Enable mobile device management

To use Profile Manager as a mobile device management (MDM) service, Server should have a static Internet network address, and a fully qualified domain name, and it can’t be on an isolated network.
Devices communicate with the server to obtain configuration profiles over the network.
After a device is enrolled with the service, it’s called a managed device. You can:
  • Update its configuration
  • Query its status
  • Lock and wipe the device
  • Clear the passcode on iOS devices
  1. Open the Server app, click Profile Manager, then click the Configure button next to Device Management.
  2. If prompted to enable Open Directory, complete the setup assistant.
  3. Select the SSL certificate to use to encrypt data between Profile Manager and users’ devices.
    You can use the existing self-signed certificate. If you already configured your server with another certificate, you can select it now.
  4. Enter an Apple ID to enable Apple Push Notification service.
    This automatically downloads and installs the certificates necessary to use push notification on the managed devices.
  5. Click Done.
You can now do one of several tasks:


  • Associate devices with your MDM service to begin managing them.
  • Associate users with devices for increased management capabilities.
  • Assign and push apps and books to users and groups.
  • Push profiles you create to users and devices.
  • Direct users to the user portal to download the profiles you create. The URL is https://your_server/mydevices/.

Comments

Popular posts from this blog

Restore macOS Server from a Time Machine backup

JAMF Server Upgrade process

Creating a Custom Installer for Mac (PKG Package)