Jamf School Communication Encryption - Jamf School Security Overview

Jamf School Security Overview

Solution
Application
Content Type
Technical Documentation
Utilities & Services
ft:locale
en-US

Communication between Jamf School and managed computers and mobile devices is encrypted using standard Transport Layer Security (TLS). Jamf School uses TLS 1.3 to secure device traffic. If a device does not support TLS 1.3, 1.2 is used instead.

When Jamf School utilizes Apple's MDM or declarative device management frameworks, the communication encryption is provided by Apple Push Notification service (APNs). For more information, see Mobile device management security overview in Apple Platform Security.

Computers can be configured to use certificate-based communication with Jamf School and to require SSL certificate verification for the Jamf School web app. With certificate-based communication enabled, Jamf School verifies a device signature header on all sensitive communication and only responds if the signature matches the device for which resources are being requested. With SSL certificate verification enabled, computers are required to verify the SSL certificate for the Jamf School web app and will reject any responses that include an invalid SSL certificate.