Step 1.
Start by plugging into power and booting the laptop on. Once the laptop comes up, you will be guided through the standard MacBook setup by the wizard until you reach the Account Creation portion. At this step you will either create the account for the specific user that will receive the laptop, or a generic Checkout account if the laptop will be given out on an "as needed" basis. Set up a simple password that you can use to navigate the rest of the setup with, and that will be easy to convey to the specific user for them to change upon receiving the laptop.
Step 2.
Once the Account Creation portion is complete and the laptop has fully started up, open the Safari browser and navigate to https://fridayfirm.jamfcloud.com/enroll. You will have to manually type the address exactly as it is listed above for it resolve correctly. You will receive an Azure prompt to sign in. Use your standard FEC account username and password. You will receive a DUO prompt to approve.
Step 3.
Click the download button to download the first Jamf profile. Once it has downloaded, open the Settings from the icon in the app dock. Once Settings is open, search Profiles. It will show a list of the profiles on the left-hand side, and you will need to select the profile that you just downloaded and select Install. After it is finished installing, go back to the Jamf webpage and select the same download button and it will download the next profile. You will follow the same steps as before and install this profile as well. The second profile will prompt you to type the password that you setup for either the user's account or the Checkout account.
Step 4.
After a few minutes the JAMF self-service window will open and show what is available to that user\laptop and then you can just select for each to install.
Step 5.
Next you will click into Settings and search for File Vault. Once you select to enable File Vault it will prompt for the same account password to be entered as before. Once enabled it will ask you where you would like to save the recovery key, and when you select for it to be stored locally it will show that it is being redirected to JAMF. I also change the Admin password for the account that the JAMF enrollment creates and save it into PasswordState.
Step 6.
Next you will go into the Remote Desktop app, and configure it for the user if it is going to someone specific.
Step 7.
The final step will be to enter all of the necessary info into PasswordState, get the asset in Snipe, and tagged with the appropriate QR code.

Comments