Keeping Computers in Compliance

Compliance can be enforced by Jamf Pro.

Best Practice:

Best practice workflows cover common scenarios; however, the following recommendations may not apply in your environment.

Jamf recommends that you deploy a configuration profile or a policy in Jamf Pro for each compliance policy created in Microsoft Intune to keep Mac computers in compliance.

  1. In Jamf Pro, click Computers at the top of the sidebar.
  2. Click Smart Computer Groups in the sidebar.
  3. Click New .
  4. Create a smart group that identifies compliant Mac computers by using the following criteria:
    1. Mac computers with the Company Portal app installed
    2. Mac computers with the Azure Active Directory ID attribute
  5. Deploy a configuration profile or a policy in Jamf Pro for each of your compliance policies.
    Example: Deploy a Mac computer configuration profile with the Passcode payload if you configured a password policy in Microsoft Intune or a policy with the Disk Encryption payload if you configured an encryption policy in Microsoft Intune.
  6. Scope the policy or configuration profile to the smart group created in step 1.
  7. Click Save .

Repeat the process for all compliance policies created in Microsoft Intune.