Posted on 08-06-2020 01:22 AM
Hey guys
Hope you are all staying safe. We are in the process of splitting away from an old company and i get the build jamfpro from the ground up. What i am trying to accomplish is, on enrolment a local admin account is created with a randomly generated password which the password is saved "somewhere" in jamfpro its self would be great like the FV key. This password would then be changed randomly every 60 days or manually if need be. i am struggling to work out how to do this.
I look forward to your reply
Jack
Posted on 08-06-2020 02:36 AM
LAPS for Mac would be an option for you. It rotates the local admin password and you store the password in AD - if you use it.
https://github.com/joshua-d-miller/macOSLAPS
This version I believe uses the individual FileVault key as the admin password - so it would be stored in Jamf.
https://github.com/NU-ITS/LAPSforMac