It’s easy to enroll your personal iOS or iPadOS device in MDM to access company resources. On user enrolled devices, information is stored on a separate encrypted partition on the device, keeping your personal data separate and safe. Once enrolled, your IT Admin can enforce company requirements, such as screen lock timers and PIN codes, to keep your device secure. Admins will have very limited information about your device, and no access to your personal information or personal apps on the device.
To begin, your IT Admin will configure your account in the JumpCloud Admin Portal, which lets you enroll your device. The admin will also provide you with a Managed Apple Account (Managed Apple ID, or MAID) to establish your identity when you use your device to access JumpCloud resources.
Prerequisites:
- You must have a Managed Apple Account (Managed Apple ID, or MAID), which appears in the enrollment screen in the User Portal.
- Your iOS device must run iOS 13 or later.
Considerations:
- Personal Apple tvOS devices are not currently supported.
Enrolling with Account-driven User Enrollment
Use this method for enrolling devices on iOS and iPadOS 15 or later.
To enroll your personal iOS or iPadOS device in MDM:
- On your device, open Settings.
- Go to General > VPN & Device Management.
- Tap Sign In to Work or School Account....
- Enter your Managed Apple Account and tap Continue.
- The JumpCloud User Login window appears. Enter your email and tap Continue.
- Enter your password and tap Login.
- The iCloud for Work window appears. Tap Sign In to iCloud.
- Enter your password and tap Continue to sign in to iCloud.
- Tap Allow Remote Management and enter your device passcode. The work partition is created on the device.
- The MDM Enrollment profile appears in General > Profiles & Device Management.
Enrolling with Profile-driven User Enrollment
Profile-based User Enrollment is no longer supported in iOS and iPadOS 18.
Ensure that you are in a private and secure environment so that others can not see or access the QR code.
To enroll your personal iOS or iPadOS in MDM:
- Log in to the JumpCloud User Portal.
- Go to Security > Enroll Your iOS Device.
If you do not see the Enroll Your iOS Device module, you have not been enabled to use your personal device or you do not have a Managed Apple Account assigned to you. Contact your IT Admin.
- Click QR Code to start the MDM enrollment process.
- Use your device’s camera app to aim the camera at the QR code. When the QR code is in focus, the code is automatically scanned.
- On your device, tap Allow to download the enrollment profile and follow the instructions on your device. If you are unable to scan the QR code or the URL did not pop up on your device, tap Direct Link under the QR code to link directly to the URL.
You can install only one profile at a time. If you download a profile and don’t install it, and then download a second profile, only the second profile is available to install.
- On your device, tap Settings and tap Profile Downloaded.
- Tap Install to install the profile and create a partition on your device for company data.
- Tap Enroll My iPhone (or Enroll My iPad).
- Enter the password associated with your Managed Apple Account. If you don’t know your password, contact your IT Admin. Managed Apple Accounts are owned and controlled by your company and allow you to access Apple services, such as iCloud and iWork.
- If you are enrolling for the first time, you might be prompted to enter a Multi-factor Authentication (MFA) code.
Your personal device now appears in the Devices list in the JumpCloud Admin Portal, and your IT Admin can give you access to specific company resources.
Additional Resources
- Show Me: Adding a Personal iOS Device