How to run macOS security compliance script on multiple mac devices using workspaceone MDM #207

Closed
opened 2026-01-19 18:29:38 +00:00 by michael · 2 comments
Owner

Originally created by @nileshgaikwadflex on GitHub.

Problem to solve

With the help of the https://github.com/usnistgov/macos_security/wiki i am able to build the "800-53r5_moderate_compliance.sh" script however i can not push it using our VMware workspace one MDM
With VMware workspace one we dont have option to run the interactive script with --check parameter.
Let me know the way to push the compliance check script using Vmware MDM.

running macOS compliance check script using MDM solution on multiple devices

Admins will be using this feature to run the script remotely on all MDM enrolled devices

Proposal

Documentation

Testing

What does success look like, and how can we measure that?

Originally created by @nileshgaikwadflex on GitHub. ### Problem to solve With the help of the https://github.com/usnistgov/macos_security/wiki i am able to build the "800-53r5_moderate_compliance.sh" script however i can not push it using our VMware workspace one MDM With VMware workspace one we dont have option to run the interactive script with --check parameter. Let me know the way to push the compliance check script using Vmware MDM. <!-- What problem do we solve? --> ### running macOS compliance check script using MDM solution on multiple devices <!-- Who will use this feature? If known, include any of the following: types of users (e.g. Member) --> ### Admins will be using this feature to run the script remotely on all MDM enrolled devices <!-- Include use cases, benefits, and/or goals (contributes to our vision?) --> ### Proposal <!-- How are we going to solve the problem? --> ### Documentation <!-- Relevant documentation to the feature--> ### Testing <!-- What risks does this change pose? How might it affect the quality of the product? What additional test coverage or changes to tests will be needed? --> ### What does success look like, and how can we measure that? <!-- Define both the success metrics and acceptance criteria. Note that success metrics indicate the desired business outcomes, while acceptance criteria indicate when the solution is working correctly. If there is no way to measure success, link to an issue that will implement a way to measure this. --> ### Links / references <!-- Any relevant links or references -->
Author
Owner

@robertgendler commented on GitHub:

Just came across this link this week. Hopefully it'll help.

https://github.com/vmware-samples/euc-samples/tree/master/UEM-Samples/Utilities%20and%20Tools/macOS/Baselines

@robertgendler commented on GitHub: Just came across this link this week. Hopefully it'll help. https://github.com/vmware-samples/euc-samples/tree/master/UEM-Samples/Utilities%20and%20Tools/macOS/Baselines
Author
Owner
@robertgendler commented on GitHub: @nileshgaikwadflex https://techzone.vmware.com/resource/enforcing-macos-security-compliance-project-baselines-workspace-one-operational-tutorial#configure-compliance-sensors-in-workspace-one-uem
Sign in to join this conversation.
No Label
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: usnistgov/macos_security#207