Apple Enhanced Logging
Apple Enhanced Logging enables administrators to collect advanced diagnostic logs from managed Apple devices when AppleCare requests additional information to investigate an issue. The feature supports devices running iOS 27 and later, macOS 27 and later, and tvOS 27 and later.
When an organization opens a support case with AppleCare, AppleCare can provide a token that authorizes enhanced log collection. An administrator uses this token to initiate an enhanced logging session on the device. The device then requests consent from the user before collecting diagnostic data.
After the user approves the request, the device collects the logs and uploads them directly to AppleCare. The logs are associated with the AppleCare token used to initiate the session.
During the session, the device reports the following information to the device management service:
-
Status: The current state of the enhanced logging session.
-
AppleCare token: The token associated with the active session.
-
Timestamp: The date and time reported for the session.
Procedure
- Go to Devices > Devices > Device Details.
-
Locate the Apple Enhanced Logging section. The section displays the current status, AppleCare token, and timestamp information for enhanced logging sessions.
-
Click Request Apple Enhanced Logging.
-
Enter the AppleCare token provided by AppleCare.
-
Submit the request to start enhanced log collection. The system sends a Trigger Enhanced Log Collection command to the device.
-
Monitor the session status. The status changes as the session progresses. During an active session, a Cancel option is available.
-
Initiated - The enhanced logging request has been sent to the device
-
Waiting for Consent - The device is waiting for the user to approve the logging request
-
Collecting - The device is collecting diagnostic logs
-
-
Wait for the device to complete log collection and upload the logs. The collected logs are uploaded directly to AppleCare.
When the request is sent and when the logs are ready at the device, a notification is sent to the admin and is displayed in device logs. The device logs can also be downloaded by clicking the link.