Does anyone use a production environment with multiple sites and ADE/DEP? I'm trying to brainstorm a workflow where the different site administers in my environment (~20 different sites) can move devices from where they land from ADE/DEP into their own site, without needing to contact a person who is a full Jamf admin.
I've created a DEPNotify workflow that allows computers to be assigned to the correct site immediately after the enroll from ADE/DEP happens, and that works well. However, as far as I know, there's no similar product for mobile devices. So I think the only way to move mobile devices is manually essentially.
I reached out to Jamf, and was told there's no way for people with site admin permissions to switch devices between sites. I would need to create a separate group/user with full access to allow the site admins to be able to move the devices. This is less than ideal, because that would give the different site admins visibility into the other sites, and allow them to move devices to and from various sites, not just from the ADE/DEP landing site to their own (even with custom permissions).
Has anyone else figured out a workflow for a similar environment, or have general thoughts?