14+ causes enterprises ought to improve to iOS 16
When it involves iOS, 16 it’s not terribly shocking most experiences focus is on consumer-friendly options. But there are many good causes for enterprise customers to make the transfer.
When it involves causes to improve to iOS 16 it’s no shock that many of the focus is on the consumer-friendly options of the brand new OS. But there are many causes for enterprise customers to improve — together with these productivity-enhancing tweaks.
Big enhancements in SSO
Single sign-on (SSO) lets an worker signal into their managed gadget as soon as to see it arrange to be used, together with purposes and providers deployments. Like most straightforward issues, it depends on a fancy net of applied sciences first launched with Sign in with Apple in 2019. Significant enhancements have been launched in iOS 16, together with help for person enrollment for iOS 16. You can enroll through an MDM supplier or through a Managed Apple ID, relying on firm deployment technique.
In one other nugget of fine information for enterprise IT, Apple has launched help for OAuth 2.0, which helps extra identification provision programs from third-party providers. You can discover out extra about these enhancements right here.
Sign in with Apple at Work & School
Apple launched integration with Google Workspace earlier this 12 months following earlier help for Microsoft sync. Now it has gone additional with Sign in with Apple at Work & School, which provides help for Managed Apple IDs to Sign in with Apple.
What that considerably brand-name-heavy phrase jamboree means is that workers, educators, and college students can sign up with their Managed Apple IDs, which primarily makes it means simpler for companies to distribute and handle worker apps. This additionally makes for extremely environment friendly gadget deployments alongside SSO.
Managed Device Attestation
Announced at WWDC 2022, Managed Device Attestation helps forestall attackers from stealing a tool’s TLS non-public keys, spoofing legit gadgets, or mendacity a couple of gadget’s properties. It depends on the Secure Enclave to safe communication between managed gadgets and providers similar to MDM. In use, it helps defend weak endpoints and enterprise providers in opposition to varied types of safety compromises.
Declarative Device Management
Introduced final 12 months and set to be prolonged to the Mac with macOS Ventura, Declarative Device Management makes managed gadgets extra proactive and clever, which implies MDM programs collect early warning indicators within the occasion unauthorized adjustments are made to the gadget. In iOS 16, this extends to automated and profile-based gadget enrolments. Shared iPad help can even be launched with iPad OS.
What’s higher than weak passwords? No password
Apple is working to cut back the necessity for authorization. Its work to substitute CAPTCHA know-how with seamless authorization based mostly round a tool’s first login means passwords will change into much less vital — although it does make it way more vital to make sure the one grasp password you and your workers use is exclusive, rock strong, and extremely safe. Apple has additionally launched Passkeys, additional accelerating a transfer towards a hopefully safer password-free future.
Managed per-app networking
Apple is increasing the per-app managed networking capabilities it helps to incorporate DNS proxies and net content material filters for iOS 16 gadgets enrolled with User Enrollment. This helps guarantee solely community visitors initiated by managed apps travels by means of a company net content material filter or DND proxy. This cleverly retains your workers’ private visitors separate and unfiltered, which implies your corporation will get good safety over the information it cares about whereas your workers maintain their non-public lives non-public.
Data separation in Calendar and Reminders
If you employ Calendar and Reminder apps throughout your corporation, you could know that in iOS 16 each apps help full knowledge separation for gadgets enrolled with User Enrollment. It signifies that when a person indicators in with their Managed Apple ID, the app will create a second database containing occasions and metadata that concern your group’s calendars and reminders. This ought to assist defend person privateness whereas defending your corporation secrets and techniques. Another helpful enhancement permits you to use Filter Fields when sharing contact data out of your gadget, which implies you’ll be able to share simply the data that’s required, somewhat than a complete contact card.
Lockdown Mode
While Apple says most of us won’t ever want to make use of its new and extremely safe “Lockdown Mode,” it does make sense for any enterprise or enterprise person to take a look at the safety it gives. It’s an strategy to gadget safety that makes full sense to any firm doing enterprise in unstable areas, or any enterprise through which privateness and knowledge safety are paramount. Unfortunately, use of this mode vastly reduces the capabilities of your gadget. Among different limitations, Lockdown Mode curtails some net providers, Messages content material, and invites; wired connections gained’t work; and you can not signal a tool into MDM (although pre-existing enrollment is preserved). You allow the mode in Settings>Privacy & Security>Lockdown Mode.
Rapid Security Response
This is a crucial replace for enterprise safety. Apple has developed a brand new system to push safety updates out to customers swiftly. When Rapid Security Response is enabled, safety patches may be routinely downloaded and/or put in as they’re made out there. Apple has additionally created two new APIs for MDM service suppliers, which allow IT admins to both implement or forestall use of Rapid Security Response throughout their Apple gadget fleets.
[Also read: Jamf CIO: Apple will be the No. 1 enterprise endpoint by 2030]
Configurator will get higher
If you’re an Apple admin used to utilizing Configurator so as to add gadgets to your Apple Business Manager (ABM) account as you enroll them to your chosen MDM service, you’ll be exultant that Apple now makes it doable so as to add Macs, iPads, and that iPhones to ABM utilizing a model of Configurator in your iPhone. This goes to save lots of a great deal of time for a lot of companies who’ve had to make use of a wired connection on the Mac to help some gadgets till now.
A growth for small enterprise
Apple has reached a take care of CloudFlare that lets customers buy electronic mail domains from inside iCloud Settings. You can then use the customized area as your electronic mail deal with, share electronic mail addresses based mostly in your area with others, and extra in iOS 16.
Smart Card help
iOS 16 and iPadOS 16 help PIV Smart Cards and CCID-compliant readers, although admins might want to contact the developer of their CCID reader to confirm that iOS is presently supported.
Making it simpler to swap eSIMs
Given that Apple has made iPhone 14 eSIM-only within the US, one other enchancment that was barely ignored on announcement now makes a number of sense. You will be capable to switch eSims between iPhones utilizing Bluetooth. To accomplish that, simply transfer your older iPhone near your new one and comply with the Set Up Cellular command dialog. We’ll see if Apple has gone far sufficient to make this a seamless transition.
Brand Indicators for Message Identification
Apple has adopted Brand Indicators for Message Identification (BIMI), a specification that allows use of brand-controlled logos inside emails. It’s not excellent and the price of exploiting it’s such that the majority smaller enterprises will most likely ignore it, however the transfer does add one other layer of safety to assist distinguish real company emails from spam.
iOS 16 compatibility information
The following gadgets are suitable with iOS 16:
- iPhone 13
- Phone 13 Mini
- iPhone 13 Pro
- iPhone 13Pro Max
- iPhone 12
- iPhone 12 Mini
- iPhone 12 Pro
- iPhone 12 Pro Max
- iPhone 11
- iPhone 11 Pro
- iPhone 11 Pro Max
- iPhone XS
- iPhone XS Max
- iPhone XR
- iPhone X
- iPhone 8
- iPhone 8 Plus
- iPhone SE (2nd era or later).
Please comply with me on Twitter, or be part of me within the AppleHolic’s bar & grill and Apple Discussions teams on MeWe.