MDM Policies
Enrollment setup for each platform, plus a bulk command console for the whole fleet.
Enrollment & supervision
Grounded in the platform blueprint — NanoMDM/APNs for Apple, Autopilot for Windows, EMM for Android.
Apple
Demo fixtureAPNs push + Apple Business Manager (NanoMDM-style)
- APNs push certificate: valid, expires in 342 days
- Apple Business Manager: linked to stratoid-demo — 3 devices enrolled via DEP
- Supervision: required for zero-touch macOS + iOS enrollments
- 1Upload APNs certificate signing request
- 2Sign it in the Apple Push Certificates Portal
- 3Link Apple Business Manager for zero-touch DEP
Android
Demo fixtureAndroid Enterprise (EMM)
- Enterprise binding: stratoid-demo-emm-01
- Managed Google Play: enabled
- Default mode: work profile (BYOD) — fully managed available for corporate-owned
- 1Bind an Android Enterprise account
- 2Enable Managed Google Play
- 3Publish the enrollment QR / token to end users
Windows
Demo fixtureWindows Autopilot
- Autopilot deployment profile: StratoID Standard
- Directory sync: connected via Microsoft Entra ID
- Out-of-box experience: user-driven, self-deploying available for kiosks
- 1Register hardware hashes with Autopilot
- 2Assign the deployment profile
- 3Sync with Microsoft Entra ID for SSO
Demo enrollment
Illustrative URL only; no provider enrollment is performed.
Enrollment URL
https://enroll.stratoid-demo.stratoid.ioScan the code or open the link on the device to start enrollment. Per-device tokens are issued from Enroll device.
Enrolled devices by platform
Bulk command console
Select devices below, then issue a command to all of them at once.