Get Support
Recently active
Has anyone had any success getting Parallels to use PXE boot so we can use an SCCM image?
Hello all,I created this script to get around the not-so-great Safelist and Blocklist profile payload for macOS in Jamf School. This still isn't a great solution, which is why we plan to lock devices down more next school year, but may be found useful for anyone wanting to remove apps remotely. If I had a github account, I probably would have posted it there, but for now I'll walk through it here. I welcome any feedback and advice on how I can improve the script.Credit to grahampugh for the process killing function from his Remove Application.sh that I tweaked for this.Please note: Jamf School is not required to use this script. The implementation will be different, but the script itself can easily be used elsewhere on macOS devices.ScriptWhat the script does is look for the app matching the provided bundle ID. If there is a match, it quits/kills any running processes and deletes the app. Apps outside of the Application folder will still be detected. While doing all of this, it reports
Hello All, I just want to know if anyone uses this integration currently and what are the benefits to integrating data dog with Jamf Pro.
Today we are releasing a maintenance version of Jamf Connect. Jamf Connect 2.45.1 addresses the following product issue: [PI134272] Jamf Connect login window configurations with Okta Classic Engine as the identity provider no longer display the authentication web view as a blank window, preventing new user accounts from logging into their computers. To access new versions of Jamf Connect, log in to Jamf Account with your Jamf ID. The latest version is located in the Solutions section under Jamf Connect. Product Documentation For additional information on what's included in this release, review the release notes via the Jamf Learning Hub.
Hello,I like to request a feature. We use a specific network profile. On a device the Wi-Fi is always on and can't be turned off. At our school a time based restriction profile is installed with a whitelist of apps which are acessable during time in school. After school this profile isn't active anymore so a user can use the iPad for private purposes. We use private apple IDs because the iPad is owned by the pupil not by the school.The problem is that some smart pupils turn off auto-join of our via profile installed network. So they arent visible on classroom and also do not receive the restrictio profile.A solution could be a setting in jamf for the network, that auto-join can't be turned off.Thanks
We continuously strive to enhance our products and features, and your insights are invaluable to this process. We're conducting a survey to better understand how reporting in Jamf Protect's Compliance Baseline feature serves your organization's needs. Your feedback is essential in ensuring we effectively meet your compliance auditing needs. And who better to provide feedback than the geniuses who use it? If you use the Jamf Protect Compliance Baseline feature, no matter how frequently, we would greatly appreciate your input on how we can improve. This brief survey (approximately 3–5 minutes) will play a crucial role in shaping our next steps. Complete the quick survey HERE! Thank you for your time and support!
Has anyone gotten a script or custom pkg to deploy Carbonite Pro?
I would like to see if there is a way to require a IT Staff user to sign in before DEP will proceed. I was thinking of using the Enrollment Customization to do this, but this will assign the user to the device. I would rather not have all our devices assigned to me. Anyone else tried something similar? Any ideas?
Our Jamf Pro instance features an astounding 69 Catagories in Settings/Global. Personally I'd like to reduce this down to a maximum of 10. I'm wondering how others approach organisation of their Jamf Pro and Self Service... in particular, those who work in an education space.
I have been testing the Jamf app catalog.I have a prestage that seems to be working for the initial deploy.What I need is the ability to delete an app and have it redeploy on next check in.Outlook constantly becomes corrupt and needs to be removed and re-installed.Previously I used a script that allowed the EU to remove and re-install the app through Self Service.Is it possible to re-trigger the Jamf app catalog deployment beyond the initial install?
Is there any way is there to make a cert set as Always Trust in system keychain through JAMF? I have few devices where Zscaler cert is not set as Always Trust when the device got the certificate from Zscaler.
We have a sprinkling of this problem across our fleet. If a user taps "no" to the notifications dialog box on first open of Self Service they then get the error."Error loading content. For more informations,contact your administrator." If we turn on notifications in Settings for Self Service then we see the Self Service populate normally with apps Any suggestions for how to avoid this? More data points that may be irrelevant - this example iPad was enrolled using Return to Service, it's running iOS 17.6
Hey guys, I have no idea how to get out of this one. Any help is greatly appreciated. I support a High School and a University. The High School started using Jamf a few years ago. This year the University decided to finally get a MDM. They decided to use the High School Instance so I created Sites. This busted my Configuration Profiles. We use a Enterprise WIFI similar to eduroam. When I moved the lab computers to the site it lost the WIFI. I can't connect a Ethernet to USB-C connector because they are running Sonoma and you need to Allow to use Accessories. I can't login, more on that... In addition when I did a erase/install with the laptops last summer Jamf broke my Lab Admin account. It was working at first but then stopped. I created a case with them but they were unable to give me any answers. I thought it was LAPS but I never turned it on and confirmed it is not on. The recommended solution they gave me would be to wipe and re-enroll the computer (and delete the inventory record
I am about to deploy Jamf Connect to my org, with Okta as our IdP. We are replacing JumpCloud as our previous LDAP and IdP. With Jumpcloud when users reset their password using the Jumpcloud desktop app, Users would set their new password in the desktop app, and that new password was automatically and instantly working as their local password. The user was NOT prompted to sync their cloud/network password to their local password a an extra step. With Jamf Connect however, after changing their Okta password using the Jamf Connect desktop app/menu bar, users are prompted to log back into the Jamf Connect menu bar app, then have another pop-up saying that their local password (old network password) and network password (new network password just set) are out of sync, and are asked to provide their local password (old network password) to sync them. Is there any way for Jamf Connect to automatically sync network and local password when the new network passw
Hello everyone, We are currently facing an issue with Jamf Connect where some users keep receiving the notification: "Registration required - Register with your Microsoft Entra password on your Mac." Our Setup: Jamf Connect installed manually on affected devices Devices manually registered in Company Portal MacOS 15.3.1 Latest version of Jamf Connect & Company Portal Devices appear as compliant in MS Entra Devices in Jamf Managed &Supervised uniqueIdentifier" : "97BD-IUHGLD-LIUGHW7G-.....ETC." FileVault 2 Partition Encryption State:Encrypted Troubleshooting Steps Taken: Verified compliance status in MS Entra Deleted the device from MS Entra and re-registered Cleared keychain entry: /Users/testuser/Library/Keychains/65649DB6-A89B14CE16E0E Ran a script to reset Entra registration, which: Quits Company Portal Deletes related preference files and saved states Removes keychain entries and identity preferences Deletes the MS-ORGANIZATION-ACCESS certificate Reinstalls
Hello All, I am very new to Jamf Pro and Im trying to teach my self how to build packages and deploy them in our test environment. I am having a problem with an app downloading to my Macbook using Jamf Pro I have built the package and it shows up in Self Service. But when I download it, it said Installed but it does not show installed on the MacBook. I checked the policy logs and it show it starts to install the app but then it closes the packages. I have included the steps from the log [STEP 1 of 4] Executing Policy Steam [STEP 2 of 4] Downloading https://diamond.jamfcloud.com/jcds/downloads/steam.dmg... Verifying DMG... Verifying package integrity... Installing Steam... Closing package...
Hello, We are selling our old Macbooks and I have a dilemma. We just got out ISO 27001 cert last year and to keep it we would need to securely wipe and have a record of said wipe before we sell the macbooks. My question is remote "wipe computer" command going to completely wipe the device and make the data unrecoverable (making it ISO 27001 complaint) and is Jamf pro keeping a record of these wipes somewhere where I can get back to them in case of an audit? Thank you
Hello, We have been doing different things for different packages. But what is the best way to superseed a policy/package? As in if a software releases a new version and you want to update the version you are using right now to the newer version. Mostly we have been creating a new package and policy, and then deleted the old package and policy.
How do you all keep your Mac Clients on the latest MacOS Version? Is there a way to force an Upgrade? Because the "new" Software Updates Option doesnt do anything for us. When we try to trigger updates on the Clients nothing happens.
Does anyone have an extension attribute that will return the version of Jamf Connect a Mac is running? Our 'Patch Management' tells me we've got various out-dated versions floating around in our environment and I want to gather all of these into an Advanced Search or Policy so I can take action.
I have looked through the policies that are able to be created in JAMF and can't find anything related to what I am trying to do. We have iMacs in classrooms connected to a projector and the iMac is defaulting to extend and would like for the default to be duplicate. Any suggestions?
Hello,I just updated JAMF Connect 2.45.Unfortunately, it's in English and doesn't seem to recognize the laptop's region. Is there a setting to force it to French?
If Jamf Admin is being discontinued, How do we index a package without it for an uninstall?
OK, so I have a smart group that shows Macs that are on Mavericks but have not upgraded to 10.9.4 yet, and I have the Apple 10.9.4 combo updater in Casper Admin, and I have a policy that installs the 10.9.4 combo updater, scoped to the smart group that shows Macs that need the upgrade. This part I love, it's fantastic. The problem is that on an inordinately large number of attempts, the install fails, and the error every time is that the package could not be verified. But more than half the time it works with no verification error. This is an Apple updater, it's checksummed, there should be no verification issue here. So what's up, Doc ? Actual message from the log: Verifying package integrity... Installation failed. The package could not be verified. So why would it work on most machines, but fail on a lot of them? Will I need to disable verification to get it to work consistently? Is there some underlying issue I'm not aware of? Thanks for input.
Today we are releasing Jamf Pro 11.15; highlights include: Declaration Configurations with BlueprintsBlueprints simplify the creation of complex workflows by leveraging declarative device management to ensure devices meet a particular management state. You can use blueprints to scope management settings to devices using customizable components that include payloads and their configurable settings, all in one location. Using declarative device management enables devices to proactively and autonomously apply the scoped management settings and report state changes to the MDM server asynchronously, streamlining the device management workflow.SSO Prerequisite: Blueprints requires that OIDC-based single sign-on (SSO) authentication be set up and managed in Jamf Account. For more information, see Single Sign-On (SSO). Apple Intelligence Restrictions for Computers and Mobile DevicesNew settings include restrictions for external intelligence workspace IDs and Notes transcription summary. &n
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!