During macOS Automated Device Enrollment, I’m trying to enforce a Hexnode passcode policy before the user creates the first local account. The Mac goes through Setup Assistant normally, but when it reaches the account creation screen, the passcode policy still shows as pending in Hexnode. Because of that, users can set a password that doesn’t meet our requirements.
I did see the macOS password requirements tooltip appear once during setup, but I haven’t been able to get that consistently. Right now, the ADE profile includes the passcode policy along with other things like our endpoint security app, FileVault, firewall, and OS update settings.
Is there any way to make sure the passcode policy gets applied first, or make Setup Assistant wait until it’s in place?