
Root certificate, the signing certificate is also trusted the chain is
#Jamf apple configurator pro#
Since your clients trust your Jamf Pro server's This certificate is issued by your Jamf Pro server'sīuilt-in certificate authority.

EachĮnrolled client will have the "JSS Built-in Signing Certificate" installed to This signing certificate is used toĭigitally sign configuration profiles deployed by your Jamf Pro server. It's a key piece ofįunctionality that allows Jamf Pro to generate digital certificates toįacilitate secure, trusted communication between your clients and your Jamf Proĭuring setup, the Jamf Pro built-in certificate authority generates a signingĬertificate for both macOS and iOS. Jamf Pro includes a built-in certificate authority. Note: While this guide focuses on signing Configuration Profiles for use with Jamf Pro, the concepts apply generally. If the profile is not signed at all, it appears with a red "Unsigned" label. If the profile is signed by a certificate that was not issued by a certificateĪuthority trusted by the operating system – as is the case with a self-signedĬertificate – the profile appears with a red "Unverified" label.

Preferences > Profiles with a green "Verified" label. Signing configuration profiles provides assurance of their origin, and anĪssertion their contents have not been modified in transit.Ī profile signed with a trusted signing certificate appears in System Signing Configuration Profiles - MacBlog ⌘ MacBlog Posts About RSS feed Contact Signing Configuration ProfilesĪpple has made it clear MDM is the future.Īs the preferred method of device management moves more and more toĬonfiguration Profiles, administrators must turn their focus toward digital
