Fortinet black logo
7.2.0

Enrolling a macOS device in Jamf

Enrolling a macOS device in Jamf

Enrollment is the process of adding computers and mobile devices to Jamf Pro. This establishes a connection between the computers and mobile devices and the Jamf Pro server. User-initiated enrollment allows users to initiate the enrollment process on their own by going to an enrollment URL. The following are examples:

Hosted in...

Enrollment URL

Jamf Cloud

https://instancename.Jamfcloud.com/enroll

On-premise

https://jss.instancename.com:8443/enroll

Once you log in and enroll your end device, the enrollmentProfile.mobileconfig file downloads to your device. You can open that file with Profile helper, then mobile device management (MDM) profiles are added.

The user must follow the onscreen instructions to install the certificate authority (CA) certificate. After the CA certificate is installed, the user must return to their web browser to install the MDM profile and complete enrollment.

You can click Enroll without providing a username.

The Jamf built-in certificate is added to the keychain.

The device has been enrolled and Jamf Pro can manage it.

Note

Clicking Enroll redirects to a webpage where you can assign the device to a user. For the enrollment to succeed, leave it blank. You can assign the enrolled device to a group on the Jamf side.

For effective functionality, use a physical machine for enrollment. Jamf does not fully support virtual machine enrollment, as they can be inconsistent and cause issues.

Enrolling a macOS device in Jamf

Enrollment is the process of adding computers and mobile devices to Jamf Pro. This establishes a connection between the computers and mobile devices and the Jamf Pro server. User-initiated enrollment allows users to initiate the enrollment process on their own by going to an enrollment URL. The following are examples:

Hosted in...

Enrollment URL

Jamf Cloud

https://instancename.Jamfcloud.com/enroll

On-premise

https://jss.instancename.com:8443/enroll

Once you log in and enroll your end device, the enrollmentProfile.mobileconfig file downloads to your device. You can open that file with Profile helper, then mobile device management (MDM) profiles are added.

The user must follow the onscreen instructions to install the certificate authority (CA) certificate. After the CA certificate is installed, the user must return to their web browser to install the MDM profile and complete enrollment.

You can click Enroll without providing a username.

The Jamf built-in certificate is added to the keychain.

The device has been enrolled and Jamf Pro can manage it.

Note

Clicking Enroll redirects to a webpage where you can assign the device to a user. For the enrollment to succeed, leave it blank. You can assign the enrolled device to a group on the Jamf side.

For effective functionality, use a physical machine for enrollment. Jamf does not fully support virtual machine enrollment, as they can be inconsistent and cause issues.