of both Jamf MDM configuration profiles and Intune application protection policies on their corporate device. We want the Intune Application Protection Policies to ONLY apply when a user signs in on a personally owned device, and not a Jamf managed device. I don't know if that is possible since scoping an Application Protection Policy is based on AD group. If their ID is in that group then they get Intune App. I don't see any other criteria to filter out a device if it is Jamf MDM managed. Has anyone run into this or found a solution? Thanks
anyone getting this Sync failed: Communication error. Awaiting next sync. ????when creating a new prestage enrollments ?what's the sync interval? even after the sync interval has passed it is still displaying this Sync failed message
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!