We use cookies to enhance and personalize your experience. If you accept you agree to our full cookie policy. Learn more about our cookies.
We use 3 different kinds of cookies. You can choose which cookies you want to accept. We need basic cookies to make this site work, therefore these are the minimum you can select. Learn more about our cookies.
Real talk, real tools and real-time support from people who get it.
Real answers from Apple Admins like you
Find your way around
Share your thoughts
Submit your idea
We’ve got FUS disabled through a configuration profile, but it appears the menu bar/control center extra bypasses this setting. Users can enable the extra and then use it to switch accounts. Not a major security issue I don’t think, but my org doesn’t use FUS. Is there a way to block specific menu bar/control center extras?
Hey all, Working on a script that prompts the user for information. Once complete, I set the script to ask the user if they would like to enter another response. If yes, a policy is triggered to call the script again. I seem to be getting an error. I believe it is because you can’t trigger a policy that is already running. I’m aware I can make the loop within the script. Just want to confirm that this is not possible. Has anyone run into this or found another option?
Hey all, So I know we can use Jamf Connect or even just a script for elevation to admin for a standard user. Has anyone attempted to creating some form script that would require the user to enter a validation code provided for the admin rights before granting rights? The work flow would look something like this, SS policy that prompts for a code. The code would then verify against “something” - maybe an API call. Once it could verify the number it completes the script that elevates permissions temporarily. Im not sure where the script could validate the code from though. Maybe just a parameter that the Helpdesk could enter upon request? Thoughts?
I used the “Defer software update” function so that our users could not upgrade to iOS 26 since it seems to be killing the battery on our phones. However, I wanted to send out iOS 18.7 for security reasons. I was able to send it out via Software Updates but if our users don’t catch the update prompt the first time it is sent to them, they will hit an error, and they can not install it other than going to General > Software Update which we have blocked. I was wondering if anyone has reached a similar obstacle and was able to find the best way to proceed. Thank you!
Hello, looking for some help/advice. Has anyone successfully deployed the Dameware Remote Everywhere Agent? Does anyone have a working script they could share? We have created the bulk agent and have the ID, but no success. Thanks for any info.
I (like others) use a smart group for students which lists devices that have “Apps Not In the App Catalog Are Installed”, in case some talented student is somehow able to download or sideload apps we don’t allow. I then use a configuration profile to hide all apps except those they downloaded/sideloaded, making their device near useless until they remove the offending app. Unfortunately with the iPadOS 26 update, Jamf Pro reports all the iPad default apps (camera, contacts, calendar, etc.) in the installed apps report. As these are default and can not be purchased through the app store, there is no way to add them to the app cataloge. So now every device that updates to iPadOS 26 will be considered to have unnauthorized apps on them. Not sure if this is a bug that Jamf will be able to fix, or if there is another work around to this.
Greetings, The Four Corners and The Silver State September meeting is coming up on Thursday, September 25th at 6PM PDT/MST! We’re excited to welcome Dan Snelson and Elmo Kuisma as our guests. Dan will present a Mac Health Check demo, followed by a Q&A session. Afterwards Elmo will showcase Jamf BluePrints - a new Jamf feature - and highlight updates for macOS Tahoe along with Q&A. We hope to see to see you there. This is our first meetup since the new Jamf Nation platform dropped, so please bear with us as we get used to the new diggs. If you would like to RSVP: https://luma.com/7zqcakpm If you prefer just a good ol’ Zoom link: https://arizona.zoom.us/j/81716369167 @JoannaB did we catch all the things?
We are seeing issues with machines that have broken AD binds, is there a way to automatically remove the profile and reinstall it, or can I just add those machines from a SmartGroup into the scope?
Hi,Could any one guide on how we can migrate data between two managed macOS devices and same for iOS devices?
Is there really no longer a way to sort Jamf Discussions by date??? Finding something from 8 years ago at the top of the list is not helpful.
For awhile both Jamf Pro and Jamf Protect had a Resource box on the dashboard page. Both are gone now and we are just redirected to countless webpages to click through to find the information buried. Another useful tool gone….
Hello everyone, you can probably help me with a request. I created a configuration profile for software updates in Jamf Pro, and I enabled "Automatically install app updates from the App Store" because I always want to have the latest updates for apps installed from the App Store. However, there is one app that I don’t want to update automatically, and that’s Xcode. This app must not auto-update, because newer versions of Xcode don't always work for our developers. I deploy Xcode via the Mac Apps - App Store section. In the settings, I disable "Automatically force app updates", but it still seems to update on its own. Do you have any idea what I could do? Jamf support told me that since it’s an app installed from the App Store, it’s not possible to block automatic updates for that app only. Any ideas? Thanks all
I recently spent some time working on a script to deploy AirPrint printers as we’ve got a few of them on our campus that don’t have driver support from the manufacturer, meaning AirPrint is the only option. I wanted to share what I’ve come up with in case anyone else is in need of this. All you have to do is change the details in the “Printer details” section at the top of the script to match your printer’s IP address, location, and display name. I’d also recommend modifying the PPD path slightly to give it a more specific name than just printer_driver.ppd. Example: break_room_printer_driver.ppd. Note: For this to work, the Mac needs to be on the same network as the printer since it queries the printer to gather the information to create the PPD file. The result is that you can deploy an AirPrint printer to your Macs via Jamf Pro complete with the icon and everything! #!/bin/bash # Adds a printer via AirPrint. # Author: John William Sherrod - jwsherrod@mac.com # Version 1.0: 02-20-2025
Earn a cool badge and Jamf Nation Reward Bytes for your published articles. We’re looking forward to your submissions!
216 Questions Answered
30 Questions Answered
17 Questions Answered
15 Questions Answered
29 likes
12 likes
10 likes
9 likes
Learn about our customer advocacy program that celebrates our most passionate customers.
Join the community to receive product updates, and share feedback.
Already have an account? Login
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.
Sorry, we're still checking this file's contents to make sure it's safe to download. Please try again in a few minutes.
Sorry, our virus scanner detected that this file isn't safe to download.