Get Support
Recently active
Every year, I’m blown away by the magic of JNUC. I’ve attended since 2016, so you’d think it would get old… It doesn’t. Seeing the community in such a large, present way is truly the highlight of my year. Thanks to everyone who stopped by the Jamf Nation booth to say hi! For those who didn’t get a chance, here’s what we shared:Configure SSO in Jamf Account for 1,000 Jamf Nation Rewards points! Learn more here. Aren’t signed up for Jamf Nation Rewards yet? Take care of that now! Here’s how. User Groups are meeting (virtually and in person) all around the world. Find the one that’s best for you - and join - here!Now tell us - what was your favorite JNUC moment? Share a photo or a written comment below!
Hello everyone, I work as a system admin and have a user who already signed up for an apple id using their work email and now I cannot create an account for him within the DEP using that email address. Is there a way to convert or enroll the apple id so it falls under the DEP? Currently the error I'm getting is "This managed appled id has already been taken". Thanks! L
*Updates in thread*To our customers: Jamf services, including our status page, are currently being affected by the major AWS outage. We are working to restore services as soon as possible.Please find the most recent status updates here: https://status.jamf.com/We are monitoring the situation closely and appreciate your patience.
Hi,Just trying to save myself some time..Does anyone have the relevant PPPC (s) for deployment with Astropad?? I know, im lazy :-) TIA
Hi everyone,We’re using Jamf to manage our iPads. After enrolling a device via Prestage enrollment, everything works fine at first — but after some time, the iPad always shows the message “Passcode was changed” and gets locked out.The user did not actually change the passcode.Has anyone experienced this issue or know how to prevent it from happening?Any advice would be appreciated.Thank you!
Hi There, I am a noob so please excuse my ignorance. We have a new install connected to GoogleID and have had an issue from the beginning where the Jamf Connect Menubar's Change Password and Reset Password pages comes up blank. I've tried changing default browsers with no luck. I've made sure both browsers were signed into the Google account with no luck. The Connect option seems to work and pulls up the correct email and password info as it logs in. I should add that other than that Jamf Connect seems to be working as expected. Here's what the plist info is set to. I appreciate any help you all can offer as I'm stumped. -Jason <?xml version="1.0" encoding="UTF-8"?><!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "http://www.apple.com/DTDs/PropertyList-1.0.dtd"><plist version="1.0"><dict><key>ChangePasswordURL</key><string>https://myaccount.google.com/intro/signinoptions/password</string><key>
Anybody else experiencing the same? 10+ tenants I am unable to access. Believe our authentication sever has been moved again. But cant reach any of the official support channels. EDIT: Acc manager has now confirmed it is tied to the AWS Outage so out of their hands at this time.
During our enrollment workflow we install a number of required applications, settings, branding, etc and then as the last step force a reboot. Post-reboot, icons now match standards, branding is set, etc and the system is ready for the user to take over. I started noticing that reboots weren’t actually occurring and am now actively trying to troubleshoot it. My policy originally just used the Restart Option tab, standard restart, and then restarted immediately for both logged in/no logged in user. At the suggestion of the Jamf Support AI I moved to an MDM Restart. Still nothing. Lastly, I tried removing those and just adding an execution of “/sbin/shutdown -r now” to brute force it. Still never reboots. Jamf Logs are vague, at best. Mon Oct 20 11:33:50 MacBook Pro jamf[1988]: Executing Policy 999 - Enrollment Complete-Reboot (update icon path in script)Mon Oct 20 11:33:54 Test MacBook Pro jamf[7404]: Checking for policies triggered by "dock" for user "Ed_C"...Mon Oct 20 11:33:59
Good afternoon everyone, I wanted to inquire about the new compliance within JAMF PRO. I see we can push CIS level 1, i did this with MS intune on windows devices and it was a nightmare to whitelist certain policies. Before I implemented those I wish I had a community to ask for things such as Autoadmin logon disable breaking autopilot. For the MacOS equivalent, are there any policies that inherently break functionality for Executives and Software Development teams with these policies or any functionality of JAMF and its enrollment or mangement?Any input or guidance would be amazing! thank you all for being a supportive and engaging community.
I have Mac Apps configured in Jamf Pro to keep applications updated including Jamf Connect. It shows the latest as 2.45.1 but 3.4 is on the download site. There is a different app called Jamf Connect Login.. Should I be using that or is there a reason to remain on 2.45 (No school apps)
Hello,I just passed my Jamf Pro Associate Exam (100) today, Oct. 20, 2025.I just want to know if I will be able to receive below items? and how? - Badge- Certificate- Receipt/Invoice- Digital BadgeThank you.
Hi everyone,I’m hoping someone here can shed some light on an issue that’s been giving me a real headache lately.I’m currently trying to deploy scripts via Jamf School to install Sophos Endpoint and Datto RMM on macOS devices. I’ve followed all the guidance I could find online (I’ll drop links below to the documentation I’ve been working from), but I’m running into some frustrating inconsistencies:Sophos Endpoint: The script appears to run without any errors, but the installation doesn’t seem to complete successfully. There’s no feedback or logs indicating what might be going wrong. Datto RMM: This one does throw an error, but it’s not very descriptive. I’ll include the exact error message below once I get a chance to pull it again.I’ve double-checked permissions, script formatting, and the way I’m pushing these out via Jamf School, but I’m still stuck. I’m starting to wonder:Has anyone successfully deployed either of these tools via Jamf School scripts? Is what I’m trying to do even p
Any one has a problem with the compliance status between jamf pro critera and entra id after upgrade OS to 26.0.1?What happend. After upgrade OS to 26.0.1 in jamf pro device doesnt showing “Storage” information likes doest see physically hard drive.Which is related to the lack of information about the encrypted disk, which is a condition for compliance.
No text available
A quick-fix during Platform Single Sign-on testing for when users can’t unlock their Macs via Touch ID Background We’ve been testing multiple vendors’ implementation of Apple’s Platform Single Sign-on for the past few months.During our testing, we inadvertently discovered that users can’t unlock their Macs via Touch ID when transitioning from one Platform SSO vendor to another.The following quick-fix should get your users back to normal.Continue reading …
This guide will walk you through setting the local macOS account pictures for end-users via Jamf Connect Requirements: Jamf Pro Jamf Connect Formatted ID Token Path setup in Jamf Connect Login Config (/private/tmp/token) Azure Storage Blob Email addresses of users follow a pattern for all users (john.smith@myorg.com, jsmith@myorg.com, etc..) Tested with: Azure AD and Jamf Connect Test User: John.smith@ericsontech.com Steps: 1. First step is to get all of your user images. To make this easy on yourself name them the same as the user's email address. So for John Smith his email is john.smith@ericsontech.com I would name his image as john.smith@ericsontech.com.png and upload that image and all other user's images to an Azure Storage blob. Example: 2. Setup this script to run via Jamf Pro. I have mine setup to run via Jamf Connect Notify Note: You will need to update this with your Azure Storage Blob url curl -L "https://myazureblobname.blob.core.windows.net/mdm/$EMAIL.png" -o /tmp/
This article is based off of the presentation at JNUC given by @tommypatzius , @Jordy-Thery and @glennu Our session at this year’s JNUC 2025 was designed to present a list of helpful tools available to Mac Admins of all skill levels and backgrounds. We know that everyone’s experience with Apple device management is different, so we’ve pulled together a collection of tools that are approachable, practical, and, in many cases, free. Many of them have a low learning curve, making them accessible whether you’re brand new to managing Macs or have years of experience. Our goal is that everyone walks away with at least one new tip, trick, or tool they didn’t know before. To make things clear and easy to follow, we’ve divided the tools into categories by function: Apple apps, Jamf tools, maintenance, setup & customization, notifications & support, and inspection tools. We took a closer look at a few specific highlights—Jamf Helper Constructor, Self Service+, and IBM Data Shift—befo
I am attempting to install an endpoint agent on all Macs in Jamf, however I cannot seem to get it to run correctly. I have the package added to Jamf, I believe it is the script that is the issue.
we are getting a screen time alert while accessing any new link in the chrome or safari browser it very frustrating for us to ok it every time while access to new link. any idea how we can bypass or restrict this alert using config profile or Policy?
Today we are releasing Jamf Pro 11.21; highlights include:Impact Alert Notifications for Deployable ObjectsImpact alert notifications include enhanced visibility and control when modifying deployable object configurations. These notifications help prevent unintended large-scale deployments by giving administrators insight into how their modifications will affect devices and existing configurations across their organization. When editing the scope of any deployable object (e.g., policies, configuration profiles, apps), a confirmation dialog displays an alert message that indicates that significant changes may cause increased network traffic and temporary application instability. For additional information on what's included in this release, review the release notes via the Jamf Learning Hub.To access new versions of Jamf Pro, log into Jamf Account with your Jamf ID. The latest version is located in the Solutions section under Jamf Pro. Cloud Upgrade ScheduleYour Jamf Pro server, includi
Hi All, I have several MDM Profile that have not checking and I would like to remove the MDM Profile from the Macbooks, I have try the following script: sudo jamf removeMdmProfilesudo jamf removeframework I don’t want to use recovery mode. Can anyone help?
Hello everyone,We install TeamViewer for some of our clients via the Jamf App Catalog. This also install TeamViewer in the LaunchAgents, which we don't want.Deleting the plist files doesn't work, and you can't specify anything in the configuration file either.Has anyone else encountered this issue and perhaps found a solution?Thanks & best regards
I used the “Defer software update” function so that our users could not upgrade to iOS 26 since it seems to be killing the battery on our phones. However, I wanted to send out iOS 18.7 for security reasons. I was able to send it out via Software Updates but if our users don’t catch the update prompt the first time it is sent to them, they will hit an error, and they can not install it other than going to General > Software Update which we have blocked.I was wondering if anyone has reached a similar obstacle and was able to find the best way to proceed. Thank you!
Im not sure what happened here, but starting on Oct 12 a bunch of my user devices no longer displayed the user attributes from Okta like full name, username, email address and title - now it only shows the local username on the machine. I have the LDAP integration with Okta setup using a service account, and that looks like it’s still active as when I test it - it returns user info. This has affected about 50% of my machines. I also have jamf connect setup with Okta as the idp on those machines. Anyone experience this issue recently?
What is the best practice for app deployment? Is it using the “Mac Apps” menu and setting them to auto install instead of self service store, or deploying apps using Policies?My best guess is to add app-specific scripts and settings, but is there anything else that gives benefits using policy instead of just making it mandatory in the other way?
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!