I am working with a Jamf environment that currently does not have any Jamf LAPS capable admin accounts.
They did not create a “Management Account” in User-initiated enrollment.
They did not create a “local administrator account” int PreStage Enrollment.
We have since specified a “Management Account” and a “local administrator account”. With two separate names.
They are using Apple Business Manager Automated Device Enrollment. There are some locations that do not have ABM, so they are using User-initiated enrollment. (That is begin resolved).
LAPS is working with newly enrolled Mac systems using either admin accounts.
Is there away to retroactively add a User-initiated enrollment “Management Account”?
I’ve tried using “jamf policy -trigger enrollmentComplete”. This will successfully re-run the enrollment policies, but it does not create the “Management Account” from User-initiated enrollment.
“profiles -N” does work. But that requires user interaction.
Thoughts?
