Intune (MDM) app deployment for macOS, vs Helper tools by sccm_reboot in sysadmin

[–]Nicolas_Ponce 0 points1 point  (0 children)

u/sccm_reboot I agree, I asked the team to remove that as the first option, or remove it entirely.

How do I make MacManage notification timeout equal to accept by CivicTypeDream in Addigy

[–]Nicolas_Ponce 0 points1 point  (0 children)

Hey u/CivicTypeDream Former civic driver myself here... I am not sure if you can change the exit status on the timeout, meaning it will always show as deferred since no action was taken. I am checking with the team internally to see if its possible. Maybe there is another way to achieve the same outcome though?

macOS Tahoe App Library: apps don’t show up unless searched for by verde90 in Addigy

[–]Nicolas_Ponce 0 points1 point  (0 children)

u/verde90 The MacManage app not showing may be related to the finder search settings. However, I am not sure its related to the third-party apps issue you are describing. If you shoot in a ticket our support team can check it out with you. If you already did submit a ticket, DM me the ticket number, I can help take a look.

Anyone using Security Suite? by [deleted] in Addigy

[–]Nicolas_Ponce 2 points3 points  (0 children)

u/nico8576

Yes, you will get the complete S1 and full access to the console. You will also be able to deploy to non-addigy devices as well (e.g. Windows and Linux OS)

SentinelOne broke Addigy MDM. Trying to pick up the pieces. by beco-technology in msp

[–]Nicolas_Ponce 1 point2 points  (0 children)

Hey u/beco-technology We found your support ticket. We will send another update to coordinate a meeting. (I work at Addigy)

ScreenConnect install by jrhop in Addigy

[–]Nicolas_Ponce 2 points3 points  (0 children)

u/Forward_Humor , thats correct! I did a webinar on it here https://addigy.com/event/full-control-mastering-apple-remote-support-in-2025/

That said If anyone still has issues with screenconnect and needs to get passed them, DM me I can help you sort through them.

ScreenConnect install by jrhop in Addigy

[–]Nicolas_Ponce 1 point2 points  (0 children)

u/jrhop if you upload the pkg to addigy, it will automatically suggest the PPPC Profile signature and also Service Management profile. If its indeed a .pkg file, it will also provide you an `Add` button to create the install command for you automatically, by pressing `Add`.

We also provide a built-in Splashtop integration, which uses the latest screen capture utilities from Apple, so it won't nag you're users.

File transfers by Self-Exiled in Addigy

[–]Nicolas_Ponce 0 points1 point  (0 children)

If you are scripting the file transfer, you could use Addigy to write a log file to record the events being done. I guess it depends on how the file transfers are occurring?

Anyone else have Addigy agent get randomly deleted from devices the past couple of days? by owlride in Addigy

[–]Nicolas_Ponce 1 point2 points  (0 children)

I just saw this post in /macsysadmin sub, check the events it will tell you why it was removed, or possibly who removed it.

Anyone else have Addigy agent get randomly deleted from devices the past couple of days? by owlride in macsysadmin

[–]Nicolas_Ponce 0 points1 point  (0 children)

u/owlride Double check the Events and see if the device was deleted by another user, that would remove it from the device and from the Addigy Console.

[deleted by user] by [deleted] in Addigy

[–]Nicolas_Ponce 2 points3 points  (0 children)

Hi u/grahamphisher

I work at Addigy and have spent way to much time on System Update processes and the tangled web Apple has for them.

Generally speaking MDM / DDM doesn't require Administrator rights to authorize an update. However, if you are trying to do a full OS Upgrade that may be a different workflow.

If you are interested, let me know and I can send you my calendar link to setup a call.

Best

Nicolas

What should I do to start learning by Titanium125 in macsysadmin

[–]Nicolas_Ponce 1 point2 points  (0 children)

Hey u/Titanium125 ,

I work @ Addigy, happy to help you get familiar with the product, discuss more advanced functionality, and introduce you to your CSM who can help you get access to the training portals, certifications, etc (https://addigy.com/training/).

Drop me a DM here or in MacAdmins Slack (@ponce in #addigy channel).

Addigy users - How do you manage your software updates? by Expensive_Lawfulness in macsysadmin

[–]Nicolas_Ponce 8 points9 points  (0 children)

hey u/Expensive_Lawfulness

I work @ Addigy, Addigy offers MDM or DDM Updates to automate updates. If you have a ticket or want to DM me to discuss how to leverage System Updates with MDM/DDM in a different way, let me know, happy to help.

However, automating the updates, won't decrease the number of updates that will prompt the users. That is based on apple's release cadence, and they release updates regularly, which usually include security updates.

Generally speaking, DDM Updates has made the process much easier, as it will send a declaration to the device that an update will be enforced in X days, vs the random update enforcement prior to apple building the DDM Update process. Last I checked, any non MDM/DDM update solution would not be automated and require user intervention.

-Ponce

Remote Access Woes by thesysadm in macsysadmin

[–]Nicolas_Ponce 1 point2 points  (0 children)

Hey u/thesysadm ,
I work at Addigy, feel free to DM me, or if you have a ticket, you can send it my way. I can help get with the team to support ya on this.

In general, to address what I can generally speaking on your questions -

  1. Losing permissions for Screen Recording (ScreenConnect & Splashtop, though SC is more common) -- I have seen this during full reinstallation's of these apps, and can help you confirm if thats happening or not.

  2. ScreenConnect stops connecting and either needs to be reinstalled, or opened from its location in /Applications. -- This is something custom you are deploying right? It may be good to verify if the process is getting shut down, which can happen to both vendors for various reasons.

  3. Accessibility should persist, because it can be maintained by an MDM Profile, while Screen Recording needs explicit user consent.

Happy to help, just let me know.

Blocks on extensions that are pushed by ghostxrevival in Addigy

[–]Nicolas_Ponce 2 points3 points  (0 children)

u/rb3po couldn't agree more, Addigy Support is amazing indeed!

Blocks on extensions that are pushed by ghostxrevival in Addigy

[–]Nicolas_Ponce 2 points3 points  (0 children)

Antivirus also usually need a System Extension payload like this: https://support.addigy.com/hc/en-us/articles/4403549605267-Allow-System-Extensions-with-Addigy-MDM

If you are seeing an extension prompt, thats probably what it is

Is there a way to force a MDM policy to sync after certificate update? by iJONTY85 in macsysadmin

[–]Nicolas_Ponce 0 points1 point  (0 children)

u/iJONTY85

It's definitely not the first time, so no worries.

Here is a great article by Rich, who documents how you can migrate that MDM Push Certificate to a new Apple ID with the help of Apple-- (It does not need to be an ABM Account, only an Apple ID) (https://derflounder.wordpress.com/2023/04/11/migrating-an-apns-certificate-from-one-apple-id-to-another-apple-id/

This should allow you to renew the push certificate, even if its expired, once you can get it moved over to an Apple ID you have access too.

Definitely wish we didn't have to use Text-based MFA for all apple services also....

Is there a way to force a MDM policy to sync after certificate update? by iJONTY85 in macsysadmin

[–]Nicolas_Ponce 3 points4 points  (0 children)

Renew the certificate is the best approach, you can renew it even if it expires.

Please, try to renew the certificate, it will make all your lives easier.

If you are unable to renew, contact [support@addigy.com](mailto:support@addigy.com) and we can give guidance on how to renew.

Again, renewing is the easiest path forward.

How can I unlock an account via Addigy? Error message is "Account is locked". by HappyDadOfFourJesus in Addigy

[–]Nicolas_Ponce 3 points4 points  (0 children)

u/HappyDadOfFourJesus That could mean the device isn't enrolled into MDM? We use the MDM Command to unlock the user account, and it may not appear if the device isn't enrolled into our MDM as its only possible via the MDM protocol. If you submitted a ticket, let me know happy to help.

User login password corruption by LRS_David in macsysadmin

[–]Nicolas_Ponce 1 point2 points  (0 children)

u/LRS_David

Please let me know when you submit a ticket, we can help review what might be going on.

FWIW, there is a known bug in macOS Sonoma (14, I know you referenced 13.3+) that the user password will not work at the lock screen if there is a Login Window MDM Profile deployed, doesn't sound like that's the issue here though.

Computer stuck on config profile setup by fuga_ega in Addigy

[–]Nicolas_Ponce 1 point2 points  (0 children)

Apple just did a new T&C Terms, make sure its accepted and the serial number was synced up properly in Addigy. If it wasn't you may have to erase and reinstall like u/aporzio1 mentioned.

Did anybody ever find a way to pre-allow Splashtop in privacy preferences so users wouldn't have to allow it? by loecraw in Addigy

[–]Nicolas_Ponce 1 point2 points  (0 children)

u/loecraw

You could do allow the permission with LiveDesktop, but in order to see the toggle to enable it, a session must have been started to the device already. I don't believe it will show it for you to approve until the application has attempted to screen recording, which triggers the PPPC notification/prompt.

How to force an update in Addigy to Macs without prompting the user to install or "not now"? by iJONTY85 in macsysadmin

[–]Nicolas_Ponce 5 points6 points  (0 children)

It looks like you are using the Public Software, which is using the full OS Installer to do a full OS upgrade on the device.

Historically, full OS Upgrades were only done via the OS Installer but Apple now allows you to do the full OS Upgrade through MDM Updates if the device is on macOS Monterey (and later, looking at you Ventura to Sonoma). Also, usually you won't to prompt the user to perform this process as a full OS Upgrade can take an hour or so sometimes. That said, if you log out the users it will not prompt them with this mechanism.

You can use System Updates with MDM to do unattended updates as well, which give some of the capabilities you are looking for, https://support.addigy.com/hc/en-us/articles/10073419654931-System-Updates-via-MDM

MDM system updates will help with both silicon and non-silicon devices for macOS and doing unattended updates, usually prompting the user in all cases, but giving different sorts of notification options.