About Jamf Connect

Jamf Connect is an app that allows administrators to manage authentication by connecting a user's local macOS account to their organization's cloud identity (network account).

Jamf Connect includes two core components:

  • Login window

  • Menu bar app

Login Window

The login window is an authorization plug-in that modifies the default macOS login process and login window UI.

Azure IdP Network login window with Shut Down, Restart, Local Login, and Refresh buttons at the bottom and a step indicator at the top with Authenticate and Verify steps.

The network login window for Azure.

Connect local login screen on a Mac with picture of the user, password field, and a phone button for signing in with biometrics or a pin code via the Unlock app. The new Enable Jamf Unlock toggle at the bottom of the screen.

A user's local login displays with a password field and a button with a phone icon for singing in with Unlock. The Enable Jamf Unlock switch appears at the bottom of the screen if the user is paired with Jamf Unlock.

The login window can perform the following tasks on computers:

  • Enable authentication to the Mac with a cloud identity provider (IdPs)

  • Enforce multifactor authentication (MFA) requirements

  • Create local accounts during an Apple provisioning workflow

  • Enable FileVault

  • Link a user's network account with an existing local account

  • Convert a mobile account into a local account (demobilization)

  • Display custom branding, including a custom background

For more information about end user experiences, see End User Experience and Workflows.

Menu Bar App

The menu bar app helps users manage their network and local passwords.

The menu bar app can perform the following tasks:

  • Continuously keep local and network account passwords in sync

  • Retrieve Kerberos tickets, if a Kerberos realm is specified
    Note:

    Computers must be connected to an on-premise Active Directory domain controller during Kerberos authentication.

  • Pair a Mac computer with a mobile device that has the Jamf Unlock app installed.

  • Sync keychain item passwords with a network account

  • Run scripts automatically or on a specified schedule

  • Configure access to file shares

  • Configure custom actions

  • Display custom branding