Skip to content
Apple is about to enforce stricter TLS standards for MDM. Are you ready?
Arek Dreyer

7 min read

Apple is about to enforce stricter TLS standards for MDM. Are you ready?

Summary Apple announced that starting as early as iOS 27, iPadOS 27, macOS 27, watchOS 27, tvOS 27, and visionOS 27, its operating systems will enforce stricter TLS requirements for system processes, including MDM, DDM, Automated Device Enrollment, and app distribution. Servers that don't support TLS 1.2 or later (TLS 1.3 recommended), ATS-compliant ciphersuites, and valid certificates may have their connections refused. SCEP servers and content caching servers are currently exempt. IT admins should audit their infrastructure now using Apple's Network Diagnostics Logging Profile to identify non-compliant servers before fall 2026. Starting as early as the next major OS release, Apple devices will refuse to connect to any device management service, Mobile Device Management (MDM) server, enrollment endpoint, or app distribution infrastructure that does not meet tightened TLS standards. Non-compliant servers will simply stop working for enrollment, device management, app delivery, and software updates.

Educational
What Apple Business Actually Means for Your IT Team (And Whether It Replaces Your MDM)
Arek Dreyer

6 min read

What Apple Business Actually Means for Your IT Team (And Whether It Replaces Your MDM)

Educational
Unlocking Apple’s New Device Management API
Arek Dreyer

4 min read

Unlocking Apple’s New Device Management API

Thought Leadership

Ransomware Readiness: Tips from Beyond the Playbook
Arek Dreyer

4 min read

Ransomware Readiness: Tips from Beyond the Playbook

The call came at 2 AM. A major U.S. telecom provider, critical infrastructure supporting millions of cell phone users, was under active ransomware attack. Systems were encrypting rapidly across their network. Within hours, the FBI was coordinating response efforts, executives were in crisis mode, and a specialized team was rebuilding Active Directory from scratch while the clock ticked. For Eric Pittman, VP of Cybersecurity at Teradata, this wasn't a tabletop exercise or theoretical scenario. It was a real-world crisis that revealed critical gaps in how organizations prepare for and respond to ransomware attacks.

Thought Leadership
Apple’s Recent Updates to Platform SSO: What Problems Will It Solve?
Arek Dreyer

6 min read

Apple’s Recent Updates to Platform SSO: What Problems Will It Solve?

A frank look at where Platform SSO stands today, what's coming with macOS Tahoe 26, and the hard choices Mac administrators need to make

Thought Leadership
Arek Dreyer

7 min read

"Keep Learning, Keep Leading": Advice for Apple Admins

Your iPhone has more computing power than entire university systems had 50 years ago. In another 50 years, the information processing capabilities available to us will be exponentially greater still. Yet our brains remain fundamentally unchanged, evolved to track seasonal patterns and remember a few dozen faces, not to process the constant stream of security bulletins, product announcements, API changes, and community discussions that define modern Apple administration.

Thought Leadership
Apple IT Training and Certification: What You Need to Know
Arek Dreyer

10 min read

Apple IT Training and Certification: What You Need to Know

Back in May 2022, Apple announced a new series of online IT training and certification programs. These programs follow three tracks: Apple Device Support, Apple Deployment and Management, and Apple Business Essentials.

Educational
How-To Guide: Changing and Resetting Mac Passwords
Arek Dreyer

7 min read

How-To Guide: Changing and Resetting Mac Passwords

When was the last time you or someone in your organization needed their Mac password to be something different than what it previously was? There are two ways to do that: change or reset. But although those two words might seem similar, their difference is significant.

Educational

Stay up to date

Iru's weekly collection of articles, videos, and research to keep IT & Security teams ahead of the curve.