Get Support
Recently active
In other MDM’s, when we enable Lost Mode, we have the ability to see where the device location is after it successfully enables.In JAMF Pro, I can put a phone into Lost Mode, I can see a “DeviceLocation” command sent to the device, but where can I see a map of that device’s location?
I have a MacBook Air that I have locked remotely through JAMF with the passcode.The user, has managed to lock themself out of the machine by typing in the wrong passcode code multiple times.Therefore, the timer has kicked in and locked them out for 26031963 minutes ( 49.5 years)Have spoken with Apple support, who suggested I contact JAMF.Is there a way we can reset the timer to allow the user to type in the correct code to unlock the machine? Many thanks
I am trying to change a computer's name by editing it in the computer's Jamf Pro inventory > General page. I have a policy to change all of my managed computers' names to match the names set in Jamf, so theoretically this name change should be pushed out to the machine after I updated it in Jamf. This is an iMac running MacOS14.4.1. But when I change the name on this machine and save it, the page reverts back to the default "iMac" name. I've done this hundreds of times and have never had an issue getting a name change to stick in the Jamf Pro inventory. Has anyone else seen this issue?
I work in an education environment.I want to allow Staff to enter the name of a lab via a prompt ran from Self Service and get back a list of Applications installed there.Querying the API via a script seems like it'd be the way to go....I'm just not exactly sure how to go about it.Anybody got an idea where I'd start?
Morning all am looking to see how people have there ipad updates setup currently am going in to software update and selecting bunch of ipads asking them to update should i be setting config up so updates get push automatically just seeing what others do.
I am putting together some data on iPad breakages in schools. If you’d be happy to share annual percentage of physically damaged iPads together with the case solution you use and the total number of iPads you have I would be grateful. If you have data by year group even better . I will share results once I have them collated.
Hi all, Background:I’m fairly familiar with the Apple ecosystem but just not getting into managing Apple devices. I am working on getting MacOS to a baseline standard internally at my company. Issue:SelfService+ is working great but I’m noticing that I need to sign into it every time the app is launched. Is this normal? Side Note:I do have SSO turned and working, which makes this less of an issue, but I was experiencing it before SSO was enabled as well. Thanks!
Hey all, Anyone know how would I go about scheduling clearing the shared ipad cache on all devices as an automated weekend task? I keep getting storage errors a lot so I think this might help. Doesn’t seem like it’s releasing the profiles of signed out users.
We don’t have ldap integration yet.So when we automatically enroll a computer (when new or wiped) the first user account is always admin. Which is impractical if the machine is shipped directly to the user.We create our admin user at prestage enrollment. or should the admin account we are about to use for troubleshooting etc be created using a configuration profile? What is the best practice i’m asking.In any way, after wipe or at first boot, the user that gets created WILL be created with admin rights. My question is if there is a way to create the first user with user-only rights as we create our admin account way before this step.Thanks
I wanted to highlight a gem that got burried in the Education State of the Union at JNUC 2025 this year. It’s the Jamf App CATalog. I’m still diving into it myself. Had to chat with @Kelly_Conrad to get the low down on this. Seems it’s released on the app store already. Just chewing into it myself.The Admin Guide is available at https://jamf.it/appcat-setup.The Quick Start Guide is available at https://jamf.it/appcat-quickstart.The Quick Start Guide has all the basics and if you find it useful check out the Admin Guide.Without any configuration the app is in demo mode. My ears perked up for this as I think our teachers would find it useful to be able to give internal feedback about specific apps.It was mentioned that there was a way to give feedback through an email but I can’t find that in the app like I was shown. Maybe I’m missing something.Anyway, I hope you find this app helpful. I’m looking forward to learning more about it myself.Available on the App Store here:https://
User unable to login to AD bound Mac in Jamf Pro. Users with similar credentials are able to login with no issues. Deleted user in order to recreate the local account. Restarted the iMac. Checked network connection (on correct VLAN)
Hi,I discover that Jamf teacher app don't show students in the particular imported classes from Apple School Manager. The same classes in Jamf Pro however show its students and its teachers. On the teachers iPad using Jamf Teacher app there is a error message "You are not allowed to add students to managed classes. Contact your IT administrator for support". On the same device when teacher choose another class then there is no problem - all students are visible and the teacher can start a lesson. I have tested to remove the classes with the errors and then imported the same classes again in jamf pro but the error still exist. Anyone who had the same problem before?Thanks for feedback.
I’m fair new to Jamf Pro so forgive my for my beginner questions.Our Jamf Pro system is partly managed by and IT department above us.I uploaded our vpptoken and reclaimed (for whatever that means)Now if I modify an app to be available in the self service store it appears (it did not before uploading the vpp token). Didn’t try to install it yet. But they don’t get automatically installed if i set them to Install automatically/Prompt the users to install. Yet. Maybe I need to wait for the next xyz communication between the macbook and the jamf pro server?
Hello all,I am in the process of rolling out OneDrive to our Mac environment. I assigned the app from the Jamf app catalog and put together a plist with all of our settings. I discovered that OneDrive has to have full disk access in order to automatically back up the desktop folder. I used the Jamf PPPC tool to grant onedrive full disk access, however it does not seem to take. I check in system settings → general → device management and I see the config profile, however when I run sqlite3 /Library/Application\ Support/com.apple.TCC/TCC.db \ 'select client from access where auth_value and service = "kTCCServiceSystemPolicyAllFiles"' in Terminal, onedrive is not listed as one of the apps that has full disk access. Any ideas?
Greetings JAMF Nation! Apologies in advance if this has been covered and I've just missed it. I'd like to know if there is a way to rearrange the columns I choose to display when I check the items under "Inventory Display". I provided a screenshot to try to explain what I'm after...in my example, "last update" is the second column but I'm asking if there is a way to tell jamf to display that one at the end. So "name" then "model" then "OS" and finally "last update". The end goal is to export the reports into an Excel spreadsheet but I'd like to not have to rearrange everything in Excel after it's exported. Would be nice to have it report in the order I want to export it. -SP
We have a requirement to use a exam application for proctored exams through Proctorio on iPads.Our specific need is:• Enable camera access exclusively for this exam application.• Currently, we have disabled the camera from the profile side to prevent other apps from accessing it.We need a solution that:• Allows the exam application to record via camera,• While keeping the camera disabled for all other applications.
For awhile both Jamf Pro and Jamf Protect had a Resource box on the dashboard page. Both are gone now and we are just redirected to countless webpages to click through to find the information buried. Another useful tool gone….
A swiftDialog and LaunchDaemon pair for “set-it-and-forget-it” end-user messaging of Apple’s Declarative Device Management-required macOS updates Overview While Apple’s Declarative Device Management (DDM) provides Mac Admins a powerful method to enforce macOS updates, its built-in notification tends to be too subtle for most Mac Admins.DDM OS Reminder evaluates the most recent EnforcedInstallDate entry in /var/log/install.log, then leverages a swiftDialog-enabled script and LaunchDaemon pair to dynamically deliver a more prominent end-user message of when the user’s Mac needs to be updated to comply with DDM-configured macOS version requirements.Continue reading …
Have recently built out a PlatformSSO config, and have seen varied results upon the devices on which I’m testing it. To my understanding it appears one has to scope a minimal AppSSOKerberos config in order for the PSSO config to properly register. I say this because, and this only appears to effect Apple Silicon devices running macOS 15+, when the config appear to bork itself registration is always unsuccessful.The underlying cause seems to be simultaneous writes to the AppSSOAgent and the AppSSO Daemon; what then happens is that underlying JSON config becomes corrupted, the config is discarded, and the system initiates a remediation by requesting a re-registration. It appears to be a concurrency bug causing an OS-level race condition. For whatever reason Intel Macs don’t seem to be impacted, but from what I can tell it’s an OS issues and not related to the M-series hardware.Has anyone else seen this? Anyone have any ideas toward a fix/remediation?
Afternoon Im trying to deploy Zbrush which is dmg which has .app file wrap inside it.I have packaged this into temp location \\private\tmp Im then running a script to install it.Having all sorts off issue trying to get the script to mount the dmg.Seems to work fine through terminal using hdiutil attach /private/tmp/MaxonZbrush.dmgDoes anyone have experience with working with DMG or any good resources.Thanks in advance Tom
This is kind of a shot in the dark, since it’s a somewhat obscure Zoom setting -- but does anyone know how to manage the “Show green border around my shared content” option? (It’s under Settings > Share Screen.) I can’t find a key for it in ~/Library/Preferences/us.zoom.xos.plist, and toggling the setting appears to do nothing to that file.
Does anyone have a step-by-step for creating a basic content filter for Mobile Devices? Looking through the documentation online it keeps sending me to how to set it up on macOS but not iOS/iPadOS. Basic Question: Does the filter name matter?
Has anyone had any luck in blocking the Games app? The only thing that appears under “Restrictions>Apps” is Game Center and that does not block the new app.
I just want to take a moment to say thank you.It was truly an honor to meet all the recipients and everyone who helped make the event happen. I’ll be honest — I was completely unprepared for how emotional it would be. I was genuinely amazed.Speaking with the JAMF executives and hearing their journeys was inspiring. The consistent theme of family and unity — that sense of inclusion and belonging to something greater than yourself — was powerful and real.I’m deeply grateful to have been one of the recipients. Thank you again for such an incredible experience.
Back from JNUC? Learned a lot of new things, haven’t you? Missed even more I guess…Don’t worry, let me remind you what news we announced in Compliance benchmarks! Review the Keynote, Commercial State of the Union, and dedicated Compliance sessions (once available) for more details.NIST 800-53 rev 5 BaselinesYes, those from mSCP - low, moderate, and high - are now available in the built-in capability in Jamf Pro. You can build a benchmark out of them TODAY - as always, we recommend to start with monitor only, and roll-out gradually from small test group all the way to the target population.Compliance ScoreUsing Compliance in Protect? Like the simple compliance percentage as an overall indicator? It is NOW in Jamf Pro as well! Each benchmark shows a compliance score that tells you the compliance status over the assigned computers to know how you are doing. Any questions? Curious about where we are heading next? Let me know!
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!