Skip to main content
Question

Jamf Ports Vulnerable

  • January 14, 2021
  • 3 replies
  • 29 views

Forum|alt.badge.img+4

Recently, my network team blocked Jamf ports ( 8443 AND 137,138,139 AND 443) stating to be Vulnerable. SMB ports needs to be blocked. 8443 I use to access my Jamf portal and also , many Mac machines enrolled via Jamf URL (user initiated enrolment programme) has 8443 port. (https://Jamf.xxx.xxx:8443) Any advice what can be done? to resume Jamf services ?

3 replies

bentoms
Forum|alt.badge.img+35
  • Hall of Fame
  • January 14, 2021

@agakhan_admin err.. 8443 and 443 are not SMB.

8443 and 443 are HTTPS ports.

Are your clients also looking at https://Jamf.xxx.xxx:8443?

If so, changes will need re-enrolling.


Forum|alt.badge.img+4
  • Author
  • Contributor
  • January 14, 2021

Yes, 8443 and 443 are not SMB ports, sorry that I didn't elaborated. CActually I enrol one of the client though User initiated enrolment programs and the link takes to the URL that is https//jamf.xxx.xxx:8443/enroll. I didn't saw the machine first but later, I figured out that now the machine is under "Unmanaged"

Also, do you know that Quick Add package is not working on Big Sur?


sdagley
Forum|alt.badge.img+25
  • Jamf Heroes
  • January 14, 2021

@agakhan_admin Quick Add is not supported for Big Sur due to changes for how Configuration Profiles can be installed. You'll need to use Apple Business/School Manager to enable Automated Device Enrollment via Jamf Pro, or use the user initiated enrollment via https://yourjssURL:8443/enroll