Enroll Apple iOS Devices to Intune


  1. Get necessary Intune licenses
  2. Assign necessary permissions (Global Admin or Intune Admin)
  3. Set MDM authority as Intune (comes up as pop up on right hand side)

    Located under this URL in your tenant: https://endpoint.microsoft.com/?ref=AdminCenter#view/Microsoft_Intune_Enrollment/ChooseMDMAuthorityBlade


  4. Create an Apple ID (https://appleid.apple.com) with Admin or service email account that is monitored


  5. Create an Azure AD security group called “User Group – Apple iOS Users” and assign membership to your iOS device users
  6. Create a Device Enrollment Type Profile called “iOS Device Enrollment Type” and assign the group above


  7. Create an Apple Configurator Profile called “Apple Configurator iOS Profile”


  8. Set it to Enroll with User Affinity and Company Portal

  9. Open your iPhone or iPad and download Intune Company Portal app from the App Store
  10. Open the app and sign in with your Microsoft credentials
  11. Select Personal or Corporate device
  12. Accept the terms and enter your Apple ID credentials (must match your MS account)
  13. Create a new Apple ID for your MS account, if necessary
  14. Go to VPN Settings and install the MDM profile
  15. Go back to the Intune Company Portal and complete enrollment