Skip to main content
Question

Using Active Directory groups to admin


Andrew_Baker
Forum|alt.badge.img+2

Hello,

We use JAMFschool and bind our Macs to AD via a policy pushed to all the machines. It allows the devices to login however despite putting group names in the profile we still cannot administer through AD accounts. Anyone have any insight on this? It would be most appreciated.

2 replies

dlondon
Forum|alt.badge.img+14
  • Honored Contributor
  • 375 replies
  • June 30, 2021

I think this bit is the same as for Jamf pro

In the Jamf School doc's here: https://docs.jamf.com/jamf-school/deploy-guide-docs/Binding_Computers_to_Active_Directory_or_Open_Directory.html

It's the Allow Administration field you want to populate with those group names from AD


Forum|alt.badge.img+1

Default groups, such as the Domain Admins group, are security groups that are created automatically when you create an Active Directory domain. You can use these predefined groups to help control access to shared resources and to delegate specific domain-wide administrative roles.


Reply


Cookie policy

We use cookies to enhance and personalize your experience. If you accept you agree to our full cookie policy. Learn more about our cookies.

 
Cookie settings