Jamf School Device Sync

Foxpass can sync device inventory and status from Jamf School. The synchronized inventory can be used for device-aware access control in Foxpass.

Prerequisites

Before starting, make sure you have:

  • Administrator access to Jamf School
  • Administrator access to the Foxpass Console
  • Your Jamf School URL
  • A Jamf School API key
  • Your Jamf School Network ID

Step 1: Create a Jamf School API key

  • Sign in to Jamf School.
  • Navigate to Organization > Settings.
  • Select API.
  • Click Add API Key.

Create a Jamf School API key

  • Create an API key with permission to read the device inventory.
  • Copy the API key and store it securely.

For more information, see the Jamf School API documentation.

Step 2: Find your Network ID

  • In Jamf School, navigate to Devices > Enroll Device(s).
  • Find the MDM Server URL.
  • Copy the number following network= in the URL. This is your Network ID.

    For example, if the URL is:

    https://example.jamfcloud.com/?network=12345678

    The Network ID is: 12345678

Find your Network ID

Step 3: Connect Jamf School to Foxpass

Sign in to the Foxpass Console.

  • Navigate to Directory > Device Sync.
  • Find Jamf School and click Connect.
  • Enter the following information:
    • Jamf School URL: Enter your base Jamf School URL, usually https://.jamfcloud.com.
    • Network ID: Enter the Network ID identified in the previous step.
    • API Key: Enter the API key created in Jamf School.
    • Click Submit.

Connect Jamf School to Foxpass


Foxpass will connect to Jamf School and begin importing the available device inventory.

Step 4: Verify the device sync

After the sync completes:

  • Return to Directory > Device Sync.
  • Confirm that Jamf School shows as Connected and that the sync status is healthy.
  • Review the Devices table and confirm that the expected devices appear with Jamf School as their source.

Device sync behavior

Keep the following behavior in mind:

  • Foxpass uses the device UDID as its unique identifier.
  • Devices without a UDID are skipped.
  • Foxpass uses the Jamf School device name when available. If a name is unavailable, it uses the serial
  • number or creates a name using the device UDID.
  • The device’s last check-in time is displayed as its last-login timestamp in Foxpass.
  • Devices in the Jamf School Trash remain in Foxpass but are marked inactive.
  • If a previously synchronized device is no longer returned by the Jamf School API, it is deleted from the Foxpass device inventory.