fleetdm / fleet

Open-source platform for IT, security, and infrastructure teams. (Linux, macOS, Chrome, Windows, cloud, data center)
https://fleetdm.com
Other
2.64k stars 377 forks source link

Sync local macOS password with IdP #19913

Open dherder opened 1 week ago

dherder commented 1 week ago

Problem

Today we integrate with IdPs via the macOS setup assistant and can use the IdP nameID to populate the user shortname when creating the first end user (local) account. We need to be able to constantly sync the password between the IdP and local user account to account for password resets within the IdP.

The pain right now is that end user passwords become out of sync with the IdP (where the user maintains their password) and the local macOS account.

noahtalerman commented 1 week ago

Contributes to Jamf parity.