Posted on 10-17-2024 12:32 AM
Hello Jamf Nation,
Seeking for advice from people using cloud instance of Jamf Pro with Google Could Identity Provider.
We are moving from local LDAP server to Cloud IdPs (Google). We've configured Google LDAPS connection in Jamf Pro settings - everything seems to be OK so far.
The question is - how users, after they imported into Jamf from Google during enrolment, will be updated?
If they change department or position in Google LDAPS - I believe Jamf will not sync them automatically. Previously we could access our database directly, but now it's also going to the cloud (we migrating from on-premises as well). Is the only option - updating them via API calls?
Thanks!
Posted on 10-17-2024 06:55 AM
When the device performs a check-in, it makes a call to the LDAP server, and updates the user's information. (Such as title and department) The only caveat is that for the department to be updated, the department needs to exist within Jamf already. Hopefully this helps!
Posted on 10-17-2024 04:50 PM
Cool, thanks for the info!
Posted on 10-17-2024 10:20 PM
Settings -> Computer Management -> Inventory Collect , Enable Collect user and location information from Directory service,
if your user account name created on the Mac is the same as that of in Azure Ad, it will capture the information during the recon and update in JAMF