Creating Jamf Pro Policies that Manages Your Compliance Baseline

Jamf Trusted Access Solution Guide for Business

Solution
Application
Content Type
Technical Documentation
Solution Guide
Utilities & Services
ft:locale
en-US

You must create two Jamf Pro policies that runs the compliance script uploaded from the Jamf Compliance Editor (in this example called Sonoma_cis_lvl1_compliance.sh). The first policy audits baseline rules within the benchmark.

  1. In Jamf Pro, click Computers in the sidebar.
  2. Click Policies in the sidebar.
  3. Click New .
  4. In the General tab, perform the following:
    1. In the Display Name field, enter Sonoma_CIS Level 1_Audit.
    2. Select Enabled.
    3. In Trigger, select Recurring Check-in.
    4. In Execution Frequency, select Once every day.
  5. In the Scripts tab, perform the following:
    1. Click Configure.
    2. Find Ventura_cis_lvl1_compliance.sh and click Add.
    3. In Parameter 4, enter --check.
  6. In the Maintenance tab, click Configure and select Update Inventory.
  7. Click the Scope tab and select Computers running macOS Sonoma as the selected deployment target.
  8. Click Save .