PayloadKit

NoMAD Pro

menu.nomad.NoMADPro

NoMAD Pro settings

macOS

Configuration Keys (68)

KeyTypeTitle
AuthServer

URL for the Okta server, note no preceding https: is required.

Default: "dev-660125.oktapreview.com"

string—
PFC_SegmentedControl_0required
string—
LicenseFile

The contents of a .nomadlicense file encoded as Base64 data.

data—
PeriodicUpdateTime

Time in minutes between periodic background updates.

Default: 15

integer—
SignInCommand

Path to a script or other binary to be run after a successful sign in.

string—
PFC_SegmentedControl_Generalrequired
string—
UseKeychainPrompt

Shows the Sign In window on launch unless the user has a password in the keychain.

boolean—
UseKeychainPromptExlusions

List of users that can ignore the keychain prompt.

array—
User
string—
SignInLogo

Path to a logo file. The space is 342x90 pixels.

string—
TitleSignIn

Title of the Sign In window.

Default: "Sign in to Okta"

string—
LabelUsername

The text label for the username field in the Sign In window.

Default: "Corporate e-mail"

string—
LabelPassword

The text label for the password field in the Sign In window.

Default: "Corporate Password"

string—
DontShowWelcome

Disables the showing of the welcome splash screen on launch.

boolean—
AutoAuth

Determines if web extensions automatically authenticate via the NoMAD Pro UI.

Default: true

boolean—
CheckSafariExtension

Determines if the user is warned that the NoMAD Pro extension has not been enabled in Safari.

Default: true

boolean—
MessagePluginDisabled

Text to show when alerting the user that the Safari plugin has not been enabled.

Default: "Please enable the plugin in Safari."

string—
IgnoreDomainReachability

Determines if SRV record lookups are used to determine if the AD domain is reachable.

boolean—
LDAPServers

Specific Domain Controllers to use for AD lookups.

array—
LDAPServer
stringLDAPServer
KerberosRealm

Kerberos realm to use to get Kerberos tickets as a side effect of authentication.

string—
TicketsOnSignIn

Causes NoMAD Pro to get Kerberos Tickets.

boolean—
KerberosRenew

Determines if the Kerberos tickets should be renewed or not.

boolean—
KerberosShortNameAsk

Determines if the user is asked to enter their Kerberos short name on first sign in.

boolean—
KerberosShortNameAskMessage

The message text when asking the user for their Kerberos short name.

Default: "Please enter your AD user name."

string—
KerberosShortName

The shortname to use for Kerberos tickets. If unset the sign in name is used.

Default: "joel"

string—
UseKeychain

Determines if the Okta password is stored in the user's keychain.

boolean—
LocalPasswordSync

Determines if the Okta password is synchronized with the local account.

boolean—
LocalPasswordSyncOnMatchOnly

Only sync the password if the Okta account name is the same as the local account name.

boolean—
LocalPasswordSyncMessage

The alert dialog text that the user is presented with when asked to enter in his or her local password.

Default: "Please enter your local user account password."

string—
KeychainItems

Items to update when the user's local password is updated as well.

dictKeychainItems
{{key}}
stringKeychain Item
{{value}}
stringAccount
KeychainItemsDebug

Updates keychain items on every sign in. Used for debugging.

Default: true

boolean—
PFC_SegmentedControl_Passwordrequired
string—
ChangePasswordOrder

Determines the order and setting for the password change menu. NOT IMPLEMENTED YET, THERE IS NO DOCUMENTATION ON THIS KEY.

array—
ChangePasswordItem
dictChangePasswordItem
PasswordChangeCommand

Script or other binary to run when a password is successfully changed.

string—
ChangePasswordTimer

Time in minutes until the user is prompted to sign in again after a Password Change.

Default: 3

integer—
WarnOnPasswordExpiration

Determines whether NoMAD Pro should warn the user on sign in if the password is about to expire.

boolean—
PasswordExpirationMenu

Determines if the countdown before password expiration is shown in the menu.

boolean—
PasswordExpirationMenuDays

Number of days remaining before the password expiration countdown is shown in the menu bar.

Default: 15

integer—
ExpirationWarningDays

Number of days remaining before sending notifications via the Notification Center.

Default: 5

integer—
ADExpirationShow

Shows a menu item beneath the current user's name showing the user's password expiration as determined by AD.

boolean—
PasswordPolicy

Complexity policy for changing the password via Kerberos.

dict—
minLength
string—
minLowerCase
string—
minNumber
string—
minSymbol
string—
minUpperCase
string—
minMatches
string—
ExportableKey

Allows the private key of the user certificate to be exported.

boolean—
X509CA

FQDN of the Windows web CA for NoMAD Pro to use for certificates.

string—
Template

Certificate template to request when using the Windows CA.

Default: "User Auth"

string—
WifiNetworks

A list of wireless networks that the certificate created by NoMAD Pro should be associated with.

array—
SSID
string—
MenuIcon

Path to a 16x16 pixel image to use as the icon in the menu bar.

string—
PFC_SegmentedControl_Menurequired
string—
ActionsUpdateTime

Number of minutes between updating the Actions Menu.

Default: 15

integer—
GetHelpType

Determines type of GetHelp function

Range: Bomgar, URL, App

string—
GetHelpOptions

URL or Path for GetHelpType (<<serial>>, <<fullname>>, <<shortname>> and <<domain>> are currently supported as substitutions)

string—
SelfServicePath

File path for a Self Service application not found automatically.

string—
HideAbout

Hides the About menu item.

boolean—
HideActions

Hides the Actions menu item.

boolean—
HideChangePassword

Hides the Change Password menu item.

boolean—
HideGetHelp

Hides the Get Help menu item.

boolean—
HideGetSoftware

Hides the Get Software menu item.

boolean—
HideLockScreen

Hides the Lock Screen menu item.

boolean—
HidePreferences

Hides the Preferences menu item.

boolean—
HideSignIn

Hides the Sign In menu item.

boolean—
HideQuit

Hides the Quit menu item.

boolean—
MessagePasswordChangePolicy

Message text when changing password via Kerberos for the AD complexity policy.

Default: "Please review the employee handbook."

string—
MenuAbout

Menu item text for the About item.

Default: "This Application"

string—
MenuActions

Menu item text for the Actions item.

Default: "Quick Actions"

string—
MenuChangePassword

Menu item text for the Change Password item.

Default: "Change network password"

string—
MenuGetHelp

Menu item text for the Get Help item.

Default: "File ticket"

string—
MenuGetSoftware

Menu item text for the Get Software item.

Default: "Get Apps"

string—
MenuLockScreen

Menu item text for the Lock Screen item.

Default: "Screen Lock"

string—
MenuPreferences

Menu item text for the Preferences item.

Default: "Prefs"

string—
MenuSignIn

Menu item text for the Sign In item.

Default: "Login"

string—