Get Support
Recently active
Hey All,we are working on POC to identify settings needed to rollout JAMF Trust with Okta as per the documentation specified here : https://learn.jamf.com/en-US/bundle/jamf-security-cloud-setup-guide/page/Authorizing_Jamf_Security_in_Your_Okta_Organization.html Issue : when jamf trust is launched it will display “Onelast Thing Sign-in” window, redirects to Okta for login, upon entering credentials and MFA it will throw error message unauthorized.What was done so far. Device belongs to correct smart computer group which syncs with securitycloud. activation profile targetting correct device group. double and triple checked all settings on Okta integration and everything is correct. In Jamf Pro “User and Location” contains Email address which is exactly same as Okta user email address. including case sensitiveness. Okta application integration shows success everytime tries to login using okta credentials. But the Security cloud logs shows this Any help or tips or anyone come across
Hey All,we are working on POC to identify settings needed to rollout JAMF Trust with Okta as per the documentation specified here : https://learn.jamf.com/en-US/bundle/jamf-security-cloud-setup-guide/page/Authorizing_Jamf_Security_in_Your_Okta_Organization.html Issue : when jamf trust is launched it will display “Onelast Thing Sign-in” window, redirects to Okta for login, upon entering credentials and MFA it will not throw error message unauthorized.What was done so far. Device belongs to correct smart computer group which syncs with securitycloud. activation profile targetting correct device group. double and triple checked all settings on Okta integration and everything is correct. In Jamf Pro “User and Location” contains Email address which is exactly same as Okta user email address. including case sensitiveness. Okta application integration shows success everytime tries to login using okta credentials. But the Security cloud logs shows this Any help or tips or anyone come acr
I have a 4th gen Apple TV that was assigned to Apple Business Manager via Config 2. From there it was assigned to my Jamf and then I scoped it to a prestage enrollment. When the device boots up it attempts to activate and then jumps over to my remote management and attempts to download a config from my Jamf when the request times out. Any ideas why its not getting what its looking for. Im not even sure where I can find logs to see what is failing.
Hi all,I have been using a script that sets the Recovery Lock password on Silicon Macs without the correct Recovery Lock password already set using the following APIhttps://JAMF_PRO_URL/api/preview/mdm/commands As mentioned here:https://learn.jamf.com/en-US/bundle/technical-articles/page/Recovery_Lock_Enablement_in_macOS_Using_the_Jamf_Pro_API.htmlHowever it looks like the /preview/mdm/commands has been deprecated, can someone confirm and is there another way to do it or can it only be done with PreStage now? Source: https://developer.jamf.com/jamf-pro/docs/privileges-and-deprecations
Hello, I have been receiving the error Unable to Decrypt Encrypted profile when I push the network profile to the MacOS devices. Now none of the MacOS devices connect with the office Wifi. Any suggestions. AD CS Connector Certificate seems to be fine.
A significant update to the practical and user-friendly approach to surfacing Mac health information directly to end-users via Jamf Pro Self Service Overview Mac Health Check provides a practical and user-friendly approach to surfacing Mac health information directly to end-users via Jamf Pro Self Service.Built using the open-source utility swiftDialog, the solution acts as a “heads-up display” presenting real-time system health and policy compliance status in a clear and interactive format.Administrators can customize the user interface using swiftDialog’s visual capabilities, making the experience both informative and approachable.The tool logs results for review, while not altering device configuration, and a new “Silent” Operation Mode makes Mac Health Check ideal for IT visibility without end-user intrusion. Continue reading …
I’m curious about your experiences deploying Self Service Plus alongside a Jamf Connect 3.x update. I’m currently testing this and have a policy set up to install both Jamf Connect 3.x and Self Service Plus via policy.However, I’m wondering if it’s better to just upgrade Jamf Connect and use the “Use Self Service+ as the default end user application” option directly from the Jamf Pro server instead.Has anyone tested or noticed any issues in the app’s behavior or reliability during deployment with each approach?
I have created USB disabled policy and pushed over JAMF. which was success but I have noticed that through Android File transfer we are still able to send the confidential file to smart phones. is there any way to completely block file transfer to other devices like mobile phone.
In iPadOS there is a new system app, Phone.But it doesn’t seem to be blockable using a Profile, since it doesn’t seem to be present in the list of Default Applications.Has anybody found the same issue? And, more importantly, a solution?Thanks in advance.
Trying to install Chrome for Mac using the app installer. When it installs, chrome will no allow me to update manually. If I manually install chrome, then there isn’t an issue.I do not have a configuration profiles loaded for chrome.
Every year, I’m blown away by the magic of JNUC. I’ve attended since 2016, so you’d think it would get old… It doesn’t. Seeing the community in such a large, present way is truly the highlight of my year. Thanks to everyone who stopped by the Jamf Nation booth to say hi! For those who didn’t get a chance, here’s what we shared:Configure SSO in Jamf Account for 1,000 Jamf Nation Rewards points! Learn more here. Aren’t signed up for Jamf Nation Rewards yet? Take care of that now! Here’s how. User Groups are meeting (virtually and in person) all around the world. Find the one that’s best for you - and join - here!Now tell us - what was your favorite JNUC moment? Share a photo or a written comment below!
Hello everyone, I work as a system admin and have a user who already signed up for an apple id using their work email and now I cannot create an account for him within the DEP using that email address. Is there a way to convert or enroll the apple id so it falls under the DEP? Currently the error I'm getting is "This managed appled id has already been taken". Thanks! L
*Updates in thread*To our customers: Jamf services, including our status page, are currently being affected by the major AWS outage. We are working to restore services as soon as possible.Please find the most recent status updates here: https://status.jamf.com/We are monitoring the situation closely and appreciate your patience.
Hi,Just trying to save myself some time..Does anyone have the relevant PPPC (s) for deployment with Astropad?? I know, im lazy :-) TIA
Hi everyone,We’re using Jamf to manage our iPads. After enrolling a device via Prestage enrollment, everything works fine at first — but after some time, the iPad always shows the message “Passcode was changed” and gets locked out.The user did not actually change the passcode.Has anyone experienced this issue or know how to prevent it from happening?Any advice would be appreciated.Thank you!
Hi There, I am a noob so please excuse my ignorance. We have a new install connected to GoogleID and have had an issue from the beginning where the Jamf Connect Menubar's Change Password and Reset Password pages comes up blank. I've tried changing default browsers with no luck. I've made sure both browsers were signed into the Google account with no luck. The Connect option seems to work and pulls up the correct email and password info as it logs in. I should add that other than that Jamf Connect seems to be working as expected. Here's what the plist info is set to. I appreciate any help you all can offer as I'm stumped. -Jason <?xml version="1.0" encoding="UTF-8"?><!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "http://www.apple.com/DTDs/PropertyList-1.0.dtd"><plist version="1.0"><dict><key>ChangePasswordURL</key><string>https://myaccount.google.com/intro/signinoptions/password</string><key>
Anybody else experiencing the same? 10+ tenants I am unable to access. Believe our authentication sever has been moved again. But cant reach any of the official support channels. EDIT: Acc manager has now confirmed it is tied to the AWS Outage so out of their hands at this time.
During our enrollment workflow we install a number of required applications, settings, branding, etc and then as the last step force a reboot. Post-reboot, icons now match standards, branding is set, etc and the system is ready for the user to take over. I started noticing that reboots weren’t actually occurring and am now actively trying to troubleshoot it. My policy originally just used the Restart Option tab, standard restart, and then restarted immediately for both logged in/no logged in user. At the suggestion of the Jamf Support AI I moved to an MDM Restart. Still nothing. Lastly, I tried removing those and just adding an execution of “/sbin/shutdown -r now” to brute force it. Still never reboots. Jamf Logs are vague, at best. Mon Oct 20 11:33:50 MacBook Pro jamf[1988]: Executing Policy 999 - Enrollment Complete-Reboot (update icon path in script)Mon Oct 20 11:33:54 Test MacBook Pro jamf[7404]: Checking for policies triggered by "dock" for user "Ed_C"...Mon Oct 20 11:33:59
If you are looking to manage a fleet of Apple devices at scale, Jamf Pro Cloud is one of theleading tools out there. Whether you are handling Mac, iPads, iPhones, or even Apple TVs, thecloud-hosted version of Jamf Pro makes setup and ongoing management so much easier, no on-premise servers, no manual patching, and security managed by the experts at Jamf. Below, Ibreak down the main steps to get up and running with Jamf Pro Cloud, share key concepts,real-world workflows, and actionable tips.Table of Contents1. What is Jamf Pro Cloud?2. How to Implement Jamf Pro Cloud3. Core Concepts ExplainedPolicies Configuration Profiles Smart and Static Groups Extension Attributes Scripts App and Patch Management The Self Service Portal Inventory and Reporting Security and Compliance Integrations and Automation4. Example Workflows 5. Best Practices What is Jamf Pro Cloud?Jamf Pro Cloud is a fully cloud-based platform for managing Apple devices. Everything runsover the internet; you simply log in to a
Good afternoon everyone, I wanted to inquire about the new compliance within JAMF PRO. I see we can push CIS level 1, i did this with MS intune on windows devices and it was a nightmare to whitelist certain policies. Before I implemented those I wish I had a community to ask for things such as Autoadmin logon disable breaking autopilot. For the MacOS equivalent, are there any policies that inherently break functionality for Executives and Software Development teams with these policies or any functionality of JAMF and its enrollment or mangement?Any input or guidance would be amazing! thank you all for being a supportive and engaging community.
I have Mac Apps configured in Jamf Pro to keep applications updated including Jamf Connect. It shows the latest as 2.45.1 but 3.4 is on the download site. There is a different app called Jamf Connect Login.. Should I be using that or is there a reason to remain on 2.45 (No school apps)
Hello,I just passed my Jamf Pro Associate Exam (100) today, Oct. 20, 2025.I just want to know if I will be able to receive below items? and how? - Badge- Certificate- Receipt/Invoice- Digital BadgeThank you.
Hi everyone,I’m hoping someone here can shed some light on an issue that’s been giving me a real headache lately.I’m currently trying to deploy scripts via Jamf School to install Sophos Endpoint and Datto RMM on macOS devices. I’ve followed all the guidance I could find online (I’ll drop links below to the documentation I’ve been working from), but I’m running into some frustrating inconsistencies:Sophos Endpoint: The script appears to run without any errors, but the installation doesn’t seem to complete successfully. There’s no feedback or logs indicating what might be going wrong. Datto RMM: This one does throw an error, but it’s not very descriptive. I’ll include the exact error message below once I get a chance to pull it again.I’ve double-checked permissions, script formatting, and the way I’m pushing these out via Jamf School, but I’m still stuck. I’m starting to wonder:Has anyone successfully deployed either of these tools via Jamf School scripts? Is what I’m trying to do even p
Any one has a problem with the compliance status between jamf pro critera and entra id after upgrade OS to 26.0.1?What happend. After upgrade OS to 26.0.1 in jamf pro device doesnt showing “Storage” information likes doest see physically hard drive.Which is related to the lack of information about the encrypted disk, which is a condition for compliance.
No text available
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!