Authentication

Select a user authentication method for enrolling devices.

User Authentication Options

Note: This section appears only if you selected Manual as the device group selection method.
Utilize directory services to authenticate users during device enrollment Use an LDAP directory service or an identity provider (with LDAP groups) for user authentication.

Select LDAP Directory Service to select an LDAP connection from the list, and search for an LDAP group using that connection. If no LDAP connection has yet been configured, select Manage Directory Services to open the LDAP Connections Manager which you can use to configure a new connection.

Select Identity Provider (with LDAP) to select an identity provider connection that is backed by LDAP from the list, and search for an LDAP group using that connection. If no identity provider connection has yet been configured, select Manage IdP Connections to open the Identity Provider Manager which you can use to configure a new connection.

Password required to verify device enrollment Specify a single password for enrollment across all devices that enroll using this add devices rule.
No password required to verify device enrollment Allow devices to enroll without verification.
Use static enrollment challenge User static enrollment challenge. (For use with Apple Configurator.)

Certificate Authentication Authority

Issue device identity using Select the certificate authority that will be used to identify devices.
Issue agent identity using Select the certificate authority that will be used to identify agents.