Use the table below as a quick glossary when you need to decide which payload to configure for macOS, iOS, or iPadOS.
Available Policies
Each row shows the policy’s name as it appears in Device Management → Policies → New Policy → macOS/iOS, its purpose, and the minimum OS versions it supports.
Policy | What it controls | Supported platforms / minimum OS | BYOD compatibility |
Apple AirPrint Policy | Adds or removes AirPrint printers, sets default printer options. | macOS 10.10 +, iOS 7 +, iPadOS 7 + | macOS/iOS/iPadOS |
Apple Airdrop Policy | Allow/block AirDrop file sharing. | macOS 10.13 +, iOS 7 +, iPadOS 7 + |
|
Apple App Store Policy | Enable/disable App Store, automatic downloads, and in-app purchases. | macOS 10.9 + |
|
Apple Application Block Policy | Block specific applications on macOS devices based on developer identity, application identifiers, file paths, names, or even window titles. | macOS 10.7 + | macOS |
Apple Application and Service Control Policy | Manage key Apple services that can impact security, privacy, and device discoverability on managed Apple devices. | macOS 10.12+, iOS 5+, and iPadOS 8+ |
|
Apple Bluetooth Policy | Toggle Bluetooth, force discoverable state, or accessories block list. | macOS 14.0, iOS 11 +, iPadOS 11 + |
|
Apple Configuration and Certificate Controls Policy | Manage how configuration profiles and certificates are installed and trusted on Apple devices. | macOS: 10.15+ iOS: 6.0+ iPadOS: 6.0+ |
|
Apple Device CVE Report Policy | Vulnerability scanning | macOS 12 + | macOS |
Apple Desktop Policy | Manages desktop customization and wallpaper settings for macOS devices to align with corporate branding and compliance. | macOS |
|
Apple Cron Policy | Set every X days to restart a device or set EOD of X date to restart a device. | macOS 11.0, iOS 11.0+, iPadOS 11.0+ | macOS/iOS/iPadOS |
Apple Dock Policy | Lock Dock layout, add/remove items, magnification, and auto-hide. | macOS 10.7 + |
|
Apple Energy Saver Policy | Centrally manage how Mac computers handle sleep and display power-saving features. | macOS 10.11+ |
|
Apple External APFS Drive Encryption Policy | Encrypt external APFS drives on managed macOS devices. | macOS 12.0+ | macOS |
Apple FileVault Policy | Turn on disk encryption, escrow keys, and defer enablement. | macOS 10.9 + |
|
Apple Find My Policy | Allow/deny Find My Mac / iPhone / iPad. | macOS 10.7 + (Deprecated after macOS 26) |
|
Apple Firewall Policy | macOS Application Firewall settings (stealth, allowed apps, logging). | macOS 10.12 + |
|
Apple Firefox Extension Policy | Manage Mozilla Firefox browser extensions on macOS devices. | macOS 10.12+ | macOS |
Apple Finder Policy | Manage key Finder display preferences on managed macOS devices. | macOS 10.7+ |
|
Apple Google Chrome Policy | Force-enable security configurations or block Incognito mode in Chrome for macOS. | macOS 12 + | macOS |
Apple Google Chrome Extension Deployment and Blocking Policy | Force-install or block specific Chrome Web Store extensions. | macOS 12 + | macOS |
Apple Global HTTP Proxy Policy | The Apple Global HTTP Proxy Policy in Swif lets you route all HTTP/HTTPS traffic on a device through a proxy server you control. | macOS 10.9+ iOS 6.0+ iPadOS 6.0+ |
|
Apple Intelligence Policy | Enable/disable on-device Apple Intelligence features. Learn more → | Apple Intelligence policy is available in the latest macOS Sequoia / iOS 18 betas and may require a device restart. |
|
Apple Interface Controls policy | Manages a set of interface-level features on Apple devices to improve privacy and security on managed, corporate-owned hardware. Learn more → | macOS 10.11+ iOS 13.0+ iPadOS 13.0+ |
|
Apple iOS/iPadOS Application Block Policy | Manage and restrict the installation and usage of applications on iOS and iPadOS devices. Learn more → | iOS 15.0+ iPadOS 15.0+ |
|
Apple Login Items Policy | Control which applications are automatically launched when a user logs in to their Mac device. Learn more → | macOS 13 + | macOS |
Apple Login Window Policy | Banner, auto-login, shutdown options, and fast-user-switching. Learn more → | macOS 10.7 + |
|
Apple Lock Screen Policy | Wallet, Control Centre, Today View on Lock Screen Learn more → | iOS |
|
Apple Menu Bar Policy | Ensures that important wireless connectivity indicators—Bluetooth and Wi-Fi—are always visible in the macOS menu bar. Learn more → | macOS 13 + |
|
Apple Multiple SCEP Policy | Lets you deliver one or more SCEP payloads to Apple devices from Swif, so you can issue client certificates via a SCEP/PKI solution (for example, Okta CA, SCEPman, or another CA fronted by SCEP). Learn more → | macOS 10.7 or later iOS 4.0 or later iPadOS 4.0 or later | macOS/iOS/iPadOS |
Apple Multiple Certificate Root Policy | Deploy one or more root certificates to Apple devices. | macOS 10.7+ iOS 4.0+ iPadOS 4.0+ | macOS/iOS/iPadOS |
Apple Managed App Control Policy (iOS & iPadOS) | Prevent corporate data from leaking into personal apps, while still protecting employee privacy on BYOD devices. | iOS 7+ iPadOS 7+ | iOS/iPadOS |
Apple Multiple Wi-Fi Policy | Deploy several managed Wi-Fi network configurations to Apple devices from one Swif policy. | macOS 10.7 or later iOS 4.0 or later iPadOS 4.0 or later | macOS/iOS/iPadOS |
Apple Password Policy | Length, complexity, history, grace period, Touch ID/Face ID rules. | macOS 10.10 +, iOS 4 +, iPadOS 4 + | iOS/iPadOS |
Apple Printing (AirPrint/IPP) Policy | Add, restrict, or remove printers; duplex defaults. Learn more → | macOS 10.7 + |
|
Apple Privacy Preferences (PPPC) Policy | Grant/deny app access to camera, mic, full-disk, files, automations. Learn more → | macOS 10.14 + |
|
Apple Platform SSO Policy | Configure Google / Okta / Azure login at the macOS lock screen. Learn more → | macOS 12 + | macOS |
Apple RADIUS (802.1X) Policy | 802.1X Wi-Fi / VPN profiles with TLS, PEAP, EAP-TTLS. Learn more → | macOS 10.10 +, iOS 7 +, iPadOS 7 + | macOS/iOS/iPadOS |
Apple Remote Desktop (Splashtop) Policy | Initiate an on-demand RDP session from the Swif console. Learn more → | macOS 12.0+ | macOS |
Apple Safari Policy | Manage Safari browser behavior on managed Apple devices. Learn more → | macOS 12.0+ | macOS |
Apple Safari Extension Policy | Push & enforce Swif Safari Shadow-IT extension. Learn more → | macOS 15 + | macOS |
Apple Screen Saver Policy | Require password after idle, module choice, message Learn more → | macOS 10.11 + |
|
Apple Security Access Control Policy | New macOS 15/iOS 18 device-level privacy toggles (camera, Face ID, USB restricted mode, Limit Ad Tracking, and Allow HostPairing, etc.) | macOS 11 +, iOS 4 +, iPadOS 4 + |
|
Apple Sharing Restrictions Policy | Disable AirDrop, Messages share sheet, screenshots, etc. | macOS 10.14 +, iOS 13 +, iPadOS 13 + | macOS/iOS/iPadOS |
Apple Siri Policy | Enable/disable Siri, dictation, and profanity filter. | macOS 14 +, iOS 5 +, iPadOS 5 + |
|
Apple Software Update Policy | Delay or force OS updates, beta channel, and automatic reboot. | macOS 12 +, iOS 11.5 +, iPadOS 11.5 + |
|
Apple Service Management Managed Login Items Policy | Pre-approve background items used by managed applications on Mac devices. | macOS 13.0 or later | macOS |
Apple System Preferences Security Policy | Lock specific panes (Profiles, Users & Groups, etc.) | macOS 10.10 + |
|
Apple System Policy Control Policy | Manage how Gatekeeper behaves on company-owned macOS devices. Gatekeeper is Apple’s built‑in protection that controls which apps are allowed to run based on their source and code signing status. | macOS 10.8+ |
|
Apple Spotlight Privacy Policy | Manage how macOS Spotlight uses the internet and shares search data on managed Macs. | macOS 15.0+ |
|
Apple Time Machine Policy | Mandate backups, set destination, prevent manual wipes. | macOS 10.7 + |
|
Apple Touch ID Policy | Allow or block Touch ID for unlock / Apple Pay. | macOS 12.4 +, iOS 7 +, iPadOS 7 + |
|
Apple Tracking Policy | USB port, Device lock, and Device lock tracking. | macOS 12 + | macOS |
Apple USB Policy | Block mass-storage USB class, allow specific vendor IDs. | macOS 12 + | macOS |
Apple User Authorization Policy | Prohibit creating local accounts, limit guests, and hide the admin list. | macOS 13 +, iOS 9 +, iPadOS 9 + | macOS |
Apple VPN Policy | IKEv2 / L2TP / Cisco IPSec payloads with certs or shared secret. | macOS 10.7 +, iOS 4 +, iPadOS 4 + |
|
Apple VS Code Policy | Manage extensions and extension auto-update behavior for Visual Studio Code and supported VS Code-based editors on managed Mac devices. | macOS 13 or later | macOS |
Apple Wi-Fi Policy | Push WPA-2/3 Enterprise & PSK networks, hotspot settings. | macOS 10.7 +, iOS 4 +, iPadOS 4 + | macOS/iOS/iPadOS |
Apple Web Clip Policy | Create and manage Web Clip shortcuts on managed iOS and iPadOS devices. | iOS, iPadOS |
|
Apple iCloud Policy | Allow/deny iCloud Drive, Photos, Keychain, Private Relay. | macOS 10.12 +, iOS 5 +, iPadOS 5 + | macOS/iOS/iPadOS |
How to use this table
Find the control you need—search within the page (⌘/Ctrl-F) or scroll alphabetically.
Verify the minimum OS; payloads are ignored by older versions.
Click Configure in Swif.ai → Policy → New Policy wizard to set the options described.
Check the Windows, Linux or Android glossaries for their respective payloads, then use device groups to mix-and-match rules across your fleet.
To write a custom policy, you can find more details at Creating a Custom macOS Policy in Swif.

