Filevault & Jamf management account - revisiting

Taylor_Armstron
Valued Contributor

Haven't looked at this in a while, but setting up a new test machine and realizing I'm a bit out of the loop.

10.13 and 10.14 environment. (a few 10.12 stragglers, but we'll focus on 10.13 and above).

I have config profiles setting escrow of the FV keys, etc. to Jamf, all works as expected.

The one big wrinkle: I want my Jamf management account (we'll call it "jamfmgt" for now) to be enabled, BUT... that account uses a random PW unique to each machine. I don't know it. Every method I've seen thus far to add the "jamfmgt" account to FileVault seems to require me to enter the key... it is a randomly generated, 20+ character PW set at enrollment.

Am I out of luck?

0 REPLIES 0