Posted on 11-05-2020 01:07 AM
We use pre-stage enrolment and require authentication via LDAP before enrolment process. I'd like to skip the user creation process, and take the credentials supplier during the require authentication step to create the local account - i.e the account is created with the same username and password in AD.
Is this possible?
I've looked at the skip user account creation workflows but haven't found anything that works in the way I need.
Posted on 11-07-2020 07:25 PM
I think this what JAMF connect and nomad login do.
I was trying to do the same but you need those tools.
Posted on 11-07-2020 10:37 PM
@pchrichard If you don't create an account in your PreStage Enrollment then you should be prompted by the Setup Assistant to create an account on the Account Setup screen, and if you're requiring LDAP authentication then the credentials used for that should be pre-filled. At least that's how it used to work (I haven't used that workflow since Mojave)
Posted on 11-09-2020 01:39 AM
At least that's how it used to work (I haven't used that workflow since Mojave)
Yes that is what happens, but those pre-filled credentials (username/password) are often modified by end-users afterwards and I'd just like the whole thing skipped. I'd also like to control account name as well.
We use NoMad to sync the passwords afterwards.
Posted on 11-09-2020 07:12 AM
@pchrichard – You can set this up in "PreStage Enrollment" > "Account Settings" > "Pre-fill primary account information
" > "Lock primary account information".