NOTE: This is a work in progress. Suggestions and commentary are ALWAYS welcome!
I'm sure most JAMF admins have had such directives before. But I won't be discussing everything here.
This thread's purpose is to discuss how I am adding my local IT admin account to FileVault without IT having physical access to the Mac.
REQUIREMENTS:
1. Create a local IT admin account during JAMF enrollment
2. Enforce FileVault Full Disk Encryption for all local accounts without IT intervention
SCRIPT REMOVED FOR THE OVERALL GOOD OF THE COMMUNITY.
Thanks to a keen observation by Rich Trouton (@rtrouton), I've had to eat some crow. At least it was still warm!
I'll re-post an updated script once I've resolved the issue (assuming I resolve the issue).
Sorry to be such a let down today! :-(
In the mean-time, there seems to be some good info here:
https://jamfnation.jamfsoftware.com/discussion.html?id=14738