Transcript
Windows eSIM configuration for Windows 11, Ivanti Neurons for VM now supports eSIM configuration for Windows 11 devices, and the customers must obtain a server number URL from their carrier for this. Once the profile is installed, the device connects the carrier URL to activate the eSIM, and the customers provide a file with the device details and should check requirements with the carrier. Another capability is about a notifying admin when BitLocker key is not saved. Saving the BitLocker key via MDM is supported, but external issues can prevent successful saving. Previously, admins had no visibility if a key was missing. Now, with the Ivanti NMDM will now notify admins in the console if it detects that the BitLocker key hasn't been saved. Those are the capabilities on the Neurons for MDM. Let's also talk about what are the new capabilities on the iOS and macOS on the on-prem EPMM. Starting with iOS improvements, new option to preserve the data plan during the device wipe operations. Basically, the preserve data plan checkbox is now enabled by default to avoid any accidental loss of cellular plans. Same as the Neurons for MDM, we have a network relays, FQDNS keys. As I mentioned earlier, Apple improved handling of FQDNS for better security between devices and network relays. It basically simplifies configuration and improves integration with enterprise networks and VPNs. Then we have the profile for Ethernet authentication for iPads. iOS 17 introduced 802.1X Ethernet support for iPads. Ivanti adds configuration support for certificate-based Ethernet authentication on iPads. Then we have software update enforcement to pick latest version. DDM now allows you to enforce updates to always install the latest OS version automatically. This basically helps organizations keep devices current with the controlling update timing and user experience. It fully automates a software update lifecycle. I think this is one of the key capability as well that can be leveraged to ASAP. Then ability to run a Mac OS scripts without the Mac agent. Apple DM or the device declarative management now allows pushing Mac OS scripts without needing an agent or a client. This is supported for Mac OS 15 plus. New scripts tab lets admin upload or write scripts and distribute them via configurations. Enhancements include adding roles for script management and renaming scripts in the backend. To highlight that earlier, we do have dependency on having a Mac agent to deploy the scripts on the device, but currently, that's not a dependency anymore. Without having an agent, you can still continue to use the scripts pushing the scripts onto the devices. Also touch basing on the mobile network, the client on the on-prem. Relocation of the notifications tab, where we are moving the notifications tab on the top right corner, and simplified enrollment flow for end-users. What does this mean is Apple's changes require users to manually download profiles during registration. Previously, users had to switch to Safari for download instructions. Now, Ivanti Go shows these instructions directly in the app, simplifying the process for the end-users. There is no switching between the Safari browser and switching back to the app. It's all completely embedded into the app. Again, the auto-launch of Ivanti Go at registration via automatic device enrollment. This is again as equally important both on-prem and on-Cloud, where we would want the users to be able to leverage the auto-launch of the app, which resolves a number of problems in terms of compliance. Basically, as you-all know that Ivanti Go and Ivanti Mobile Network requires the app to be launched at least once. Again, Apple does not allow MDM to auto-launch apps. We did come up with a solution where you can still use a single app mode during the automatic device enrollment to automatically launch Ivanti Go. Once its registration is completed, single app mode is removed and the device is ready for the user. It all happens in split seconds. That's on the overall Apple and macOS, both on-prem and on-Cloud.