Get Support
Recently active
In any organisation some of the applications are licensed and which need to be scoped to individual machine or through static group collection.But when we check the JAMF App Catalog which are limited to scope “Smart Computer Groups” only.Could you please enhance this JAMF App catalog scope feature to the individual machines or static group.Thanks.
My team has been tasked with changing some settings for Safari and Chrome. We have to have the homepage set and then a second tab that's blank. We are able to successfully push these changes with a config profile, but of course this locks down the settings. Has anyone had any experience with pushing settings like this and the user still being able to change the settings back if they want? I tried scripting the changes and pushing to me device, but neither browser seems to care about the changes. Any advice would be much appreciated. Thank you
Hey Mac Admins, I wanted to share a custom Jamf Extension Attribute I wrote to help detect the current IPv6 configuration state for whichever network interface is actively routing traffic — including when a VPN tunnel is in use. This script: Detects the active interface via route get default Handles VPN tunnel interfaces (utunX) by falling back to the actual enX interface from netstat -rn Reports the hardware type (AirPort for Wi-Fi, Ethernet otherwise) Categorizes the IPv6 mode as Automatic, Link-Local Only, or OffExample Result: <result>Ethernet - Automatic</result> Category Group Name Network IPv6 Automatic – Ethernet Devices Network IPv6 Automatic – Wi-Fi Devices Network IPv6 Link-Local – Ethernet Devices Network IPv6 Link-Local – Wi-Fi Devices Network IPv6 Disabled – Ethernet Devices Network IPv6 Disabled – Wi-Fi Devices Network IPv6 Status Unknown – Needs Review Extension Attribute Script: #!/bin/bash #######################
I have been able to determine if the application is enabled and running, just have not been able to create a script or guidance to help the user turn it back on without generating support tickets. I have seen this type of guidance demonstrated with a Jamf lead learning presentation.So what I want to do is create an alert that will guide a user to a self service help script that will either direct a user to or allow them to click a button to enable Jamf Private Access when it gets disabled. Anyone have any Ideas? I have not been fruitful in my search of information as of yet to be able to run JamfPrivateAccess using CLI or create the assistive guidance necessary.
Hi,This is a bit of a strange issue; so I thought I'd see if it was one anyone else has seen, and had a resolution for.We have a configuration profile to apply our wi-fi settings. The wi-fi has a hidden SSID and is using WPA2 Enterprise, certificate based security. The profile works fine. It applies, and computers can join the wi-fi; however, every now and again the mac will stop joining the wi-fi. The profile is still applied. When I check the advanced wi-fi settings I can see that it still has all the settings present. It just will not join the wi-fi.The only thing I can find that makes it join the wi-fi again is to remove the configuration profile, and then re-add it; however that is awkward as the devices are rarely connected to ethernet in order to re-apply the profile.Hopefully someone has seen this behaviour before, and knows what the fix is?Thanks,
Just as an FYI - Slickdeals has Macworld today only for $7 / yr (up to 2 years). http://slickdeals.net/permadeal/95416/discountmags-macworld-magazine
Hello, We're looking to import Cyber Threat Intelligence a feed into Jamf Protect. Something like STIX2.1 or a GraphQL API similar to here .The idea is to enrich Jamf Protect endpoint protection and integrate IoC's from external feeds.Is there already a solution? Is this on the roadmap?
Has anyone noticed that the latest version of Jamf Connect, version 2.45, now shows up at the very bottom of the screen as opposed to centered on the screen? Is this the norm now?
My employer has a yearly daycare program where parents pay to drop there kids off at one of our campuses and then the kids can take various fun classes. This year one of the classes features the plane flight slim. I was looking at that and the installer for it is a custom .app, that asks whether you want the demo, or full version with a license key, and then it downloads about 80GBs. For some reason it won't let you install the app in /Applications/ saying it will cause 'problems', it defaults to ~. However you can change it to /Users/Shared, which is what i will do. By default xplane stores its activation in ~/X-Plane 12/Output/preferences/, i don't know if that could be moved to the equal computer level locale. Does anyone have any experience with deploying this app via jamf pro and SSO via Jamf Connect? Contact the vendor for multi seat advice? Build a massive composer package and pray? thanks for the advice
Hi, I work in an education space (with Mac labs and the like) - we have 800+ Macs. Our current process for keeping macOS up-to-date is to copy an entire mac installer to each mac, then use a policy to trigger this installer. I find this a little exessive for applying minor updates. I'm wondering how else people keep their Mac fleets up-to-date. I've looked at Jamf Managed Software Updates but it seems quite manual, and also hit-and-miss.
We run n-2 for our cloud instance, and we just upgraded to 11.14.1 this past weekend. Now I'm noticing when I command+click the PreStage Enrollment in a computer record to open it in a new tab (Chrome and Safari), I'm presented with a page that says "Automated Device Enrollment not configured". I can manually navigate to the PreStages fine and if I do a regular click on the PreStage in the computer record it opens fine, it's only when opening it in a new tab that I get the message. I had gotten in to the habit of using a new tab because I noticed clicking back after looking at the PreStage just reloads the PreStage page instead of bringing me back to the computer record for some reason. I also just noticed if you simply refresh the PreStage tab (say you want to see if a machine is assigned or not yet), or even click in the URL bar and hit return, you get the error message again. It's like it has to see that you clicked the link from a computer record for some reason.
Hi All, Does anyone have SnagIT Deployment Tool plist for Jamf Pro? Thanks Advance
Hey all, Just wanted to bring this up — generally, our Chrome settings configured via a configuration profile are working as expected. However, we now have a requirement to allow users to change their homepage, which isn't possible with the current enforced config profile setup. I've tested a few different methods, including manipulating Chrome’s ExternalPolicyDefaults.json, but haven’t had success getting the homepage to remain changeable by the user. The only method that partly worked was using an XML-based configuration like the one below. This does set the homepage and opens a second empty tab, but unfortunately, it still locks the settings, preventing user modifications: <?xml version="1.0" encoding="UTF-8"?><!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "http://www.apple.com/DTDs/PropertyList-1.0.dtd"><plist version="1.0"><dict><!-- Set Chrome to open specific URLs at launch --><key>RestoreOnStartup</key><integer>4</
We are deploying ClickShare to all of our conference rooms and have run into an interesting deal. Naturally, when the program starts from the puck, after plugging it in to the Mac, it needs to be allowed to record the screen. For installed programs, I would just do a PPPC configuration policy. But I can't get it working for this. I have tried to get the Team Id, and it responds that the Clickshare. App on the puck is not a valid program. I tried using Path (Which I have not used before), and that doesn't do the trick either. I used the IDs on Barco support site, but that is for the installable app, and doesn't work for the puck app. Has anyone come across this? Thanks Dave
We've just bought some new M1 Macs and when we installed 12.1 on them, they all have this Airplay Receiver turned on and want to view each other's screen. In a classroom, we definitely do not want this. Any idea how to turn this off? I can't seem to find the plist that looks after this.
HelloFor those of you using super as any comes across this issue.We currently rolling out MacOS 15 to our Mac estate I have seen this message in the logs it doesnt seem to be all machines just some. Sun Apr 27 06:44:10 M-5ce91eb4f537 super[94775]: Disallowed: The following "over-the-air" macOS major upgrades are available but not allowed:Sun Apr 27 06:44:10 M-5ce91eb4f537 super[94775]: Disallowed: macOS major upgrade 1 of 1 is: Title:macOS Sequoia 15.4.1,Build:24E263,Version:15.4.1 Depsite my config profile having the write settings for major upgrades <key>InstallMacOSMajorUpgrades</key> <true/> <key>InstallMacOSMajorVersionTarget</key> <string>15</string> The profile seems to be working on 100 of machines just some seem to be having issues. In some cases it seems to resolve itself.Any idea?
This is your friendly reminder that there are just THREE days left to apply to be a Jamf Hero! Jamf Heroes Offers: Access: Heroes get more access to Jamfs across the organization. Recognition: You win when people know who you are. We’ll help you develop your personal brand as a way to showcase your knowledge in the industry. Fun: Jamf Heroes provides a solid dose of fun, which not only fuels the soul, but also helps facilitate friendships within the program. And more: We’re also big believers in creating moments that matter. So be ready for a surprise or two! Any current Jamf customer is eligible to apply (through this Friday, May 2)! Learn more here! APPLY HERE!
Hello everyone.In the new JAMF SYNC I have a significant amount of packages that appear with a blank circle and do not perform the download to synchronize.According to the JAMF SYNC documentation, this status means: The package is in Jamf Pro's package list, but does not exist on the source.But it doesn't explain how to fix it :(. I am doing the synchronization from JCDS to Local.
Hey Jamf Nation! After a successful private beta period, we're excited to announce that Jamf's AI Assistant is now available globally for you to try out. Here's everything you need to know about getting started with our new AI-powered knowledge assistant. What is the AI Assistant? Jamf's AI Assistant is your instant knowledge companion for all things Jamf and Apple device management. Using advanced AI technology, it provides immediate, accurate responses by drawing from our comprehensive knowledge base, including product documentation, Learning Hub articles, support knowledge, and curated Jamf Nation content. How to Enable Access 1. Organization admins with a company role of 'Decision Maker' or 'Primary Technical' (viewable in Organization > Team Members): Head to Jamf Account and look for the new AI Assistant subsection within the Organization area2. Review and accept the terms and conditions3. Once enabled, all users in your organization will see
I know there's a number of discussion on it but haven't quite found the correct one. I'm trying to have a policy that will call a script to change computer name based upon users first letter and last name. Here's the workflow: -User will enroll via DEP. Enter in John Smith-DEP will look for SplashBuddy (SB) to run.-SB will do it's thing and will trigger all install packages.-one of the policies to kick off is to take the information set for the User name and change computer name to jsmith-mbp on the local macbook. Any help would be appreciated. Thank you
Hey Jamf Nation, I'm at a loss here. I have multiple endpoints that are prompting for recovery keys out of the blue. The only things that have changed recently in our environment are the recent security patch for macOS (that messed with the keychain and Okta Device Trust), as well as a Google Chrome forced patch via patch management (this is less likely the cause, but you never know). Has anyone else experienced this very recently?
Hi, Hello there, how do I remove da app called Jamf Connect I would like to remove it since there are some issues with my laptop, and I need some help Thank you for taking your time to help me with it. :)
We have enrolled devices with XYZ.com, and the domain is federated in Apple Business Essentials. Currently, we are in the process of migrating our domain from XYZ.com to ABC.com. ABC.com is also federated in the same Apple Business Essentials. We are trying to switch the domain of the account to the new one, but both domains are federated, and the option to edit the account domain is greyed out. When I add the same user account from 2nd domain to the scope of Apple Business Essentials, I encounter an account ID conflict during synchronization. Need Suggestions
Hey guys, I am looking to get a smart group set up to notify me when Macs age out after 4 years for upgrades. I am doing this right now using the model and specifying the year they were made, but that just means every year I need to add a new field. Is there an easier way to do this?
The Administrator account created in the PreStage Enrollment does not have the ability to unlock the disk via FileVault after the password is rotated via Jamf Pro LAPS, and this is causing issues for our techs. If they log in to the system, perform some operations, and then return to the computer later, they find they are not able to log in as Administrator at the FileVault Login screen. However if we create an additional administrator account i.e. ‘jamfadmin’, and manually enable it for FileVault, that password is viewable in the Jamf Pro web UI and rotated regularly/after viewing. Because Administrator is the first account created and the one with the initial Secure Token, we need that one to be always and easily accessible. We are a long way off zero-touch due to ageing infrastructure that will hopefully be replaced in the coming years, but in the meantime we require the ability to have our techs log in with an administrator level account at the FileVault login screen, and be able t
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!