> ## Documentation Index
> Fetch the complete documentation index at: https://docs.iru.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Apple Setup

> Set up Apple platform integrations in Iru Endpoint. Configure APNs, Apple Business Manager, Automated Device Enrollment, and Apps and Books.

<Callout icon="apple" color="#4f46e5" iconType="regular">This guide applies to Mac computers, iOS devices, iPadOS devices, Apple TV, and Apple Vision Pro</Callout>

<Note title="Apple Business name change">
  **Apple Business Manager** is now **Apple Business**. **Apple School Manager** is unchanged. For more information, see [Introducing Apple Business](https://www.apple.com/newsroom/2026/03/introducing-apple-business-a-new-all-in-one-platform-for-businesses-of-all-sizes/) and [Apple Business Manager is now Apple Business](https://support.apple.com/guide/apple-business-manager/apple-business-manager-is-now-apple-business-axmd79d79dea/web).
</Note>

Set up Apple platform integrations to protect and manage Mac computers, iPhones, iPads, Apple TV, and Apple Vision Pro from one place. You'll configure Apple Push Notification service (APNs), Automated Device Enrollment (ADE), and Apps and Books in that order.

## Configure Apple Push Notification service (APNs)

APNs is required for communication with Apple devices. For best results, use a macOS computer.

<Steps>
  <Step title="Navigate to the Account Menu Button">
    In Iru Endpoint, in the sidebar, click the [**Account Menu Button**](/en/iru/platform-overview/account-menu).
  </Step>

  <Step title="Open Integrations">
    Click the **Integrations** option in the menu.

    <Frame>
      <img src="https://mintcdn.com/iru/8BYPjuKZa-zyEEf_/assets/media/images/iru-nav-integrations.png?fit=max&auto=format&n=8BYPjuKZa-zyEEf_&q=85&s=e89fa7e9b81ac504a6f519608e10b8a3" alt="Screenshot of the account menu with Integrations option highlighted" width="562" height="1040" data-path="assets/media/images/iru-nav-integrations.png" />
    </Frame>
  </Step>

  <Step title="Select Apple">
    Under **Platform integrations**, select **Apple**.

    <Frame>
      <img src="https://mintcdn.com/iru/5mTryDL0KYWbDxKn/assets/media/images/integrations-page-apple-platform.png?fit=max&auto=format&n=5mTryDL0KYWbDxKn&q=85&s=cdb6c041c1bbc05c4bef5b3e6b31939e" alt="Screenshot of the Integrations page with Apple platform selected" width="1962" height="1176" data-path="assets/media/images/integrations-page-apple-platform.png" />
    </Frame>
  </Step>

  <Step title="Set up APNs">
    Under **Apple Push Notifications service**, click **Set up APNs**.

    <Frame>
      <img src="https://mintcdn.com/iru/5mTryDL0KYWbDxKn/assets/media/images/integrations-apns-set-up-button.png?fit=max&auto=format&n=5mTryDL0KYWbDxKn&q=85&s=c0f53e5ee4398e7eab4c89215b0e4433" alt="Screenshot of the Apple integrations section with Set up APNs button" width="3406" height="2134" data-path="assets/media/images/integrations-apns-set-up-button.png" />
    </Frame>
  </Step>

  <Step title="Create an APNs certificate">
    Follow the on-screen instructions to create a new APNs certificate. Use a [managed Apple account](/en/endpoint/enrollment/apple/apple-accounts-overview) that multiple team members can access.
  </Step>
</Steps>

<Warning>
  Do not attempt to use an existing APNs certificate. Create a new one specifically for Iru Endpoint.
</Warning>

<Note>
  APNs certificates must be renewed annually. Iru Endpoint will send email reminders to Team Members with Administrator or Account Owner permissions starting 30 days before certificate expiry. For renewal and troubleshooting, see [Configure Apple Push Notification Service](/en/endpoint/settings/apple-integrations/configure-apple-push-notification-service).
</Note>

## Configure Automated Device Enrollment

Automated Device Enrollment enables zero-touch deployment for corporate-owned Apple devices. [Apple Push Notification service](/en/endpoint/settings/apple-integrations/configure-apple-push-notification-service) must be configured in your tenant before you set up Automated Device Enrollment.

<Steps>
  <Step title="Enroll in Apple Business or Apple School Manager">
    Organizations enroll in [Apple Business](https://business.apple.com/) or [Apple School Manager](https://school.apple.com/) (both are free; verification may take several days). Devices purchased from Apple or authorized resellers are automatically added to your account. To add existing devices, see [Adding Devices to Apple Business or Apple School Manager](/en/endpoint/settings/apple-integrations/adding-devices-to-apple-business-manager).
  </Step>

  <Step title="Navigate to the Account Menu Button">
    In Iru Endpoint, in the sidebar, click the **Account Menu Button**.
  </Step>

  <Step title="Open Integrations">
    Click the **Integrations** option in the menu.

    <Frame>
      <img src="https://mintcdn.com/iru/8BYPjuKZa-zyEEf_/assets/media/images/iru-nav-integrations.png?fit=max&auto=format&n=8BYPjuKZa-zyEEf_&q=85&s=e89fa7e9b81ac504a6f519608e10b8a3" alt="Screenshot of the account menu with Integrations option highlighted" width="562" height="1040" data-path="assets/media/images/iru-nav-integrations.png" />
    </Frame>
  </Step>

  <Step title="Select Apple">
    Under **Platform integrations**, select **Apple**.

    <Frame>
      <img src="https://mintcdn.com/iru/5mTryDL0KYWbDxKn/assets/media/images/integrations-page-apple-platform.png?fit=max&auto=format&n=5mTryDL0KYWbDxKn&q=85&s=cdb6c041c1bbc05c4bef5b3e6b31939e" alt="Screenshot of the Integrations page with Apple platform selected" width="1962" height="1176" data-path="assets/media/images/integrations-page-apple-platform.png" />
    </Frame>
  </Step>

  <Step title="Set up ADE">
    Under **Automated Device Enrollment**, click **Set up Automated Device Enrollment**.

    <Frame>
      <img src="https://mintcdn.com/iru/5mTryDL0KYWbDxKn/assets/media/images/integrations-ade-set-up-button.png?fit=max&auto=format&n=5mTryDL0KYWbDxKn&q=85&s=a93087a29a98acf9cd2de50558a8e94b" alt="Screenshot of the Apple integrations section with Set up Automated Device Enrollment button" width="2898" height="1532" data-path="assets/media/images/integrations-ade-set-up-button.png" />
    </Frame>
  </Step>

  <Step title="Start the wizard and obtain the PEM file">
    In the setup wizard, continue until Iru Endpoint provides a **PEM** public key file (download or save it when prompted). You will upload this file to Apple Business or Apple School Manager in the next steps.
  </Step>

  <Step title="Sign in to Apple Business or Apple School Manager">
    Sign in to [Apple Business](https://business.apple.com) or [Apple School Manager](https://school.apple.com) with a Managed Apple Account that can manage device management services.
  </Step>

  <Step title="Open the Devices tab">
    Click the **Devices** tab at the top of the page.
  </Step>

  <Step title="Open Management">
    In the left sidebar, click **Management**.
  </Step>

  <Step title="Add a device management service">
    Scroll to the bottom of the **Management Services** list and click **Add** next to **Add device management service**.

    <Frame>
      <img src="https://mintcdn.com/iru/QlM0bw2VPN4WhxbZ/assets/media/images/iru-apple-business-add-management-service.png?fit=max&auto=format&n=QlM0bw2VPN4WhxbZ&q=85&s=b260dcfc77fcbcc20166a0f952a20dc0" alt="Apple Business or Apple School Manager Management Services list with Add device management service" width="2722" height="1496" data-path="assets/media/images/iru-apple-business-add-management-service.png" />
    </Frame>
  </Step>

  <Step title="Enter the service name">
    In the **Service Name** field, enter a name for this MDM integration (for example, **Iru Endpoint**).
  </Step>

  <Step title="Optional: Allow this service to release devices">
    If your organization needs it, select **Allow this service to release devices**.
  </Step>

  <Step title="Upload the PEM file">
    Upload the **PEM** file from Iru Endpoint.
  </Step>

  <Step title="Click Next">
    Click **Next**.

    <Frame>
      <img src="https://mintcdn.com/iru/QlM0bw2VPN4WhxbZ/assets/media/images/iru-apple-business-add-management-service-details.png?fit=max&auto=format&n=QlM0bw2VPN4WhxbZ&q=85&s=e8a7792645e4029745e87a3746141bc8" alt="Add device management service form with Service Name, release devices option, and public key upload" width="1020" height="1268" data-path="assets/media/images/iru-apple-business-add-management-service-details.png" />
    </Frame>
  </Step>

  <Step title="Download the service token">
    Click **Download Service Token**.

    <Frame>
      <img src="https://mintcdn.com/iru/QlM0bw2VPN4WhxbZ/assets/media/images/iru-apple-business-download-management-service-token.png?fit=max&auto=format&n=QlM0bw2VPN4WhxbZ&q=85&s=2e0c00b13080be10f6890fd4179aaa09" alt="Apple Business or Apple School Manager Download Service Token action" width="1012" height="1264" data-path="assets/media/images/iru-apple-business-download-management-service-token.png" />
    </Frame>
  </Step>

  <Step title="Click Done in Apple Business or Apple School Manager">
    Click **Done**.
  </Step>

  <Step title="Upload the token in Iru Endpoint">
    Return to Iru Endpoint and upload the **.p7m** service token file when prompted.
  </Step>

  <Step title="Complete the wizard in Iru Endpoint">
    Complete any remaining steps in the wizard and click **Done**.
  </Step>

  <Step title="Assign devices in Apple Business or Apple School Manager">
    In Apple Business or Apple School Manager, add Iru Endpoint as your Mobile Device Management (MDM) server and assign devices. Assigned devices will appear in Iru Endpoint as **Awaiting Enrollment**.
  </Step>
</Steps>

## Configure Apps and Books

Apps and Books (formerly Volume Purchasing Program) lets you distribute App Store apps to devices. [Apple Push Notification service](/en/endpoint/settings/apple-integrations/configure-apple-push-notification-service) must be configured in your tenant before you set up Apps and Books.

<Warning>
  You cannot share the same Apps and Books token across multiple MDM servers. [Create a new organizational unit](https://support.apple.com/guide/business/configure-organizational-units-axmfdbe2cb0d/web) in Apple Business or Apple School Manager specifically for your Iru Endpoint tenant and use a dedicated token.
</Warning>

<Steps>
  <Step title="Create a dedicated organizational unit in Apple Business or Apple School Manager">
    [Create a new organizational unit](https://support.apple.com/guide/business/configure-organizational-units-axmfdbe2cb0d/web) in Apple Business or Apple School Manager for your Iru Endpoint tenant.
  </Step>

  <Step title="Navigate to the Account Menu Button">
    In Iru Endpoint, in the sidebar, click the **Account Menu Button**.
  </Step>

  <Step title="Open Integrations">
    Click the **Integrations** option in the menu.

    <Frame>
      <img src="https://mintcdn.com/iru/8BYPjuKZa-zyEEf_/assets/media/images/iru-nav-integrations.png?fit=max&auto=format&n=8BYPjuKZa-zyEEf_&q=85&s=e89fa7e9b81ac504a6f519608e10b8a3" alt="Screenshot of the account menu with Integrations option highlighted" width="562" height="1040" data-path="assets/media/images/iru-nav-integrations.png" />
    </Frame>
  </Step>

  <Step title="Select Apple">
    Under **Platform integrations**, select **Apple**.

    <Frame>
      <img src="https://mintcdn.com/iru/5mTryDL0KYWbDxKn/assets/media/images/integrations-page-apple-platform.png?fit=max&auto=format&n=5mTryDL0KYWbDxKn&q=85&s=cdb6c041c1bbc05c4bef5b3e6b31939e" alt="Screenshot of the Integrations page with Apple platform selected" width="1962" height="1176" data-path="assets/media/images/integrations-page-apple-platform.png" />
    </Frame>
  </Step>

  <Step title="Set up Apps and Books">
    Click the **Set up Apps and Books** button inside **Apps and Books**.
  </Step>

  <Step title="Sign in to Apple Business or Apple School Manager">
    In the new window, sign in to [Apple Business](https://support.apple.com/guide/business/welcome/web) or [Apple School Manager](https://support.apple.com/guide/apple-school-manager/welcome/web) to complete the integration.
  </Step>

  <Step title="Open your organization menu">
    In Apple Business or Apple School Manager, click your **organization name** at the top right of the page.
  </Step>

  <Step title="Open Settings">
    Click **Settings**.

    <Frame>
      <img src="https://mintcdn.com/iru/QlM0bw2VPN4WhxbZ/assets/media/images/iru-apple-business-access-settings.png?fit=max&auto=format&n=QlM0bw2VPN4WhxbZ&q=85&s=0f44d69a018f102f5a42fcfd5090eadd" alt="Apple Business or Apple School Manager with organization menu open and Settings option" width="2964" height="2010" data-path="assets/media/images/iru-apple-business-access-settings.png" />
    </Frame>
  </Step>

  <Step title="Apps & Books in Settings">
    After you open **Settings**, you should already be on **Payments & Billing** → **Apps & Books**. This view is where your organization's Apps and Books content tokens appear.
  </Step>

  <Step title="Download the content token">
    Under **Content Tokens**, click **Download** next to the token you want to use with Iru Endpoint.

    <Frame>
      <img src="https://mintcdn.com/iru/QlM0bw2VPN4WhxbZ/assets/media/images/iru-apple-business-download-content-token.png?fit=max&auto=format&n=QlM0bw2VPN4WhxbZ&q=85&s=0e58302976487f8795e705a86a2f4b62" alt="Apple Business or Apple School Manager Payments and Billing Apps and Books Content Tokens with Download" width="2964" height="2010" data-path="assets/media/images/iru-apple-business-download-content-token.png" />
    </Frame>
  </Step>

  <Step title="Upload token to Iru Endpoint">
    Return to the Iru Endpoint Web App and upload your **token**.
  </Step>

  <Step title="Complete Apps and Books setup">
    Click **Complete Apps and Books setup**.
  </Step>
</Steps>

For detailed information about each integration, see [Configure Apple Push Notification Service](/en/endpoint/settings/apple-integrations/configure-apple-push-notification-service), [Configure Automated Device Enrollment](/en/endpoint/settings/apple-integrations/configure-automated-device-enrollment), [Configure Apps and Books](/en/endpoint/settings/apple-integrations/configure-apps-and-books), and [Apple Integrations Overview](/en/endpoint/settings/apple-integrations/apple-integrations-overview).

## Next Steps

After completing Apple setup:

<Steps>
  <Step title="Configure Blueprints and Library">
    Create and configure Blueprints so policies and apps are ready before enrollment. See [Configuring Blueprints](/en/endpoint/getting-started/blueprints-and-library/configuring-blueprints) and [Managing Library](/en/endpoint/getting-started/blueprints-and-library/managing-library).
  </Step>

  <Step title="Enable other platforms (optional)">
    To manage Android or Windows devices as well, see [Android Setup](/en/endpoint/getting-started/platform-setup/android-setup) or [Windows Setup](/en/endpoint/getting-started/platform-setup/windows-setup).
  </Step>

  <Step title="Set up enrollment for each platform">
    Once Blueprints are configured, set up enrollment: [Apple Enrollment](/en/endpoint/getting-started/enrollment/apple-enrollment), [Windows Enrollment](/en/endpoint/getting-started/enrollment/windows-enrollment), or [Android Enrollment](/en/endpoint/getting-started/enrollment/android-enrollment).
  </Step>
</Steps>
