New features summary
These are cumulative release notes. If a release does not appear in this section, then there were no associated new features and enhancements.
Product nomenclature: This is cumulative documentation and the product names you encounter in this documentation were accurate at the time of publication. Ivanti updates each new section to reflect evolving product nomenclature, but leaves legacy citations intact to ensure proper frame of reference for the reader.
-
Unmanaged VPP App Distribution for iOS: In this release, iOS app distribution now supports unmanaged VPP applications through the Integrated App Catalog. Users can assign a VPP license directly from the catalog and then install the app from the Apple App Store, enabling secure separation of managed and personal apps while maintaining a streamlined deployment experience.
- Google BC Improvements: In this release, the Google BeyondCorp registration button is enabled based on server-side configuration and app readiness. The registration workflow now verifies that the required managed app is installed and properly configured before allowing users to proceed, ensuring a more reliable registration experience. If registration fails, users are guided to open the configured app and retry the process after completing the required setup.
- Device Check-In Status Verification: Mobile@Work now provides immediate feedback when users manually select Check for Updates. After the device successfully checks in with the server, the app displays a confirmation notification, giving users clear visibility that the check-in was completed successfully. A pop up message is displayed when users swipes down to refresh, Tap on 'Check for updates and FDC from My Devices. This enhancement improves the user experience by providing real-time status confirmation and reducing uncertainty about the outcome of the check-in operation.
-
Updated User Interface for Status and Notification Screens : The Notification, Device Status, and Threat Defense screens have been updated with an enhanced table view design to provide a more modern and consistent user experience. The refreshed interface improves readability, navigation, and overall usability, making it easier for users to view and access important device and security information.
-
Integrated Tunnel Revamped: Enhanced Tunnel User Interface in Mobile@Work.
-
Tunnel Visibility Based on Configuration: In this release, Mobile@Work now display Tunnel functionality when Tunnel VPN configuration is explicitly distributed to the iOS client. If no Tunnel configuration is assigned, Tunnel-related options remain hidden, reducing user confusion in environments where Tunnel is not in use. Additionally, Tunnel functionality is automatically removed from the client when the associated configuration is withdrawn, ensuring that only relevant features are presented to users.
-
Support for Lookout SDK 4.2.8: Lookout SDK version 4.2.8 is now supported with this release.
-
Support for Zimperium SDK: Ivanti Mobile@Work for iOS now integrates with Zimperium SDK version 5.8.81.
-
Restrict Log Sharing to Approved Email Clients: In this release, Mobile@Work introduces a new managed configuration key that allows administrators to restrict log sharing to an approved email client. When enabled, device and application logs can only be shared through the configured email app, helping organizations control how log data leaves managed devices. Logs are automatically attached when supported by the selected email client, while other clients use a guided attachment workflow. This enhancement improves security by preventing logs from being shared through unauthorized apps or destinations.
-
Customize Email and Browser Apps for Support: In this release, Mobile@Work introduces KVPs that allows administrators to customize the default email and browser applications used by the Support tab and log-sharing workflows. For more information, see Ivanti EPMM Device Management Guide for Apple devices.
-
default_browser
-
allow_browser_fallback
-
default_email
-
allow_email_fallback
-
restrict_log_sharing_to_email
-
-
Improved App Flipping during Check-in: Starting with this release, the system reduces app flipping during AppConnect Check-in or Auto-lock Time by displaying the AppConnect check-in screen as a pop-up within the AppConnect app, instead of flipping to the Ivanti Mobile@Work for iOS app. This improvement results in fewer interruptions during the check-in process.
Administrators can enable it by adding the Key Value Pair (KVP) MI_AC_ENABLE_SSO_CHECKIN = true to the AppConnect configuration of the target app in Ivanti EPMM.
-
Custom Ticketing Portal Link in Support Tab: Administrators can now configure a custom ticketing portal URL within the Ivanti Mobile@Work for iOS application. The Support Tab displays this URL, allowing end users to directly access the configured portal to submit support tickets using the Raise a Support Ticket option.
-
Support for Lookout SDK: Lookout SDK version 4.2.6 is now supported with this release.
-
Improved App Update Status Display: When an update is available in Ivanti Mobile@Work for iOS application, the Featured tab now displays Update instead of Install.
-
Improved Check in on Network Changes: The system now automatically triggers a device check-in whenever the network switches between Wi-Fi and cellular, or vice versa. Previously, a forced check-in was triggered for the following transitions:
-
Wi-Fi > Not connected > Mobile data
-
Mobile data > Not connected > Wi-Fi
-
Wi-Fi > Wi-Fi
With this enhancement, these additional transitions will also trigger a check-in:
-
Wi-Fi > Mobile data (depends on VPN)
-
Mobile data > Wi-Fi
-
-
Support Deprecation for iOS 16.x: Starting with this release, Ivanti Mobile@Work for iOS no longer supports devices operating iOS 16.x. Ivanti has deprecated support for iOS 16.x.
-
Integration of Ivanti Tunnel: Ivanti Mobile@Work for iOS now seamlessly integrates with Ivanti Tunnel, allowing secure access to business-related data. For more information, see Ivanti Tunnel for iOS.
-
Support for Liquid Glass: Ivanti Mobile@Work for iOS now includes full support for the Liquid Glass interface.
-
Support for Zimperium SDK: Ivanti Mobile@Work for iOS now integrates with Zimperium SDK version 5.8.53.
-
Revamped interface: Starting from this release, Ivanti Mobile@Work for iOS introduces a fresh user interface designed to enhance the user experience.
General features and enhancements
- Client receives executable Enable/Disable Enhanced logging command: This new feature is the client side of the Remote Enhanced Logging feature. The device user can allow or disallow the remotely activated Enhanced Logging for the given device.
- Certificate Pinning - Registration Time: This new feature for certificate pinning provides a warning to the device user if the pinning fails: "You are not able to register at this time, please contact your administrator."
- Support for new languages: The Hungarian and Swedish languages are now supported.
- Improvement for administrator-required reporting: In this improvement, device users will receive in-app notifications of administrator requirements to register for Azure Active Directory (AAD) device compliance reporting. By clicking on the push notification, the device user is automatically taken to the correct in-app settings.
Mobile Threat Defense (MTD) features and enhancements
Mobile Threat Defense (MTD) protects managed devices from mobile threats and vulnerabilities affecting device, network, and applications. For information on MTD-related features, as applicable for the current release, see the Mobile Threat Defense Solution Guide for your platform, available under the MOBILE THREAT DEFENSE section on the Ivanti Product Documentation page.
Each version of the MTD guide contains all Mobile Threat Defense features that are currently fully tested and available for use on both server and client environments. Because of the gap between server and client releases, new versions of the MTD guide are made available with the final release in the series when the features are fully functional.