SS8H2S - Documentation Index
Enrollment guides
iOS enrollment
macOS enrollment
Android enrollment
Windows enrollment
WorkPlace enrollment
Resources
IBM MaaS360 Support page
IBM MaaS360 Security Learning Academy page
IBM MaaS360 User Community page
IBM MaaS360 Status page
IBM MaaS360 Success Hub page
IBM Security Labs Overview
Table of Contents
IBM MaaS360 Mobile Device Management (SaaS) documentation
Introducing IBM MaaS360 Mobile Device Management (SaaS)
Release Notes
Cloud Release Notes
What's New Since 10.91 Release Notes
Release Notes for 10.91
What's New Since 10.90 Release Notes
Release Notes for 10.90
MaaS360 Defect Fixes
May 2026 daily fixes summary
April 2026 daily fixes summary
March 2026 daily fixes summary
February 2026 daily fixes summary
January 2026 daily fixes summary
December 2025 daily fixes summary
November 2025 daily fixes summary
October 2025 daily fixes summary
September 2025 daily fixes summary
August 2025 daily fixes summary
July 2025 daily fixes summary
June 2025 daily fixes summary
May 2025 daily fixes summary
April 2025 daily fixes summary
March 2025 daily fixes summary
February 2025 daily fixes summary
December 2024 daily fixes summary
November 2024 daily fixes summary
October 2024 daily fixes summary
September 2024 daily fixes summary
August 2024 daily fixes summary
July 2024 daily fixes summary
June 2024 daily fixes summary
May 2024 daily fixes summary
April 2024 daily fixes summary
March 2024 daily fixes summary
February 2024 daily fixes summary
January 2024 daily fixes summary
Cloud Extender Release Notes
Cloud Extender 3.002.200 (beta) Release Notes
Cloud Extender 3.002.190 Release Notes
Cloud Extender 3.001.550 Release Notes
Cloud Extender 3.001.500 Release Notes
Cloud Extender 3.001.400 Release Notes
Cloud Extender 3.001.300 Release Notes
Cloud Extender 3.001.200 Release Notes
Cloud Extender 3.001.100 Release Notes
Cloud Extender 3.000.950 Release Notes
Cloud Extender 3.000.900 Release Notes
Cloud Extender 3.000.850 Release Notes
Cloud Extender 3.000.800 Release Notes
Cloud Extender 3.000.750 Release Notes
Cloud Extender 3.000.700 Release Notes
Android Release Notes
Android 9.41 (beta) Release Notes
Android 9.35 Release Notes
Android 9.30 Release Notes
Android 9.26 Release Notes
Android 9.25 Release Notes
Android 9.20 Release Notes
Android 9.17 Release Notes
Android 9.15 Release Notes
Android 9.12, 9.11 and 9.10 Release Notes
Android 9.05 Release Notes
Android 9.01 Release Notes
Android 9.00 Release Notes
Android 8.96 and 8.95 Release Notes
Android 8.90 Release Notes
Android 8.86 and 8.85 Release Notes
Android 8.80 Release Notes
Android 8.75 Release Notes
Android 8.71 and 8.70 Release Notes
Android 8.65 Release Notes
Android 8.60 Release Notes
Android 8.55 Release Notes
Android 8.50 Release Notes
Android 8.45 Release Notes
Android 8.41 and 8.40 Release Notes
iOS Release Notes
iOS IBM MaaS360 6.52.2 Release Notes
iOS IBM MaaS360 App Catalog 1.2.6 Release Notes
iOS IBM MaaS360 Browser and Editor Release Notes
iOS IBM MaaS360 6.51.2 Release Notes
iOS IBM MaaS360 App Catalog 1.2.3 Release Notes
iOS IBM MaaS360 6.50.7 Release Notes
iOS IBM MaaS360 App Catalog 1.2.1 Release Notes
iOS IBM MaaS360 6.40.4 Release Notes
iOS IBM MaaS360 VPN 3.36.3 Release Notes
iOS IBM MaaS360 App Catalog 1.1.11 Release Notes
iOS IBM MaaS360 App Catalog 1.0.28 Release Notes
iOS IBM MaaS360 6.30.9 Release Notes
iOS IBM MaaS360 6.20.9 Release Notes
iOS IBM MaaS360 6.15.2 Release Notes
iOS IBM MaaS360 6.10.8 Release Notes
iOS IBM MaaS360 App Catalog 1.0.23 Release Notes
iOS MaaS360 Browser 4.0.11 Release Notes
iOS VPN and Wrapping 4.51.000 Release Notes
iOS IBM MaaS360 6.0 Release Notes
iOS IBM MaaS360 5.96 Release Notes
iOS IBM MaaS360 5.95 Release Notes
iOS IBM MaaS360 5.91 Release Notes
iOS SDK and Wrapping 4.50.000 Release Notes
iOS IBM MaaS360 5.90 Release Notes
iOS IBM MaaS360 5.80 Release Notes
iOS IBM MaaS360 5.70.44 Release Notes
iOS IBM MaaS360 PIV-D App 1.60 Release Notes
macOS Release Notes
macOS 2.55.000.001, macOS App Packager 1.70.000.001, and macOS App Catalog 1.70.000.001 Release Notes
macOS 2.55.000.001, macOS App Packager 1.70.000.001, and macOS App Catalog 1.70.000.001 Release Notes
macOS 2.54.000.004 Release Notes
macOS 2.53.000, macOS App Packager 1.60.000, and macOS App Catalog 1.60.000 Release Notes
macOS 2.52.200 and macOS App Packager 1.49.200 Release Notes
macOS 2.52.100 Release Notes
Windows Release Notes
Released 30 June 2026
Released 9 June 2026
Released 27 March 2026
Released 19 February 2026
Released 5 February 2026
Released 5 November 2025
Released 29 September 2025
Released 1 September 2025
Released 14 August 2025
Released 23 June 2025
Released 5 June 2025
Released 24 April 2025
Released 27 March 2025
Released 13 February 2025
Released 30 January 2025
Released 3 December 2024
Released 14 November 2024
Released 27 September 2024
Released 29 August 2024
MaaS360 platform system requirements
MaaS360 license management
License management overview
Activating license management
Using the license management feature
Configuring license settings in the IBM MaaS360 Portal
Configuring license settings as partners
Configuring license settings as a partner managing as a child partner
Configuring license settings as partner managing as a customer
Configuring license settings as a customer
Viewing the change history for license settings
License Overview page (IBM MaaS360 Portal)
Assigning and managing licenses on devices
Assigning licenses to enrolled devices with the Change license entitlements action
Hiding a device from device records and revoking licenses
Auto-assigning license to devices coming back to active state
Assigning licenses in bulk
Revoking licenses in bulk
Error scenarios during license assignment
Managing license reports
License management FAQs
IBM MaaS360 billed services
Legal information
Copyright statement
Notices
Statement of good security practices
IBM MaaS360 Technical Support Guide
Log file collection
Configurations on third-party systems
Privacy
IBM Privacy Statement
Privacy Regulations
MaaS360 Data Map
Right to be Forgotten
Right to Data Portability
Portal Admin Guide
Getting started with the IBM MaaS360 Portal
Configuring the Quick Start for the first time
Configuring Apple Enrollment setup from the Quick Start
Configuring Android Enterprise setup from the Quick Start
Selecting security policies from the Quick Start
Configuring native email from the Quick Start
Enrolling devices from the Quick Start
Federal Customers Onboarding to IBM MaaS360
Account Creation Email
Logging in to the SaaS Console
IBM MaaS360 Instance
Setting up the IBM MaaS360 Instance
MaaS360 Portal home page
Managing account details in the IBM MaaS360 Portal
Searching for devices, users, apps, and docs in the MaaS360 Portal
Platform notifications and warnings
Setup
Configuring services in the IBM MaaS360 Portal
Excess services in the MaaS360 Portal
End user license agreement self-serviceability
Settings in the IBM MaaS360 Portal
Configuring directory and enrollment settings in the IBM MaaS360 Portal
Configuring a SAML Single Sign-on services in MaaS360
Fetching values from IBM Verify to IBM MaaS360
Configuring a SAML-based SSO services in MaaS360 for existing customers
Mapping SAML attributes in a SAML response
Configuring user settings in the IBM MaaS360 Portal
Viewing privacy information on a user device
Viewing privacy information in the End User Portal (EUP)
Configuring app settings in the IBM MaaS360 Portal
Configuring administrator settings in the IBM MaaS360 Portal
Local administrator login settings for Federated Single Sign-on
Viewing and configuring portal administration details in the IBM MaaS360 Portal
Removing administrator accounts from the IBM MaaS360 Portal
Adding a portal administrator account
Auto-provisioning setting for portal administrator accounts
Managing admin roles for portal administrators
Access roles and rights for IBM MaaS360 Portal administrators
Account Actions Control access right for Partner Administrators
Creating an admin role for portal administrators
Viewing the administrator login report for portal administrators
Branding the IBM MaaS360 Portal
Accessing the MaaS360 Branding workflow
Configuring Branding Elements
Customizing the IBM MaaS360 Portal for branding
Branding options for iOS devices
Branding options for Android devices
Branding settings for Windows devices
Branding options for email configuration
Configuring Advanced branding
Advanced branding options for email sender configuration
Creating and verifying mail sender configuration with a domain
Creating and verifying mail sender configuration with an email
Managing email sender configurations
Integrating Microsoft Entra ID with MaaS360
Configuring User authentication for Microsoft Entra integration with MaaS360
Supporting mixed-mode and Microsoft Entra ID and On-Premises Active Directory (OPAD) scenarios
Supporting Microsoft Entra multi-factor authentication to enroll users into MaaS360
Directory sync for Microsoft Entra integration with MaaS360
Migrating existing MaaS360 users and groups to sync from Microsoft Entra ID
Importing new users and groups into MaaS360 from Microsoft Entra ID
Configuring user provisioning in the Microsoft Entra Portal
Creating custom user attribute and mapping
Configuring conditional access for Microsoft Entra integration with IBM MaaS360
Registering devices for Microsoft Entra Conditional Access
Enabling single sign-on access for Office 365 modern authentication
Registering MaaS360 app in the Microsoft Entra ID tenant
Configuring MaaS360 apps that require single sign-on
Configuring Office 365 mail for single sign-on
Configuring Office 365 SharePoint for single sign-on
Configuring Office 365 OneDrive for single sign-on
Configuring Active Directory Rights Management Services (AD RMS) for single sign-on
Single sign-on behavior on a device that uses Office 365 apps
Configuring conditional access support for iOS applications
Devices
Supported devices in MaaS360 based on operating system
Device management
Device Inventory
Device details view
Adding devices in the MaaS360 Portal
Assigning custom device name in MaaS360
Tracking location history in MaaS360
Device actions by the device operating system
Managing device groups in the IBM MaaS360 Portal
Installing Office 365 Suite on Windows devices
Managing device attributes in the IBM MaaS360 Portal
Default attributes
Searching for specific devices in the IBM MaaS360 Portal
Configuring search criteria
Creating a device group from Advanced Search results
Customizing columns for Advanced Search results
Managing enrollment requests for a device
Revoking license entitlements from a device in an Inactive or Pending Remove Control state
Viewing action history and events for a device
Viewing device history in the MaaS360 Portal
Device exceptions
Managing device exceptions
Patch management on devices
Viewing the patch management grid in the MaaS360 Portal
Distributing OS patches to Windows devices
Downloading device agent logs from the MaaS360 Portal
Shared Device Utilization Dashboard
Battery Health Dashboard
Configuring eSIM from the IBM MaaS360 Portal
Apple DEP Configuration Guide
Viewing the Apple Device Enrollment Program (DEP) records in the IBM MaaS360 Portal
Downloading an MDM token from the Apple DEP Portal
Viewing tokens in the Apple Device Enrollment Program (DEP)
Adding a token to the Apple Device Enrollment Program (DEP)
Viewing certificates in the Apple Device Enrollment Program (DEP)
Adding a certificate to the Apple Device Enrollment Program (DEP)
Viewing profiles in the Apple Device Enrollment Program (DEP)
Adding a profile to the Apple Device Enrollment Program (DEP)
Configuring the auto naming of new devices
MaaS360 DEP enrollment customization use case
Enhancements to MaaS360 DEP user authentication based on the DEP customization
Applying the Corporate Usage Policy to DEP devices
Enrolling DEP devices using two-factor authentication
Enrolling DEP devices using SAML-based authentication
DEP user authentication for device versions earlier than iOS 13 and macOS 10.15
Apple MDM Migration
Apple Configurator
Enrolling non-DEP iOS 11+ devices with an enrollment URL
Enrolling non-DEP iOS 11+ devices by using authentication
Adding a server for non-DEP iOS 11+ device enrollment
Adding an organization for non-DEP iOS 11+ device enrollment
Enrolling non-DEP iOS 11+ devices without using authentication
Converting non-DEP iOS 11+ devices to DEP
Adding devices to Apple Device Enrollment Program (DEP) using Apple Configurator for mobile devices
Integrating IBM MaaS360 with Apple School Manager (ASM)
Synchronizing Apple School Manager (ASM) data with MaaS360
Supporting the Apple Shared devices configuration in MaaS360
Taking actions on Apple Shared devices from the IBM MaaS360 Portal
Supporting user channel profiles on Apple Shared devices
Deleting Apple School Manager (ASM) data from the IBM MaaS360 Portal
Configuring Apple School data in the Apple School Manager (ASM)
Manually creating users and classes in Apple School Manager (ASM)
Adding an MDM server and assigning devices for Apple School Manager (ASM) data
Creating an Apple Education user in the IBM MaaS360 Portal
Creating an Apple School class in the IBM MaaS360 Portal
Viewing Apple Education class details in the IBM MaaS360 Portal
Deleting an Apple School class from the IBM MaaS360 Portal
Enrolling an Apple School Manager (ASM) instructor device from the IBM MaaS360 Portal
Configuring the Apple Classroom app on an instructor's device
Uploading Apple Shared devices in bulk for Apple School Manager (ASM)
Users
Using the User Directory
Adding users in the IBM MaaS360 Portal
Editing a user in the Details view
Configuring user settings in the IBM MaaS360 Portal
Viewing privacy information on a user device
Viewing privacy information in the End User Portal (EUP)
Importing users into the MaaS360 Portal from corporate directories
Deleting users in bulk from the IBM MaaS360 Portal
Managing user attributes in the IBM MaaS360 Portal
Groups
Managing Groups in the IBM MaaS360 Portal
User Group
Adding a User Directory Group to the IBM MaaS360 Portal
Adding a MaaS360 User Group to the IBM MaaS360 Portal
Importing User Groups in bulk to the IBM MaaS360 Portal
Deleting User Groups in bulk from the IBM MaaS360 Portal
Device Group
Creating a Device Group from Advanced Search results
Device Group evaluation
Smart Device Group
Smart Device Group evaluation
Security
IBM MaaS360 security policies overview
Configuring iOS MDM policy settings
Configuring policy settings for an iOS device
Passcode
Restrictions
Application Compliance
ActiveSync
Wifi
VPN
AirPrint
Accounts (Google)
Network Slicing
Configuring advanced policy settings for an iOS device
Email
Web Clips
Web Domains
Cellular
Fonts
AirPlay Settings
CalDAV
Calendar Subscriptions
CardDAV
Certificate
LDAP
Single sign-on
Extensible Single Sign-On
SSO Conditional Access
Configuring policy settings for a supervised iOS device
Restrictions and Network
Manually clearing the activation lock on supervised iOS devices
App Lock
Home Screen
Web Content
Application Compliance (Supervised)
DNS Proxy
Notifications
Shared Device
Cellular (Supervised)
Software Update Settings (DDM)
Configuring Android Enterprise MDM policy settings
Configuring policy settings for an Android Enterprise device
Passcode
Security
Bypassing Factory Reset Protection in IBM MaaS360
Restrictions
Fix to the background location access reminders
Configuring policy restrictions on Android devices
Configuring the UserManager.constant policy
Accounts
Application Compliance
ActiveSync
Wi-Fi
VPN
Certificates
Browser
Kiosk Experience Designer
Android Custom intent
Configuring background apps in Android Kiosk mode
Configuring Additional attributes in Android Kiosk mode
Wallpapers
System Update Settings
Device Management
APN Settings (Samsung devices only)
Firewall Settings
Customizing block domain notification message in MaaS360
Lock Screen
Configuring Android MDM policy settings
Configuring policy settings for an Android device
Passcode
Security
Restrictions
Application Compliance
Native App Compliance
ActiveSync
Wi-Fi
VPN
Web Shortcuts
Device Management
Configuring advanced policy settings for an Android device
Email
Wallpapers
Lock Screen
Certificates
Network Restrictions
Firewall Settings
Browser Restrictions
Bluetooth Restrictions
Kiosk Mode Restrictions
Configuring OEM policy settings for an Android device
Samsung License Management
Configuring macOS MDM policy settings
Restriction settings
Passcode
App Compliance
System Preferences
Media
Functionality
Configuration settings
Wi-Fi
VPN
AirPrint
FileVault
Gatekeeper
Time Machine
Printing
Certificates
Firewall
Time Server
Software Update Settings (DDM)
User settings
Exchange
Email
CalDAV
CardDAV
Accounts
LDAP
Active Directory
Advanced settings
Software Update
Login Window
Login Items
Restrictions and Network
Import MobileConfig
Energy Saver
Kernel Extensions
System Extensions
Extensible Single Sign-On
Security and Privacy
Privacy Preferences
Configuring Windows MDM policy settings
Configuring policy settings for a Windows device
Passcode
Security settings
Restrictions settings
Application Compliance settings
Environment variables supported by the Application Compliance policy settings
Native App Compliance settings
Advanced App Compliance settings
Windows native apps that are enabled by default for Advanced App Compliance
Migrating to Advanced App Compliance (Windows)
ActiveSync settings
Wifi settings
VPN settings
Environment variables supported by IBM MaaS360 VPN
Update management settings
User accounts settings
Delivery optimization
Configuring advanced policy settings for a Windows device
Email
Antivirus settings
Firewall settings
Defender Application Guard
Defender Device Guard
Privacy restrictions
Speech, text, and inking
Network restrictions
Access point name (APN) settings
Certificates
Browser restrictions
Custom OMA settings
Using the custom OMA settings policy to push ADMX-backed policies to Windows devices
Kiosk mode (Assigned access)
Setting up a Windows device in kiosk mode
Configuring enterprise policy settings for a Windows device
Windows Information Protection (WIP)
Windows Hello for Business
Health Attestation
Configuring WorkPlace Persona policy settings
Configuring WorkPlace Persona policy settings for MaaS360 enrolled devices
Services settings (WorkPlace Persona policy)
EULA Usage policy actions on a user device
Passcode settings (WorkPlace Persona policy)
Security settings (WorkPlace Persona policy)
Application timer settings (WorkPlace Persona policy)
Enterprise gateway settings (WorkPlace Persona policy)
Configuring WorkPlace Persona policy settings for WorkPlace apps
WorkPlace apps
Configuration settings for WorkPlace apps
Enterprise gateway settings for WorkPlace apps
Security settings for WorkPlace apps
Configuring WorkPlace Persona policy settings for MaaS360 Mail
MaaS360 Mail settings (WorkPlace Persona policy)
Security settings for MaaS360 Mail (WorkPlace Persona policy)
Advanced settings for MaaS360 Mail (WorkPlace Persona policy)
Configuring WorkPlace Persona policy settings for MaaS360 Browser
Default browser settings for MaaS360 Browser (WorkPlace Persona policy)
URL filter settings for MaaS360 Browser (WorkPlace Persona policy)
Configuring WorkPlace Persona policy settings for Docs Sync
Security settings for Docs Sync (WorkPlace Persona policy)
Box for EMM with MaaS360
Configuring Box for EMM integration
Using the security policies
Exporting and Importing MDM policies in MaaS360
Understanding data in the exported excel file
Understanding Summarize and Recommendations feature in MaaS360
Editing a policy in the Details view
Creating a security policy in the IBM MaaS360 Portal
Creating a community-based policy in the IBM MaaS360 Portal
Creating a business template based policy
Tracking the policy distribution status for devices
Repushing the policy distribution status for devices
Bulk updating policies in MaaS360
Using policy precedence on devices
Uploading policy files to the IBM MaaS360 Portal
Best practices for policies
Understanding the device attestation verdict
Using OEMConfig apps to apply advanced device configuration policies in MaaS360
Understanding OEMConfig settings
Setting app configuration precedence for Android OEM apps
Setting an Android OEMConfig as default
Deleting an Android OEM app configuration
Tracking the status of the Android App Config profile
Tracking the status of the Android OEMConfig profile
Applying compliance rules to devices
Creating a compliance rule for devices
Configuring enforcement actions for compliance rules
Using compliance rules precedence on devices
Configuring compliance rules for devices based on custom attributes
Configuring compliance rules for Windows devices
Skipping configured enforcement actions on Important devices
Viewing the compliance log for devices in the IBM MaaS360 Portal
Managing privacy settings for devices in the IBM MaaS360 Portal
Viewing the history of changes in Privacy Settings
Managing secure locations for a device
Configuring 5G Network Slicing from the IBM MaaS360 Portal
Apps
IBM MaaS360 App Catalog overview
Adding apps to the App Catalog
Adding a public app for iOS
Adding a private (B2B) app for iOS
Adding an enterprise app for iOS
Adding a public app for tvOS
Adding a public app for Android
Adding an enterprise app for Android
Adding a public app for Android Enterprise
Distributing Android Enterprise apps for closed testing
Adding a private app for Android Enterprise
Adding a web app for Android Enterprise
Adding a public app for macOS
Adding an enterprise app for macOS
Adding a public app for Windows
Finding the Windows Store Product ID
Adding an enterprise app for Windows
Adding Windows executable (exe) files
Downloading Windows apps from a local file share and distributing to devices
Scheduling the installation of Windows apps distributed to the App Catalog
Windows enterprise apps FAQs
Adding a web app
Deploying apps to devices
Creating deep links for Enterprise apps
Updating Managed Google Play apps
Configuring automatic app installation options for Managed Google Play apps
Retrying or stopping the distribution of an iOS app
Tracking the status of an app
Restricting uninstallation of managed iOS apps
Using the App Catalog
Dependency packages for .appx and .appxbundle packages
Tracking app distributions
Editing an app in the Details view
Scheduling device action in App Catalog
Submitting apps for approval (App Approval workflow)
Understanding access roles and access privileges in the App Approval workflow
Enabling the app approval process and vendors
Integrating with Apcerto
Integrating with Pradeo Security
Creating the app approval templates
Submitting apps for approval
Reviewing the apps
Promoting approved apps to the App Catalog
Creating an app bundle
Tracking app bundle distributions
Deploying apps and bundles to the Featured section in the App Catalog
Configuring the Featured section in the App Catalog
Removing all Featured apps from the App Catalog
Managing multiple versions of apps in the App Catalog
Adding Primary Enterprise apps to devices
Distributing Primary Enterprise apps to devices
Adding Secondary Enterprise apps to devices
Updating a Secondary Enterprise app in the App Catalog after testing app content
Elevating an updated Secondary Enterprise app to a Primary Enterprise app on devices
Distributing Secondary Enterprise apps to devices
Removing Enterprise apps from devices with active distributions
IBM MaaS360 App Catalog 3.0 for Android
Accessing the IBM MaaS360 App Catalog 3.0 for Android
Using the IBM MaaS360 App Catalog 3.0 for Android
Installing an app
Viewing app details
Reviewing and rating an app
Uninstalling an app
IBM MaaS360 App Catalog for iOS
Introducing IBM MaaS360 App Catalog (Native Enterprise application)
Accessing the IBM MaaS360 App Catalog
Using the IBM MaaS360 App Catalog
App details
Collect logs
IBM MaaS360 App Catalog 3.0
Accessing the IBM MaaS360 App Catalog 3.0
Using the IBM MaaS360 App Catalog 3.0
Installing an app
Viewing app details
Reviewing and rating an app
Apple VPP Managed License Integration Guide
Downloading the Apple VPP token from Apple Business Manager
Adding or updating the Apple VPP token in MaaS360
Tracking the status of apps added from an Apple VPP Token upload
Adding and distributing Apple VPP apps
About enterprise app wrapping
Wrapped app capability overview
Enabling single sign-on
Wiping data selectively
Detecting jailbreaks
Enabling per-app VPN
Controlling document export
Controlling copy and paste
Controlling printing
Enabling on-device data encryption
Data encryption parameters
Android app wrapping parameters
Zero-switch wrapping
Apple WKWebView support for iOS app wrapping
Android app wrapping troubleshooting guide
Microsoft Intune App Protection policies
Configuring the Microsoft Intune App Protection integration in the IBM MaaS360 Portal
Creating Microsoft Intune App Protection policies in the IBM MaaS360 Portal
Assigning Microsoft Intune App Protection policies to user groups and enlightened apps in the Azure Portal
Managing app attributes
Creating app attributes
Updating app attributes
Inheriting apps from channel partners to customers
Deploying apps to customer and partner accounts
Making an app available to customer and partner accounts
Setting up app configurations
Creating an app configuration
Setting an app configuration as default
Deleting an app configuration
Setting app configuration precedence
Tracking app configuration status
Docs
Using the Content Library
Managing documents in the Content Library
Configuring document settings in the MaaS360 Portal
Integrating content sources in the IBM MaaS360 Portal
Adding a content source in the IBM MaaS360 Portal
Expense
Managing expense plans in the MaaS360 Portal
Reports
Managing reports in the IBM MaaS360 Portal
Advanced Apps Inventory reports for MaaS360
Accessing Advanced Apps Inventory reports for MaaS360
Overview report
Usage Overview report
Execution Overview report
Usage Trends report
Execution Trends report
Device Detail report
Basic Apps Inventory reports for MaaS360
Subscription settings for Basic Apps Inventory reports
Overview report
Trends report
Device details for the Basic Apps Inventory reports
Hardware Inventory reports for MaaS360
Subscription and UI settings for the Hardware Inventory reports
Devices by Free Storage (Hardware Inventory reports)
Devices by Operating System Version (Hardware Inventory reports)
Devices by Manufacturer Model (Hardware Inventory reports)
Mobile Data Usage Analysis reports for IBM MaaS360
Subscription and UI settings for the Mobile Data Usage Analysis reports
Current Network (Mobile Data Usage Analysis reports)
Current Country (Mobile Data Usage Analysis reports)
Daily Usage (Mobile Data Usage Analysis reports)
Mobile Data Usage Overview reports for MaaS360
Subscription and UI settings for the Mobile Data Usage Overview reports
In-Network (Mobile Data Usage Overview reports)
Total In-Network (Mobile Data Usage Overview reports)
Roaming (Mobile Data Usage Overview reports)
Total Roaming (Mobile Data Usage Overview reports)
Mobile Metrics for MaaS360
Deployment Mobile Metrics
Enrollment authentication type metrics
Employee owned devices metrics
Policies defined metrics
Mobility enablement metrics
Device Mobile Metrics
Devices by platform metrics
Android devices by manufacturer metrics
Devices per user metrics
App Mobile Metrics
Most popular apps metrics
Restricted apps metrics
Approved apps metrics
New apps detected metrics
Apps per device metrics
Security Mobile Metrics
Security index metrics
Data security settings metrics
Network security settings metrics
App security settings metrics
Device security settings metrics
Network reports for MaaS360
Subscription and UI settings for the Network reports
Current Carrier (Network reports)
Current Country (Network reports)
Home Carrier (Network reports)
Roaming Status (Network reports)
Unified Endpoint Management (UEM) Overview reports for MaaS360
Subscription and UI settings for the Unified Endpoint Management (UEM) Overview reports
Devices by Platform (UEM Overview reports)
Devices by Managed Status (UEM Overview reports)
Devices by Ownership (UEM Overview reports)
New Devices (UEM Overview reports)
Audit Data reports for MaaS360
Administrator audit data
Administrator audit reports
Enrollments, devices, and users audit reports
Administrator and Roles audit reports
Policies and rules audit reports
Settings and services audit reports
Windows 11 Readiness report
Actions
Scheduling a device action
Managing the scheduled action
Tracking the status of scheduled action
Account Management for Partners
Account Management overview
Account types
Onboarding a partner to IBM MaaS360
Using the Account Management feature
Creating an account
Creating a Trial account
Creating a Customer account
Creating a Partner account
Managing accounts
Navigating account hierarchy
Managing the child account
Exporting account lists
Exporting license report
Expiring an account
Extending an account
Converting an account
Viewing the accounts details
Cloud Extender Admin Guide
About the Cloud Extender
Cloud Extender use cases
Cloud Extender architecture
Cloud Extender in FIPS mode
Scaling the Cloud Extender
Downloading the license key and the Cloud Extender software
Configuring the NIAP-certified Cloud Extender installer
Installing the Cloud Extender software
Configuring the Cloud Extender
Upgrading the Cloud Extender core agent
Apply Update Aborted health check alert from the Cloud Extender core
Clearing Cloud Extender health check alerts manually
Configuring Cloud Extender for Microsoft’s strong certificate-mapping enforcement
Upgrading the Cloud Extender core and modules
Upgrading the Mobile Enterprise Gateway (MEG) and the IBM MaaS360 VPN modules
Upgrading to the Cloud Extender version 3.x installer, configuration tool, and modules
Upgrading the Cloud Extender to use the enhanced messaging service
Upgrading the Cloud Extender IBM MaaS360 VPN Server
Upgrading Cloud Extender Agent to version 3.002.200
Installing the Cloud Extender for NIAP Protection Profile
NIAP Protection Profile Setup and Operations Guide
Configuring settings for the Cloud Extender modules
User Authentication module
User Authentication service configuration
Basic configuration: Active Directory mode
Advanced configuration: Active Directory mode cross-forest and domain authentication
Basic configuration: LDAP mode
Advanced configuration: LDAP mode
Automatic OU lookup from the Corporate Directory (User Authentication)
Enabling health check alerts for User Authentication
Troubleshooting issues with user authentication
User Visibility module
User Visibility service configuration
Basic configuration: Active Directory mode
Advanced configuration: Active Directory mode trusted cross-forest visibility
Trusted multi-forest environment
Restrict Active Directory integration to the current domain
Cross-forest group membership support in Active Directory environments
Basic configuration: LDAP mode
Advanced configuration: LDAP mode
Automatic OU lookup from the Corporate Directory (User Visibility)
Enabling health check alerts for User Visibility
Troubleshooting issues with user visibility
Exchange module
About Exchange role-based access control (RBAC)
Creating custom roles in Office 365
About Office 365 Budgets
Basic mode: Exchange Integration
Configuring Exchange module for certificate-based authentication
Advanced mode: Exchange Integration
Restricting the scope of the Cloud Extender
Multiple Cloud Extenders for Exchange Integration
Primary Cloud Extender in multi-Cloud Extender environments
Advanced Office 365 integration options
Action Retries settings for failed actions on devices (Exchange/Office 365)
Configuring filtering options in Cloud Extender Tool
Cloud Extender settings in the IBM MaaS360 Portal
Enabling Auto-Quarantine (AQ) for Exchange
MaaS360 merge process for mobile device records
Enabling Auto-Removal with Exchange
Enabling health check alerts for Exchange Integration
Removing Exchange ActiveSync devices in bulk
High Availability (HA) mode for Exchange Integration
HCL Traveler
HCL Traveler Integration
Enabling Auto-Quarantine (AQ) for HCL Traveler
Enabling health check alerts for HCL Traveler
High Availability (HA) mode for HCL Traveler integration
Certificate Integration module
Cloud Extender Certificate Integration configuration
Microsoft CA integration
Installing Microsoft NDES on a Windows server
Configuring the certificate template on the SCEP server
Enabling a new certificate template on the CA
Setting up a default certificate template on the NDES server
Increasing the password cache limit on the NDES server
Increasing the maximum query string on the NDES server
Restarting IIS on the NDES server
Configuring a certificate template on the Cloud Extender
Configuring IBM MaaS360 policies to use the Cloud Extender certificate templates
Configuring direct certificate authority access to a Microsoft CA server
Symantec CA integration
Creating a certificate profile on the Symantec PKI Manager
Viewing the details of a Symantec PKI certificate profile
Getting an RA certificate from Symantec
Completing the Symantec PKI certificate template configuration
Revoking Symantec certificates
Entrust CA integration
Setting up a Digital ID for your Entrust CA
Configuring a certificate template for Entrust
IDnomic and OpenTrust PKI CA integration
Configuring a certificate template for IDnomic and OpenTrust PKI
Verizon MCS integration
Cisco EST integration
Configuring certificate authentication for a generic CA web service
Testing certificate integration
Viewing the status of deployed certificates
Multiple SMIME certificate support in Active Directory
Enabling health check alerts for Certificate Integration
Using the Update Device Certificate action
Setting up a cluster of Certificate Integration modules enabled with distributed certificate caching
High Availability (HA)
Managing certificates on multiple Cloud Extenders in an HA cluster
Troubleshooting issues with certificate integration
Email Notification module
Configuring Exchange email notifications
Testing Exchange email notifications
About listener accounts
Setting up a listener account
Auto discovery in Exchange 2013+ and Office 365
Adjusting throttling policies
Configuring WorkPlace Persona policies for MaaS360 Mail notification
Enabling health check alerts for Email Notifications
Enabling the reset notification action for the EMSAgent
Troubleshooting issues with Exchange integration
Mobile Enterprise Gateway (MEG) module
Installing the Mobile Enterprise Gateway (MEG)
Configuring Mobile Enterprise Gateway (MEG) in Standalone mode
Mobile Enterprise Gateway (MEG) in High Availability (HA) mode
Configuring Mobile Enterprise Gateway (MEG) in High Availability (HA) mode
Setting up a shared database for High Availability (HA)
Joining a gateway to an existing High Availability (HA) cluster
Configuring gateway settings for Cloud Extender
Configuring access to the MaaS360 Browser
Configuring access to MaaS360 Document for SharePoint and CMIS
Configuring access to MaaS360 Document for Windows File Share
Viewing gateway settings in the IBM MaaS360 Portal
Enabling health check alerts for Mobile Enterprise Gateway (MEG)
Viewing all gateways and gateway clusters in the IBM MaaS360 Portal
Working with active gateway sessions
Configuring mobile apps through the enterprise gateway
Troubleshooting issues with configuring mobile apps
Using cross-forest and cross-domain authentication for Mobile Enterprise Gateway (MEG)
Enabling certificate authentication with the enterprise gateway
Using a PKI certificate for gateway authentication
Using the internal IBM MaaS360 Certificate for gateway authentication
Kerberos Constrained Delegation (KCD) support for certificate authentication
Configuring QRadar to collect authentication and resource logs from MEG
Configuring the MEG gateway to send logs to QRadar
Configuring QRadar to receive logs from MEG
Using the QRadar DSM Editor
Adding MEG as a new log source type in QRadar
Defining a QID and creating event categories for MEG in QRadar
Adding a MEG log source extension in QRadar
Configuring settings for the MEG log source in the QRadar Console
Mapping the MEG event in the QRadar Console
Installing Mobile Enterprise Gateway (MEG) in FIPS mode
MEG FIPS Setup Guide
Mobile Enterprise Gateway (MEG) support for Apple WKWebView
Enabling Mobile Enterprise Gateway (MEG) support for Apple WKWebView
Configuring advanced settings for Mobile Enterprise Gateway (MEG) support for Apple WKWebView
Troubleshooting issues with Mobile Enterprise Gateway (MEG) and the Apple WKWebView implementation
IBM MaaS360 VPN module
IBM MaaS360 VPN deployment scenarios
Configuring Windows routing and remote access for IBM MaaS360 VPN
Installing the routing and remote access role on Windows Server 2016+
Installing IBM MaaS360 VPN and configuring the IBM MaaS360 VPN TAP Adapter on Windows Server 2016+
Setting up a cluster for IBM MaaS360 VPN
Configuring the IBM MaaS360 VPN policy in the IBM MaaS360 Portal
Installing the IBM MaaS360 VPN app
Renewing the IBM MaaS360 VPN module server certificate
Troubleshooting issues with IBM MaaS360 VPN
Zebra Printer Management module
Configuring the Zebra Printer Management service for Cloud Extender
Viewing Zebra printer settings in the IBM MaaS360 Portal
Configuring a Zebra Printer policy in the IBM MaaS360 Portal
WorkPlace
IBM MaaS360 Container
Accessing the MaaS360 Container
Viewing iOS device settings in the MaaS360 Container
Viewing Android device settings in the MaaS360 Container
PDF Viewer for iOS and iPad
IBM MaaS360 Mobile Document Editor
Accessing a document in the MaaS360 Mobile Document Editor
Creating a document in the MaaS360 Mobile Document Editor
Editing a document in the MaaS360 Mobile Document Editor
Editing a text file in the MaaS360 Mobile Document Editor
IBM MaaS360 Mobile Browser
Using the MaaS360 Mobile Browser
IBM MaaS360 Mobile Mail
Managing corporate email messages in MaaS360 Mobile Mail
Using the corporate calendar in IBM MaaS360 Container
Managing personal or corporate contacts in MaaS360 Mobile Mail
Managing tasks in MaaS360 Mobile Mail
Managing notes in MaaS360 Mobile Mail
MaaS360 Assistant
Enabling MaaS360 Assistant
Using the MaaS360 Assistant app
Viewing Insights
Disabling Insights for selected email IDs
MaaS360 Assistant FAQs
iOS
Uploading an APNS certificate in the IBM MaaS360 Portal
Renewing the APNS certificate in the IBM MaaS360 Portal
Signing certificate expiration on enrolled iOS devices
Enrolling your iOS device (MDM)
Enrolling your iOS device (without MDM)
Enrolling your iOS device (DEP by using Passcode)
User Enrollment for iOS devices in MaaS360
Setting up iOS devices in the IBM MaaS360 Portal for User Enrollment
Creating an enrollment request
Enrolling an iOS device in User Enrollment mode
Account driven user enrollment
Device summary and app distribution for user-enrolled iOS devices
Supported iOS policy settings on user-enrolled devices
iOS device actions
Apple Shared iPad for Business
Managing iOS updates in MaaS360
Deploying iOS updates in MaaS360
Installing iOS updates on the device
Tracking the OS Update status for a device
Tracking the OS Update status for device groups
macOS
Enrolling your macOS device (MDM)
Enrolling your macOS device (DEP)
Using account driven user enrollment for macOS
macOS remote actions
macOS device actions
FileVault disk encryption
Clearing the macOS Activation Lock
Managing MacOS updates in MaaS360
Creating a Device group
Deploying macOS updates in MaaS360
Deploying macOS updates to multiple devices
Deploying macOS updates to an individual device
Tracking the status of a macOS update
tvOS
Enrolling your Apple TV
tvOS device actions
Configuring policy settings for tvOS devices
MDM payloads supported for tvOS devices
MDM restrictions supported for tvOS devices
Distributing apps to tvOS devices
Android
Android Enterprise enrollment guide
Integrating MaaS360 with Android Enterprise
Integrating with a Managed Google Play account
Integrating with a Google Workspace account
Understanding Android device management modes
Device Owner (DO) mode
Work Profile or Profile Owner (PO) mode
Work profile on corporate-owned devices (WPCO)
Corporate-owned devices without Google Mobile Services
Choosing the enrollment method using Android Device Enrollment Wizard
Samsung Knox Mobile Enrollment (KME) program
Configuring Zero-touch Enrollment
Configuring the Zero-touch Enrollment in the MaaS360 portal
Configuring the Android Enterprise Zero-touch portal
Assigning Android Enterprise Zero-touch configuration to devices
QR code
Additional Android Enterprise enrollment attributes
Device Admin deprecation
Migrating from Device Admin (DA) to the Work Profile
Sending an Android Enterprise migration request from the MaaS360 Portal
Sending an Android Enterprise migration request to an individual device
Sending an Android Enterprise migration request to a group of devices
Initiating the Android Enterprise migration on a device
Tracking Work Profile migration status on devices
Tracking the current status of the Work Profile migration
Tracking the number of devices that migrated to the Work Profile
Device Admin enrollment
Samsung Knox Mobile Enrollment in Device Admin mode
Enrolling your Android device (MDM)
Enrolling your Android device (without MDM)
Android bulk enrollment
Creating a configuration profile for bulk enrollment
Enrolling standard Android devices in bulk
Enrolling Zebra devices in bulk
Android remote actions
Android device actions
Push Profile actions to managed Zebra and Bluebird devices
Pushing custom XML actions to managed Zebra devices
Android custom commands
Upload file custom command
Tracking managed app configuration feedback in the IBM MaaS360 Portal
Deploying OS upgrades to corporate-owned devices
Android user actions (Sign in and Sign out) in MaaS360
Android group-level actions
Remote support for Android devices
MaaS360 Remote Support app
TeamViewer integration
Windows
Windows device enrollment workflow
Enrolling your Windows (Education, Enterprise, Pro) device (MDM)
Enrolling your Windows Home device (MDM)
Activating your Windows device (without MDM)
Setting up Windows Enrollment in the IBM MaaS360 Portal and Microsoft Entra
Windows Out of Box Experience (OOBE) enrollment
Identifying Windows OOBE devices enrolled in MaaS360
Searching for Windows OOBE devices enrolled in MaaS360
Windows OOBE user experience during Microsoft Entra join and registration
Setting up a Windows device from a factory reset state
Updating an existing Windows OOBE setup for a Windows device during Microsoft Entra join
Registering a Windows device to Microsoft Entra
Windows Autopilot enrollment
Enrolling Windows devices with the Windows Bulk Provisioning Tool
Windows Bulk Provisioning Tool imaging process
Creating a base image for the Windows Bulk Provisioning Tool
Installing the Windows Bulk Provisioning Tool
Configuring the Windows Bulk Provisioning Tool configuration wizard for the imaging process
Using the base ISO image to deploy devices in bulk to Windows machines
Associating users with bulk enrolled Windows devices
Exporting the Windows Bulk Provisioning Tool executable for enrollment
Installing the Windows Bulk Provisioning Tool
Configuring the Windows Bulk Provisioning Tool configuration wizard to create a bulk provisioning tool executable
Distributing the Windows Bulk Provisioning Tool executable from a client management tool (CMT)
Associating users with bulk enrolled Windows devices
Bulk Provisioning Tool FAQs
Windows DTM to Windows MDM migration
Windows DTM to Advanced Windows Agent migration
Creating a device group to identify the DTM devices for migration
Distributing the Advanced Windows Agent to existing devices
Monitoring the migration status of devices
MDM and SCCM co-existence overview
Enrolling SCCM registered Windows devices to co-exist with MDM
Migrating existing group policies and creating equivalent MDM policies in MaaS360 using the SCCM Migration Tool
Migrating apps from an SCCM server to MaaS360 using the SCCM Migration Tool
Resolving Group Policy Objects (GPO) and MDM conflicts using the MDM Override GPO setting
List of Group policies migrated to MaaS360 Windows MDM policies using the SCCM Migration Tool
Viewing the co-existence status of CMT migrated devices in the IBM MaaS360 Portal
Microsoft HoloLens integration with MaaS360
Obtaining the app ID for Universal Windows Packages (UWP)
Using the Windows App Management Admin Tool to obtain Windows app IDs
Examples of obtaining Windows app IDs manually
Endpoint security for IBM MaaS360
Managing security risks with the Risk Rule Configurator
Risk rule categorization or risk rule sets
Security Dashboard for security risks on devices
Security Dashboard widget - Risk incidents
Security Dashboard widget - Top users with risk incidents
Security Dashboard widget - Average risk score trend
Security Dashboard widget - Security events
Tracking the status of security actions
User Risk Management for MaaS360
User Risk Management FAQs
MaaS360 Endpoint Threat Management
Enabling Endpoint Threat Management in IBM MaaS360
Configuring endpoint security policies
Threat detections
SMS and Email phishing
Malware
Insecure Wi-Fi
Excessive app permissions
Excessive privileges and malicious users
Advanced device configurations
Tracking security events on the Security Dashboard
Taking response actions for threats
Notifying users about security incidents
Applying quarantine actions
Supported quarantine actions
Adaptive access for apps
Remove email configuration
Remove corporate wifi configuration
Configuring quarantine templates
Quarantining users and devices
Revoking quarantine action
Automatic cleanup of risk data
MaaS360 Mobile Threat Defense
Mobile Threat Defense overview
IBM MaaS360 Mobile Threat Defense Professional
Enabling Mobile Threat Defense Professional service
Integrating IBM MaaS360 with Mobile Threat Defense
IBM MaaS360 Mobile Threat Defense Advanced
Enabling Mobile Threat Defense Advanced service
Configuring Mobile Threat Defense Advanced in Endpoint Security Policy
Assigning MTD licenses to Devices
Assigning Endpoint Security Policy to device groups
Enabling Zero-Touch Activation
Configuring MDM policy for MTD on Android device
Configuring MDM policy for MTD on iOS device
Assigning MDM policy to device groups
Configuring Mobile Threat Defense risk rules
Tracking security events for Mobile Threat Defense
Taking response actions for threats
Notifying users about security incidents
Applying quarantine actions
Supported quarantine actions
Adaptive access for apps
Remove email configuration
Remove corporate wifi configuration
Configuring quarantine templates
Quarantining users and devices
Revoking quarantine action
Using MaaS360 MTD app
Using MaaS360 MTD app from IBM MaaS360 Security
App configuration details for MaaS360 MTD app
Threat list for MaaS360 MTD app
Managing Application security
Enabling Application security in MaaS360
Configuring risk rules for Application security
Tracking vulnerable apps on Security dashboard
Application security widget
Risk incidents widget
Remediating vulnerable apps
MaaS360 product integrations
Aruba ClearPass integration with MaaS360
Box for EMM with MaaS360
Configuring Box for EMM integration
Google Workspace integration with MaaS360
Lookout Mobile Threat Protection (MES) integration with MaaS360
Setting up the MaaS360 instance
Setting up the MaaS360 connector in the Lookout MES console
Creating a device group in MaaS360 to use the Lookout MES service
Creating compliance rules for policy actions in MaaS360
Configuring the Lookout for Work app distribution
Activating users of the Lookout for Work app
Managing devices in the MaaS360 console and the Lookout MES console
Pradeo Security integration with MaaS360
Preconfiguration settings for MaaS360 server
Connecting the MaaS360 server to the Pradeo server
Enrolling the Pradeo Security agent on Android devices
Enrolling the Pradeo Security agent on iOS devices
QRadar
IBM Security Verify integration with MaaS360
Provisioning a Verify instance in the MaaS360 Portal
Adding cloud apps to the Verify portal
Configuring cloud apps for single sign-on (SSO) and conditional access
Adding apps to MaaS360 and enabling enterprise SSO
Configuring an MDM policy in the IBM MaaS360 Portal
Configuring the SSO payload on a device
MaaS360 - Verify integration user experience
TeamViewer integration with MaaS360
Configuring the TeamViewer service in the MaaS360 Portal
Deploying the TeamViewer app to managed devices
Silently installing and pushing the TeamViewer app for Windows from MaaS360
Installing the TeamViewer client on an administrator device
Sending a remote session request for TeamViewer attended access
Sending a remote session request for TeamViewer unattended access
FAQs about the TeamViewer subscription
Zscaler Internet Access (ZIA) integration with MaaS360
Enabling the Zscaler integration with MaaS360
Adding a MaaS360 threat connector in the IBM MaaS360 Portal
Setting up a MaaS360 threat connector
Viewing details about a MaaS360 threat connector in the IBM MaaS360 Portal
Viewing MaaS360 threat connector actions in the IBM MaaS360 Portal
Distributing the Zscaler client connector app
Setting up the Zscaler Nanolog Streaming Service (NSS) virtual machine
Configuring the Zscaler NSS feed from the Zscaler admin portal
Developer docs
Security for your mobile apps
Mobile app types
Choice of security models
Secure enterprise apps methods
Secure public apps methods
App wrapping (iOS) overview for developers
Getting an account at MaaS360
Design guidance for iOS enterprise app wrapping
Per-app VPN
Data encryption by wrapping
Encrypted files and databases on a wrapped app
Data encryption controls
Memory usage during encryption
APIs handled for data encryption
Testing app wrap results
Web services
IBM MaaS360 API reference for web services
Auto-provisioning web services
Cisco Identity Services Engine (ISE) integration with MaaS360
MDM server information
MDM device attributes query
MDM device attributes query for POST request
MDM action
Messaging
Getting started with IBM MaaS360 across industries
Manufacturing
OEMConfig for proprietary device features
Action orchestration for device updates
Frontline device management
Device mode for manufacturing stations (Corporate-Owned, Single-Use (COSU))
Geofencing and compliance in restricted areas
IBM MaaS360 remote support