Sanctioned EDR/EPP deployed alongside Huntress Managed EDR. Requesting allow-list to prevent cross-detection and CPU
J
Jackson Pavelka
Product: Jamf Protect (Jamf Software LLC) — macOS endpoint security agent
Reason: Sanctioned EDR/EPP deployed alongside Huntress Managed EDR.
Requesting allow-list to prevent cross-detection and CPU
contention between two Endpoint Security framework clients.
Apple Developer Team ID: 483DWKW443
Bundle / Signing IDs:
com.jamf.protect.security-extension
com.jamf.protect.daemon
Paths:
/Applications/JamfProtect.app
/Applications/JamfProtect.app/Contents/Library/SystemExtensions/com.jamf.protect.security-extension.systemextension
/Library/LaunchDaemons/com.jamf.protect.daemon.plist
/usr/local/bin/protectctl
/Library/Application Support/JamfProtect/
Special handling:
/Library/Application Support/JamfProtect/Quarantine/ contains files
already quarantined by Jamf Protect. These are neutralized threats
under management, not live infections. Please flag rather than
auto-remediate to avoid duplicate incidents.
Source: Jamf Protect documentation