Account:LDAP ()

The declaration to configure a Lightweight Directory Access Protocol (LDAP) account.

iOS(15.0)macOS(13.0)visionOS(1.1)
Branch: release

Settings (9)

SettingTypeRequiredDefaultManual InstallSupported OS
Account name
VisibleName
The name that apps show to the user for this LDAP account. If not present, the system generates a suitable default.
stringoptional—
✓Yes
iOS (15.0+)macOS (13.0+)visionOS (1.1+)
Server host name
HostName
The hostname or IP address of the LDAP server.
stringrequired—
✓Yes
iOS (15.0+)macOS (13.0+)visionOS (1.1+)
Server port
Port
The port number or IP address of the LDAP server.
integeroptional—
✓Yes
iOS (15.0+)macOS (13.0+)visionOS (1.1+)
Authentication credentials asset reference
AuthenticationCredentialsAssetReference
The identifier of an asset declaration that contains the credentials for this account. Set the corresponding asset type to `CredentialUserNameAndPassword`.
stringoptional—
✓Yes
iOS (15.0+)macOS (13.0+)visionOS (1.1+)
Search settings
SearchSettings
The array of nodes to start LDAP searches from. There must be at least one node for this account to be useful. macOS only searches one node and ignores other items in the array.
1 subkey
arrayoptional—
✓Yes
iOS (15.0+)macOS (13.0+)visionOS (1.1+)
└─
An LDAP search setting
SearchSettingsItem
3 subkeys
dictionary—
✓Yes
iOS (15.0+)macOS (13.0+)visionOS (1.1+)
└─ └─
Visible description
VisibleDescription
The description of this search setting in the Contacts and Settings apps. If not present, the apps display no name.
stringoptional—
✓Yes
iOS (15.0+)macOS (13.0+)visionOS (1.1+)
└─ └─
Search base
SearchBase
The path to the node where a search starts. For example, `ou=people,o=example corp`.
stringrequired—
✓Yes
iOS (15.0+)macOS (13.0+)visionOS (1.1+)
└─ └─
Scope
Scope
The type of recursion to use in the search: - `Base`: The search uses only the `SearchBase` node. - `OneLevel`: The search uses the `SearchBase` node and its immediate children. - `Subtree`: The search uses the `SearchBase` node and all its children, regardless of depth.
stringoptionalSubtree
✓Yes
iOS (15.0+)macOS (13.0+)visionOS (1.1+)

Apple MDM & DDM Policy Explorer

Explore the full catalogue of Apple Mobile Device Management (MDM) and Declarative Device Management (DDM) policies for macOS and iOS. Search, filter, and reference policy keys for use with Microsoft Intune, Jamf, or any standards-compliant MDM solution.

Reference: policy categories & common keys

Policy categories

  • Configuration Profile
  • Declarative Configuration
  • Declarative Activation
  • Declarative Asset
  • Declarative Management

Common policy keys

  • com.apple.wifi.managed – Wi-Fi network configuration
  • com.apple.vpn.managed – VPN configuration
  • com.apple.applicationaccess – App and feature restrictions
  • com.apple.security.pkcs1 – Certificate (PKCS#1) payload
  • com.apple.security.pkcs12 – Identity certificate (PKCS#12) payload
  • com.apple.security.scep – SCEP certificate enrolment
  • com.apple.mail.managed – Mail account configuration
  • com.apple.eas.account – Exchange ActiveSync account
  • com.apple.MCX – Managed Client (macOS) preferences
  • com.apple.MCX.FileVault2 – FileVault 2 disk encryption
  • com.apple.dock – macOS Dock configuration
  • com.apple.screensaver – Screensaver configuration
  • com.apple.loginwindow – macOS login window configuration
  • com.apple.systempolicy.managed – Gatekeeper / system policy
  • com.apple.systempreferences – System Preferences pane restrictions
  • com.apple.SoftwareUpdate – Software update behaviour
  • com.apple.TCC.configuration-profile-policy – Privacy Preferences Policy Control (PPPC)
  • com.apple.notificationsettings – Per-app notification settings
  • com.apple.webcontent-filter – Web content filter
  • com.apple.dnsSettings.managed – DNS settings (DoH / DoT)
  • com.apple.relay.managed – Network relay configuration
  • com.apple.extensiblesso – Extensible Single Sign-On
  • com.apple.configuration.passcode.settings – DDM: passcode policy
  • com.apple.configuration.softwareupdate.enforcement.specific – DDM: enforced software update
  • com.apple.configuration.services.configuration-files – DDM: service configuration files
  • com.apple.configuration.management.status-subscriptions – DDM: status subscriptions
  • com.apple.activation.simple – DDM: simple activation predicate
  • com.apple.management.organization-info – DDM: organization information