For OpenVPN I need to download 3-4 config files to the app on Ipads or Iphone. For now it's only possible to deploy the files throug apple configurator 2 once the device is managed. I'd like to be able to send the config files from simple mdm per user. In the case of OpenVPN that would allow to configure a vpn remotely with out needing to deal with custom profiles that don't work properly most of the time.2 votes
We're using SimpleMDM to help with software compliance. We've discovered that if two apps share the same app identifier (so org.mozilla.firefox for example) - SimpleMDM's software view will only list the first one discovered.
This is particularly painful for apps like Pycharm - where "Pycharm" and "Pycharm Community Edition" share the same app identifier - so it's impossible to tell which version someone is using... or perhaps they have both versions installed.
Can you add the ability to capture duplicate installs (which their own app identifier) please?
This issue is making our software compliance team very sad indeed.
It would be great to have a way to customize the Munki Managed Software Centre now that Munki integration is part of the beta. If there was a way to apply something like Munki Theme Creator files (https://grovetech.co/blog/munki-theme-creator-for-munki/) This would be amazing.0 votes
FULL pkginfo support.
- Basic Info information, Name, size, type, restart action, force install date, catagory, etc
- Contents: Dmg/pkg contents
- Requirements: Software requirement, upgrades, minimal OS, maximum OS
- Installation: Blockers, supported architecture.
- Install scripts: pre install and post install
- Uninstall scripts: pre uninstall, post uninstall
- Install check scripts: Scripts for determining if it should install or uninstall
I used the layout of MunkiAdmin of easy of demonstration3 votes
It would be helpful for us to have an API endpoint that can tell our integrations whether or not the user channel has been enrolled for a macOS device. This could be as simple as a true/false; bonus points if we can somehow get the user name (not sure if MDM spec permits this).1 vote
When revealing passwords (such as Firmware Password), display numbers and letters in different colors. With the current font it's, for example, really hard to separate lower case L from the number one. Attaching a screenshot on how 1Password does this.1 vote
Need to block USB storage devices on workstations. Ideally could fine-tune configuration such as blocking only read/write access or both, and also blocking only if USB storage device is not encrypted.3 votes
Document the expected namespaces for the Logging API. This would allow for better planning / implementation of log ingestion / grok’ing.1 vote
With admins having to move profiles to MDM in 10.16, it would be great to be able to edit the Simple created PayloadIdentifier for these profiles to match existing values.
A warning dialog box to explain the issues this may create would be sufficient (and welcome) to help admins know the risks with editing the value.6 votes
Allow certain profiles to only be deployed to certain versions of macOS.
I would like to be able to deploy certain profiles ONLY if the current macOS version is 10.16 or above. The MDM spec reports the OS version so using this as criteria for profile deployment would be a big enhancement going forward.4 votes
When enrolling a user into the platform, it would be nice to capture the email account that they used to gain the enrollment link and add to the device information. This allows the Admin an easier time finding the device when a user is added or removed. Another big improvement would be for security, If a device is lost or stolen sometimes having to find "John smith'"s device can be hard and time-consuming when he named it "bobby's world mac" or "this is my mac". By simply having another way to identify the device i.e firstname.lastname@example.org would make it much easier to find the device and lock or wipe. Also, to track the asset since I know the device belongs to that email account.
When enrolling a user into the platform, it would be nice to capture the email account that they used to gain the enrollment link and add to the device information. This allows the Admin an easier time finding the device when a user is added or removed. Another big improvement would be for security, If a device is lost or stolen sometimes having to find "John smith'"s device can be hard and time-consuming when he named it "bobby's world mac" or "this is my mac". By simply having another way to identify the device i.e email@example.com would make it much…3 votes
iOS allows default changes for mail and browser, could these be set via device profile?0 votes
We noticed the MDM payload for SCEP is not supported. it would be a great addition. Especially interesting is Dynamic-Microsoft CA mode, so that the payload would be working with OTP on each request to PKI.7 votes
Please integrate Munkireport, Sal, or some type of reporting and smart group criteria functionality. It would be lovely to have hosted reporting built into SimpleMDM. Munkireport is the most obvious choice due to the sheer amount of great modules available. Thank you!14 votes
iOS allows to map shared network drive in files app. It would be nice to map them through simple mdm. and provide the user login3 votes
Please provide a consumable url for packages distributed via the Munki method for use with AutoPkg as a MUNKI_REPO e.g.
defaults write com.github.autopkg MUNKI_REPO /path/to/munki_repo. Most Munki admins leverage AutoPkg for programmatic package management. Lovely work, thanks!16 votes
Allow for configuration of:
- DEP Settings
- General Settings
- Welcome Screen
Via an API endpoint.1 vote
At the moment there's no obvious feedback that a lock command has been received and processed. It would awesome if there was a webhook triggered when a device responds to a lock command...1 vote
Ideally available from the API:
- retrieve a single attribute and its default (by name or id)
- set a default attribute1 vote
- Don't see your idea?