Apple Business Manager
Apple Business Manager (ABM) is a web-based portal for IT administrators to deploy iPhone, iPad, iPod touch, Apple TV, and Mac computers all from one place. Combined with an EMM, an IT administrator can configure and manage an employee device, apps, security settings, and accounts.
It was created by combining the Volume Purchase Program (VPP) and Device Enrollment Program (DEP) portals into a single service. Once an organization switches to ABM, they usually don’t need to manage apps, services, and devices through the DEP and VPP portals.
Why ABM?
Silently push MDM solutions like Codeproof with zero-touch enrollment.
Auto-enable supervision in the device.
Make an MDM solution like Codeproof mandatory and prevent the end-user from removing it.
Purchase and deploy of apps and content in bulk.
Codeproof has an EMM partnership with Apple to integrate ABM within its platform. ABM offers the following salient features:
Device Enrollment
Automate Mobile Device Management (MDM) enrollment and simplify initial device setup. Deploy newly purchased or wiped Mac, iPad, iPhone and Apple TV devices directly to users preconfigured with the desired settings, security controls, apps, and books. This can be done without having to physically touch or prep the devices.
Combined with an MDM, this process can be simplified by removing steps from the Setup Assistant. Assign licenses to employees through their Apple IDs, or to devices through their serial number.
Once the employee activates the device, it as automatically enrolled in the MDM with all apps, books, and settings ready to use.
Bulk app purchase and content deployment
Purchase and deploy apps and books in bulk to devices. Using MDM, the IT administrator can also assign specific books and apps to specific devices and users, update them, even if the App Store is disabled.
Your organization retains full control of the apps and books, so you can revoke and reassign apps to different devices and users. This revocation and assignment of apps can be done in any country where the apps are available in the App Store.
Federated Authentication
Allow users to use their Microsoft Azure Active Directory (AD) username and passwords as Managed Apple ID’ using Federated Authentication, which links ABM to an instance of Azure AD. They can use their AD credentials to access their assigned iPad, Mac, and iCloud.
Federated Authentication can be used for both user identification and device identification.
Managed Apple IDs
Use Managed Apple ID’s (MAID) to allow employees to access devices, Apple services, and ABM. MAIDs are owned and managed by your organization. An IT administrator can create unique MAIDs in bulk, reset passwords, and assign employees different roes within an organization.
They can either be created manually or through Federated Authentication with Microsoft Azure Active Directory (AD).
Configure Locations
Divide and assign app and book licenses for different offices and edit their information using the Locations feature. Assign managers to configure settings for their respective offices, and specify which licenses are available to which location.
The first location is created automatically, but administrators can add more locations and edit their information.
Role Management
Assign different permission levels to multiple roles within an organization, with user classes like Administrator, Staff, Device Manager, Content Manager, and People Manager.
Every ABM account has one or more roles that permit and limit what the account user can do. For instance, only users with Administrator or People Manager roles can configure Federated Authentication, create, edit, and delete locations and set the default MAID username format.
Activity Log
In conjunction with an MDM, manage and view activity on ABM regardless of where the activity originates. Some activities or status messages can only be viewed by managers and administrators with the correct privileges.
Activities within ABM are organized by activity (actions taken), status (to what degree the activity has been completed or stopped), and date created (when the activity was initiated).
How to setup ABM with Codeproof
ABM is only used to provision company-owned devices. You must first signup with the ABM portal and setup your account at the business.apple website . There is no cost associated with it. Once you have an ABM account, you can purchase devices from Apple and designate them as fully managed devices.
You can then use our EMM integration guide to connect ABM and Codeproof.
"Throughout my experience with Codeproof, it has worked flawlessly. Even more importantly, Codeproof support is unrivaled."
Working with Codeproof has been a relief, it allows our company to have control over software and devices and visibility to ensure our employees have the proper equipment to do their job each and every day.
We didn’t make a single compromise to get the protection we wanted and needed.
We have site phones that we need locked and tracked. We have recovered lost or stolen phones...and pushed new apps remotely.
The Codeproof platform not only assists in fleet management, but has benefitted our company in helping to make the process of retrieving company property more reliable.
Customer support is always accessible and those who have assisted us have gone out of their way to ensure the MDM platform meets all of our needs.
Codeproof had the right balance of easy individual device configuration and group-level settings, as well as an excellent support team and willingness to add new features to meet our needs, all at a competitive price.
Having our employees work in remote locations, Codeproof has really helped us manage our devices...They are very helpful and detailed when explaining thing.
Codeproof has made device management much easier than some larger MDM solutions. From the beginning of our trial Console, up to the present, we were able to easily contact the development team at Codeproof with any ideas for improvements.
With Codeproof, the first thing I noticed is that the UI is much more intuitive and simpler to navigate. I feel like there are as many, if not more, features available to me in Code Proof but they are a little easier to find.
Foundation is so grateful for the partnership with Codeproof and their willingness to support students and families in need of literacy resources. While our technical needs are likely less than that of other companies, we have found great value in the Codeproof product.
Codeproof has great customer support. If there is an issue, or if we need assistance with anything, they are very quick to respond and lend a hand.
Terrapin Pharmacy’s Executive Management and Technology Developers would be extremely likely to recommend Codeproof to others based upon the interactions we have had with the Codeproof team and the can-do culture within their organization.
Codeproof is a very comprehensive MDM product. We received great service at all times from their technicians when we had issues. They are continually working on improving the product with feedback from customers like us, so we can have better control of our remote equipment.
[An] upbeat, well-organized, and helpful company. Codeproof provided superior customer support during a time of uncertainty.
Codeproof has been an asset in maintaining security, control and reducing liability of our mobile devices by allowing us blanketed control of our mobile fleet at all times regardless of day and location. It will continue to be the foundation for our mobile security for now and the future. Their security options and scalability is priceless.
I chose Codeproof over other players in the market because it's simple and customizable dashboard caters to the needs of my business. Codeproof tries to find solutions and treats you as partners rather than just a customer.
I chose Codeproof for our internal MDM solutions over other options because the case study and utilization of the system were very understandable. It decreased our potential costs related to device investments while increasing device security and reducing operational costs.