Skip to main content

Enforce Web protection policies to specific UEM groups

Updated over 2 weeks ago

Description

This will go over the process of having separate Web Protection policies for different groups in Jamf Safe internet while leveraging UEM connection with Jamf Pro.

Requirements:

  • UEM connection to Jamf Pro

  • Devices are in static Smart or Static groups within Jamf Pro.

Setting Up Separate Web Protection Policies for Different Groups

  1. Open Jamf Pro and Jamf Safe Internet in two separate tabs.

  2. Navigate to Smart or Static groups in Jamf Pro

  3. Copy the Name of the group

  4. Navigate back into Jamf Safe internet > Devices > Device Groups > Add > Group > Paste the copied value from Jamf Pro.

  5. Repeat this process until all desired groups are created in Jamf Safe internet manually

Now that all the Groups are manually created in Jamf Safe internet setup group membership mapping up in settings which will move the device over to the specified groups upon a UEM sync.

  1. Navigate to Settings > UEM Integrations

  2. Scroll down to UEM Group Membership mapping

  3. Click Add this will create a new row below

    This photo shows where you can find the Add button to create a new row.

  4. Under the UEM side we will have a drop down this will show all the Computer / Mobile static and smart groups

  5. Select the Computer / Mobile static and smart groups under the UEM side. Then under the Jamf Security cloud side select the same group that was created in the first steps.

  6. Click Save at the top right of the screen and then proceed with a sync.

Now that the Mapping is created upon processing the sync the devices will automatically move to the corresponding groups that were mapped in Group mappings.

Important note: Making a policy change to the base level will affect all groups

Lastly making a different Web Protection policy per group:

  1. Navigate to Policies > Web Protection policy

  2. Select the Group level that we want to make a specific policy change for

    This photo shows where you can Select the Group level that you want for your policy.

  3. Once the changes are made in that group click Save and apply.

Did this answer your question?