{
    "api_version": "1",
    "kind": "dse_post",
    "self": "https://update.dsesecurity.com/api/v1/posts/dse-20260909-590-start-jamf-device-registration-from-self-service-not-company-portal/",
    "item": {
        "id": "https://update.dsesecurity.com/updates/dse-20260909-590-start-jamf-device-registration-from-self-service-not-company-portal/",
        "slug": "dse-20260909-590-start-jamf-device-registration-from-self-service-not-company-portal",
        "url": "https://update.dsesecurity.com/updates/dse-20260909-590-start-jamf-device-registration-from-self-service-not-company-portal/",
        "alternate_urls": {
            "markdown": "https://update.dsesecurity.com/updates/dse-20260909-590-start-jamf-device-registration-from-self-service-not-company-portal.md",
            "json": "https://update.dsesecurity.com/api/v1/posts/dse-20260909-590-start-jamf-device-registration-from-self-service-not-company-portal/"
        },
        "title": "Start Jamf device registration from Self Service, not Company Portal",
        "summary": "Which user-facing entry point should register a Jamf-managed Mac for the current Device Compliance integration?",
        "format": {
            "slug": "guide",
            "name": "Guide"
        },
        "priority": {
            "slug": "info",
            "name": "Information"
        },
        "featured": false,
        "image": {
            "theme": "cyber-defense",
            "label": "Cyber defense",
            "alt": "Layered glass and metal cyber-defense structure with controlled blue and gold signal paths.",
            "card_url": "https://update.dsesecurity.com/assets/editorial/cyber-defense-card.webp?v=1.8.20",
            "hero_url": "https://update.dsesecurity.com/assets/editorial/cyber-defense-hero.webp?v=1.8.20",
            "social_url": "https://update.dsesecurity.com/assets/editorial/cyber-defense-social-v2.jpg?v=1.8.20",
            "width": 2400,
            "height": 1350
        },
        "topics": [
            {
                "slug": "cybersecurity",
                "name": "Cybersecurity",
                "url": "https://update.dsesecurity.com/topic/cybersecurity/"
            },
            {
                "slug": "it",
                "name": "IT",
                "url": "https://update.dsesecurity.com/topic/it/"
            }
        ],
        "author": {
            "name": "DSE Security Editorial Team",
            "url": "https://update.dsesecurity.com/#editorial-team",
            "type": "Organization"
        },
        "publisher": {
            "name": "Detection Systems & Engineering",
            "url": "https://dsesecurity.com/"
        },
        "published_at": "2026-09-10T00:22:06+00:00",
        "modified_at": "2026-09-10T02:14:32+00:00",
        "reviewed_on": "2026-09-09",
        "reading_minutes": 2,
        "word_count": 236,
        "potentially_affected": "Use this distinction for Jamf Pro Device Compliance integration, not the older Conditional Access integration. Confirm the intended registration policy, applicable users, connector assignment, and compliance smart group before sending onboarding instructions.",
        "dse_recommendation": "Write the user handoff around the exact Self Service policy and its approved description.",
        "primary_source": {
            "name": "Jamf Managed Device Compliance with Microsoft Entra ID - Microsoft Intune | Microsoft Learn",
            "url": "https://learn.microsoft.com/en-us/intune/device-security/compliance/jamf-entra-id",
            "published_on": null,
            "authority": "Microsoft Learn"
        },
        "publishing_principles": "https://update.dsesecurity.com/updates/dse-updates-editorial-methodology/",
        "usage_info": "https://update.dsesecurity.com/usage/",
        "copyright_notice": "Copyright © 2026 Detection Systems & Engineering. All rights reserved.",
        "content_html": "<h2>Source facts</h2>\n<p>Microsoft&#8217;s Jamf Device Compliance guidance directs users to the registration policy in Jamf Self Service. Starting registration through the deployed Company Portal app instead produces AccountNotOnboarded. Jamf-managed devices in this integration do not appear in Intune&#8217;s device list. After registration, their initial Entra state is noncompliant; Jamf&#8217;s configured compliance smart group supplies the subsequent status through the connector. <a href=\"https://learn.microsoft.com/en-us/intune/device-security/compliance/jamf-entra-id\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft Learn</a>.</p>\n<h2>Applicability</h2>\n<p>Use this distinction for Jamf Pro Device Compliance integration, not the older Conditional Access integration. Confirm the intended registration policy, applicable users, connector assignment, and compliance smart group before sending onboarding instructions.</p>\n<h2>DSE recommendation</h2>\n<p>Write the user handoff around the exact Self Service policy and its approved description. Treat Company Portal installation as a separate preparation item, not the instruction to launch registration. Give the support desk a decision path that distinguishes a wrong entry point from an incomplete registration or missing compliance-group membership. Avoid directing users through repeated registration attempts without identifying which path they used.</p>\n<h2>Verification</h2>\n<p>On an approved pilot Mac, follow the documented Self Service policy and inspect the resulting Entra device record. Check the user&#8217;s connector-scoped group and the device&#8217;s compliance smart-group membership when the expected state does not arrive. Record the entry point and observed status transitions. Do not search only the Intune device list or infer a failed integration solely from the initial noncompliant state.</p>\n<h2>Official references</h2>\n<p><a href=\"https://learn.microsoft.com/en-us/intune/device-security/compliance/jamf-entra-id\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft Learn: Jamf Managed Device Compliance with Microsoft Entra ID</a>.</p>",
        "content_text": "Source facts\nMicrosoft’s Jamf Device Compliance guidance directs users to the registration policy in Jamf Self Service. Starting registration through the deployed Company Portal app instead produces AccountNotOnboarded. Jamf-managed devices in this integration do not appear in Intune’s device list. After registration, their initial Entra state is noncompliant; Jamf’s configured compliance smart group supplies the subsequent status through the connector. Microsoft Learn.\nApplicability\nUse this distinction for Jamf Pro Device Compliance integration, not the older Conditional Access integration. Confirm the intended registration policy, applicable users, connector assignment, and compliance smart group before sending onboarding instructions.\nDSE recommendation\nWrite the user handoff around the exact Self Service policy and its approved description. Treat Company Portal installation as a separate preparation item, not the instruction to launch registration. Give the support desk a decision path that distinguishes a wrong entry point from an incomplete registration or missing compliance-group membership. Avoid directing users through repeated registration attempts without identifying which path they used.\nVerification\nOn an approved pilot Mac, follow the documented Self Service policy and inspect the resulting Entra device record. Check the user’s connector-scoped group and the device’s compliance smart-group membership when the expected state does not arrive. Record the entry point and observed status transitions. Do not search only the Intune device list or infer a failed integration solely from the initial noncompliant state.\nOfficial references\nMicrosoft Learn: Jamf Managed Device Compliance with Microsoft Entra ID.",
        "content_markdown": "## Source facts\n\nMicrosoft’s Jamf Device Compliance guidance directs users to the registration policy in Jamf Self Service. Starting registration through the deployed Company Portal app instead produces AccountNotOnboarded. Jamf-managed devices in this integration do not appear in Intune’s device list. After registration, their initial Entra state is noncompliant; Jamf’s configured compliance smart group supplies the subsequent status through the connector. [Microsoft Learn](https://learn.microsoft.com/en-us/intune/device-security/compliance/jamf-entra-id).\n\n## Applicability\n\nUse this distinction for Jamf Pro Device Compliance integration, not the older Conditional Access integration. Confirm the intended registration policy, applicable users, connector assignment, and compliance smart group before sending onboarding instructions.\n\n## DSE recommendation\n\nWrite the user handoff around the exact Self Service policy and its approved description. Treat Company Portal installation as a separate preparation item, not the instruction to launch registration. Give the support desk a decision path that distinguishes a wrong entry point from an incomplete registration or missing compliance-group membership. Avoid directing users through repeated registration attempts without identifying which path they used.\n\n## Verification\n\nOn an approved pilot Mac, follow the documented Self Service policy and inspect the resulting Entra device record. Check the user’s connector-scoped group and the device’s compliance smart-group membership when the expected state does not arrive. Record the entry point and observed status transitions. Do not search only the Intune device list or infer a failed integration solely from the initial noncompliant state.\n\n## Official references\n\n[Microsoft Learn: Jamf Managed Device Compliance with Microsoft Entra ID](https://learn.microsoft.com/en-us/intune/device-security/compliance/jamf-entra-id)."
    },
    "json_ld": {
        "@context": "https://schema.org",
        "@graph": [
            {
                "@type": "Organization",
                "@id": "https://dsesecurity.com/#organization",
                "name": "Detection Systems & Engineering",
                "alternateName": "DSE Security",
                "url": "https://dsesecurity.com/",
                "logo": {
                    "@type": "ImageObject",
                    "url": "https://update.dsesecurity.com/assets/dse-logo-20260812.png?v=1.8.20"
                }
            },
            {
                "@type": "Organization",
                "@id": "https://update.dsesecurity.com/#editorial-team",
                "name": "DSE Security Editorial Team",
                "url": "https://update.dsesecurity.com/",
                "parentOrganization": {
                    "@id": "https://dsesecurity.com/#organization"
                }
            },
            {
                "@type": "WebSite",
                "@id": "https://update.dsesecurity.com/#website",
                "name": "DSE Updates",
                "alternateName": "DSE Security Knowledge Hub",
                "url": "https://update.dsesecurity.com/",
                "inLanguage": "en-US",
                "publisher": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "potentialAction": {
                    "@type": "SearchAction",
                    "target": {
                        "@type": "EntryPoint",
                        "urlTemplate": "https://update.dsesecurity.com/?q={search_term_string}"
                    },
                    "query-input": "required name=search_term_string"
                }
            },
            {
                "@type": "WebPage",
                "@id": "https://update.dsesecurity.com/updates/dse-20260909-590-start-jamf-device-registration-from-self-service-not-company-portal/",
                "url": "https://update.dsesecurity.com/updates/dse-20260909-590-start-jamf-device-registration-from-self-service-not-company-portal/",
                "isPartOf": {
                    "@id": "https://update.dsesecurity.com/#website"
                },
                "lastReviewed": "2026-09-09"
            },
            {
                "@type": "BreadcrumbList",
                "@id": "https://update.dsesecurity.com/updates/dse-20260909-590-start-jamf-device-registration-from-self-service-not-company-portal/#breadcrumbs",
                "itemListElement": [
                    {
                        "@type": "ListItem",
                        "position": 1,
                        "name": "DSE Updates",
                        "item": "https://update.dsesecurity.com/"
                    },
                    {
                        "@type": "ListItem",
                        "position": 2,
                        "name": "Start Jamf device registration from Self Service, not Company Portal",
                        "item": "https://update.dsesecurity.com/updates/dse-20260909-590-start-jamf-device-registration-from-self-service-not-company-portal/"
                    }
                ]
            },
            {
                "@type": [
                    "Article",
                    "TechArticle"
                ],
                "@id": "https://update.dsesecurity.com/updates/dse-20260909-590-start-jamf-device-registration-from-self-service-not-company-portal/#article",
                "identifier": "https://update.dsesecurity.com/updates/dse-20260909-590-start-jamf-device-registration-from-self-service-not-company-portal/",
                "url": "https://update.dsesecurity.com/updates/dse-20260909-590-start-jamf-device-registration-from-self-service-not-company-portal/",
                "headline": "Start Jamf device registration from Self Service, not Company Portal",
                "description": "Which user-facing entry point should register a Jamf-managed Mac for the current Device Compliance integration?",
                "abstract": "Which user-facing entry point should register a Jamf-managed Mac for the current Device Compliance integration?",
                "articleBody": "Source facts\nMicrosoft’s Jamf Device Compliance guidance directs users to the registration policy in Jamf Self Service. Starting registration through the deployed Company Portal app instead produces AccountNotOnboarded. Jamf-managed devices in this integration do not appear in Intune’s device list. After registration, their initial Entra state is noncompliant; Jamf’s configured compliance smart group supplies the subsequent status through the connector. Microsoft Learn.\nApplicability\nUse this distinction for Jamf Pro Device Compliance integration, not the older Conditional Access integration. Confirm the intended registration policy, applicable users, connector assignment, and compliance smart group before sending onboarding instructions.\nDSE recommendation\nWrite the user handoff around the exact Self Service policy and its approved description. Treat Company Portal installation as a separate preparation item, not the instruction to launch registration. Give the support desk a decision path that distinguishes a wrong entry point from an incomplete registration or missing compliance-group membership. Avoid directing users through repeated registration attempts without identifying which path they used.\nVerification\nOn an approved pilot Mac, follow the documented Self Service policy and inspect the resulting Entra device record. Check the user’s connector-scoped group and the device’s compliance smart-group membership when the expected state does not arrive. Record the entry point and observed status transitions. Do not search only the Intune device list or infer a failed integration solely from the initial noncompliant state.\nOfficial references\nMicrosoft Learn: Jamf Managed Device Compliance with Microsoft Entra ID.",
                "datePublished": "2026-09-10T00:22:06+00:00",
                "dateModified": "2026-09-10T02:14:32+00:00",
                "mainEntityOfPage": {
                    "@id": "https://update.dsesecurity.com/updates/dse-20260909-590-start-jamf-device-registration-from-self-service-not-company-portal/"
                },
                "inLanguage": "en-US",
                "isAccessibleForFree": true,
                "author": {
                    "@type": "Organization",
                    "name": "DSE Security Editorial Team",
                    "url": "https://update.dsesecurity.com/#editorial-team"
                },
                "publisher": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "image": {
                    "@type": "ImageObject",
                    "@id": "https://update.dsesecurity.com/updates/dse-20260909-590-start-jamf-device-registration-from-self-service-not-company-portal/#primaryimage",
                    "url": "https://update.dsesecurity.com/assets/editorial/cyber-defense-social-v2.jpg?v=1.8.20",
                    "contentUrl": "https://update.dsesecurity.com/assets/editorial/cyber-defense-social-v2.jpg?v=1.8.20",
                    "width": 1200,
                    "height": 630,
                    "caption": "Start Jamf device registration from Self Service, not Company Portal"
                },
                "articleSection": [
                    "Cybersecurity",
                    "IT"
                ],
                "keywords": [
                    "Cybersecurity",
                    "IT",
                    "Guide",
                    "Information priority"
                ],
                "genre": "Guide",
                "about": [
                    {
                        "@type": "Thing",
                        "name": "Cybersecurity",
                        "url": "https://update.dsesecurity.com/topic/cybersecurity/"
                    },
                    {
                        "@type": "Thing",
                        "name": "IT",
                        "url": "https://update.dsesecurity.com/topic/it/"
                    }
                ],
                "wordCount": 236,
                "timeRequired": "PT2M",
                "publishingPrinciples": "https://update.dsesecurity.com/updates/dse-updates-editorial-methodology/",
                "usageInfo": "https://update.dsesecurity.com/usage/",
                "copyrightHolder": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "copyrightNotice": "Copyright © 2026 Detection Systems & Engineering. All rights reserved.",
                "citation": {
                    "@type": "CreativeWork",
                    "name": "Jamf Managed Device Compliance with Microsoft Entra ID - Microsoft Intune | Microsoft Learn",
                    "url": "https://learn.microsoft.com/en-us/intune/device-security/compliance/jamf-entra-id"
                }
            }
        ]
    }
}