I have a Mac that hasn't been checking in for a month or so and I've tracked it down to recon getting stuck at "Gatekeeper status". Beyond unenrolling and re-enrolling (DEP mac), is there anything I should try? Attached is the verbose output of the recon command.
And I'm guessing the machine has been restarted recently and it has all Software Updates applied? If the answer is yes, then I'd say try:
sudo jamf manage
And if that doesn't work, remove Jamf and re-enroll:
sudo jamf removeFramework sudo profiles renew -type enrollment
Might take it a step further and delete from Jamf Pro server before re-enrolling.
We are also experiencing this issue on some Macs. 11.6.0.
Edit: A reboot actually solved the issue with the Macs we had. I also cleaned up some extension attributes we had that were no longer in use but I believe the reboot was the important bit. Now we can also help upgrade those Macs to 11.6.1 or Monterey.
For us, the issue is related to inventory data collection for available software updates. Disabling "Collect available software updates" from Inventory Collections Settings in Computer Management fixed it.
Also below command can be run on impacted Macs.
sudo launchctl kickstart -k system/com.apple.softwareupdated