Assign an enrollment configuration and activation profile to ADE devices

An enrollment configuration allows you to define how devices that are enrolled in ADE are set up when they are activated with BlackBerry UEM. You can create as many enrollment configurations as your organization requires. When you configured UEM for ADE, if you selected the "Automatically assign all new devices to this configuration" check box, any ADE devices you add will automatically receive the ADE enrollment configuration. If you did not select this option, follow the steps below to assign the appropriate enrollment configuration to devices.

You create and assign an activation profile to ADE devices to control device activation settings for users, including the UEM activation type, the number of devices users can activate, device model restrictions, and so on. If you do not create and assign an activation profile, the default activation profile is used.

  1. In the management console, on the menu bar, click Users > Apple ADE devices.
  2. Select the devices that are registered to the same ADE account.
  3. Click Enrollment configuration icon..
  4. Select and assign the enrollment configuration.
  5. Click Assign activation profile icon..
  6. Select and assign the activation profile.
  • If you are activating macOS ADE devices, Assign users to ADE devices.
  • If you are activating iOS or iPadOS devices, choose how you want users to activate their devices, then distribute devices to users and have them complete the activation. If you want to support features that require the UEM Client, instruct users to install and open the UEM Client.
    • Send an activation email to multiple users or send an activation email to a specific user using the Apple ADE email template.
    • If you connected UEM to a Microsoft Active Directory or LDAP company directory, users can use their company directory usernames and passwords.
      • Microsoft Active Directory: Users must enter their usernames in the format domain\username (the credentials match your organization's domain and username variables (“%UserDomain%\%UserName%”).
      • LDAP: Users must enter their credentials as specified in the login attribute in the company directory (for example, if the login attribute is samAccountName, users enter their username; if it is userPrincipalName, users enter their email address).
    • You can Assign users to ADE devices. When you assign a user to the device in UEM, they are not prompted for a username or password during device activation, unless you selected "Require credentials for assigned user" when you configured UEM for ADE.