Jamf Pro administrators using AppleScript workflows prompting user interaction may need to approve the Jamf management framework to communicate with built-in applications and services using the Apple Events service within the Privacy Preferences Policy Control payload. To leverage the restricted Apple Events service, Jamf Pro administrators must provide the identifier type and code requirement for both the sending and receiving application.
| System Events: |
|
| SystemUIServer: |
|
| Finder: |
|
A pre-built configuration profile to approve interaction between the Jamf management framework and these three Apple services can be downloaded from the following Jamf's GitHub repository: https://github.com/jamf/JamfPrivacyPreferencePolicyControlProfiles. Upload the configuration profile in Jamf Pro 10.7.1 or later.
You can upload this profile to Jamf Pro unsigned, and it will automatically generate the Payload UUID values.
In addition, an open source app built by Jamf for the Apple community can help with the identification requirements needed to allow apps to function within the Privacy Preferences Policy Control framework. This app is also available on Jamf's GitHub repository: https://github.com/jamf/PPPC-Utility.
You can upload an unsigned Privacy Preference Policy Control payload to Jamf Pro using the API.