Skip to main content

List of Apple Policies

Use the table below as a quick glossary when you need to decide which payload to configure for macOS, iOS, or iPadOS.

Available Policies​

Each row shows the policy’s name as it appears in Device Management → Policies → New Policy → macOS/iOS, its purpose, and the minimum OS versions it supports.

Policy

What it controls

Supported platforms / minimum OS

BYOD compatibility

Apple AirPrint Policy

Adds or removes AirPrint printers, sets default printer options.

macOS 10.10 +, iOS 7 +, iPadOS 7 +

check mark button

macOS/iOS/iPadOS

Apple Airdrop Policy

Allow/block AirDrop file sharing.

macOS 10.13 +, iOS 7 +, iPadOS 7 +

Apple App Store Policy

Enable/disable App Store, automatic downloads, and in-app purchases.

macOS 10.9 +

Apple Application Block Policy

Block specific applications on macOS devices based on developer identity, application identifiers, file paths, names, or even window titles.

macOS 10.7 +

check mark button

macOS

Apple Application and Service Control Policy

Manage key Apple services that can impact security, privacy, and device discoverability on managed Apple devices.

macOS 10.12+, iOS 5+, and iPadOS 8+

Apple Bluetooth Policy

Toggle Bluetooth, force discoverable state, or accessories block list.

macOS 14.0, iOS 11 +, iPadOS 11 +

Apple Configuration and Certificate Controls Policy

Manage how configuration profiles and certificates are installed and trusted on Apple devices.

macOS: 10.15+

iOS: 6.0+

iPadOS: 6.0+

Apple Device CVE Report Policy

Vulnerability scanning

macOS 12 +

check mark button

macOS

Apple Desktop Policy

Manages desktop customization and wallpaper settings for macOS devices to align with corporate branding and compliance.

macOS

Apple Cron Policy

Set every X days to restart a device or set EOD of X date to restart a device.

macOS 11.0, iOS 11.0+, iPadOS 11.0+

check mark button

macOS/iOS/iPadOS

Apple Dock Policy

Lock Dock layout, add/remove items, magnification, and auto-hide.

macOS 10.7 +

Apple Energy Saver Policy

Centrally manage how Mac computers handle sleep and display power-saving features.

macOS 10.11+

Apple External APFS Drive Encryption Policy

Encrypt external APFS drives on managed macOS devices.

macOS 12.0+

check mark button

macOS

Apple FileVault Policy

Turn on disk encryption, escrow keys, and defer enablement.

macOS 10.9 +

Apple Find My Policy

Allow/deny Find My Mac / iPhone / iPad.

macOS 10.7 + (Deprecated after macOS 26)

Apple Firewall Policy

macOS Application Firewall settings (stealth, allowed apps, logging).

macOS 10.12 +

Apple Firefox Extension Policy

Manage Mozilla Firefox browser extensions on macOS devices.

macOS 10.12+

check mark button

macOS

Apple Finder Policy

Manage key Finder display preferences on managed macOS devices.

macOS 10.7+

Apple Google Chrome Policy

Force-enable security configurations or block Incognito mode in Chrome for macOS.

macOS 12 +

check mark button

macOS

Apple Google Chrome Extension Deployment and Blocking Policy

Force-install or block specific Chrome Web Store extensions.

macOS 12 +

check mark button

macOS

Apple Global HTTP Proxy Policy

The Apple Global HTTP Proxy Policy in Swif lets you route all HTTP/HTTPS traffic on a device through a proxy server you control.

macOS 10.9+

iOS 6.0+

iPadOS 6.0+

Apple Intelligence Policy

Enable/disable on-device Apple Intelligence features. Learn more →

Apple Intelligence policy is available in the latest macOS Sequoia / iOS 18 betas and may require a device restart.

Apple Interface Controls policy

Manages a set of interface-level features on Apple devices to improve privacy and security on managed, corporate-owned hardware. Learn more →

macOS 10.11+

iOS 13.0+

iPadOS 13.0+

Apple iOS/iPadOS Application Block Policy

Manage and restrict the installation and usage of applications on iOS and iPadOS devices. Learn more →

iOS 15.0+

iPadOS 15.0+

Apple Login Items Policy

Control which applications are automatically launched when a user logs in to their Mac device. Learn more →

macOS 13 +

check mark button

macOS

Apple Login Window Policy

Banner, auto-login, shutdown options, and fast-user-switching. Learn more →

macOS 10.7 +

Apple Lock Screen Policy

Wallet, Control Centre, Today View on Lock Screen Learn more →

iOS

Apple Menu Bar Policy

Ensures that important wireless connectivity indicators—Bluetooth and Wi-Fi—are always visible in the macOS menu bar. Learn more →

macOS 13 +

Apple Multiple SCEP Policy

Lets you deliver one or more SCEP payloads to Apple devices from Swif, so you can issue client certificates via a SCEP/PKI solution (for example, Okta CA, SCEPman, or another CA fronted by SCEP). Learn more →

macOS 10.7 or later

iOS 4.0 or later

iPadOS 4.0 or later

check mark button

macOS/iOS/iPadOS

Apple Multiple Certificate Root Policy

Deploy one or more root certificates to Apple devices.

macOS 10.7+

iOS 4.0+

iPadOS 4.0+

check mark button

macOS/iOS/iPadOS

Apple Managed App Control Policy (iOS & iPadOS)

Prevent corporate data from leaking into personal apps, while still protecting employee privacy on BYOD devices.

iOS 7+

iPadOS 7+

check mark button

iOS/iPadOS

Apple Multiple Wi-Fi Policy

Deploy several managed Wi-Fi network configurations to Apple devices from one Swif policy.

macOS 10.7 or later

iOS 4.0 or later

iPadOS 4.0 or later

check mark button

macOS/iOS/iPadOS

Apple Password Policy

Length, complexity, history, grace period, Touch ID/Face ID rules.

macOS 10.10 +, iOS 4 +, iPadOS 4 +

check mark button

iOS/iPadOS

Apple Printing (AirPrint/IPP) Policy

Add, restrict, or remove printers; duplex defaults. Learn more →

macOS 10.7 +

Apple Privacy Preferences (PPPC) Policy

Grant/deny app access to camera, mic, full-disk, files, automations. Learn more →

macOS 10.14 +

Apple Platform SSO Policy

Configure Google / Okta / Azure login at the macOS lock screen. Learn more →

macOS 12 +

check mark button

macOS

Apple RADIUS (802.1X) Policy

802.1X Wi-Fi / VPN profiles with TLS, PEAP, EAP-TTLS. Learn more →

macOS 10.10 +, iOS 7 +, iPadOS 7 +

check mark button

macOS/iOS/iPadOS

Apple Remote Desktop (Splashtop) Policy

Initiate an on-demand RDP session from the Swif console. Learn more →

macOS 12.0+

check mark button

macOS

Apple Safari Policy

Manage Safari browser behavior on managed Apple devices. Learn more →

macOS 12.0+

check mark button

macOS

Apple Safari Extension Policy

Push & enforce Swif Safari Shadow-IT extension. Learn more →

macOS 15 +

check mark button

macOS

Apple Screen Saver Policy

Require password after idle, module choice, message Learn more →

macOS 10.11 +

Apple Security Access Control Policy

New macOS 15/iOS 18 device-level privacy toggles (camera, Face ID, USB restricted mode, Limit Ad Tracking, and Allow HostPairing, etc.)

macOS 11 +, iOS 4 +, iPadOS 4 +

Apple Sharing Restrictions Policy

Disable AirDrop, Messages share sheet, screenshots, etc.

macOS 10.14 +, iOS 13 +, iPadOS 13 +

check mark button

macOS/iOS/iPadOS

Apple Siri Policy

Enable/disable Siri, dictation, and profanity filter.

macOS 14 +, iOS 5 +, iPadOS 5 +

Apple Software Update Policy

Delay or force OS updates, beta channel, and automatic reboot.

macOS 12 +, iOS 11.5 +, iPadOS 11.5 +

Apple Service Management Managed Login Items Policy

Pre-approve background items used by managed applications on Mac devices.

macOS 13.0 or later

check mark button

macOS

Apple System Preferences Security Policy

Lock specific panes (Profiles, Users & Groups, etc.)

macOS 10.10 +

Apple System Policy Control Policy

Manage how Gatekeeper behaves on company-owned macOS devices. Gatekeeper is Apple’s built‑in protection that controls which apps are allowed to run based on their source and code signing status.

macOS 10.8+

Apple Spotlight Privacy Policy

Manage how macOS Spotlight uses the internet and shares search data on managed Macs.

macOS 15.0+

Apple Time Machine Policy

Mandate backups, set destination, prevent manual wipes.

macOS 10.7 +

Apple Touch ID Policy

Allow or block Touch ID for unlock / Apple Pay.

macOS 12.4 +, iOS 7 +, iPadOS 7 +

Apple Tracking Policy

USB port, Device lock, and Device lock tracking.

macOS 12 +

check mark button

macOS

Apple USB Policy

Block mass-storage USB class, allow specific vendor IDs.

macOS 12 +

check mark button

macOS

Apple User Authorization Policy

Prohibit creating local accounts, limit guests, and hide the admin list.

macOS 13 +, iOS 9 +, iPadOS 9 +

check mark button

macOS

Apple VPN Policy

IKEv2 / L2TP / Cisco IPSec payloads with certs or shared secret.

macOS 10.7 +, iOS 4 +, iPadOS 4 +

Apple VS Code Policy

Manage extensions and extension auto-update behavior for Visual Studio Code and supported VS Code-based editors on managed Mac devices.

macOS 13 or later

check mark button

macOS

Apple Wi-Fi Policy

Push WPA-2/3 Enterprise & PSK networks, hotspot settings.

macOS 10.7 +, iOS 4 +, iPadOS 4 +

check mark button

macOS/iOS/iPadOS

Apple Web Clip Policy

Create and manage Web Clip shortcuts on managed iOS and iPadOS devices.

iOS, iPadOS

Apple iCloud Policy

Allow/deny iCloud Drive, Photos, Keychain, Private Relay.

macOS 10.12 +, iOS 5 +, iPadOS 5 +

check mark button

macOS/iOS/iPadOS


How to use this table

  1. Find the control you need—search within the page (⌘/Ctrl-F) or scroll alphabetically.

  2. Verify the minimum OS; payloads are ignored by older versions.

  3. Click Configure in Swif.ai → Policy → New Policy wizard to set the options described.

Check the Windows, Linux or Android glossaries for their respective payloads, then use device groups to mix-and-match rules across your fleet.

To write a custom policy, you can find more details at Creating a Custom macOS Policy in Swif.

Did this answer your question?