Skip to main content

Apple Time Machine Policy

Updated yesterday

The Apple Time Machine Policy allows administrators to configure and enforce Time Machine backup settings on managed macOS devices.
This policy helps organizations standardize backup behavior, ensure data protection, and control where and how backups occur across enterprise Apple devices.

Using this policy, IT administrators can specify backup destinations, enforce automatic backups, restrict local or network backups, skip system files, and control the amount of data stored.


Overview

Time Machine is macOS’s built-in backup system, providing automated incremental backups of user and system data.
While useful, unmanaged backups can:

  • Consume excessive storage

  • Store sensitive data in unapproved locations

  • Miss important areas due to user error

  • Slow down devices if configured improperly

The Apple Time Machine Policy ensures backups follow organizational policies and that data is consistently protected.


Requirements

  • macOS 10.7+

  • Device enrolled in Swif.ai MDM

  • Some advanced settings require macOS 10.8 or later


Configurable Settings

Below is a complete explanation of all settings in the Apple Time Machine Policy.


Do Not Offer New Disks for Backup

Controls whether macOS prompts the user to set up new disks as backup targets.

Setting

Description

Minimum Requirement

True

Prevents macOS from offering newly detected disks as backup disks.

macOS 10.7+

False

Allows macOS to prompt the user to set up new disks.

macOS 10.7+

Useful for preventing backup to unauthorized external drives.


Backup Destination URL

Specifies a network or server-based Time Machine backup destination.

Example URLs

Description

afp://server.local/BackupShare

AFP time machine share

smb://backup.company.com/tm

SMB Time Machine destination

Use Case:
Standardizes backup locations to approved enterprise servers or NAS devices.


Auto Backup

Controls whether Time Machine performs automatic backups at regular intervals.

Setting

Description

Minimum Requirement

True

Enables automatic Time Machine backups.

macOS 10.7+

False

Backups must be triggered manually.

macOS 10.7+


Mobile Backup

Controls mobile/local snapshots when a device is not connected to the backup destination.

Setting

Description

Minimum Requirement

True

Creates local snapshots when off-network (useful for MacBooks).

macOS 10.8+

False

No local snapshots are created.

macOS 10.8+


Backup Skip System Files

Controls whether Time Machine skips system files and folders.

Setting

Description

Minimum Requirement

True

Backup excludes macOS system files.

macOS 10.7+

False

Full system is included.

macOS 10.7+

This reduces backup storage usage and speeds up backups.


Backup All Volumes

Controls whether Time Machine backs up all volumes or only the startup volume.

Setting

Description

Minimum Requirement

True

All volumes are backed up.

macOS 10.7+

False

Only the startup disk is backed up.

macOS 10.7+


Skip Paths

Allows administrators to define specific file paths or folders that should be excluded from Time Machine backups.

Example

Description

/Users/Shared/Cache

Exclude large cache folders

/private/tmp

Exclude temporary files

Multiple paths can be added.


Backup Size MB

Sets the maximum backup size (in megabytes).

Value

Meaning

0

Unlimited backup size

Any integer

Backup limit in MB

Useful for controlling storage usage on shared or constrained volumes.


Best Practices

  • Set Backup Destination URL to enforce company-approved backup storage.

  • Use Auto Backup = True to ensure regular protection without user intervention.

  • Enable Mobile Backup for MacBooks to maintain snapshots while offline.

  • Use Skip Paths and Skip System Files to reduce storage consumption.

  • Limit backup sizes for shared network locations using Backup Size MB.

  • Combine with the Apple Disk Encryption Policy for complete data-at-rest protection.


How to Configure

  1. Navigate to Swif Admin Console → Policies → Create New Policy

  2. Select Apple Time Machine Policy

  3. Configure desired backup behavior:

    • Destination URLs

    • Automatic backups

    • Exclusions

    • Size limits

  4. Click Continue, then assign the policy to device groups

  5. Save the policy

Devices will apply the new backup settings on the next MDM sync.


Compliance & Security Benefits

  • Ensures backups are stored securely on approved resources

  • Protects organizational data through automated, consistent backups

  • Prevents sensitive data from being stored on unmanaged drives

  • Helps organizations comply with SOC 2, ISO 27001, HIPAA, and disaster recovery requirements

  • Reduces device and network load through controlled backup settings

Did this answer your question?