Adding Apple Devices
Overview
Use the Apple platform to enroll and manage Apple devices running iOS (8.0 or later), macOS (10.12 or later), or tvOS (10.2 or later).
This section has the following topics:
- Using the Apple Push Notification Service
- Adding iOS Devices
- Adding macOS Devices
- Adding tvOS Devices
- Manually Renewing MDM Profiles for Apple Devices
- Using Apple Automated Device Enrollment
- Uninstall the agent.
- Install the agent again.
- Open the agent within one hour of installing.
Apple devices do not require a SOTI MobiControl device agent for enrollment. However, you can install a SOTI MobiControl device agent on iOS devices after enrollment. To do so, create an app policy (see Using App Policies) that has the SOTI MobiControl device agent and target the enrolled device.
Use Lightweight Directory Access Protocol (LDAP) or IdP (backed by LDAP) to enroll your devices. After configuring the LDAP (see Managing Directory Service Connections) or IdP connection (see Managing Identity Provider Connections), enroll devices in specific device groups based on their LDAP or IdP groups. You can also use the LDAP or IdP groups for device authentication.
Automated Device Enrollment
Automated Device Enrollment (ADE) enables zero-touch, large-scale deployment of Apple devices. Use it for devices purchased directly from Apple, an Apple Authorized Reseller, or a carrier. After ordering the devices from a preferred channel, configure all the management settings in SOTI MobiControl. Settings should include preventing users from unenrolling their devices. Ship the devices directly to the user’s home. After unboxing and activating the device, it automatically enrolls in SOTI MobiControl. All the management settings and apps are ready for the user. You can further simplify the setup process for users by removing specific steps in Setup Assistant to get users up and running.
See the Apple Business Manager User Guide for more information on ADE.
For more information on using ADE with SOTI MobiControl, see Using Apple Automated Device Enrollment.
Declarative Devices
Normally SOTI MobiControl manages all Apple devices using a Reactive profile. However, compatible Apple devices have access to Declarative Device Management (see Declarative versus Reactive Profiles).
Apple devices can use either Declarative or Reactive profiles. Declarative profiles enable Apple devices to automatically apply and revoke profile configurations independently. Reactive profiles do not support applying and revoking profile configurations independently.