Skip to content

Instantly share code, notes, and snippets.

View gist:bfa800c4bbf65eee1d09
# This script works well for removing local accounts that are older than 1 day.
# Obviously the 1 day timeframe can be modified (-mtime +1).
# Runs using Launch Daemon - /Library/LaunchDaemons/
# version .7
gmarnin / gist:615f7e8d209f6031e2960027582e9f80
Created Apr 4, 2016
Delete account after 30 days config profile
View gist:615f7e8d209f6031e2960027582e9f80
<?xml version="1.0" encoding="UTF-8"?>
<!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "">
<plist version="1.0">
gmarnin / gist:37265c0c37ebbcb9f14818033b78e2d2
Created Dec 18, 2018
T2 10.14.2 update, MSC log from
View gist:37265c0c37ebbcb9f14818033b78e2d2
Dec 18 2018 11:33:39 -0500 Using manifest: site_default
Dec 18 2018 11:33:39 -0500 DEBUG2: Catalog base URL is: https://domain/munki/catalogs/
Dec 18 2018 11:33:39 -0500 Getting catalog production...
Dec 18 2018 11:33:39 -0500 DEBUG2: Options: {'logging_function': <function display_debug2 at 0x108247aa0>, 'ignore_system_proxy': False, 'additional_headers': {u'Authorization': u'Basic aXRzXG1hY211bmtpOk1NMjAxNCNy', 'User-Agent': u'managedsoftwareupdate/ Darwin/18.2.0'}, 'file': u'/Library/Managed Installs/catalogs/', 'cache_data': {
etag = "\"83f113e0c896d41:0\"";
"last-modified" = "Tue, 18 Dec 2018 11:57:39 GMT";
}, 'url': u'https://domain/munki/catalogs/production', 'follow_redirects': u'none', 'download_only_if_changed': True, 'can_resume': False}
Dec 18 2018 11:33:39 -0500 DEBUG2: URLSession_task_didReceiveChallenge_completionHandler_
Dec 18 2018 11:33:39 -0500 DEBUG2: Authentication challenge for Host: domain Realm: None AuthMethod: NSURLAuthenticationMethodSer
View Disable Siri
<?xml version="1.0" encoding="UTF-8"?>
<!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "">
<plist version="1.0">
View gist:e8e38d404eaf9a8158e02aa921417592
# Attach the Cached DMG from the Waiting Room
hdiutil attach -nobrowse -noverify /tmp/bomgar-scc-w0hdc308ewf5jf6z6eg7d8ewg5gx87yiizxxxwwc40jc90.dmg
# Install the client from the standard mount location for the bomgar-scc client installer.
/Volumes/bomgar-scc/Double-Click\ To\ Start\ Support\;
# If you want to run the hdiutil detach, add a wait command so that it finishes installing first
View gist:7c284bb297df11ea8958
# Marnin, RU ITS, version .1, 11-2014
# Source:
echo "Check the last login time for an account"
View gist:9a914bed429d7b276b7e
# enable developer mode
/usr/sbin/DevToolsSecurity -enable
# make sure all users on this machine are members of the _developer group
/usr/sbin/dseditgroup -o edit -t group -a everyone _developer
# accept Xcode license
View gist:bc5fc6d7f0935e9dcced
12mor101m3:~ autopkg$ autopkg run -vv FinaleUpdate.munki
Processing FinaleUpdate.munki...
{'Input': {'appcast_url': u''}}
SparkleUpdateInfoProvider: Version retrieved from appcast: 5545
SparkleUpdateInfoProvider: User-facing version retrieved from appcast: 2014.4.0.5545
SparkleUpdateInfoProvider: Found URL
{'Output': {'url': '',
'version': '2014.4.0.5545'}}
View gist:00bb721744f8d2fef4f8
<?xml version="1.0" encoding="UTF-8"?>
<!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "">
<plist version="1.0">
gmarnin / gist:e17eb746e23d2e75fe1b
Created Jun 10, 2015
Radar 14023881 - FileVault 2: Allow encrypted password with fdesetup enable -inputplist
View gist:e17eb746e23d2e75fe1b
When using fdesetup enable -inputplist to enable other accounts, the password in the plist is clear text. I would like to file an enhancement to have the -inputplist plist support hashed passwords.
Steps to Reproduce:
If you run fdesetup enable -inputplist with a hashed password, FileVault 2 is not enabled for the hashed password account.
Expected Results: