Jamf Connect - Intune MDM - Entra IDP

ShaunLB84
New Contributor

Is anyone using the following?

Jamf Connect, Company portal to register devices into Intune, and using Microsoft Entra for the IDP.

Using this method can you have devices binded to Local AD?

Trying to find the best method to keep Mac user accounts and Entra ID credentials synced. 

1 REPLY 1

AJPinto
Honored Contributor III

Looks like a mess.

  1. Jamf Connect can keep passwords synced between Entra and the Mac, it checks every 60 minutes, but you can change this (I recommend against it though). If the password on the Mac does not match the IDP, Jamf Connect will nag the user to sync them.
    1. PSSO does something similar.
  2. Have you tried PSSO? It's supposed to go to GA this month with Microsoft, since you are already using Intune and Entra you may have the license for PSSO and using that would take some steps out of things.
  3. Friends don't let friends bind Macs, Apple moved away from domain binding back in 2012 and its generally a very bad practice to bind macOS.
    1. If you have solutions that rely on this behavior, review the solutions as they are likely very outdated