Missing Security token - Script?

jameson
Contributor II

We used to image machines, but now it is not possible to activate Filevault through JAMF because there is no security token existing on machine.
If I create a local account it get the security token and I should then be able to assign the token to the current user of the machine. Does there exist any script on that as to do this on 100 machines manually would not be the best

4 REPLIES 4

jameson
Contributor II

Anyone experienxe with that ?

fredmin
New Contributor III

You may want to peruse this thread: https://www.jamf.com/jamf-nation/discussions/27209/script-to-assign-a-secure-token-and-add-user-to-fv2

Also, here is a good overview explaining Secure Tokens and FV from Rich Trouton's Der Flounder site: https://derflounder.wordpress.com/2018/01/20/secure-token-and-filevault-on-apple-file-system/#more-9561

A lot of folks are struggling to find a good solution for this same need.

Good Luck to you.

jameson
Contributor II

The strange thing is actually that it seems that even the user don´t have a token I can enable the filevault manually from security menu on the mac - and the filevault passcode is still stored in jamf

massive
New Contributor

we too are experiencing this issue, we had a script which passed the security token to our jamf admin account. that is no longer working since 10.4.1 was release. haven't found a solution for this yet but theres a pretty details workaround you have here - https://travellingtechguy.eu/macos-mojave-secure-tokens/