
Apple @ Work is exclusively brought to you by Mosyle, the only Apple Unified Platform. Mosyle is the only solution that integrates in a single professional-grade platform all the solutions necessary to seamlessly and automatically deploy, manage & protect Apple devices at work. Over 45,000 organizations trust Mosyle to make millions of Apple devices work-ready with no effort and at an affordable cost. Request your EXTENDED TRIAL today and understand why Mosyle is everything you need to work with Apple.
One of the things that Apple got right with the foundation of macOS (then OS X) was the ability to operate the computer as a limited user. Running as a Standard user is one of the best ways to level up your macOS security, especially in the enterprise. The Mac team at SAP recently released Privileges 2.1, which has some great features to help IT teams allow their users to gain admin privileges when needed.

About Apple @ Work: Bradley Chambers managed an enterprise IT network from 2009 to 2021. Through his experience deploying and managing firewalls, switches, a mobile device management system, enterprise grade Wi-Fi, 1000s of Macs, and 1000s of iPads, Bradley will highlight ways in which Apple IT managers deploy Apple devices, build networks to support them, train users, stories from the trenches of IT management, and ways Apple could improve its products for IT departments.
What’s new in Privileges 2.1?
With this 2.1 update, Privileges now includes a menu bar status item for users who prefer not to keep the app in the Dock (it’s me). Admin privileges can also be renewed without waiting for them to expire—users will receive a notification one minute before expiration but can also manually renew access at any time via the app, Dock icon, menu bar, or PrivilegesCLI. For Apple IT teams managing access policies, version 2.1 adds the ability to exclude specific macOS users from having their admin rights revoked at login through a configuration profile deployed via your device management system
Other improvements with Privilege include the option to customize the help button, which can now be hidden or configured to direct users to an internal IT support page instead of the default GitHub page. Apple IT teams can also pass custom data to the app, such as a machine’s serial number or hostname, through the webhook for better tracking and automation. Finally, the update includes a Bulgarian localization, making it more accessible to a wider audience.
Wrap up
This app might seem simple, but it’s amazing for leveling up macOS security across your fleet. SAP’s decision to give this app away instead of charging is a huge benefit to the entire Mac Admins community (go support the Mac Admins Foundation!) Managing admin privileges on macOS is a balancing act between security and user productivity. With Privileges 2.1, Apple IT teams gain more flexibility and control over how and when users elevate their access while keeping security policies intact. For organizations trying to balance productivity with security across their Mac fleet, this update makes Privileges an even more valuable tool for managing permissions effectively.
Apple @ Work is exclusively brought to you by Mosyle, the only Apple Unified Platform. Mosyle is the only solution that integrates in a single professional-grade platform all the solutions necessary to seamlessly and automatically deploy, manage & protect Apple devices at work. Over 45,000 organizations trust Mosyle to make millions of Apple devices work-ready with no effort and at an affordable cost. Request your EXTENDED TRIAL today and understand why Mosyle is everything you need to work with Apple.
FTC: We use income earning auto affiliate links. More.