Operation Manual
Chapter 2 Deployment models 18
The following table illustrates the responsibilities of both the administrator and the user for a
personalized device (corporate-owned) deployment:
Prepare
Administrator:
•
Evaluate your existing infrastructure including Wi-Fi,
VPN, and mail and calendar servers.
•
Investigate, procure, and deploy an MDM solution.
•
Enroll in the Device Enrollment Program (DEP) and
the Volume Purchase Program (VPP).
Users:
•
Create Apple ID, iTunes Store, and iCloud accounts,
if applicable.
Set up and congure
Administrator:
•
From the Device Enrollment Program website, link
your virtual servers to your MDM solution.
•
Streamline enrollment through Device Enrollment
Program by assigning iOS devices to your virtual
MDM servers by order number or by serial number.
•
Assign iOS devices in DEP for supervision and
streamlined enrollment in MDM.
•
Use Apple Congurator to congure and supervise
the iOS device (alternative to the above).
•
Congure and install accounts, settings, and
restrictions wirelessly with MDM or use USB with
Apple Congurator.
Users:
•
The user is provided an iOS device. If Apple
Congurator was used to setup the device, then no
further setup by the user is necessary.
•
Enter organization credentials in Setup Assistant for
DEP (optional).
•
Personalize the iOS device with Setup Assistant and
enter a personal Apple ID.
•
Enroll in MDM.
•
iOS device settings and congurations are
automatically received from MDM.
Distribute apps and books
Administrator:
•
Download your token from the VPP Store and link it
to your MDM solution.
•
Purchase apps and books using VPP and assign
them to users with MDM.
•
Send VPP invitation to users.
•
Distribute in-house apps from the iOS Developer
Enterprise Program (iDEP) and in-house books
by hosting them on a web server or your MDM
solution.
•
Install Caching Server to speed up content delivery
over the local network.
Users:
•
Accept invitation to VPP.
•
Download and install apps and books assigned by
the organization.
•
If the iOS device is supervised, apps can be pushed
to the user’s device silently.
Ongoing management
Administrator:
•
Revoke and reassign apps to other users as needed
with MDM.
•
With MDM, you can query managed iOS devices to
monitor compliance, or trigger alerts if users add
unapproved apps or content.
•
MDM can also lock iOS devices or remotely wipe
any managed accounts or data, or wipe an iOS
device entirely.
Users:
•
Back up the iOS device to iTunes or iCloud, to save
documents and other personal content.
•
If the device is lost or stolen, the user can locate it
with Find My iPhone.
100% resize factor