Default configurations

The features described in this section are supported on macOS devices.

Ivanti EPMM provides the following default configurations.

Table 36.  Default configurations

Configuration Name

Type

Description

Devices applicable to

App Catalog Service

APP_CATALOG

Default configuration for App Catalog Service

 

MobileIron Anti-phishing VPN

VPN

VPN Setting for Anti-phishing

 

MobileIron Threat Defense Tunnel Config for Android

VPN

Default configuration for Ivanti Tunnel to enable Mobile Threat Defense

Android

MobileIron Threat Defense VPN

VPN

VPN setting for Mobile Threat Defense VPN

 

System - [email protected] AET

APPENROLLMENTTOKEN

Auto-created Windows Application Enrollment Token Setting

 

System - FileVault Configuration

CERTIFICATE ENROLLMENT

Auto-created SCEP setting for the FileVault2 CA

 

System - iOS Enrollment CA Certificate

CERTIFICATE

System certificate to support the built-in CA server.

 

 

System - iOS Enrollment SCEP

CERTIFICATE ENROLLMENT

System settings for the built-in SCEP server. Note that the default URL contains HTTP. Do not change this to HTTPS without configuring a third-party certificate. The default is a self-signed certificate, which iOS does not support with HTTPS.

 

 

System - iOS Enterprise AppStore

WEBCLIP

System settings for [email protected] web clip.

 

 

System - iOS Enterprise AppStore SCEP

CERTIFICATE ENROLLMENT

This SCEP setting is automatically created for the iOS Enterprise App Store certificate.

If the iOS label is removed from this default configuration, Ivanti EPMM will re-apply the iOS label following system or web server reboot, and after upgrading from a previous version to the current version of Ivanti EPMM.

 

iOS

macOS

tvOS

System - iOS MDM

MDM

Default MDM profile for iOS MDM.

 

iOS

tvOS

System - macOS Enterprise AppStore Identity Preference

IDENTITY PREFERENCE

Auto-created IDENTITY_PREFERENCE setting for MacOS Enterprise.

macOS

System - Multi-User Secure Sign-In

WEBCLIP

System settings for Secure Sign-In web clip, which enables access to multi-user function for iOS devices. See “Multi-User Support” for more information.

 

iOS

System - Mutual Auth CE setting

CERTIFICATE

Certificate Enrollment Setting For Mutual Authentication

 

System - TLS Trust Certificate Chain for Mobile Management

CERTIFICATE

This certificate chain is used so that mobile devices will trust requests from Ivanti EPMM.

 

 

Windows Cert Auth Root CA Certificate

CERTIFICATE

This setting is used for (non-enrollment) server authentication by Windows devices.

Windows

Windows Computer-level Cert Auth CE Setting

CERTIFICATE

This setting is used for computer-level certificate authentication by Windows clients.

Windows

Windows Phone Enrollment SCEP

CERTIFICATE

This setting is an auto-created SCEP setting for the Windows Phone Enrollment CA.

 

Windows User-level Cert Auth CE Setting

CERTIFICATE

This setting is used for user-level certificate authentication by Windows clients.

Windows