iOS & iPadOS MDM

Deploy, secure, and support iPhone and iPad from a single cloud console. With Apple Business Manager (ABM) + Codeproof, you get true zero-touch Automated Device Enrollment (ADE) for company-owned devices and privacy-preserving User Enrollment for BYOD—plus app distribution, policy enforcement, and powerful security controls.

Enrollment options

Automated Device Enrollment (ADE) via ABM

Ship devices directly to users—on first boot they enroll into Codeproof automatically, become supervised, and receive your baseline settings, certificates, Wi-Fi/VPN, apps, and restrictions. Recommended for corporate-owned iPhone and iPad.

User Enrollment (BYOD)

A privacy-focused model for employee-owned devices. Codeproof manages only the work data and apps using a Managed Apple ID, with separate personal space. IT can enforce work policies (managed apps, per-app VPN, data separation) without accessing personal content.

Apple Configurator & profile-based enrollment

Add eligible existing devices to ABM with Apple Configurator (so they enroll with ADE on next activation) or distribute a configuration profile for ad-hoc enrollments when needed.

Automated Device Enrollment and User Enrollment for iOS/iPadOS with Codeproof

Device management

Enterprise use cases

Supervised devices (corporate-owned)

Full control for work-only iPhone/iPad: disable AirDrop, hide App Store, restrict iCloud, filter web, silently install/update/remove apps, enforce per-app VPN, and much more.

User Enrollment (BYOD)

Separate work and personal data with managed apps and accounts, Managed Open In, per-app VPN, and selective wipe—preserving employee privacy.

Kiosk / Single App Mode

Lock devices to one or multiple apps, limit system UI, and control input (touch, microphone, notifications) for retail, field, or shared-device scenarios.

iOS/iPadOS management features: supervised mode, BYOD user enrollment, kiosk mode

App distribution & controls

Purchase/assign licenses via Apps and Books, silently deploy managed apps, apply Managed App Configuration, enforce allow/deny lists, and hide the App Store if required.

Web content filtering & network

Apply built-in web filters, push Wi-Fi/VPN payloads, and route traffic through per-app VPN for secure access to enterprise resources.

Security & compliance

Lost Mode, lock, and wipe

Find misplaced devices with Lost Mode (supervised), remotely lock, and perform full or selective wipe to protect corporate data.

Activation Lock management

Control Activation Lock on supervised devices and retain bypass codes to prevent reuse by unauthorized users.

Encryption & passcode policies

iOS/iPadOS data protection is hardware-backed; enforce strong passcodes and biometrics to meet compliance requirements.

Data separation (BYOD)

Keep work data in managed apps and accounts; use Managed Open In and per-app VPN to control data flow without inspecting personal content.

iOS/iPadOS security with Lost Mode, Activation Lock, encryption, and policy enforcement

OS updates & compliance

Defer or schedule iOS/iPadOS updates, enforce minimum versions, and monitor compliance status with exportable reports.

FAQs

Do I need Apple Business Manager for iOS/iPadOS MDM?
ABM is recommended for corporate devices to enable Automated Device Enrollment (ADE) and make MDM non-removable. User Enrollment works for BYOD without ABM.
What’s the difference between Supervised and User Enrollment?
Supervised (ADE) gives full enterprise control for company-owned devices. User Enrollment is privacy-preserving for BYOD—IT manages work apps/data only and can perform selective wipe.
How are apps deployed?
Connect ABM’s Apps and Books to Codeproof, approve/purchase apps, then assign to devices or users. Managed apps install silently per policy—even if the App Store is hidden.
Can I lock devices to a single app?
Yes. Use Single App Mode (kiosk) on supervised devices to run one or multiple apps and restrict system UI.
Can I manage Activation Lock?
Yes. On supervised devices, you can control Activation Lock and store bypass codes to ensure devices can be redeployed.

Maximize employee productivity through Codeproof