![]() ![]() Learn more about frequency of device check-in with the Intune service. Device-assigned policies apply to a Shared iPad when you initiate a device-sync from MEM admin console or when Intune notifies the device to check in with the Intune service.See Apple’s documentation on federating an Azure AD instance with Apple Business Manager. User-assigned policies apply to a Shared iPad when the user signs in using their federated Azure AD credentials.All device configuration profile settings are device applicable for Shared iPad temporary sessions.Your Azure AD instance must be federated in Apple Business Manager for user group policy assignment to succeed.For existing devices, factory reset the device and follow the prompts to set it up as a Shared iPad. For new devices, power on and follow the prompts to set up the device as a Shared iPad.Assign required apps and configuration profiles for Shared iPads to the dynamic device group.Set Membership type to dynamic device and select Add dynamic query and set enrollmentProfileName to the name of desired enrollment profile. Create a dynamic device group containing devices by using the new enrollment profile for Shared iPad by navigating to Groups > New group.Assign devices synced from Apple Business Manager by selecting the new enrollment profile, then select Assign devices > Add devices.Complete configuring the enrollment profile as desired and then select Save.Supported devices include iPads running iPadOS 13.3 and later. ![]() Unsupported devices include any iPhone models, and iPads running iPadOS/iOS 13.3 and earlier. Important note - A device wipe will be required if an iOS/iPadOS enrollment profile with Shared iPad enabled is sent to an unsupported device. Set User affinity to Enroll without user affinity and Supervised to Yes and then Shared iPad to Yes. Enable Shared iPad in the enrollment profile under Management settings.Create an enrollment profile by navigating to Microsoft Endpoint Manager admin center and selecting Devices > iOS/iPadOS > iOS/iPadOS Enrollment > * Enrollment program tokens > select a token > Profiles > Create profile > iOS/iPadOS.For more information, see Intro to federated authentication with Apple Business Manager. Federate your AAD instance with Apple Business Manager or Apple School Manager.Configure Shared iPadįollow these steps to set up Shared iPads in your environment: ![]() The next time the user accesses a Shared iPad, they only need to provide their Managed Apple ID (same as their AAD username) and the alphanumeric passcode. In addition, at first sign-in on a Shared iPad, the user sets up an alphanumeric passcode for their user partition and the apps assigned to the device are installed to the user partition. This automatically creates a Managed Apple ID for the user that matches their AAD username when they sign in on a Shared iPad for the first time. User partitions ensure that each user’s apps, data, and preferences are stored separately on Shared iPad and can be backed up to iCloud (if allowed by admin) for seamless transition across multiple Shared iPads.īy federating your organization’s AAD instance in Apple Business or School Manager, a user can sign in on a Shared iPad using their AAD username and password. iPads running on iPadOS 13.4 and later can be provisioned as a Shared iPad when enrolled using Automated Device Enrollment without user affinity.Ī Shared iPad consists of a pre-defined number of user partitions. ![]() Provisioning a device as a Shared iPad sets it up for use by multiple users. ![]()
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |