WWDC: What’s new in managing devices

Here’s what’s new in managing devices as announced at WWDC.
- Ability to automate device management tasks such as Configurations, Users, Apps, and Audit events via API.
- Purchase and manage App subscriptions. It’ll be available later in Apple Business and Apple School Manager.
- A new managed migration feature is available to help migrate data, while preserving device management enrolment and settings.
- Configuration profiles that use credentials are being transitioned to declarative configurations, so managing the lifecycle of credentials is much more efficient.
- In iOS, iPadOS, tvOS and macOS 27 releases, IT administrators can now start enhanced log collection on organization-owned devices.
- In macOS 27, there’s now a declarative configuration to control the Content Caching service on a Mac, and new declarative status items to report on the state of the service. This gives IT administrators a direct way to monitor the health of their content caching server fleet.
- The declarative app configuration feature available in iOS, iPadOS, and visionOS is now coming to macOS 27, which enables secure provisioning of managed apps.
Sign up to get all the latest Apple news at The Core TLDR Apple News on Substack.
- Package Uninstall means IT can remove an app and all its files from the Device Management server.
- A new consolidated privacy consent prompt can be shown when an app is first launched, or a website first appears in Safari. This lets IT recommend privacy settings to a user when they first open an app or web app.
- macOS 27 introduces new declarative management settings that uses the Endpoint Security framework to allow or deny binary execution, and to shut down any processes associated with a binary that has been denied.
- Big Platform SSO updates include giving IT the power to require use of Touch ID in addition to entering their password on organization devices, which helps secure your fleet.
- Authenticated Guest Mode with Platform SSO allows users to quickly and securely login to a shared Mac in a temporary session. This will come to shared iPads later on.
You can follow me on social media! Join me on BlueSky, LinkedIn, Mastodon and The Core.
