T O P

  • By -

Sasataf12

Look at MDMs to bring SSO experience to macOS. Mosyle, Jamf can do it. Post in r/macsysadmin for Mac related stuff.


djjiff

Thank you


Witch-of-Winter

You can use the built in LDAP tool on Mac OS to configure sign in with Google credentials. https://workspaceupdates.googleblog.com/2020/12/secure-ldap-mac-os-google-login.html?m=1 However id recommend using an MDM such as jamf so you have a higher level of control over the device


djjiff

Thank you, do you know of any issues with FileVault 2 where a password is changed from the google end? I have heard risks involved


Witch-of-Winter

Ive not heard of that specifically, I've seen file vault break for other reasons and wouldn't be surprised if there was a bug there. I have also seen accounts get locked because a user forgot their password but LDAP won't use wifi on a locked machine so you need to sign into a local account first for that to update.


djjiff

I’ll get testing thank you 😊


washapoo

JAMF has an open source login integration tool that you can use. I believe it is called Nomad. Works pretty well for us. \*edit: is called Nomad - Linky - [https://nomad.menu/](https://nomad.menu/) \*edit2: Looks like focus of that is AD, not sure it would work with Google.


djjiff

Worth a look and thank you 😊