I am just trying to uderstand how macOS and Jamf Pro manage local accounts/passwords and domain accounts.
I am working in a company that dosn't have Jamf Connect enabled as far as I am aware.
The company I work for has there own 2FA tool for users to logon. (I have been told that it would be a long term project to get it's APis to intergate into Jamf Connect). Not something I will be getting involved with as too technical for me.
Anyway the process is at the moment we have a default admin account. So once the Macbook is built we logon with admin account and make sure FileVault is enabled.
Next we create a local non admin account for the user. Obviosuly this account will need a password so I rest it to a new one. I will actually reset it to the default password I set for the user in Active Directory. However when I reset the password I get the error:
Resetting the account password doesn't reset the password for the user's 'login' keychain.
To reset the password for the "login" keychain, use Keychain access located in Utliiaties folder.
So I wil follow that advice. But how or when does the AD password sync with MacOS?
In Windows you get a pop up saying to lock the screen and log back on.
Cheers
Paul
