Jamf Pro User and Groups

awjohnso
New Contributor

Greetings,

Just inquiring about User and Groups in Jamf Pro. 

I am getting around to creating groups for the few users we have in Jamf Pro, no we have not hooked into our AD or Azure AD instance due to convoluted issues which at some point I hope to deal with... Anyway, in terms of permissions if a User Group has tighter permission set than the user assigned to the group, I am assuming the tighter permissions wins out?

So as an example if a user has the ability to edit Smart Groups but the group they are assigned to denies that, then the user will not be able to edit Smart Groups?

Thanks,

-Andrew

1 REPLY 1

AJPinto
Honored Contributor II

If a user is in a admin group, and also in a group that just has access to computer searches. The user will get full admin access. JAMF access, like most other access, assumes highest access of all groups the user has.

 

When naming your JAMF Groups, I recommend using the exact same names as the groups in your IDP. If you setup with JAMF your IDP, JAMF will assume access based on if a JAMF Group name matches an IDP group name.