Some customers using Jamf have encountered challenges when attempting to authenticate with Single Sign-On (SSO) while setting up a Hypersync. Jamf provides an undocumented login failover option that may allow users to bypass their Jamf SSO flow by appending a "?failover" parameter to the Jamf domain URL. This can force Jamf to present a non-SSO login page instead of redirecting through their identity provider. When used, this may allow login with Jamf local credentials if Jamf has them enabled.
Please note that this article describes the workaround strictly for customer awareness, as some organizations have reported it works for them. This is not a Hyperproof feature, and Hyperproof does not control or guarantee how Jamf implements or maintains this behavior.
How to use it
Navigate to the Hyperproof Hypersync setup for Jamf.
When prompted for the Jamf domain, append '?failover' to the end of the URL.
Continue authentication when Jamf presents the login screen.
Note:
If your organization does not allow Jamf local user logins or if SSO enforcement is configured at the Jamf tenant level, this method may not work.
Recommendations
Consult your Jamf administrator before using this method, especially if your organization enforces SSO as a security control.
Review Jamf’s own documentation or community discussions for more details:
Jamf Community Discussion: "SSO Enablement for Jamf URL" here for more details.
Consider the long-term viability of this approach, as Jamf may discontinue the '?failover' parameter without notice.
Important Disclaimer
This method is a Jamf-provided workaround and is not supported, endorsed, or maintained by Hyperproof.
Hyperproof’s authentication and Hypersync requirements have not changed.
This workaround interacts solely with Jamf’s authentication workflow.
Jamf may change, disable, or restrict this functionality at any time, which could impact your ability to authenticate or maintain an active Hypersync connection.
Customers using this method do so at their own discretion and risk.
Hyperproof Support can provide general guidance but cannot troubleshoot Jamf SSO bypass behavior or issues arising from it.
Need Assistance?
Hyperproof Support can help answer questions about Hypersync configuration and requirements. However, troubleshooting Jamf’s SSO bypass behavior is outside the scope of Hyperproof Support. If issues arise while using this method, we recommend contacting Jamf Support. For all other queries, please reach out to our support team at support@hyperproof.io.

