# Iru Docs: Endpoint

## Endpoint

### Getting Started

- [Getting Started](https://docs.iru.com/en/endpoint/getting-started/getting-started.md): Get started with Iru Endpoint for Apple, Windows, and Android device management. Follow the setup checklist to configure your tenant and enroll devices.

#### Foundation Setup

- [Admins and Access](https://docs.iru.com/en/endpoint/getting-started/foundation/admins-and-access.md): Add team members to Iru Endpoint and set role-based access. Assign administrator, standard, help desk, or auditor levels to control permissions.
- [SSO Setup](https://docs.iru.com/en/endpoint/getting-started/foundation/sso-setup.md): Configure single sign-on (SSO) for Iru Endpoint admin access. Connect your identity provider using SAML or native integrations for secure login.
- [Set Up User Directory Integration in Iru Endpoint](https://docs.iru.com/en/endpoint/getting-started/foundation/user-directory-integration.md): Connect your identity provider to Iru Endpoint for automatic user and group synchronization. Integrate with Okta, Entra ID, Google, or OneLogin.

#### Platform Setup

- [Apple Setup](https://docs.iru.com/en/endpoint/getting-started/platform-setup/apple-setup.md): Set up Apple platform integrations in Iru Endpoint. Configure APNs, Apple Business Manager, Automated Device Enrollment, and Apps and Books.
- [Windows Setup](https://docs.iru.com/en/endpoint/getting-started/platform-setup/windows-setup.md): Configure Windows platform settings in Iru Endpoint. Set up enrollment prerequisites and prepare your tenant for Windows device management.
- [Android Setup](https://docs.iru.com/en/endpoint/getting-started/platform-setup/android-setup.md): Set up Android Enterprise integration in Iru Endpoint. Connect your managed Google Play account and configure Android device management capabilities.

#### Blueprints and Library

- [Configuring Blueprints](https://docs.iru.com/en/endpoint/getting-started/blueprints-and-library/configuring-blueprints.md): Create and configure Blueprints in Iru Endpoint to group devices and assign management policies. Define Assignment Maps and Library Item assignments.
- [Managing Library](https://docs.iru.com/en/endpoint/getting-started/blueprints-and-library/managing-library.md): Add Auto Apps, custom apps, profiles, and scripts to your Iru Endpoint Library. Organize Library Items and assign them to Blueprints for deployment.
- [Configuring Parameters](https://docs.iru.com/en/endpoint/getting-started/blueprints-and-library/configuring-parameters.md): Set up Blueprint parameters in Iru Endpoint to enforce security and compliance policies. Configure user account, FileVault, and system settings.

#### Enrollment hub

- [Apple Enrollment](https://docs.iru.com/en/endpoint/getting-started/enrollment/apple-enrollment.md): Set up Apple device enrollment in Iru Endpoint as part of initial setup. Configure ADE, create enrollment URLs, and enroll your first Apple device.
- [Windows Enrollment](https://docs.iru.com/en/endpoint/getting-started/enrollment/windows-enrollment.md): Set up Windows device enrollment in Iru Endpoint as part of initial setup. Configure enrollment URLs and enroll your first Windows device.
- [Android Enrollment](https://docs.iru.com/en/endpoint/getting-started/enrollment/android-enrollment.md): Set up Android work profile enrollment in Iru Endpoint as part of initial setup. Connect Android Enterprise and enroll your first Android device.

### Devices

#### Overview & records

- [Device Views Overview](https://docs.iru.com/en/endpoint/devices/device-views-overview.md): Use device views in Iru Endpoint to filter, sort, and organize your managed device fleet. Create saved views and custom filters for quick access.
- [Device Record Details](https://docs.iru.com/en/endpoint/devices/device-record-management/device-record-details.md): Review inventory and status fields on the Details tab of a device record in Iru Endpoint for macOS, iOS, iPadOS, visionOS, Windows, and Android.
- [Assigning and Unassigning Users to Devices](https://docs.iru.com/en/endpoint/devices/device-record-management/assigning-and-unassigning-users-to-devices.md): Assign and unassign users to devices in Iru Endpoint for user-based management. Link directory identities to device records for targeted policies.
- [Tags for Devices](https://docs.iru.com/en/endpoint/devices/device-record-management/tags-for-devices.md): Create and apply tags to devices in Iru Endpoint for filtering and organization. Group devices by location, department, or custom criteria using tags.
- [Understanding When Devices Go "Offline"](https://docs.iru.com/en/endpoint/devices/device-record-management/understanding-when-devices-go-offline.md): Understand why managed devices show as offline in Iru Endpoint. Troubleshoot connectivity issues, check-in failures, and network problems.
- [Deleting a Device Record and Uninstalling Iru Endpoint](https://docs.iru.com/en/endpoint/devices/device-record-management/deleting-a-device-record-and-uninstalling-iru-endpoint.md): Delete device records and uninstall Iru Endpoint from managed devices. Remove MDM profiles, the Iru Agent, and all management configurations.
- [Activity Page](https://docs.iru.com/en/endpoint/devices/activity-page.md): View and filter tenant-wide Endpoint activity in Iru Endpoint. Review blueprint, device, library, and enrollment events from the Activity page.
- [Global Alerts](https://docs.iru.com/en/endpoint/devices/global-alerts.md): Monitor and manage alerts in Iru Endpoint including parameter alerts and Library Item alerts. View alert details, status, and remediation steps.
- [View Device Application List](https://docs.iru.com/en/endpoint/devices/view-device-application-list.md): View the list of installed applications on a managed device in Iru Endpoint. Check app versions, bundle IDs, and installation status for compliance.

#### Device Actions

- [Setting Device Names](https://docs.iru.com/en/endpoint/devices/device-actions/setting-device-names.md): Set or change device names remotely from the Iru Endpoint web app. Rename Mac, iPhone, iPad, Apple TV, and Windows devices for easier identification.
- [Lock a Device](https://docs.iru.com/en/endpoint/devices/device-actions/lock-a-device.md): Remotely lock a managed device from Iru Endpoint. Set a PIN or password and display a message on the lock screen across Mac, iOS, and Windows.
- [Enable Lost Mode](https://docs.iru.com/en/endpoint/devices/device-actions/enable-lost-mode.md): Activate Lost Mode on managed iOS and iPadOS devices from Iru Endpoint. Display a custom message, lock the device, and track its location remotely.
- [Cellular Commands](https://docs.iru.com/en/endpoint/devices/device-actions/cellular-commands.md): Send cellular commands to managed iOS and iPadOS devices from Iru Endpoint. Enable or disable personal hotspot, data roaming, and voice roaming.
- [Turn on Remote Desktop](https://docs.iru.com/en/endpoint/devices/device-actions/turn-on-remote-desktop.md): Enable Apple Remote Desktop on managed Mac computers from Iru Endpoint. Allow remote screen sharing, observation, and management for IT support.
- [Using the Blank Push Command](https://docs.iru.com/en/endpoint/devices/device-actions/using-the-blank-push-command.md): Send a blank push command from Iru Endpoint to verify APNs connectivity and help complete stuck MDM commands on managed Apple and Windows devices.
- [Reset a macOS User Password](https://docs.iru.com/en/endpoint/devices/device-actions/reset-a-macos-user-password.md): Reset a local macOS user password remotely from the Iru Endpoint web app. Generate a temporary password and require a change at next login.
- [Reset Android Work Profile Passcode](https://docs.iru.com/en/endpoint/devices/device-actions/reset-android-work-profile-passcode.md): Reset or set a new work profile passcode on managed Android devices from Iru Endpoint. Clear forgotten passcodes and restore access to work apps.
- [Set the Auto Admin Account Password](https://docs.iru.com/en/endpoint/devices/device-actions/set-the-auto-admin-account-password.md): Set or change the auto admin account password on managed Mac computers from Iru Endpoint. Rotate the hidden administrator credentials remotely.
- [Delete a User Account](https://docs.iru.com/en/endpoint/devices/device-actions/delete-a-user-account.md): Remotely delete a local user account from a managed Mac computer using Iru Endpoint. Remove user data and free up disk space on macOS devices.

##### Erase a Device

- [Erase an Apple Device](https://docs.iru.com/en/endpoint/devices/device-actions/erase-a-device.md): Remotely erase a managed Apple device from Iru Endpoint. Wipe all data and settings on Mac, iPhone, iPad, Apple TV, and visionOS devices.
- [Erase a Windows Device](https://docs.iru.com/en/endpoint/devices/device-actions/erase-a-windows-device.md): Remotely wipe a managed Windows device from Iru Endpoint. Choose Local, Cloud, or Protected erase to remove all data and apps.
- [Erase an Android Device](https://docs.iru.com/en/endpoint/devices/device-actions/erase-an-android-device.md): Remotely factory reset a managed Android device from Iru Endpoint. Optionally erase external storage and eSIMs.

#### Check-in & diagnostics

- [Device Check In](https://docs.iru.com/en/endpoint/devices/device-check-in/device-check-in.md): Learn how device check-in works for MDM and the Iru Agent. Understand check-in intervals, triggers, and how devices communicate with Iru Endpoint.
- [Troubleshooting Agent Check Ins](https://docs.iru.com/en/endpoint/devices/device-check-in/troubleshooting-agent-check-ins.md): Diagnose and resolve Iru Agent check-in failures on macOS and Windows. Troubleshoot network issues, certificate errors, and connectivity problems.
- [How to Generate a Sysdiagnose in macOS](https://docs.iru.com/en/endpoint/devices/device-configurations/apple/how-to-generate-a-sysdiagnose-in-macos.md): Generate a sysdiagnose report on Mac computers for Apple Support troubleshooting. Collect system logs, crash reports, and diagnostic data from macOS.

#### OS updates

- [OS Update Strategies: OS Deferral Restriction and Managed OS](https://docs.iru.com/en/endpoint/devices/device-configurations/apple/os-update-strategies-os-deferral-restriction-and-managed-os.md): Compare OS update strategies in Iru Endpoint including deferral restrictions and Managed OS. Choose the right approach for your Apple device fleet.
- [Delay and Enforce OS Updates](https://docs.iru.com/en/endpoint/devices/device-configurations/apple/delay-and-enforce-os-updates.md): Configure OS update delays and enforcement deadlines for managed Apple devices in Iru Endpoint. Defer updates and set mandatory installation windows.
- [Testing Apple Beta Releases](https://docs.iru.com/en/endpoint/devices/device-configurations/apple/testing-apple-beta-releases.md): Enroll Apple devices in beta OS programs with Iru Endpoint using ADE, Managed OS, or the Software Update Library Item, and request AppleCare log collection.
- [Restrict Access to Beta OS Releases](https://docs.iru.com/en/endpoint/devices/device-configurations/apple/restrict-access-to-beta-os-releases.md): Block users from installing beta OS releases on managed Apple devices using Iru Endpoint. Restrict access to macOS, iOS, and iPadOS beta programs.
- [User Experience with Managed OS for iOS, iPadOS and tvOS](https://docs.iru.com/en/endpoint/devices/user-experience-with-managed-os-for-ios-ipados-and-tvos.md): See what happens on iPhone, iPad, and Apple TV when Managed OS triggers an update. Understand notifications, installation prompts, and enforcement.
- [macOS Managed OS User Experience](https://docs.iru.com/en/endpoint/devices/macos-managed-os-user-experience.md): See what happens on Mac computers when Managed OS triggers an update. Understand notifications, countdown timers, restart behavior, and deferral options.

#### Device features

- [Configure Shared iPad](https://docs.iru.com/en/endpoint/devices/device-features/apple/configure-shared-ipad.md): Set up Shared iPad in Iru Endpoint for multi-user environments. Configure Managed Apple ID login, guest sessions, and storage quotas for each user.
- [Configure Auto Advance for Apple TV and Mac](https://docs.iru.com/en/endpoint/devices/device-features/apple/configure-auto-advance-for-apple-tv-and-mac.md): Configure Auto Advance for Apple TV and Mac in Iru Endpoint. Automatically skip Setup Assistant screens during enrollment for hands-free deployment.
- [macOS Login Screens User Experience](https://docs.iru.com/en/endpoint/devices/macos-login-screens-user-experience.md): See what macOS login and unlock screens look like on managed Mac computers. Understand login window customizations, FileVault prompts, and messages.

### Agent

#### Agent Overview

- [Iru Agent and MDM](https://docs.iru.com/en/endpoint/agent/iru-agent-and-mdm.md): Learn how the Iru Agent works alongside MDM on macOS and Windows. Understand agent capabilities, communication protocols, and management features.

#### Agent Management

- [Iru Agent Command Line Interface](https://docs.iru.com/en/endpoint/agent/iru-agent-command-line-interface.md): Use the Iru Agent CLI to check status, trigger actions, and troubleshoot devices from the terminal on macOS and Windows managed endpoints.
- [Iru Agent Settings and Database Files](https://docs.iru.com/en/endpoint/agent/iru-agent-settings-and-database-files.md): Reference guide for Iru Agent settings profiles and local database files. Locate configuration data and logs for troubleshooting on managed devices.

#### Troubleshooting

- [How to Submit Iru Agent Diagnostics](https://docs.iru.com/en/endpoint/agent/how-to-submit-iru-agent-diagnostics.md): Submit Iru Agent diagnostic data for troubleshooting macOS and Windows issues. Collect logs, generate reports, and share them with support.

### Blueprints

#### Assignment Maps

- [Creating a Blueprint](https://docs.iru.com/en/endpoint/blueprints/assignment-maps/creating-a-blueprint.md): Create a new Blueprint with Assignment Maps in Iru Endpoint. Define device groups, assign Library Items, and configure management policies.
- [Modifying a Blueprint](https://docs.iru.com/en/endpoint/blueprints/assignment-maps/modifying-a-blueprint.md): Edit Blueprint settings and Assignment Maps in Iru Endpoint. Update Library Item assignments, change parameters, and adjust device configurations.
- [Deleting a Blueprint](https://docs.iru.com/en/endpoint/blueprints/assignment-maps/deleting-a-blueprint.md): Safely delete a Blueprint in Iru Endpoint. Reassign or remove devices before deletion and understand the impact on assigned configurations.
- [Duplicating a Blueprint](https://docs.iru.com/en/endpoint/blueprints/assignment-maps/duplicating-a-blueprint.md): Duplicate an existing Blueprint and its Assignment Map in Iru Endpoint. Copy configurations to quickly create variations for different device groups.
- [Using Conditional Logic in Blueprints](https://docs.iru.com/en/endpoint/blueprints/assignment-maps/using-conditional-logic-in-blueprints.md): Use conditional logic in Iru Endpoint Blueprints to dynamically assign Library Items based on device attributes like OS version or model type.
- [Moving Devices Between Blueprints](https://docs.iru.com/en/endpoint/blueprints/assignment-maps/moving-devices-between-blueprints.md): Move one or more devices between Blueprints in Iru Endpoint. Reassign devices individually or in bulk to apply different management policies.

#### Parameters

- [Create User Accounts](https://docs.iru.com/en/endpoint/blueprints/parameters/create-user-accounts.md): Use the create user accounts parameter in Iru Endpoint Blueprints to automatically provision local user accounts on Mac computers during enrollment.
- [Demote User Accounts to Standard](https://docs.iru.com/en/endpoint/blueprints/parameters/demote-user-accounts-to-standard.md): Use the demote user accounts parameter in Iru Endpoint to automatically convert admin users to standard accounts on managed Mac computers.
- [Don't allow the Guest user to log in](https://docs.iru.com/en/endpoint/blueprints/parameters/dont-allow-the-guest-user-to-log-in.md): Disable the macOS Guest user account using the Blueprint parameter in Iru Endpoint. Prevent unauthorized access by blocking guest login sessions.
- [Set umask for all users](https://docs.iru.com/en/endpoint/blueprints/parameters/setting-umask-for-all-users.md): Configure the default umask value for all users on managed Mac computers using this Blueprint parameter. Control default file and directory permissions.
- [Restart After X Number of Days of Continuous Uptime](https://docs.iru.com/en/endpoint/blueprints/parameters/restart-after-x-number-of-days-of-continuous-uptime.md): Automatically restart Mac computers after a set number of days of continuous uptime using this Blueprint parameter. Improve performance and stability.
- [Monitor encryption status of Time Machine volumes](https://docs.iru.com/en/endpoint/blueprints/parameters/monitor-encryption-status-of-time-machine-volumes.md): Monitor Time Machine backup encryption status using the Blueprint parameter in Iru Endpoint. Get alerts when backup volumes are not encrypted.
- [Report FileVault keys escrowed to iCloud](https://docs.iru.com/en/endpoint/blueprints/parameters/report-user-accounts-with-filevault-recovery-keys-escrowed-to-icloud.md): Detect Mac user accounts with FileVault recovery keys stored in iCloud using the Blueprint parameter. Get alerts for unescrowed recovery keys.
- [Check Applications, Library, and System folders for world writable files](https://docs.iru.com/en/endpoint/blueprints/parameters/checking-library-and-system-folders-for-world-writable-files.md): Audit Applications, Library, and System folders on Mac for world writable files.

### Enrollment

#### Enrollment Configuration

- [Blueprint Routing](https://docs.iru.com/en/endpoint/enrollment/blueprint-routing.md): Set up Blueprint routing rules in Iru Endpoint to automatically assign devices to the correct Blueprint during enrollment based on device attributes.
- [Configure Require Authentication for Enrollment](https://docs.iru.com/en/endpoint/enrollment/configure-require-authentication-for-enrollment.md): Require user authentication during device enrollment in Iru Endpoint. Configure identity verification for Apple, Windows, and Android platforms.

#### Apple Enrollment

- [Configuring Apple Enrollment](https://docs.iru.com/en/endpoint/enrollment/apple/configuring-apple-enrollment.md): Configure Apple enrollment in Iru Endpoint: ADE, manual enrollment, enrollment codes, Setup Assistant, MDM profiles, and Blueprints.
- [Apple Accounts Overview](https://docs.iru.com/en/endpoint/enrollment/apple/apple-accounts-overview.md): Learn about Apple Account types and how they integrate with Iru Endpoint. Understand Managed Apple IDs, personal accounts, and enrollment requirements.
- [Apple Device Supervision](https://docs.iru.com/en/endpoint/enrollment/apple/apple-device-supervision.md): Learn which Apple enrollment methods create supervised devices and what additional controls supervision enables for Mac, iPhone, iPad, and Apple TV.
- [Activation Lock](https://docs.iru.com/en/endpoint/enrollment/apple/activation-lock.md): Manage Activation Lock on supervised Apple devices in Iru Endpoint. Bypass, enable, or disable Activation Lock for Mac, iPhone, iPad, and Apple TV.
- [Device Enrollment Profile Status](https://docs.iru.com/en/endpoint/enrollment/apple/device-enrollment-profile-status.md): Monitor device enrollment profile status for Apple devices in Iru Endpoint. Troubleshoot pending, failed, or stuck enrollment profiles and MDM assignments.
- [Enrolling Apple TV Devices](https://docs.iru.com/en/endpoint/enrollment/apple/enrolling-apple-tv-devices.md): Enroll and manage Apple TV devices in Iru Endpoint using Automated Device Enrollment. Configure ADE profiles and deploy configurations to tvOS devices.
- [Apple BYOD Management](https://docs.iru.com/en/endpoint/enrollment/apple/apple-byod-management.md): Set up Bring Your Own Device (BYOD) management for Apple devices in Iru Endpoint. Enroll personal iPhone, iPad, and Mac devices with user-initiated flow.
- [Device Management Migration](https://docs.iru.com/en/endpoint/enrollment/apple/device-management-migration.md): Migrate Apple devices from another MDM solution to Iru Endpoint. Plan the transition, reassign ADE profiles, and ensure continuity of management.
- [User Experience with Apple Enrollment](https://docs.iru.com/en/endpoint/enrollment/apple/user-experience-with-apple-enrollment.md): Walk through the Apple device enrollment experience step by step. See what users encounter when enrolling Mac, iPhone, or iPad in Iru Endpoint.

#### Android Enrollment

- [Configuring Android Enrollment](https://docs.iru.com/en/endpoint/enrollment/android/configuring-android-enrollment.md): Configure Android device enrollment in Iru Endpoint. Set up Android Enterprise, connect Google Workspace, and enable work profile management.
- [User Experience with Android Enrollment](https://docs.iru.com/en/endpoint/enrollment/android/user-experience-with-android-enrollment.md): Walk through the Android enrollment experience step by step. See what users encounter when setting up a work profile and enrolling in Iru Endpoint.

#### Windows Enrollment

- [Configuring Windows Enrollment](https://docs.iru.com/en/endpoint/enrollment/windows/configuring-windows-enrollment.md): Configure Windows device enrollment in Iru Endpoint. Set up MDM enrollment URLs, authentication, and group policy for automated Windows management.
- [User Experience with Windows Enrollment](https://docs.iru.com/en/endpoint/enrollment/windows/user-experience-with-windows-enrollment.md): Walk through the Windows enrollment experience step by step. See what users encounter when enrolling a Windows device in Iru Endpoint via Settings.

### Library

#### Auto Apps

- [Auto Apps Overview](https://docs.iru.com/en/endpoint/library/auto-apps/auto-apps-overview.md): Deploy pre-packaged Auto Apps to Mac and Windows devices from Iru Endpoint. Browse available apps, configure settings, and assign to Blueprints.
- [Understanding Auto App settings for macOS](https://docs.iru.com/en/endpoint/library/auto-apps/understanding-auto-app-settings-for-macos.md): Configure Auto App settings for macOS in Iru Endpoint, including version enforcement, phased rollouts, update notifications, and Self Service availability.
- [Understanding Auto App Settings for Windows](https://docs.iru.com/en/endpoint/library/auto-apps/understanding-auto-app-settings-for-windows.md): Configure Auto App settings for Windows in Iru Endpoint. Control installation behavior, Self Service availability, and update enforcement policies.
- [Suppressing Helper Tool Installation Prompts](https://docs.iru.com/en/endpoint/library/auto-apps/suppressing-helper-tool-installation-prompts.md): Reduce macOS helper tool installation prompts during app updates by managing updates through MDM or deploying a Custom Script on Mac computers.
- [User Experience with Auto Apps](https://docs.iru.com/en/endpoint/library/auto-apps/user-experience-with-auto-apps.md): See what users experience when Auto Apps install or update on their devices. Understand notifications, deferral options, and Self Service interactions.

#### Library Items and Profiles

##### Overview & General

- [Library Overview](https://docs.iru.com/en/endpoint/library/library-items-profiles/library-overview.md): Overview of the Iru Endpoint Library for managing apps, profiles, scripts, and configurations. Curate Library Items and assign them to device Blueprints.
- [Using AppConfig](https://docs.iru.com/en/endpoint/library/library-items-profiles/using-appconfig.md): Configure managed app settings using AppConfig in Iru Endpoint. Deploy key-value pairs and XML configurations to supported iOS and Android applications.
- [Global Variables](https://docs.iru.com/en/endpoint/library/library-items-profiles/global-variables.md): Use global variables in Iru Endpoint custom scripts and profiles to dynamically insert device-specific values like serial number, user email, and hostname.
- [Library Item Status Activity Timeline](https://docs.iru.com/en/endpoint/library/library-items-profiles/library-item-status-activity-timeline.md): View the status and activity timeline of deployed Library Items in Iru Endpoint. Track installation progress, errors, and version history per device.
- [Using the Flush Action](https://docs.iru.com/en/endpoint/library/library-items-profiles/using-the-flush-action.md): Use the flush action in Iru Endpoint to clear a Library Item's installation status and force a re-evaluation. Retry failed deployments on Apple devices.

##### Single Sign-on Extension

- [Configure the Single Sign-On Extension Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-single-sign-on-extension-library-item.md): Set up the SSO Extension Library Item in Iru Endpoint to enable single sign-on across apps and websites on Mac, iPhone, and iPad devices.
- [Configure Platform SSO with Entra ID](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-platform-sso-with-microsoft-entra-id-library-item.md): Set up the Platform SSO Library Item in Iru Endpoint for Microsoft Entra ID integration. Enable macOS login with Entra credentials and token-based SSO.

##### Security & Authentication

- [Configure the Certificate Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-certificate-library-item.md): Set up the Certificate Library Item in Iru Endpoint to deploy trusted certificates to Apple and Windows devices for authentication and secure connections.
- [Configure the SCEP Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-scep-library-item.md): Set up the SCEP Library Item in Iru Endpoint to issue device certificates from a SCEP server. Configure certificate templates for Apple and Windows devices.
- [Configure the Passcode Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-passcode-library-item.md): Set up the Passcode Library Item in Iru Endpoint to enforce password and passcode requirements on Apple, Windows, and Android managed devices.
- [Configure the PPPC Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-privacy-preferences-policy-control-pppc-library-item.md): Set up the PPPC Library Item in Iru Endpoint to manage app privacy permissions. Control access to camera, microphone, screen recording, and system files.
- [Configure the Recovery Password Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-recovery-password-library-item.md): Set up the Recovery Password Library Item in Iru Endpoint for managed Mac computers. Configure firmware recovery passwords and escrow recovery credentials.
- [Configure the AirPlay Security Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-airplay-security-library-item.md): Configure the AirPlay Security Library Item in Iru Endpoint to control AirPlay access on Apple devices. Set passwords and restrict AirPlay destinations.
- [Configure the App Lock Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-app-lock-library-item.md): Configure the App Lock Library Item in Iru Endpoint to restrict iOS and iPadOS devices to a single app. Set allowed features and autonomy options.
- [Configure the App Blocking Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-app-blocking-library-item.md): Block specific applications from running on managed macOS, Windows, and Android devices by configuring App Blocking Library Item lists and enforcement rules.
- [Application Blocking User Experience](https://docs.iru.com/en/endpoint/library/library-items-profiles/application-blocking-user-experience.md): See what users experience when application blocking is active on their device. Understand alert dialogs, blocked app behavior, and enforcement messages.
- [Configure the Apple Restrictions Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-restrictions-library-item.md): Set up the Apple Restrictions Library Item in Iru Endpoint to control device features, app access, content ratings, and privacy settings on managed Apple devices.
- [Configure the Android Restrictions Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-android-restrictions-library-item.md): Set up the Android Restrictions Library Item in Iru Endpoint to control work profile, personal profile, and device restrictions on company-owned Android devices.
- [Create a PPPC Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/create-a-privacy-preferences-policy-control-pppc-library-item.md): Create a new PPPC profile in Iru Endpoint to pre-approve app access to camera, microphone, screen recording, and other macOS privacy-protected resources.
- [FileVault User Experience](https://docs.iru.com/en/endpoint/library/library-items-profiles/filevault-user-experience.md): See what users experience when FileVault is enabled on their Mac. Understand the encryption prompt, recovery key escrow, and restart behavior during setup.
- [Configure the Microsoft Defender Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-microsoft-defender-library-item.md): Set up the Microsoft Defender Library Item in Iru Endpoint for Windows devices. Configure real-time protection, scan schedules, and threat response actions.
- [Configure the Windows Firewall Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-windows-firewall-library-item.md): Set up the Windows Firewall Library Item in Iru Endpoint. Configure firewall rules, enable or disable profiles, and enforce network protection settings.
- [Configure the BitLocker Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-bitlocker-library-item.md): Set up the BitLocker Library Item in Iru Endpoint to encrypt Windows device drives. Configure encryption methods, recovery options, and escrow keys.

##### Applications & Software

- [Custom Apps Overview](https://docs.iru.com/en/endpoint/library/library-items-profiles/custom-apps-overview.md): Overview of custom apps in Iru Endpoint for Mac and Windows. Learn about supported package formats, install scripts, deployment options, and versioning.
- [Configure the Mac Custom App Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-custom-apps-library-item.md): Upload and deploy custom applications to Mac computers using the Custom App Library Item. Support PKG, DMG, and ZIP formats with pre and post-install scripts.
- [Configure the Windows Custom App Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-windows-custom-app-library-item.md): Deploy custom Windows applications using the Windows Custom App Library Item. Upload MSI or EXE installers, configure install commands, and set detection rules.
- [Configure the In-House App Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-in-house-app-library-item.md): Deploy enterprise in-house iOS and iPadOS apps using the In-House App Library Item in Iru Endpoint. Upload IPA files and manage app distribution.
- [Configure the Default Apps Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-default-apps-library-item.md): Set default applications for iOS and iPadOS devices using the Default Apps Library Item. Configure default mail, browser, and other app associations.
- [Configure the Safari Extensions Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-safari-extensions-library-item.md): Manage Safari browser extensions on iOS and iPadOS devices using the Safari Extensions Library Item. Allow, block, or require specific extensions.
- [Configure the Web Clip Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-web-clip-library-item.md): Create web clips on managed devices using the Web Clip Library Item in Iru Endpoint. Add home screen shortcuts to websites for quick one-tap access.
- [Configure Android Apps with Google Play Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-android-apps-with-google-play-library-item.md): Configure Android apps from managed Google Play in Iru Endpoint. Select apps, set managed configurations, and assign to Blueprints for deployment.
- [Custom Scripts Overview](https://docs.iru.com/en/endpoint/library/library-items-profiles/custom-scripts-overview.md): Deploy custom scripts to managed Mac and Windows devices using Iru Endpoint. Run shell, Python, PowerShell, or batch scripts on enrollment or on schedule.
- [System extensions on macOS with Iru Endpoint](https://docs.iru.com/en/endpoint/library/library-items-profiles/system-extensions-overview-and-guide.md): Learn about macOS system extensions and how to manage them with Iru Endpoint. Understand network extensions, endpoint security, and driver extensions.
- [Legacy System Extensions Alerts](https://docs.iru.com/en/endpoint/library/library-items-profiles/legacy-system-extensions-alerts.md): Understand legacy system extension deprecation alerts in Iru Endpoint. Identify affected kernel extensions and plan migration to modern system extensions.
- [User Experience with Windows Apps](https://docs.iru.com/en/endpoint/library/library-items-profiles/user-experience-with-windows-apps.md): What to expect when Auto Apps and Windows Custom Apps install or update on Windows: the Iru system tray Updates list, close-app prompts, background retries, and enforcement countdowns.

##### Networking & Connectivity

- [Network Authentication Overview](https://docs.iru.com/en/endpoint/networking-and-connectivity/network-authentication-overview.md): Overview of 802.1X network authentication with Iru Endpoint. Configure certificate-based and credential-based authentication for Wi-Fi and Ethernet.
- [Configure the Wi-Fi Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-wi-fi-library-item.md): Set up the Wi-Fi Library Item in Iru Endpoint to deploy wireless network configurations. Configure SSID, security type, proxy, and 802.1X authentication.
- [Configure the Ethernet Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-ethernet-library-item.md): Set up the Ethernet Library Item in Iru Endpoint to configure 802.1X authentication for wired network connections on Apple and Windows devices.
- [Configure the SSH Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-ssh-library-item.md): Configure the SSH Library Item in Iru Endpoint to manage secure shell access on Mac computers. Enable or disable remote login and set allowed users.

##### Printers

- [Custom Printers Overview](https://docs.iru.com/en/endpoint/library/library-items-profiles/custom-printers-overview.md): Deploy custom printer configurations to Mac computers using Iru Endpoint. Add network printers, set default options, and manage driver installation.
- [Configure an AirPrint Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-an-airprint-library-item.md): Set up an AirPrint Library Item in Iru Endpoint for network printing on Apple devices. Add printer IP addresses, resource paths, and port settings.

##### System & Device Management

- [Custom Profiles Overview](https://docs.iru.com/en/endpoint/library/library-items-profiles/custom-profiles-overview.md): Deploy custom Apple configuration profiles using Iru Endpoint. Upload mobileconfig files for advanced settings not covered by built-in Library Items.
- [Configure the Disk Management Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-disk-management-library-item.md): Configure the Disk Management Library Item in Iru Endpoint to manage volume settings and storage policies on Mac computers including APFS volumes.
- [Configure the Setup Assistant Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-setup-assistant-library-item.md): Configure the Setup Assistant Library Item in Iru Endpoint to customize which screens appear during initial device setup on Apple and Windows devices.
- [Configure the Login Window Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-login-window-library-item.md): Configure the Login Window Library Item in Iru Endpoint to customize Mac login screen behavior, display options, and authentication requirements.
- [Configure the Login & Background Items Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-login-and-background-items-library-item.md): Manage login items and background processes on Mac using the Login and Background Items Library Item. Approve or block items that launch at startup.
- [Configure the Lock Screen Message Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-lock-screen-message-library-item.md): Set a custom lock screen message on iOS and iPadOS devices using the Lock Screen Message Library Item. Display asset tags, contact info, or return instructions.
- [Configure the Wallpaper Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-wallpaper-library-item.md): Set custom wallpapers on managed iOS and iPadOS devices using the Wallpaper Library Item. Deploy lock screen and home screen images to supervised devices.
- [Configure the Home Screen Layout Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-home-screen-layout-library-item.md): Configure the Home Screen Layout Library Item in Iru Endpoint to arrange app icons on supervised iOS and iPadOS devices. Set pages, folders, and dock apps.
- [Configure the Liftoff Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-liftoff-library-item.md): Configure the Liftoff Library Item in Iru Endpoint to guide users through Mac setup. Customize onboarding steps, required apps, and completion criteria.
- [Configure the Windows Update Library Item](https://docs.iru.com/en/endpoint/library/library-items-profiles/configure-the-windows-update-library-item.md): Configure the Windows Update Library Item in Iru Endpoint. Manage update rings, deferral periods, active hours, and the end-user update experience.

#### Managed OS

##### Apple

- [Declarative Device Management and Managed OS](https://docs.iru.com/en/endpoint/library/managed-os/declarative-device-management-and-managed-os.md): Learn how Apple Declarative Device Management (DDM) works with Managed OS in Iru Endpoint. Understand status reports, declarations, and update behavior.
- [Configure Managed OS for iOS, iPadOS, and tvOS](https://docs.iru.com/en/endpoint/library/managed-os/configure-managed-os-for-ios-ipados-and-tvos.md): Configure the iOS, iPadOS, and tvOS Managed OS Library Item in Iru Endpoint with rolling enforcement, phased rollout, and version options.
- [Configure Managed OS for macOS](https://docs.iru.com/en/endpoint/library/managed-os/configure-managed-os-for-macos.md): Configure the macOS Managed OS Library Item in Iru Endpoint with rolling enforcement, phased rollout, version options, and upgrades.
- [Managed OS macOS compatibility and install methods](https://docs.iru.com/en/endpoint/library/managed-os/managed-os-for-macos-compatibility-and-installation-mechanisms.md): macOS Managed OS update types, DDM delivery, and deployment considerations including Rolling enforcement planning and Software Update Library Item conflicts.
- [Understanding Managed OS for Apple Platforms](https://docs.iru.com/en/endpoint/library/managed-os/understanding-managed-os-for-apple-platforms.md): How Managed OS enforcement works in Iru Endpoint across macOS, iOS, iPadOS, and tvOS, including rolling enforcement, phased rollout, and version options.
- [Understanding Issues with Managed OS for macOS](https://docs.iru.com/en/endpoint/library/managed-os/understanding-issues-with-managed-os-for-macos.md): Troubleshoot Managed OS issues on macOS including failed updates, DDM conflicts, and stuck installations. Diagnose common problems and their solutions.

##### Windows

- [Managed OS for Windows](https://docs.iru.com/en/endpoint/library/managed-os/managed-os-for-windows.md): Configure the Managed OS Library Item for Windows 11 in Iru Endpoint. Set feature and quality update deferrals, deadlines, grace periods, and version enforcement.

#### Passport

- [Configure the Passport Library Item](https://docs.iru.com/en/endpoint/library/passport/configure-the-passport-library-item.md): Configure the Passport Library Item in Iru Endpoint to sync macOS login with your identity provider. Set up IdP authentication, password sync, and SSO.
- [Managing Passwords with Passport](https://docs.iru.com/en/endpoint/library/passport/managing-passwords-with-passport.md): Manage macOS local account passwords with Passport in Iru Endpoint. Understand password sync behavior, change workflows, and expiration handling with your IdP.
- [Passport Compatibility with macOS & Iru Endpoint Features](https://docs.iru.com/en/endpoint/library/passport/passport-compatibility-with-macos-and-iru-endpoint-features.md): Review Passport compatibility with macOS versions and Iru Endpoint features. Check supported configurations for FileVault, Platform SSO, and Login Window.
- [User experience with Passport](https://docs.iru.com/en/endpoint/library/passport/user-experience-with-passport.md): See what users experience with Passport on Mac. Understand the login screen, IdP authentication prompts, password sync notifications, and setup flow.
- [Advanced Passport Troubleshooting](https://docs.iru.com/en/endpoint/library/passport/advanced-passport-troubleshooting.md): Troubleshoot advanced Passport issues in Iru Endpoint. Diagnose token refresh failures, IdP sync problems, keychain errors, and login loop scenarios.

##### Google Workspace

- [Passport Configuration with Google Workspace](https://docs.iru.com/en/endpoint/library/passport/google-workspace/passport-configuration-with-google-workspace.md): Set up Passport with Google Workspace in Iru Endpoint. Configure OAuth credentials, enable user authentication, and sync macOS passwords with Google.

##### Microsoft Entra ID

- [Configure Passport Mac Login with Microsoft Entra ID](https://docs.iru.com/en/endpoint/library/passport/microsoft-entra-id/configure-passport-with-microsoft-entra-id-mac-login.md): Configure Passport with Microsoft Entra ID for Mac Login in Iru Endpoint. Enable macOS login screen authentication with Entra ID credentials.
- [Configure Passport Web Login with Microsoft Entra ID](https://docs.iru.com/en/endpoint/library/passport/microsoft-entra-id/configure-passport-with-microsoft-entra-id-web-login.md): Configure Passport with Microsoft Entra ID Web Login in Iru Endpoint. Set up browser-based Entra authentication for macOS password synchronization.
- [Passport in a federated Entra ID environment](https://docs.iru.com/en/endpoint/library/passport/microsoft-entra-id/using-passport-in-a-federated-microsoft-entra-id-environment-formerly-azure-ad.md): Use Passport in a federated Microsoft Entra ID environment with Iru Endpoint. Configure authentication flows for ADFS and third-party federation services.
- [Passport troubleshooting with Microsoft Entra ID](https://docs.iru.com/en/endpoint/library/passport/microsoft-entra-id/passport-troubleshooting-with-microsoft-entra-id-formerly-azure-ad.md): Troubleshoot Passport issues with Microsoft Entra ID in Iru Endpoint. Resolve login failures, token errors, password sync problems, and configuration issues.

##### Okta

- [Passport Configuration with Okta](https://docs.iru.com/en/endpoint/library/passport/okta/passport-configuration-with-okta.md): Configure Passport with Okta in Iru Endpoint for macOS login and password synchronization. Set up the Okta app integration and authentication settings.
- [Passport Troubleshooting with Okta](https://docs.iru.com/en/endpoint/library/passport/okta/passport-troubleshooting-with-okta.md): Troubleshoot Passport issues with Okta in Iru Endpoint. Resolve login failures, token refresh errors, password sync problems, and configuration conflicts.

##### OneLogin

- [Passport Configuration with OneLogin](https://docs.iru.com/en/endpoint/library/passport/onelogin/passport-configuration-with-onelogin.md): Configure Passport with OneLogin in Iru Endpoint for macOS login and password synchronization. Set up the OneLogin app integration and authentication.
- [Passport Troubleshooting with OneLogin](https://docs.iru.com/en/endpoint/library/passport/onelogin/passport-troubleshooting-with-onelogin.md): Troubleshoot Passport issues with OneLogin in Iru Endpoint. Resolve login failures, token errors, password sync problems, and app configuration conflicts.

### Deployment Guides

#### Apple Deployment Guides

- [Configure a Custom Desktop Picture](https://docs.iru.com/en/endpoint/library/deployment-guides/apple/configure-a-custom-desktop-picture.md): Deploy a custom desktop wallpaper image to managed Mac computers using Iru Endpoint. Lock the setting so users cannot change it with a custom profile.
- [Configure EAP Extensible Authentication Protocol Types](https://docs.iru.com/en/endpoint/library/deployment-guides/apple/configure-eap-extensible-authentication-protocol-types.md): Configure EAP authentication types for 802.1X on Apple devices using Iru Endpoint. Set up TLS, TTLS, PEAP, and EAP-FAST for Wi-Fi and Ethernet profiles.
- [Configure FileVault](https://docs.iru.com/en/endpoint/library/deployment-guides/apple/configure-filevault.md): Enable and configure FileVault disk encryption on managed Mac computers using Iru Endpoint. Escrow recovery keys and enforce encryption at enrollment.
- [Deploy Bitdefender as a custom app on Mac](https://docs.iru.com/en/endpoint/library/deployment-guides/apple/deploy-bitdefender-endpoint-security-tool-as-a-custom-app.md): Deploy the Bitdefender Endpoint Security Tool to Mac computers as a custom app in Iru Endpoint. Package the installer, configure PPPC, and assign to devices.
- [Deploy CrowdStrike as a Custom App](https://docs.iru.com/en/endpoint/library/deployment-guides/apple/deploy-crowdstrike-as-a-custom-app.md): Deploy the CrowdStrike Falcon sensor to Mac computers as a custom app in Iru Endpoint. Package the installer, add the customer ID, and approve extensions.
- [Deploy Fonts Using a Custom App](https://docs.iru.com/en/endpoint/library/deployment-guides/apple/deploy-fonts-using-a-custom-app.md): Deploy desktop-licensed fonts to Mac computers using a custom app in Iru Endpoint. Package font files, configure Self Service access, and assign to devices.
- [Deploy Google Remote Desktop](https://docs.iru.com/en/endpoint/library/deployment-guides/apple/deploy-google-remote-desktop.md): Deploy Google Chrome Remote Desktop to Mac computers using Iru Endpoint. Install Chrome, configure the extension, and add privacy profiles for access.
- [Deploy Homebrew Using a Custom Script](https://docs.iru.com/en/endpoint/library/deployment-guides/apple/deploy-homebrew-using-a-custom-script.md): Install Homebrew on managed Mac computers using a custom script in Iru Endpoint. Automate the package manager deployment for developer tools and utilities.
- [Deploy SAP Privileges Auto App with Privileges Checker](https://docs.iru.com/en/endpoint/library/deployment-guides/apple/deploy-sap-privileges-auto-app-with-privileges-checker.md): Deploy SAP Privileges with the Privileges Checker script in Iru Endpoint. Automate temporary admin access and enforce standard user permissions on Mac.
- [Google Chrome Browser Cloud Management](https://docs.iru.com/en/endpoint/library/deployment-guides/apple/google-chrome-browser-cloud-management.md): Enroll Google Chrome into Browser Cloud Management on Mac using Iru Endpoint. Deploy enrollment tokens, manage extensions, bookmarks, and browser policies.
- [Installing Rosetta 2 on Mac Computers with Apple Silicon](https://docs.iru.com/en/endpoint/library/deployment-guides/apple/installing-rosetta-2-on-mac-computers-with-apple-silicon.md): Learn how Iru Endpoint handles Rosetta 2 installation for Intel-based apps on Mac computers with Apple silicon. Auto App and custom app compatibility.
- [Licensing the Microsoft Defender Auto App](https://docs.iru.com/en/endpoint/library/deployment-guides/apple/licensing-the-microsoft-defender-auto-app.md): License and activate the Microsoft Defender Auto App on Mac using Iru Endpoint. Deploy the onboarding package and configure Defender for Endpoint settings.
- [Modifying the macOS Dock](https://docs.iru.com/en/endpoint/library/deployment-guides/apple/modifying-the-macos-dock.md): Customize the macOS Dock on managed Mac computers using Iru Endpoint. Add app icons, remove defaults, and lock the Dock layout with a custom profile.

#### Windows Deployment Guides

- [Configure EAP (Extensible Authentication Protocol) Types](https://docs.iru.com/en/endpoint/library/deployment-guides/windows/configure-eap-extensible-authentication-protocol-types.md): Configure EAP authentication types for 802.1X on Windows devices using Iru Endpoint. Set up TLS, TTLS, PEAP, and EAP-FAST for Wi-Fi network profiles.

### Settings

#### Apple Integrations

- [Apple Integrations Overview](https://docs.iru.com/en/endpoint/settings/apple-integrations/apple-integrations-overview.md): Overview of Apple integrations in Iru Endpoint including APNs, Automated Device Enrollment, Apps and Books, and Apple Business Manager configurations.
- [Configure Automated Device Enrollment](https://docs.iru.com/en/endpoint/settings/apple-integrations/configure-automated-device-enrollment.md): Set up Automated Device Enrollment (ADE) in Iru Endpoint. Connect Apple Business Manager, configure MDM server tokens, and assign default Blueprints.
- [Configure multiple ADE tokens using the Iru Endpoint API](https://docs.iru.com/en/endpoint/settings/apple-integrations/configure-multiple-automated-device-enrollment-tokens.md): Configure multiple Automated Device Enrollment tokens with the Iru Endpoint API to link several Apple Business or School Manager accounts to MDM servers.
- [Renew, update, or delete ADE tokens via the Iru API](https://docs.iru.com/en/endpoint/settings/apple-integrations/renew-update-or-delete-multiple-automated-device-enrollment-tokens.md): Renew, update, or delete Automated Device Enrollment tokens with the Iru Endpoint API to prevent expiration and maintain Apple Business connections.
- [Adding Devices to Apple Business or Apple School Manager](https://docs.iru.com/en/endpoint/settings/apple-integrations/adding-devices-to-apple-business-manager.md): Add Apple devices to Apple Business Manager for Automated Device Enrollment with Iru Endpoint. Register using serial numbers, resellers, or Apple Configurator.
- [How to Verify Apple Business or Apple School Manager Domains](https://docs.iru.com/en/endpoint/settings/apple-integrations/how-to-verify-apple-business-manager-domains.md): Verify your organization's domain in Apple Business Manager for use with Iru Endpoint. Complete DNS verification to enable Managed Apple IDs and federation.
- [Configure Apple Push Notification Service](https://docs.iru.com/en/endpoint/settings/apple-integrations/configure-apple-push-notification-service.md): Set up Apple Push Notification service (APNs) for Iru Endpoint. Generate the CSR, upload to Apple, and configure the push certificate for MDM communication.
- [Configure Apps and Books](https://docs.iru.com/en/endpoint/settings/apple-integrations/configure-apps-and-books.md): Configure the Apple Apps and Books integration in Iru Endpoint. Connect Apple Business Manager to manage volume-purchased app licenses and assignments.
- [Add Apps from Apps and Books to Iru Endpoint](https://docs.iru.com/en/endpoint/settings/apple-integrations/add-apps-from-apps-and-books-to-iru-endpoint.md): Add apps from Apple Business Manager Apps and Books to your Iru Endpoint Library. Search the App Store, purchase licenses, and assign to device Blueprints.
- [Remove App Store Apps from the Library](https://docs.iru.com/en/endpoint/settings/apple-integrations/remove-app-store-apps-from-the-library.md): Remove App Store apps from your Iru Endpoint Library. Revoke app licenses, unassign from Blueprints, and clean up unused volume-purchased applications.
- [AppleCare Enterprise Support](https://docs.iru.com/en/endpoint/settings/apple-integrations/applecare-enterprise-support.md): Access AppleCare for Enterprise support through Iru Endpoint. Get priority hardware service, technical support, and dedicated Apple account management.

#### Windows Integrations

- [Configure Windows Autopilot](https://docs.iru.com/en/endpoint/settings/windows-integrations/configure-windows-autopilot.md): Configure Microsoft Entra ID for auto-enrollment of devices to Iru through Autopilot. Complete the Iru Endpoint wizard and assign Blueprints.

#### Self Service

- [Self Service Settings](https://docs.iru.com/en/endpoint/settings/self-service/self-service-settings.md): Configure Self Service portal settings in Iru Endpoint. Customize branding, enable platforms, set categories, and control which items users can install.
- [Self Service: Library Items](https://docs.iru.com/en/endpoint/settings/self-service/self-service-library-items.md): Manage which Library Items appear in Self Service for end users. Configure app visibility, categories, and optional versus required installation policies.
- [Self Service: Bookmarks](https://docs.iru.com/en/endpoint/settings/self-service/self-service-bookmarks.md): Add web bookmarks to the Self Service portal in Iru Endpoint. Give users quick access to company resources, documentation, and internal tools from their device.
- [Self Service for iOS, iPadOS, and visionOS](https://docs.iru.com/en/endpoint/settings/self-service/self-service-for-ios-ipados-and-visionos.md): Configure Self Service for iOS, iPadOS, and visionOS in Iru Endpoint. Let users install approved apps and configurations from the Self Service web clip.
- [Self Service for macOS](https://docs.iru.com/en/endpoint/settings/self-service/self-service-for-macos.md): Configure Self Service for macOS in Iru Endpoint. Let users install approved apps, run scripts, and access resources from the Self Service application.

#### User Preferences

- [My Account profile settings](https://docs.iru.com/en/endpoint/settings/user-preferences/my-account-profile-settings.md): Manage your Iru Endpoint account profile settings. Update your name, email, password, notification preferences, and two-factor authentication configuration.

#### Support & Feedback

- [Submit Feature Requests & Ideas](https://docs.iru.com/en/endpoint/settings/submit-feature-requests-and-ideas.md): Submit feature requests and product ideas to the Iru team. Vote on existing suggestions, provide feedback, and track the status of your submitted requests.

### Integrations

#### Overview

- [Integrating Third-Party Apps Using the Iru Endpoint API](https://docs.iru.com/en/endpoint/integrations/overview/integrating-third-party-apps-using-the-iru-endpoint-api.md): Integrate third-party applications with Iru Endpoint using the REST API. Build custom automations, sync device data, and extend management capabilities.

#### AI Assistants

- [Iru MCP](https://docs.iru.com/en/endpoint/integrations/ai-assistants/iru-mcp.md): Connect Cursor, Claude Desktop, OpenAI Codex, or other MCP clients to Iru’s Enterprise API by creating MCP-enabled tokens scoped to your tenant.

#### Single Sign-On

- [Single Sign-On](https://docs.iru.com/en/endpoint/integrations/single-sign-on-integrations/single-sign-on.md): Set up single sign-on (SSO) for Iru Endpoint admin access. Choose from native OAuth or SAML integrations with Okta, Entra ID, Google, and more.
- [SAML-based Single Sign-On](https://docs.iru.com/en/endpoint/integrations/single-sign-on-integrations/saml-based-single-sign-on.md): Set up SAML-based single sign-on for Iru Endpoint admin access. Configure your identity provider with SAML metadata, attributes, and assertions.
- [Single Sign-On with Google Workspace (Native)](https://docs.iru.com/en/endpoint/integrations/single-sign-on-integrations/single-sign-on-with-google-workspace-native.md): Configure native Google Workspace SSO for Iru Endpoint using OAuth2 and OpenID Connect. Enable one-click sign-in for admins with Google credentials.
- [Single Sign-On with Google Workspace (SAML)](https://docs.iru.com/en/endpoint/integrations/single-sign-on-integrations/single-sign-on-with-google-workspace-saml.md): Configure SAML-based SSO between Google Workspace and Iru Endpoint. Set up the SAML app in Google Admin Console and map user attributes for login.
- [Single Sign-On with JumpCloud (SAML)](https://docs.iru.com/en/endpoint/integrations/single-sign-on-integrations/single-sign-on-with-jumpcloud-saml.md): Configure SAML-based SSO between JumpCloud and Iru Endpoint. Create the SAML application in JumpCloud and map user attributes for admin authentication.
- [Single Sign-on with Microsoft Entra ID (Native)](https://docs.iru.com/en/endpoint/integrations/single-sign-on-integrations/single-sign-on-with-microsoft-entra-id-native.md): Configure native Microsoft Entra ID SSO for Iru Endpoint using OAuth2 and OpenID Connect. Enable one-click sign-in for admins with Entra credentials.
- [Single Sign-On with Microsoft Entra ID (SAML)](https://docs.iru.com/en/endpoint/integrations/single-sign-on-integrations/single-sign-on-with-microsoft-entra-id-saml.md): Configure SAML-based SSO between Microsoft Entra ID and Iru Endpoint. Set up the enterprise application in Entra and map user attributes for login.
- [Single Sign-On with Okta (SAML)](https://docs.iru.com/en/endpoint/integrations/single-sign-on-integrations/single-sign-on-with-okta-saml.md): Configure SAML-based SSO between Okta and Iru Endpoint. Create the SAML application in Okta and map user attributes for admin authentication.
- [Single Sign-On with OneLogin (SAML)](https://docs.iru.com/en/endpoint/integrations/single-sign-on-integrations/single-sign-on-with-onelogin-saml.md): Configure SAML-based SSO between OneLogin and Iru Endpoint. Create the SAML application in OneLogin and map user attributes for admin authentication.
- [Deploy Okta Desktop Password Sync and Platform SSO](https://docs.iru.com/en/endpoint/integrations/okta-desktop-password-sync/deploy-okta-desktop-password-sync-and-platform-single-sign-on.md): Deploy Okta Desktop Password Sync with Platform SSO on Mac using Iru Endpoint. Configure SCEP, Custom Profile Library Items, and the Okta Verify Auto App.
- [Okta Desktop Password Sync User Experience](https://docs.iru.com/en/endpoint/integrations/okta-desktop-password-sync-user-experience.md): Walk through the Okta Desktop Password Sync user experience. See what users encounter when syncing their macOS password with Okta credentials.

#### Directory Services

- [User Directory Integration Overview and Providers](https://docs.iru.com/en/endpoint/integrations/directory-services/user-directory-integration.md): Overview of user directory integration in Iru Endpoint. Sync users and groups from Okta, Microsoft Entra ID, Google Workspace, or OneLogin to your account.
- [Microsoft Entra Id Permissions](https://docs.iru.com/en/endpoint/integrations/directory-services/microsoft-entra-id-permissions.md): Review the Microsoft Entra ID API permissions required for directory integration with Iru Endpoint. Understand required scopes for user and group sync.

#### SCIM

- [SCIM Directory Integration](https://docs.iru.com/en/endpoint/integrations/scim/scim-directory-integration.md): Set up SCIM-based user directory synchronization in Iru Endpoint. Automatically provision and deprovision users and groups from your identity provider.
- [SCIM Directory Integration with Okta](https://docs.iru.com/en/endpoint/integrations/scim/scim-directory-integration-with-okta.md): Configure SCIM directory integration between Okta and Iru Endpoint. Automatically provision and deprovision users and groups via the SCIM protocol.
- [SCIM Directory Integration with OneLogin](https://docs.iru.com/en/endpoint/integrations/scim/scim-directory-integration-with-onelogin.md): Configure SCIM directory integration between OneLogin and Iru Endpoint. Automatically provision and deprovision users and groups via the SCIM protocol.
- [SCIM Directory Integration with Microsoft Entra ID](https://docs.iru.com/en/endpoint/integrations/scim/scim-directory-integration-with-microsoft-entra-id.md): Configure SCIM directory integration between Microsoft Entra ID and Iru Endpoint. Automatically provision and deprovision users and groups via SCIM.

#### Certificate Services

- [Using Identity Certificates for 802.1X Authentication](https://docs.iru.com/en/endpoint/integrations/certificate-services/using-identity-certificates-for-802-1x-authentication.md): Deploy identity certificates for 802.1X network authentication using Iru Endpoint. Configure SCEP, certificate authorities, and Wi-Fi or Ethernet profiles.

##### Active Directory Certificate Services

- [AD CS Integration: Overview](https://docs.iru.com/en/endpoint/integrations/certificate-services/active-directory-certificate-services/active-directory-certificate-services-ad-cs-integration-overview.md): Learn how the Iru Endpoint AD CS integration requests certificates from Microsoft Active Directory Certificate Services and delivers them to managed devices.
- [AD CS Integration: Create a Computer Certificate Template](https://docs.iru.com/en/endpoint/integrations/certificate-services/active-directory-certificate-services/active-directory-certificate-services-ad-cs-integration-create-a-computer-certificate-template.md): Duplicate and configure an AD CS computer certificate template on your issuing Certification Authority for use with the Iru Endpoint AD CS integration.
- [AD CS Integration: Configure the Integration](https://docs.iru.com/en/endpoint/integrations/certificate-services/active-directory-certificate-services/active-directory-certificate-services-ad-cs-integration-configure-the-integration.md): Run the Iru Endpoint AD CS integration wizard to add Certification Authority hosts, assign connector servers, and create certificate Library Items.
- [AD CS Integration: AD CS Connector Installation](https://docs.iru.com/en/endpoint/integrations/certificate-services/active-directory-certificate-services/active-directory-certificate-services-ad-cs-integration-ad-cs-connector-installation.md): Install and register the Iru Endpoint AD CS Connector on a domain-joined Windows Server to deliver certificates to enrolled Mac and Windows devices.
- [Active Directory Strong Certificate Mapping Configuration](https://docs.iru.com/en/endpoint/integrations/certificate-services/active-directory-certificate-services/active-directory-certificate-services-ad-cs-strong-mapping-configuration.md): Update AD CS templates and Iru Endpoint Library Items to meet Microsoft KB5014754 strong certificate mapping requirements for AD authentication.

#### Okta Device Trust

- [Okta Device Trust](https://docs.iru.com/en/endpoint/integrations/okta-device-trust-main/okta-device-trust.md): Overview of Okta Device Trust integration with Iru Endpoint. Enforce device trust policies for conditional access and passwordless authentication.
- [Okta Device Trust: Integration Setup](https://docs.iru.com/en/endpoint/integrations/okta-device-trust-main/okta-device-trust-integration-setup.md): Set up Okta Device Trust integration with Iru Endpoint for passwordless authentication. Configure FastPass, device trust policies, and verification rules.
- [Okta Device Trust: Add Device Platforms](https://docs.iru.com/en/endpoint/integrations/okta-device-trust-main/okta-device-trust-add-device-platforms.md): Add macOS, iOS, and iPadOS device platforms to your Okta Device Trust integration with Iru Endpoint. Enable platform-specific trust verification policies.
- [Configure Okta Verify for Device Trust](https://docs.iru.com/en/endpoint/integrations/okta-device-trust-main/okta-device-trust-configuring-the-okta-verify-library-item.md): Configure the Okta Verify Library Item in Iru Endpoint for Device Trust and FastPass, and deploy Okta Verify on Mac, iPhone, and iPad devices.

#### Okta Workflows

- [Authorize Your Iru Tenant for Okta Workflows](https://docs.iru.com/en/endpoint/integrations/okta-workflows/authorize-your-iru-tenant-for-okta-workflows.md): Authorize your Iru Endpoint tenant for Okta Workflows integration. Generate API tokens, configure the connector, and enable automated device workflows.
- [Use Kandji Connector Action Cards with Okta Workflows](https://docs.iru.com/en/endpoint/integrations/okta-workflows/use-kandji-connector-action-cards-with-okta-workflows.md): Use the Iru Endpoint connector action cards in Okta Workflows. Automate device management tasks like lookups, tagging, and Blueprint assignment changes.

#### Microsoft Device Compliance

- [Getting Started with Microsoft Device Compliance](https://docs.iru.com/en/endpoint/integrations/microsoft-device-compliance/getting-started-with-microsoft-device-compliance.md): Get started with the Microsoft Device Compliance integration in Iru Endpoint. Connect Intune, configure compliance policies, and validate device posture.
- [Add Iru Endpoint as a compliance partner in Intune](https://docs.iru.com/en/endpoint/integrations/microsoft-device-compliance/microsoft-device-compliance-adding-iru-endpoint-as-a-device-compliance-partner-in-intune.md): Add Iru Endpoint as a third-party device compliance partner in Microsoft Intune. Configure the integration to report Mac and iOS compliance status.
- [Microsoft Device Compliance: Integration Configuration](https://docs.iru.com/en/endpoint/integrations/microsoft-device-compliance/microsoft-device-compliance-integration-configuration.md): Configure the Microsoft Device Compliance integration between Iru Endpoint and Microsoft Intune. Set up API connections, tokens, and sync settings.
- [Microsoft Device Compliance: Library Item Configuration](https://docs.iru.com/en/endpoint/integrations/microsoft-device-compliance/microsoft-device-compliance-library-item-configuration.md): Configure the Microsoft Device Compliance Library Item in Iru Endpoint. Define compliance rules, validation criteria, and enforcement actions for devices.
- [Microsoft Device Compliance: User Registration Experience](https://docs.iru.com/en/endpoint/integrations/microsoft-device-compliance/microsoft-device-compliance-user-registration-experience.md): Walk through the user registration experience for Microsoft Device Compliance. See what users encounter when registering devices for Intune compliance.
- [Microsoft Device Compliance Validating Compliance](https://docs.iru.com/en/endpoint/integrations/microsoft-device-compliance/microsoft-device-compliance-validating-compliance.md): Validate device compliance status with the Microsoft Device Compliance integration. Troubleshoot compliance check failures and sync issues in Intune.

#### ServiceNow

- [ServiceNow integration: Overview](https://docs.iru.com/en/endpoint/integrations/servicenow/servicenow-integration-overview.md): Sync Apple device inventory from Iru Endpoint to ServiceNow in real time over OAuth 2.0, with optional nightly app data sync for SAM Pro tenants.
- [ServiceNow integration: Iru Endpoint configuration](https://docs.iru.com/en/endpoint/integrations/servicenow/servicenow-integration-iru-endpoint-configuration.md): Connect Iru Endpoint to ServiceNow with OAuth and a service account, and optionally send Mac application inventory and usage data when SAM Pro is licensed.
- [ServiceNow integration: ServiceNow configuration](https://docs.iru.com/en/endpoint/integrations/servicenow/servicenow-integration-servicenow-configuration.md): Install the Kandji ServiceNow app, create OAuth credentials and a service account, and verify discovery source settings for the Iru Endpoint integration.

#### Communication

- [Microsoft Teams Integration](https://docs.iru.com/en/endpoint/integrations/communication/microsoft-teams-integration.md): Connect Microsoft Teams to Iru Endpoint for device management notifications. Receive alerts about enrollment, compliance, and device status in Teams channels.
- [Slack Integration](https://docs.iru.com/en/endpoint/integrations/communication/slack-integration.md): Connect Slack to Iru Endpoint for device management notifications. Receive alerts about enrollment, compliance, and device status in Slack channels.

#### Security

- [Amazon S3 Activity Log Integration](https://docs.iru.com/en/endpoint/integrations/security/amazon-s3-activity-log-integration.md): Configure the Amazon S3 integration in Iru Endpoint to export unified tenant activity logs, including Endpoint, Detections, and Compliance events.

### Endpoint Detection & Response

#### Overview

- [Endpoint Detection & Response (EDR) Overview](https://docs.iru.com/en/endpoint/endpoint-detection-response-edr/endpoint-detection-and-response-edr-overview.md): Learn how Iru Endpoint Detection and Response (EDR) works on macOS and Windows, including platform capabilities, detection coverage, and posture modes.
- [Understanding the Detections Page](https://docs.iru.com/en/endpoint/endpoint-detection-response-edr/understanding-the-detections-page.md): Navigate the Iru Endpoint Detections page. Review dashboard widgets, filters, the detections table, threat detail views, and device record detections.

#### Configuration

- [Configure the EDR Library Item](https://docs.iru.com/en/endpoint/endpoint-detection-response-edr/configure-the-edr-library-item.md): Configure the EDR Library Item in Iru Endpoint. Set posture modes, user alerts, behavioral detections, and custom allow and block lists.
- [Configure the Accessory & Storage Access Library Item](https://docs.iru.com/en/endpoint/endpoint-detection-response-edr/configure-the-accessory-and-storage-access-library-item.md): Configure the Accessory and Storage Access Library Item to control external storage, server volumes, and DMG access on managed Mac computers.

#### Detection Rules

- [Behavioral Detection Rule Groups](https://docs.iru.com/en/endpoint/endpoint-detection-response-edr/behavioral-detection-rule-groups.md): Create and manage behavioral detection rule groups in Iru EDR. Fine-tune which process behaviors trigger alerts and customize detection sensitivity.

#### Testing

- [Testing EDR malware detection](https://docs.iru.com/en/endpoint/endpoint-detection-response-edr/endpoint-detection-response-testing-malware-detection.md): Test and validate malware detection in Iru EDR on macOS and Windows using the EICAR test file and confirm Detect and Protect posture behavior.
- [Testing EDR behavioral detections](https://docs.iru.com/en/endpoint/endpoint-detection-response-edr/endpoint-detection-response-testing-behavioral-detections.md): Test and validate behavioral detection rules in Iru EDR. Run sample scenarios to confirm that endpoint detection alerts trigger correctly on devices.

#### Threat Analysis

- [Understanding Threat Events](https://docs.iru.com/en/endpoint/endpoint-detection-response-edr/understanding-threat-events.md): Understand threat events in Iru EDR including detection types, severity levels, and classification categories. Investigate and respond to security alerts.

#### Security Operations

- [Security Operations Actions in Endpoint Detection](https://docs.iru.com/en/endpoint/endpoint-detection-response-edr/security-operations-actions-in-endpoint-detection.md): Manage threat detection status, apply tags, and take response actions in Iru EDR.
- [Device Isolation](https://docs.iru.com/en/endpoint/endpoint-detection-response-edr/device-isolation.md): Isolate compromised devices from the network using Iru EDR. Choose partial or complete isolation to contain threats during active security incidents.

### Vulnerability Management

#### Overview

- [Vulnerability Management Overview](https://docs.iru.com/en/endpoint/vulnerability-management/vulnerability-management-overview.md): Overview of vulnerability management in Iru Endpoint. Detect CVEs across your device fleet, prioritize by severity, and track remediation progress.

#### Configuration

- [Configure the Vulnerability Response Library Item](https://docs.iru.com/en/endpoint/vulnerability-management/configure-the-vulnerability-response-library-item.md): Configure the Vulnerability Response Library Item in Iru Endpoint. Define response policies for detected CVEs including severity thresholds and deadlines.

#### Risk Management

- [Accepting CVE Risks](https://docs.iru.com/en/endpoint/vulnerability-management/accepting-cve-risks.md): Accept CVE vulnerability risks in Iru Endpoint when patching is not feasible. Document risk acceptance decisions, set expiration dates, and track exceptions.
- [Excluding Devices from Vulnerability Management](https://docs.iru.com/en/endpoint/vulnerability-management/excluding-devices-from-vulnerability-management.md): Exclude devices from vulnerability reporting in Iru Endpoint. Manage CVE exclusions individually or in bulk from a device record, Devices page, or CVE tab.

### API

- [Iru API Overview](https://docs.iru.com/en/endpoint/api/iru-api-overview.md): Create API tokens in Access, scope permissions, and use the Iru Endpoint REST API to read fleet data, run device actions, and automate Library workflows.
- [How to Set Up the Iru Endpoint API in Postman](https://docs.iru.com/en/endpoint/api/how-to-set-up-the-iru-endpoint-api-in-postman.md): Set up the Iru Endpoint API in Postman for testing and automation. Import the collection, configure authentication, and send your first request.
