Configuring a Web Content Filter Profile for Computers

Jamf School Documentation

Solution
Application
Content Type
Technical Documentation
Utilities & Services
ft:locale
en-US

macOS enables applications to operate as web content filters when they are configured and managed by Jamf School. Your web content filter and application vendor may support different technologies such as webkit, socket, or packet traffic filtering. You can consult with your vendor to determine which technologies they support and how to configure settings.

  1. In Jamf School, navigate to Profiles > Overview in the sidebar.
  2. Click + Create Profile.
  3. Select the macOS operating system.
  4. Select the type of enrollment you want to make the profile for.
  5. Enter a name in the Profile name field and configure the additional settings as needed, including the time filter.
  6. Click Finish.
  7. In the list of payloads on the left side of the pane, locate the macOS payload category and click the Web Content Filter payload.
  8. Click Configure.
  9. Select the Enable web content filter checkbox.
  10. Use the Traffic checkboxes to configure traffic filters.
    • To filter traffic between an internet browser that uses webkit, such as Safari, and the internet, select the Filter Webkit Traffic checkbox.

    • To filter traffic that is sent and received between socket endpoints, select the Filter Socket Traffic checkbox.

    • To filter data that has been divided into packets, select the Filter Packets checkbox.

  11. Enter a display name for the filter in the Filter name field.
  12. Enter the bundle identifier of the app containing the filter providers in the Identifier field.
    Note:

    The bundle identifier will be specific to the vendor and may be displayed in a format similar to the following example: com.yourvendor.appname.

  13. (Optional) From the Identity Certificate pop-up menu, choose the identity certificate to be used for authentication.
  14. From the Filter Grade pop-up menu, you can choose one of the following options:
    Note:

    Firewall grade filters will see network traffic before Inspector grade filters.

    • Firewall

    • Inspector

  15. (Optional) If you want to configure custom data for the profile, click + Add a field to the data set and enter a key and value in the Custom Data field. You can find information about the keys and values from your vendor.
  16. In the list of payloads on the left side of the pane, locate the General category and click the Scope payload.
  17. Configure the scope of the profile by clicking the + icon and adding device groups to the profile scope using the pop-up menu.
  18. Click the Settings icon on the right side of the page, and do one of the following:
    • To install the profile on devices automatically, click Change to automatic installation for all groups.

    • To allow users to install the profile themselves, click Change to on-demand installation for all groups. The profile will be available for users to install in the Jamf Teacher or Jamf School Student apps.

  19. Click Save.

The web content filter settings are applied to devices in the scope.