Skip to content

Instantly share code, notes, and snippets.

@zl4bv
Last active February 12, 2021 00:25
Show Gist options
  • Save zl4bv/bed87dd0e5143347ad384e4d84b4a09d to your computer and use it in GitHub Desktop.
Save zl4bv/bed87dd0e5143347ad384e4d84b4a09d to your computer and use it in GitHub Desktop.
Jamf configuration profile settings for Bitdefender Endpoint protection

Jamf configuration profile settings for Bitdefender Endpoint Security

Privacy Preferences Policy Control

Required for macOS Big Sur.

App Access

Identifier: com.bitdefender.epsecurity.BDLDaemonApp
Identifier Type: Bundle ID
Code Requirement: anchor apple generic and identifier "com.bitdefender.epsecurity.BDLDaemonApp" and (certificate leaf[field.1.2.840.113635.100.6.1.9] /* exists */ or certificate 1[field.1.2.840.113635.100.6.2.6] /* exists */ and certificate leaf[field.1.2.840.113635.100.6.1.13] /* exists */ and certificate leaf[subject.OU] = GUNFMW623Y)

App or Service: SystemPolicyAllFiles
Access: Allow

Required for macOS Catalina or earlier.

App Access

Identifier: com.bitdefender.EndpointSecurityforMac
Identifier Type: Bundle ID
Code Requirement: identifier "com.bitdefender.EndpointSecurityforMac" and anchor apple generic and certificate 1[field.1.2.840.113635.100.6.2.6] /* exists */ and certificate leaf[field.1.2.840.113635.100.6.1.13] /* exists */ and certificate leaf[subject.OU] = GUNFMW623Y

App or Service: SystemPolicyAllFiles
Access: Allow

Required for macOS Catalina or earlier.

App Access

Identifier: /Library/Bitdefender/AVP/BDLDaemon
Identifier Type: Path
Code Requirement: identifier BDLDaemon and anchor apple generic and certificate 1[field.1.2.840.113635.100.6.2.6] /* exists */ and certificate leaf[field.1.2.840.113635.100.6.1.13] /* exists */ and certificate leaf[subject.OU] = GUNFMW623Y

App or Service: SystemPolicyAllFiles
Access: Allow

Approved Kernel Extensions

Required for macOS Catalina or earlier.

Approved Team ID

Display Name: Bitdefender
Team ID: GUNFMW623Y

System Extensions

Required for macOS Big Sur.

Allowed TeamIDs and System Extensions

Display Name: Bitdefender
System Extension Types: Allowed System Extensions
Team Identifier: GUNFMW623Y

Allowed System Extensions: com.bitdefender.cst.net.dci.dci-network-extension

Notes

To grab an updated identifer for the code requirement, run the following command and use the string after "designated=>"

codesign -display -r - <identifier>

Sources

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment