You are here:
Create a Discovery Target for Jamf Pro
Create a Jamf Pro discovery target to bring managed Apple device data into CMDB. Keep endpoint Configuration Items (CIs) accurate and up to date. Configure the integration connection, review field mappings, and run discovery using Salesforce Flow. Populate CMDB with managed Mac computer and mobile device data, and support IT operations that rely on accurate CI data.
Required Editions
| Available in: Lightning Experience |
| Available in: Enterprise, Performance, and Unlimited Editions with Agentforce IT Service that have Discovery enabled. |
| User Permissions Needed | |
|---|---|
| To manage discovery: | IT Service Asset Discovery |
| To create and manage the Jamf connection: | Manage Integration Connections |
| To create and activate the integration flow: | Manage Flow |
| To use the integration template as a non-admin user: | App Framework Manage Template |
Complete these steps before you create the target.
- Turn on Jamf discovery in Salesforce Go. For more information, see Set Up Discovery using Salesforce Go.
- Make sure that the FlowIntegrationAddOn license is enabled for your org. Jamf discovery runs on Salesforce Flow.
- Create an API role and API client in Jamf Pro.
Create an API role and client in Jamf Pro to get the OAuth details for the Jamf connection. In the Jamf Pro admin console, complete these steps:
- Go to Settings | System | API Roles and Clients.
- Create an API role, and assign the Read Computers, Read Mobile Devices, and Read Licensed Software privileges.
- Create an API client, assign the API role, and enable the client.
- Capture the Client ID, and generate and copy the Client Secret.
- Note your Jamf Pro instance URL, such as
https://yourcompany.jamfcloud.com.
For more information, see API Roles and Clients in the Jamf Pro documentation.
- From the App Launcher, find and select CMDB and Service Graph.
- From the navigation panel, select Discovery & Scanning, and then select Targets.
- Select New.
- In Target Categories, select MDM & Device Management.
- In Probe Types, select Jamf, and then select Save and Continue.
- Enter a target name.
- Optionally, enter a description.
-
Configure the Jamf connection.
- In Jamf Connection, select New Connection.
-
Enter the connection details from your Jamf API client.
Field Value Connection Name A descriptive name for the connection. Client ID The Client ID from your Jamf API client. Client Secret The Client Secret from your Jamf API client. URL Your Jamf Pro instance URL, such as https://yourcompany.jamfcloud.com.Token URL https://{jamf-instance}/api/oauth/token -
Replace
{jamf-instance}in the Token URL with your Jamf Pro instance hostname. -
Save the connection.
The connections that you create appear in the Jamf Connection field.
- Test the connection to confirm that Salesforce can authenticate with Jamf Pro.
-
In Scan Frequency, select one of these options:
Option Description 60 Minutes Refreshes device and software data every 60 minutes. Daily Refreshes device and software data every day based on the schedule that you set. - Turn on Enabled to activate discovery for the target.
- Select Next.
-
On the Field Mapping page, review how CMDB fields map to Jamf fields for each device
category. These are the default mappings. You can review the mappings on this page, but
you can't edit them. To customize mappings, edit the flow after you create the
target.
- Select the Compute tab to review mappings for Mac computers and installed software.
- Select the Mobile Devices tab to review mappings for mobile devices.
For more information, see Considerations for Mapping Jamf Fields to CMDB. - Select Save.
-
On the Integration Flows page, review the linked Salesforce flows for Jamf
discovery.
If a flow doesn't load, retry or resolve the issue before you continue.
CIs are created or updated based on the field mappings and identification rules. When the target is enabled, discovery runs on the schedule that you set. Open the Scan Jobs page to monitor progress. Each Jamf target creates two scan jobs, one for computers and one for mobile devices. Each scan job shows a summary of resources by type and a detailed list of new and updated CIs.
