You can use the Jamf Pro API to implement enhanced access management controls for Managed Apple Accounts from Apple Business Manager or Apple School Manager. This feature leverages Apple's Get Token endpoint and the Jamf Pro API's v4/enrollment/access-management endpoint.
To use this feature, you must first configure the access management setting in the Jamf Pro API, and choose the devices users can sign in to using their Managed Apple Account:
-
Any Device (default)
-
Managed Devices Only
-
Supervised Devices Only
Important:
You must configure the setting in the Jamf Pro API before selecting a restriction option in Apple Business Manager or Apple School Manager.
For more information, see the Configuring Access Management for Managed Apple Accounts in the Jamf Pro API technical article.