2 weeks ago
We are testing the PSSO with the Secure Enclave method.
When setting the Account Authorization Type as Standard in the PSSO configuration, we've observed that post-registration, Mac local user accounts with Admin access are downgraded to Standard user accounts.
Conversely, when utilizing Account Authorization Type as Admin in the PSSO configuration, we've noted that post-registration, Mac local user accounts with Standard access are elevated to Admin accounts.
wherein user accounts are not inadvertently changed from Admin to Standard or vice versa. any hints on this?
2 weeks ago
We are looking into PSSO also and it looks like the key needed would be User