New features summary
This section provides summaries of new features and enhancements that are available in this release. References to documentation describing these features and enhancements are also provided, when available.
General features and enhancements
iOS, macOS, watchOS, visionOS, and tvOS features
General features and enhancements
-
Secure Multiuser WebClip Authentication : Ivanti Neurons MDM now supports secure multiuser sign-in for iOS Web Clips using Azure AD, Okta, and local users. Devices automatically enforce re-authentication and reassignment after logout, ensuring secure access in shared environments.
-
Updated App Catalog Configuration Behavior: The updated functionality ensures that when an app is searched for in Apps@Work, it will not appear if the Do not show app in end user App Catalog option is enabled in the app's iOS configuration.
iOS, macOS, watchOS, visionOS, and tvOS features
-
macOS 15.4+ Device Attestation for Platform SSO: A new field Allow Device Identifier Attestation has been added under the Extensible SSO configuration in the platform SSO section for macOS 15.4 and later.
For more information, see Single Sign-On Configuration.
-
Fully Qualified Domain Names (FQDNs) for Relays: In the Network Relay configuration, the Match FQDNs and Exclude FQDNs keys are added, and these two keys are supported on iOS 18.4+ and macOS 15.4+ devices.
For more information, see Network Relay Configuration.
-
Passkeys support for DEP registration: On macOS15+ devices, iDP users can now login using Passkeys during Automated Device Enrollment.
For more information, see Device Enrollment.
-
Predicate Validation in Admin Console: A new Test option and STATUS field have been added to validate predicate syntax. Admins can now verify predicate expressions for iOS and macOS configurations before deployment, helping prevent failures and detect syntax errors early.
For more information, see Deploying Apple Devices.
-
iPad Battery Health Status: From iPadOS 18.4 onward, Battery Health status channel reporting is supported and must be enabled.
-
Support for iOS App Installation on tvOS Devices : Admin can now install compatible iOS apps on devices running tvOS. Please ensure that the app developer has explicitly enabled support for tvOS, as installation will fail for apps not marked as compatible.
Supported App Types:-
In-house apps
-
Volume Purchase Program (VPP) apps
Public App Store apps are not supported at this time.
You must select Require installation on device in the Install on Device configuration.
-
Mobile Threat Defense features
Mobile Threat Defense (MTD) protects managed devices from mobile threats and vulnerabilities affecting device, network, and applications. For information on MTD-related features, as applicable for the current release, see the Mobile Threat Defense Solution Guide for your platform, available under the MOBILE THREAT DEFENSE section on the Ivanti Product Documentation page.
Each version of the MTD guide contains all Mobile Threat Defense features that are currently fully tested and available for use on both server and client environments. Because of the gap between server and client releases, new versions of the MTD guide are made available with the final release in the series when the features are fully functional.