Use blueprints to manage software updates on Apple devices through declarative device management. Two blueprint components manage software updates, and each serves a distinct purpose. Configure one or both, depending on how your organization controls updates. For example, configure Software Update Settings to defer an update for a set period, and configure Software Updates to enforce installation after the deferral period ends.
The Software Update Settings and Software Updates components replace the OS update settings in the Restrictions payloads for computer profiles and mobile device profiles.
These components also replace the equivalent settings in the blueprints Restrictions component. Apple removed support for these legacy settings in macOS 27*, iOS 27*, iPadOS 27*, and tvOS 27*.
Devices with earlier OS versions continue to honor the legacy settings. If your environment includes both, scope the existing profiles and blueprints to devices with earlier OS versions only, and use the Software Update Settings and Software Updates components for devices with macOS 27*, iOS 27*, iPadOS 27*, and tvOS 27* or later.
- Software Update Settings
Controls how software updates behave on a device, including which users can install updates, how updates are presented to users, automatic install actions, beta program enrollment, deferral periods, and Background Security Improvement installation and removal. This component does not start or enforce an update.
- Software Updates
Enforces OS updates by sending each device a target version and a deadline. Use this component to move devices to a specific version or to keep devices on the latest available version.
*Feature support is based on testing with the latest Apple beta releases.