JumpCloud supports the latest releases of Apple’s operating systems: macOS 26 Tahoe and iOS/iPadOS 26. These updates bring powerful new capabilities for users and introduce enhancements for enterprise device management. With JumpCloud Patch Management and Policies, you can evaluate and control adoption across your fleet, whenever you’re ready to upgrade.Â
JumpCloud’s MDM solution also supports the latest Apple operating systems and the evolving MDM framework. JumpCloud’s software and agents have been tested and validated with Apple devices and operating systems for seamless compatibility and optimal performance.
- JumpCloud Agent tested and validated for macOS 26*
- JumpCloud Remote Assist tested and validated for macOS 26*
- JumpCloud Protect tested and validated for iOS 26*
- JumpCloud Password Manager tested and validated for iOS 26 and macOS 26*
- JumpCloud Mobile Admin app tested and validated for iOS 26*
* Validated against Beta and Release Candidate builds.
Supporting macOS 26
JumpCloud’s goal is to preserve existing device management workflows and we've added or enhanced the following functionality to ensure seamless Day 0 support for macOS 26 Tahoe:
- Admin Portal support for macOS 26 and iOS/iPadOS 26
- Dynamic Device Groups selection
- Supported throughout Devices, MDM, Policies, Commands, Security, and Insights.
- Enrollment
- Supports new Automated Device Enrollment (ADE) Skip Keys. See Configure ADE to learn more.
- New and Updated Policies
- Block macOS Tahoe Installer
- Automatic macOS Updates
Day 0 support doesn’t indicate implementation of all newly announced Apple features, which will be incorporated into our long-term development roadmap. Jump to Apple MDM-related Roadmap to learn about future considerations.
Controlling OS Upgrades
If you’re not yet ready for full-scale deployment of macOS 26 Tahoe on release day, you can use JumpCloud policies to defer updates for a specific time period or block users from running latest software upgrades entirely. See Create a Mac Policy to Delay or Block Tahoe to learn more.
Highlights of Apple’s Announcements for IT Admins
At Worldwide Developers Conference (WWDC) 2025, Apple announced new versions of their operating systems, aligning version numbering to their release year across all platforms (macOS, iOS/iPadOS, tvOS, watchOS, and visionOS are now unified as version 26). They also announced enhancements for device management, Apple Business Manager (ABM), and Apple School Manager (ASM).
See the following Apple resources to learn more:
- Apple’s Developer Program website
- Attachment: What’s New for IT - WWDC 2025
- Video: What’s new in Apple device management and identity
This section provides an overview of new features announced by Apple. It does not indicate support or implementation from JumpCloud.
ABM and ASM Updates
- MDM Migration without Wipe: Migrate eligible iPhones, iPads, and Macs to a new MDM server directly from ABM or ASM without a full device wipe. This includes the ability to set migration deadlines, notify users, and preserve apps and data.
- Apple Account Enhancements: Enforce the creation of Managed Apple Accounts for domains, preventing personal Apple ID creation with organizational email addresses.
- Limit device sign-in to Managed Apple Accounts: Control how personal accounts can access organization-owned devices.
- Visibility into Unmanaged Apple Accounts list: Download a list of existing personal Apple Accounts using their domain to facilitate migration to Managed Apple Accounts.
- Developer services for Managed Apple Accounts: Centralize management of the Apple Developer Program across managed accounts.
- Expanded APIs: Provide richer device inventory insights, allow admins to automate device assignment to MDM servers, and offer better visibility into batch activity statuses.
- Automated Device Enrollment (ADE) now supports Apple Watch and Apple Vision Pro, bringing zero-touch provisioning to these platforms.
Device Management Updates (Declarative Device Management Focus)
Apple is significantly expanding the capabilities of Declarative Device Management (DDM), making it the preferred and increasingly standard method for modern device management across all Apple platforms.
- Deprecating legacy OS Update Commands in favor of DDM OS patching: Declarative software updates offer simpler and more efficient update management over previous MDM commands, which will be deprecated and removed next year.
- Declarative App Management allows admins to manage App Store apps and proprietary in-house apps, with the ability to pin apps to specific versions.
- macOS apps and packages (.pkg files) distribution support using declarations.
- New ManagedApp Framework provides a secure way for developers to build business apps that securely handle configurations and credentials.
- Safari Management: New declarative configurations let admins customize extensions, settings, and bookmark management.
- Return to Service Enhancements: Wipe user data while preserving managed apps, speeding up device preparation.
- ManagedApp Framework: A new API for developers to build highly secure, customizable business apps by securely passing configurations, login credentials, certificates, or identities to apps.
Identity Management Updates
Platform Single Sign-On (SSO) simplifies Mac deployment and access using identity provider (IdP) credentials.
- Enhancements to Platform SSO:
- Attestation: Enables users to sign in to all their apps and services during device enrollment using hardware-backed and trusted keys.
- Simplified Setup: Enforce Platform SSO during Setup Assistant with ADE.
- Authenticated Guest Mode: Allows temporary users sign in using Platform SSO, enabling a simplified login experience.
- Tap to log in: Allows users on shared devices to sign in with NFC-based hardware-backed keys tied to their IdP, replacing cumbersome username and password flows.
New OS-Specific Features and Restrictions
- macOS 26 Tahoe:
- Support for passkeys, security keys, and Platform SSO: ADE supports the use of security keys and passkeys for enrollment. Setup Assistant adds enhanced Platform SSO functionality including IdP authentication, Authenticated Guest Mode, and more.
- External storage management: A new declarative configuration allows managed access to external and network storage, including enforcing read-only volume mounting.
- iOS 26 & iPadOS 26:
- Hiding and locking apps: Require biometric authentication or a passcode to open managed apps and hide them from the Home Screen on supervised devices.
- New restrictions:
- eSIM Outgoing Transfer (iOS 26, iPadOS 26 - supervised)
- iPhone Mirroring (iOS 26, iPadOS 26, macOS 26)
- Video Conferencing Remote Control (iOS 26, iPadOS 26)
- Smarter communication controls: Decide default apps for calls/messages, restrict FaceTime/iMessage to personal lines.
JumpCloud’s Apple MDM Roadmap Items
JumpCloud is actively working to integrate these new features and controls into its MDM platform to give IT admins the tools they need to seamlessly manage Apple devices.
- OS Patching for macOS and iOS/iPadOS via Apple DDM
- Account-driven User Enrollment Service Discovery Alternative (via ABM/ASM)
- Recovery Lock for macOS devices on Apple silicon
- Self Service App Catalog for Apple devices (macOS and iOS)
- New and enhanced Policies for Apple macOS and iOS
- Personalization
- Wallpaper for iOS
- Lock Screen (Screensaver) for macOS
- Advanced Networking
- Enterprise Wi-Fi with Certificates
- VPN
- Safari
- Web Content Filter
- eSiM
- Personalization