Hello,
We are currently experiencing issues with our PreStage Enrolment where a user is not added to MDM Capable Users, hence VPP apps fail to install. Following is our setup:
Prestage Enrolment:
General
Account Settings
- A management account is created along with a local admin account
- Under Local User Account Type, "Skip Account Creation" is selected as we want to use Nomad Login+ just in time user creation
During DEP enrolment, Nomad Login+ package is pushed and installed on the computer and then using "files and processes", following command is run to kill the loginwindow so Nomad Login+ can take over
killall -HUP loginwindow
This helps us with creating local user accounts using Okta authentication but the user created is not added to MDM Capable Users.
https://www.jamf.com/jamf-nation/articles/372/enabling-mdm-for-local-user-accounts suggests that the first local user created during DEP enrolment is made MDM capable. Shouldn't the local admin account created by account settings be considered MDM capable? Or the first account created by Nomad Login+?
What does your setup look like? What can be done to mitigate this?
