

Select the All tab, then click ( +) and select the Mac tab.Go to DEVICE MANAGEMENT > Policy Management.Have your CrowdStrike Customer ID (CCID) checksum handy because both CrowdStrike policies will use it to create the MDM profile. You’ll apply both this policy and the CrowdStrike Falcon MDM Settings policy to all macOS devices with Intel processors that run the firmware analysis tool. This policy installs the necessary permissions for the Falcon Firmware Analysis tool. CrowdStrike Falcon Firmware Analysis Settings Policy (Intel only) – Use this policy for macOS devices with Intel processors that include a kernel extension to run CrowdStrike’s firmware analysis tool.It also creates an MDM licensing profile. This policy installs the necessary permissions on Apple silicon devices and macOS devices with Intel processors, including Full Disk Access, Notifications, System Extensions, and Web Content Filter permissions. CrowdStrike Falcon MDM Settings (No kernel extension) Policy – Use this general policy to configure Apple silicon devices and macOS devices with Intel processors.If you have a macOS device on Intel that includes a kernel extension policy to run CrowdStrike’s firmware analysis tool, you’ll also need to apply the CrowdStrike Falcon Firmware Analysis Settings Policy (Intel only). Creating a MacOS CrowdStrike PolicyĮvery Apple silicon and macOS device requires the CrowdStrike Falcon MDM Settings (No kernel extension) Policy described below. For macOS devices, you should create and apply the CrowdStrike policy before you deploy the CrowdStrike app.
