- In Jamf School, navigate to Profiles > Overview in the sidebar.
- Click + Create Profile.
- Select the macOS operating system.
- Select the type of enrollment you want to make the profile for.
- Enter a name in the Profile name field and configure the additional settings as needed, including the time filter.
- Click Finish.
- In the list of payloads on the left side of the pane, locate the macOS payload category and click the Exchange payload.
- Click Configure.
- In the Account Name field, enter the display name for the account.
- Configure the Exchange internal and external servers by doing the following for each server:
- (Optional) To use SSL when communicating with the server, select the Use SSL checkbox.
- In the Server field, enter the server URL.Example:
https://outlook.office365.com/EWS/Exchange.asmx
- In the Port field, enter the server port number.Note:
If you are using SSL, the default port number is 443. If you are not using SSL, the default port number is 80.
- (Optional) In the Path field, enter the server path.
- (Optional) To configure the account automatically using credentials configured in the Authentication settings in Jamf School, select the Use Stored Credentials checkbox.Note:
If you select the Use Stored Credentials checkbox, you cannot configure the following settings: E-mail address, Username, Open Authorization, and Password.
- (Optional) In the E-mail address field, enter the email address for the account. To prompt the user to enter their email address during the profile installation, leave this field blank.
- In the Username field, enter the account username with the optional domain.
- (Optional) To use OAuth for authentication, select the Use OAuth for authentication checkbox and then complete the OAuth Sign in URL field.Note:
Keep the following in mind when using OAuth for authentication:
-
You will not be required to enter the password mentioned in step 15.
-
The format for the OAuth Sign in URL is https://login.microsoftonline.com/tenant_ID/oauth2/v2.0/authorize.
-
You will need your Microsoft Entra tenant ID in order to accurately complete the OAuth Sign in URL field. To find your tenant ID, navigate to portal.azure.com > Microsoft Entra ID > Properties.
-
- (Optional) In the Password field, enter the account password. If you leave this field blank, the user must enter their password after the profile is installed.
- In the list of payloads on the left side of the pane, locate the General category and click the Scope payload.
- Configure the scope of the profile by clicking the + icon and adding device groups to the profile scope using the pop-up menu.
- Click the Settings
icon on the right side of the page, and do one of the following:
To install the profile on devices automatically, click Change to automatic installation for all groups.
To allow users to install the profile themselves, click Change to on-demand installation for all groups. The profile will be available for users to install in the Jamf Teacher or Jamf School Student apps.
- Click Save.