Greetings:
I am in a bit of a rut in terms of getting a successful true "Zero Touch" to work in my work environment. We are a pretty heavy corporation, so we have to have Domain accounts logging onto the machine for my end users. One of the things that we were supposed to get working early on was a Zero touch solution for people at our remote offices. I have hodge-podged a "Kinda" zero touch. The workflow is as follows:
Machine enrolls in DEP
Receives configuration
Configuration has a local account that gets installed on top of the JSSAdmin account.
(That is a necessity as we cannot have local accounts due to company policy.)
The client signs into Self Service and runs a policy that basically runs a jamf policy -trigger TRIGGER that kicks off a set of policies to install things that the machines need to become "Domain Ready"
1. Simple script that asks the client for Asset Tag information, and deduces the machine type to derive the machine name. EX: MacBook pro would be LM1234.
2.Install Agent for BMC Footprints
3. Install Security Software
4. Installs Centrify and Joins to domain.
etc, etc.
Reboot
Client can sign in.
One of my colleagues was working on this, he wanted to know what we could do to make it truly automagically happen, whether we could have the local account automatically sign in and then launch the program with minimal interaction.
I haven't taken my CCE yet, so I am completely in the dark with what the JAMFHelper command can do for me, and I have an inkling that this would be the route I should take.
I am open to any and all suggestions.
We are currently running JSS 9.91.