Hey everyone, with the official release of macOS Sequoia on September 16th, the question about Endpoint Privilege Management and macOS Sequoia support has come in. We are working hard to resolve the issues found. Below is a list of known issues for the macOS Sequoia operating system.
Wrong description of endpoint in PMC as "macOS 15.0.0"
The PM SaaS Adapter does not correctly identify the macOS Sequoia systems. As a result, the computer OS description will show as "macOS 15.0.0" instead of macOS Sequoia in the portal.
Workaround: None
Resolution: We plan to resolve this in EPM-M 24.5 MR2, planned for late September. We are updating our adapter to send the correct description.
Knowledge base article: KB0021576
Applications open in the background
Applications on Sequoia are not displayed in the foreground when the EPM-M dialog is not completed in a timely manner. We have informed Apple via Feedback Assistant and awaiting a response.
Workaround: The application will launch, and the user can click on the application toolbar icon to bring the application to the foreground.
Resolution: We plan to resolve this in EPM-M 24.5 MR2, planned for late September.
Knowledge base article: KB0021577
Upgrading macOS to macOS Sequoia removes EPM users
There has been a change in macOS Sequoia, which means that when upgrading the macOS version to Sequoia, the operating system will remove the two core users used within EPM-M, causing unexpected behaviour. We did raise this as a Feedback Assistant ticket with apple which they responded with it as expected behaviour.
Workaround: Reinstall the EPM-M on macOS Sequoia.
Resolution: We plan to resolve this in EPM-M 24.5 MR2, planned for late September. We are updating our software to ensure the users exist during process start and device boot.
Knowledge base article: KB0021579
High flex users can disable system extensions
There have been changes to System Extension control within Sequoia, allowing high-flex or real admins to disable System Extensions.
Workaround: Update the configuration profile to include "Don't allow removal from UI" in the System Extension payload for the BeyondTrust System Extension.
Resolution: We plan to resolve this in EPM-M 24.5 MR2, planned for late September. We will update our configuration profile to version v2.2.1 to include the new payload.
Knowledge base article: KB0021580