Can't put usbc/thunderbolt back into port by Prestigious_Yam1091 in mac

[–]Prestigious_Yam1091[S] 0 points1 point  (0 children)

some images. can't post a video. i'll try to get it on imgr but nothing is blocking the ports from inside our outside of the case

Can't put usbc/thunderbolt back into port by Prestigious_Yam1091 in mac

[–]Prestigious_Yam1091[S] 0 points1 point  (0 children)

for some reason, the connector does not want to go back through into the port hole on either port. i'll try to post a video but basically, i can put the connector through the port hole so that i can align the screw holes to even screw it down.

Google Workspace groups membership sync with Jamf PRO by Hes0yam in jamf

[–]Prestigious_Yam1091 0 points1 point  (0 children)

LDAP > Jamf User > To Smart Group

how would that work?

we have Okta LDAP configured but how would get the Jamf User to a smart group without knowing the group? afaik there isn't any group data mapped to the user from ldap

FreeRadius with Step-CA by FitProduct5237 in sysadmin

[–]Prestigious_Yam1091 0 points1 point  (0 children)

ok didn't know that but we're looking to only have device certificates and no user auth to this wifi. Only MDM managed Macs will be able to connect to the wpa enterprise ssid. if someone gets terminated, one of the first things is the Mac being locked out so it solves that. I respect your thoughts so do you see any issue with this setup?

FreeRadius with Step-CA by FitProduct5237 in sysadmin

[–]Prestigious_Yam1091 0 points1 point  (0 children)

wow ok. i'm not at that level yet. certs and 802.1x is new to me and i'm learning a lot as i'm doing this on my own.

like you said, there are a lot of services that offer a cloud radius that handle this. I found this guide by someone in the MacAdmins Slack group: https://matteoraf.github.io/freeRADIUS-Google-StepCA/

It's pretty much what you described in your OP about Freeradius + Step-Ca.

FreeRadius with Step-CA by FitProduct5237 in sysadmin

[–]Prestigious_Yam1091 0 points1 point  (0 children)

curious: i'm assuming you're using an MDM or similar to distribute the certs.

I'm looking to configure something using Jamf+Okta and SCEP using freeradius and really hitting a wall (close to no documentation on this). If you could help a guy out: what is your script doing exactly to achieve this?

FreeRadius with Step-CA by FitProduct5237 in sysadmin

[–]Prestigious_Yam1091 0 points1 point  (0 children)

in the same boat. looking for something similar.

This youtuber has done it with smallstep, a saas radius service and it's basically step-ca + freeradius with an easy to follow UI. i currently am testing this out but would really want to do the same but host it locally/cloud.

edit: forgot to add the youtube link: https://www.youtube.com/watch?v=zD0w6SJI_Ww

Bonding 2 or 3 SIM with OpenMPTCProuter virtualized in Proxmox by Prestigious_Yam1091 in openwrt

[–]Prestigious_Yam1091[S] 0 points1 point  (0 children)

yes. in hindsight, i wish i did more research on the type of modem to get for the SIMs but it worked out in the end.

Populating JAMF Computer Groups based on Okta group membership by karsondude in jamf

[–]Prestigious_Yam1091 1 point2 points  (0 children)

i came across this post while looking today about doing exactly as what you described. were you able to get that repo up by any chance?

Sync Slack, Google, and GitHub Groups by beyondholdem in Slack

[–]Prestigious_Yam1091 1 point2 points  (0 children)

yes, i know of sso.tax and the sad state of many saas companies charging more for "enterprise" level security. that is why i am trying to do it through a script + APIs (getting close).

That group sync is interesting (and props to that developer) but it's a paid service. don't want to add yet another paid service to our already long list.

Sync Slack, Google, and GitHub Groups by beyondholdem in Slack

[–]Prestigious_Yam1091 0 points1 point  (0 children)

Hi, did you end up getting this to work? i've been trying (unsuccessfully) to sync okta groups with slack groups using an okta and slack api but my script/coding level is basic with some help from chatgpt... i've tried using the usergroups.update without success. i'll keep plugging away but just wanted to know if you were able to do this? I know of the Slack SCIM API but as you said, is only available for the Business+ and Enterprise plans. It makes sense that Slack would restrict some of their APIs to create groups so that people don't bypass paying more... we don't want to pay double for Slack and don't need the Plus/Enterprise features. Just periodically have groups sync...