Get Support
Recently active
I installed an App from self service. However, after installation, self service now only gives me the button to "Reinstall". There is not a "Uninstall" button for this App. How do I uninstall it ?
I'm trying to apply proxy settings to Macs for use only when they are in the office, connected to corporate Ethernet or WiFi, but I don't want these proxy settings to be applied when the user is at home or anywhere that isn't the office. Is there a way that this can be done?
Some of our primary school students have just used the Jamf Student app to update all the apps on their iPads. The Jamf Student app updated, but now it's asking the students to log into the Student app with a .jamcloud.com account. Our students are 10 years old and do not have any online accounts, how do they now use the Jamf Student app if they aren't allowed a .jamfcloud.com account?
Been having a lot of problems with Filevault over the years. Now I’ve just discovered that you can no longer use the Filevault recovery keys in macOS 15.5. Instead, you are expected to boot to recovery, which is more of a pain. This removal is insane. Like many we use the stored key from Jamf to unlock devices in the event of account passwords not working. Now we have to use Recovery mode. I’d love to know Apple’s reasoning for this. Anyone else aware of this and have any comment?
Hi there, Has anyone managed to successfully get the Jamf Pro Custom API action call card working in Okta?I get a 401 Unauthorized error even though the bearer token is brand new and passed directly to the auth field of the custom API action card. I even tried with API endpoint reference curl command and compared an invalid bearer token to a valid freshly generated one: curl --request POST \ --url https://sandbox.jamfcloud.com/api/v1/ddm/18/sync \ --header 'accept: application/json' \ --header 'authorization: Bearer invalid_token'{ "httpStatus" : 401, "errors" : [ { "code" : "INVALID_TOKEN", "description" : "Unauthorized", "id" : "0", "field" : null } ]}% curl --request POST \ --url https://sandbox.jamfcloud.com/api/v1/ddm/24/sync \ --header 'accept: application/json' \ --header 'authorization: Bearer working_token'{ "htt
Since moving to JAMF Cloud, we’ve noticed that some time appears to be off. For example, I ran an Inventory Update manually on a computer, and the record in JAMF console shows that it was run 1 hour earlier than it actually was.Also, with Apple TVs we have records that say that the Inventory Update occurred up to an hour in the future.I’m not sure that this is causing an actual problem yet, but concerned that it could. Are there time zone settings we should see or anything? All of our client devices are in the same time zone (unless a client goes on a temproary trip or something).
I blocked the extension installation on chrome, with that un approved extension are blcoked but now I want to remove the un approved extension which is installed previously. Is there any way to removed it?I tried to remove the extension ID with script but in Chrome browser it shows corrupted not removing completely.
Hello, I need to create a script to simply turn on the Teamviewer in Security & Privacy > Screen recording. Right now it's a manual process and we're trying to deploy Teamviewer host via Jamf. However the configuration policy that comes with Teamviewer host does not allow us to allow screen sharing. It gives the user the option to allow screen sharing and since we don't want the user to interact with anything, I'm looking for a script that can turn on Teamviewer in Screen recording in Security & privacy:
Does the JIM use Apache Tomcat at all?
Hello all,I created a PPPC config profile to grant OneDrive full disk access. Jamf Pro says the config profile is successfully installed on my test Mac, but when I check Privacy & Security → Full Disk Access it shows that OneDrive does not have full disk access. Is it normal for this change not to reflect in settings or am I missing something/doing something wrong? For clarification I have made the config profile directly in Jamf Pro and using the Jamf PPPC utility and uploading the config profile into Jamf Pro afterwards. Thanks!
New 270 class for those interested ... Jamf 270 CourseJamf Certified Tech - Jamf Protect The Jamf 270 Course offers a core understanding of endpoint and network security for Mac and mobile devices with Jamf Pro and Jamf Protect. Our hands-on, scenario and example-based course environment is the optimal way to begin learning how to secure devices with Jamf.https://account.jamf.com/training-courses/jamf-270-course/available
Hello communityI'm looking for a solution to only allow self-service application installation, even for local admin accounts.I tried blocking the installation process, but unfortunately this also blocks self-service installations.
A practical and user-friendly approach to surfacing Mac health information directly to end-users via Jamf Pro Self Service Mac Health Check (2.0.0)Overview Mac Health Check provides a practical and user-friendly approach to surfacing Mac health information directly to end-users via Jamf Pro Self Service.Built using the open-source utility swiftDialog, the solution acts as a “heads-up display” presenting real-time system health and policy compliance status in a clear and interactive format.Administrators can customize the user interface using swiftDialog’s visual capabilities, making the experience both informative and approachable.The tool logs results for IT review, while not altering device configuration, making it ideal for visibility without intrusion.Continue reading …
I created this small application to make it easier to retrieve the Bundle ID of a macOS app.Simply drag a .app file onto its icon in the Dock to display the app’s unique identifier and easily copy it to the clipboard.The link below includes both the AppleScript source code and the compiled, ready-to-use application.https://www.dropbox.com/scl/fi/74iqhkbs7cd7nfhi0fsn9/Bundle-ID-Droplet.7z?rlkey=a2kldrolexvix16z6hluvjpar&st=n999z5tv&dl=0Hopefully, this can help someone.
We’ve been getting a lot of feedback that you need to see the compliance status of specific computers to take corrective actions - so here it finally is!Available now in all Jamf Pro 11.18 and newer instances, you are now able to click on each rule of your benchmark to get a list of computers in scope, with their compliance status against this rule, and a link to computer inventory for further investigations.Let us know what you think of this and how it helps you in your workflows. Availability of the data via APIs and exports is the next on our list, so stay tuned!
Hi all,I try to create a user level configuration profile for ethernet (for 802.1x LAN authentication).So basically, the same we already use for WiFi.We currently use a computer lvl profile, which works without issues. But have to change it to user lvl because of the strong auth change Microsoft enforces soon.The settings should work but as soon as I click on save, the network payload vanishes. Without an error or any explanation… As said before, the WiFi profile (also user lvl) works like a charm.Any tips on why this might happen?BR Thomas
A lot of machines recently asked for the update of Slack helper tool.Is there a way to stop it from happening?Thank you!
We’re deploying the CIS L1 baseline to Macs which are using the new Platform SSO with Entra. What’s the best practice in terms of password policy within the CIS baseline? Should we exclude these policies or does using PSSO override them anyway? I don’t want to end up on a situation where the baseline password policies are more restrictive than the company password policy from Entra and have that causing issues with password syncing.
What is the best way to export Management History and the "Inventory Update" log, given that we do not have JAMF Protect yet Instead of having to open each iPad entry and review its log individually, is there a way to export that data?
Hi everyone,I have a user who's been consistently unable to connect to American Airlines inflight Wi-Fi. The device behaves as if there's no internet connection at all—it doesn’t redirect to the login portal, and nothing loads. What’s strange is that this issue only occurs with American Airlines; the user has no problems connecting on other airlines' Wi-Fi networks.What I’ve Tried So Far: Excluded the user from the Jamf Radar profile: This has resolved similar inflight Wi-Fi issues in the past, but it didn’t help in this case.( Once I fixed it I would add it back) Confirmed there are no VPNs or DNS filtering tools active at the time of connection. Had the user try multiple browsers (Safari, Chrome) – no success. Attempted manual navigation to common captive portal triggers like: Captive.apple.com Wi-Fi does show as connected, but again, there’s no redirect and no actual connectivity. Questions: Has anyone else seen this specific to American Airlines Wi-Fi? Are there any other
Hi All. I’ve tried searching but haven’t found any hits based on the search queries I’ve given, so i’ll try posting instead. I’ve been tasked with writing a script that can be run from a Jamf Self Service action to add users to a specific Azure AD group. My script should work, but seems to be failing. I’m getting a repeated error HTTP Error 411. The request must be chunked or have a content length. even when passing a flag to chunk it. I’m not great at API, and Azure API is new to me. Anyone out there have experience with that? I can share my script, but wanted to make sure I’m not trying to do the impossible first.#!/bin/sh # Add a user to an Azure AD group.sh # # # Created by Ed on 2/28/23. # ## Read the KerberosSSO plist to get shortname of signed in user plistLoc="/Users/Shared/.KerberosSSO/" plistName="com.apple.KerberosSSO.attributes.plist" valueName="user_name" foundItem=$(defaults read ${plistLoc}${plistName} ${valueName} | /usr/bin/aw
Hello,We have two instances of JAMF, School and Pro. The organization I am working for has attempted to move from School to Pro by reassigning all devices from the School MDM to the Pro MDM in ASM and slowly wiping them.The issue that I am coming to face is that the licenses were left assigned to these phantom iPads still in School, and from what I can tell I won’t be able to revoke any of them because they aren’t going to check in. Has anyone else had experience with this or know what would be the best course of action?I have refrained from revoking the VPP token, I am not sure that would do much. Ideally I would be able to move all license to the new JAMF Pro location in ASM.Thanks
Hi everyone,I’m exploring whether it's possible to allow only certain Bluetooth services—for example, allow HID (keyboard/mouse) and A2DP (audio), but block OBEX (file transfer).On Windows, we can achieve this via Intune using Bluetooth service GUID filtering, but I couldn’t find an equivalent method for macOS.Does macOS support this:Restricting or filtering Bluetooth services/profiles individually? Controlling OBEX, SPP, A2DP, HSP, or HID over Bluetooth? Any workaround using scripts, profiles, or TCC/PPPC configurations?If anyone has done this or can confirm that it's not possible, I’d really appreciate your input or any official Apple documentation to back it up.Thanks in advance!
Does anyone need App Config settings for the following mobile apps?CyraCom Interpreter Axon Device Manager Workday Mobile Heartbeat (MHB)If so, please let me know. If anyone has an App Config for “TrayinMotion Plus 6.1”, that would be extremely helpful.--Jack
Hello Everyone, We are setting up jamf pro in our org and are going to be managing iOS devices. We are going to be using Cisco anyconnect for our vpn. We have a configuration profile sending the vpn configuration and the certs. The user certs have made it through ise successfully and the app is getting the vpn settings. The issue is every time we go to connect we get the “connecting…” spin until it times out or sometimes we would get the azure sso window and it would just close. Are we missing a configuration somewhere? Thanks for any help
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!