Use the Software Update Settings component in a blueprint to control how software updates behave on Apple devices using declarative device management. This component sets update behavior such as automatic install actions, deferral periods, beta program enrollment, and Background Security Improvement handling. It does not start or enforce an update.
The Allow standard users to install software updates setting overrides the existing setting in the Software update payload.
The Recommended cadence setting overrides any existing settings that were previously defined by the Recommend Software Update Version MDM command.
All install actions override any update deferral setting in the Software Update payload.
All deferrals override any update deferral setting in the Restrictions payload.
Background Security Improvements setting (previously the Rapid Security Response setting) overrides the existing settings in the Restrictions payload. Additionally, specifying an OS version in the Software Update Settings component automatically installs any Background Security Improvements for that version.
- The Beta updates setting overrides the existing settings in the Software Update payload.Note:
To configure beta updates, you need the beta enrollment tokens that are available for your organization from Apple Business or Apple School Manager. For more information on retrieving a token from Apple, see Testing software updates with the AppleSeed for IT beta program in Apple Platform Deployment.
- Target devices that meet the minimum OS version required. Devices that do not meet the minimum will not receive declarations, will not appear as failed in deployment status reports, and will be silently skipped.
- A beta enrollment token from Apple Business or Apple School Manager, if you configure beta updates