Get Support
Recently active
Hello All, Can someone please guide me on this? I have two images one that I want to set as the wallpaper and the other as the lock screen. What are the possible ways to achieve this?
Whenever i try to change the Timezone via the device details page on the bottom it just changes for a second, loads, and then goes back to the old Timezone. This is only happening on a few iPads we have, the other ones are working just fine and they have the exact same profiles and are in the same device groups. The devices location is just as always in germany, but the time is US/Pacific. This is extremly annoying for our employes, because thats like a 9 hour difference between Timezones, so i would appreciate some help on that topic.
Trying to get an understanding of what some scripts do that were written by a previous Jamf admin. We have a device in our fleet that keeps racking up Pending management commands. The MacBook in question is up to date in terms of OS and software updates, but it never seems to process any management commands. I tried clearing them then sending a blank push, but that didn't do anything. A bit of online searching uncovered the recommendation to run the following command: sudo profiles renew -type enrollment I ran that on one of my test devices (actually ran it from Self Service because the script is a payload to a Policy) and am trying to understand what the script actually does, or how I can tell that it ran successfully. I can see in jamf.log where the script began to execute, but there's no other info in jamf.log or install.log. I checked the system logs by running the following Terminal command: log show --predicate 'process == "mdmclient"' --info That returned a ton of information, a
I'm seeing some strange behaviour with the login window on devices in one Jamf environment but not in another. All machines have the CIS L1 baseline and some additional lockdown restrictions on them. They should be asking for the username and password at the login window on startup and after a logout. This works fine for devices in one environment but in the other I get the user account(s) listed on startup and only the password is required. It works as expected if you log out though. I wondered if it was something relating to FileVault but, again, the configs between both Jamf environments should be the same. The only difference I can see is that one Mac is Intel (T2) and the other is M1. Here are some examples of what happens on the Mac that isn't working as expected:- Startup: After logout: Some of the settings applied:
I found another excellent script from Karthikeyan Marappan on his GitHub site for setting or clearing the recovery lock on a system. I took his script and put a nice GUI frontend on it. I believe this only works on Apple Silicon Macs at this time. Initial Welcome screen Succesfull clear message Successful set message No Device found JAMF Script parameters to pass GitHub Repo: https://github.com/ScottEKendall/JAMF-Pro-Scripts/tree/main/RecoveryLock
As someone who’s been part of the Apple admin community for a few years now, I’ve had the privilege of helping out the amazing team with MacAD.UK, both as an attendee and behind the scenes. In my day-to-day role as a Technical Lead for Workplace Solutions, I spend my time working with all aspects of our business with everything Apple and development, collaborating with fellow admins, sharing knowledge and supporting customers adopt Apple technology whenever I can. MacAD.UK is a community-driven, session-led Apple-focused conference, has been a staple in Brighton for eight years. Bringing together world-class speakers, leading exhibitors, and top technical professionals from around the globe. Whether you're an experienced admin or just starting your journey, MacAD.UK is where the community comes together to learn, collaborate, and push the boundaries of what’s possible. Why Attend MacAD.UK? First and foremost, the ducks! (Ok, maybe not the ducks. More on
I'm rolling out a 10.9 lab, and my workflow works fine.My machines deploy and configure as expected.Bind to AD works great.The AD bind has "force local home directory" and "Use UNC path..." enabled.I can log in with LDAP/AD users, and profiles/policies work fine.The users get a local home forced. They DON'T show up in the local user list or via a command like: "dscl . list /Users UniqueID"These sorts of users used to automatically show up in 10.7.Since this is my first wide installation of 10.9, I'm not sure where to look to diagnose - any help?
We are a school where every student has an ipad. we use apple classroom to control the use of ipads during lessons. however, it is enough for the student to disable bluetooth to no longer be viewable in apple classroom.Is it possible that on jamf there is no possibility to insert in the profile the possibility to always leave the bluetooth active? the lack of this feature is very limiting. is it expected in the next updates? I saw from the forum that it has been talked about since 2016
Hi All, I have configured the Gateway access followed by the linkhttps://learn.jamf.com/en-US/bundle/jamf-connect-documentation-current/page/Creating_a_Quick_Connect_Gateway.html Connection was established between Linux and Radar portal but when I try to access Subnets through ZTNA it is not accessible. I have configured the Access policy with direct IP and subnets as well but no luck. I'm able to access Direct IP address application but subnets hosted apps are not accessible, please let us know if anyone come across this issue. Thanks
Does the return to service app actually reinstall ipad os? The documentation uses words like "wipe" but isn't definitely clear on if the OS on a ipad is erased and installed clean.
Hey everyone - with Jamf Pro 11.13 we introduced the ability to manage your SSO authentication configuration in Jamf Account, and then re-use that configuration for managing access to Jamf Pro. Centralizing the authentication management for SSO in Jamf Account allows multiple Jamf applications and services to share in the same login process and eliminates the need for necessarily setting up IdP connection within each service. Using the settings for SSO from Jamf Account enables authentication through your organization's preferred identity provider, but for organizations without an IdP, the integration allows for Jamf ID to act as your means of authentication. Single Sign-On Options for Jamf Pro FAQ With the release of Jamf Pro 11.15, the first of several new services appeared: blueprints. The blueprints feature takes advantage of a new platform architecture that enables Jamf to update services in a way that isn't tied to Jamf Pro releases. Part of enabling these ne
is it possible to install rlm license for arnold for Maya 2024-25 similar to previous versions on mac?
I want to add a file to the Shared directory on users computer, would like use Jamf Pro to deploy this file to the directory, does anyone have any idea on how to action this process?
When using Jamf Remote Assist I'm sometimes seeing an error about being unable to save screenshots. I'm not taking any screenshots though. Any idea what is causing this? Could it be when certain (Microsoft?) apps are open?
The go-to, open source, “patch-nearly-every-macOS-app-I-didn’t-even-know-was-in-my-environment” now MDM-agnostic super-tool just turned three Introduction App Auto-Patch 3 integrates local application discovery, Installomator, and user-friendly swiftDialog prompts to automate application patch management for Mac computers. With version 3, automation has been elevated with the introduction of several new features, including an automated background agent, settings via a configuration profile and enhanced deferral options. The end-user experience can differ based on how you configure App Auto-Patch: Completely Silent Silent Discovery, Interactive Patching Full Interactive 17-minute Quick-start for Jamf Pro Configuration Profile While version 3 of App Auto-Patch is now MDM-agnostic, it still works great with Jamf Pro. The Jamf Pro-specific Script Parameters from previous versions have been replaced with an easy-to-use Configuration Profile, thanks to a robust custom schema. (If you’re u
Hello,we have been using jamf teacher for several years to block certain apps or functions during lessons to prevent distractions while working.There are now two problems that cannot be solved in this way:1. we also have a rule at our school that iPads are not to be used during breaks.2. many teachers find it too time-consuming (or simply forget) to activate the lessons they have created with the special permissions/restrictions at the start of lessons.hence the question of whether it is possible for me to severely restrict the iPads from the ground up and that the apps and functions required for a specific lesson have to be activated - in other words, exactly the opposite of the way it has been handled so far.if this is not possible, are there any other suggestions for how we can overcome the problems mentioned above?Thank you very much for your help!
No se pudo completar la operación. (ErrorDomain 203). El certificado de este servidor no es válido. El servidor al que intenta conectarse podría estar suplantando a "bag.itunes.apple.com", lo que podría poner en riesgo su información confidencial. No se pudo completar la operación. (ErrorDomainCFNetwork 203).
Hi, We have Netskope deployed in our environment which was running fine until a week ago. Whenever the installtion is run, a pop up appears saying Terminal need access to control installer. We have PPPC configured, where Netskope have access to system all files, accessibliity, and FileProviderPresence. Anyone have same issue or can lead to solutions. We have tried everything we could, but still unable to fix.
I'm seeing a few CIS L1 baseline failures for devices in Jamf Protect but when I check the devices on JAMF Pro, the extension attribute is showing no known failures. This seems to also be intermittent depending on macOS updates. Are there any known issues? I've attached some examples of what's failing below:
I have a package that only successfully installs when the logged on user runs it. Is there a way to deploy this via Self Service but not use the Jamf Binary account to install it? The other option could be to deploy the package to the user's desktop for them to manually run but I can't find a way to do that either.
I am trying to change the /etc/krb5.conf file. I have specific settings that I can't share... what I did was create a policy, under files and processes I put vi /etc/krb5.conf and the bash script I need run to change these settings. Did I do this right?
I'm trying to find a way to force a User Profile picture for all users via Jamf Pro. I have spent a day now reading posts about it and they all seem to assume that I already know what the User profile name is and that it is going to be the same on all computer or the scripts are not working/ erroring out or they say to set it up to be done before the user profile is created. none of these solutions work for my needs. I need to be able to force change the picture on all existing profiles with out already knowing what the profile name is.All the computers are running Monterey or newer.Is there anyway to do this?
Today we are releasing a new version of Jamf Pro; highlights include: New Restrictions and Skip Keys for Computers and Mobile Devices New settings include restrictions for Apple Intelligence reports, smart replies in Mail, summarization in Safari and Notes, and calling and messaging app modification. New Skip Keys in PreStage Enrollments include Software Update and Safety and Handling. For additional information on what's included in this release, review the release notes via the Jamf Learning Hub. Note: There will be no mass upgrades of Standard Cloud environments for this release. To access new versions of Jamf Pro, log into Jamf Account with your Jamf ID. The latest version is located in the Solutions section under Jamf Pro.
Hey All, This year Autodesk decided to change the installer for AutoCAD, Maya and Mudbox. Here's how I got AutoCAD to install silently since the new silent installer option is broken. You will want a policy to copy the app from the dmg to a temp directory. I used /tmp EDIT: You only want to change the license server address in the script below. Nothing else. #!/bin/sh year="2021" pkgpath="/tmp/Install Autodesk AutoCAD ${year} for Mac.app" pkgPath1="/tmp/Install Autodesk AutoCAD ${year} for Mac.app/Contents/Helper/ObjToInstall/lib.pkg" pkgPath2="/tmp/Install Autodesk AutoCAD ${year} for Mac.app/Contents/Helper/Packages/AdSSO/AdSSO-v2.pkg" pkgPath3="/tmp/Install Autodesk AutoCAD ${year} for Mac.app/Contents/Helper/Packages/Licensing/AdskLicensing-10.1.0.3194-mac-installer.pkg" pkgPath4="/tmp/Install Autodesk AutoCAD ${year} for Mac.app/Contents/Helper/ObjToInstall/licreg.pkg" pkgPath5="/tmp/Install Autodesk AutoCAD
On Saturday, April 5, 2025, Jamf Cloud Infrastructure will be patched. During this time, you will be logged out of your Jamf Pro instance. The purpose of patching is to ensure that Jamf Cloud infrastructure and the database service are up-to-date, stable, and safe from security threats. Please see the times for our regions below. Hosted Data Region Date Start Time End Time us-gov-west-1 April 5 0800 CT 1200 CT
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!