The payload that configures DNS proxies.
| Setting | Type | Required | Default | Manual Install | Supported OS |
|---|---|---|---|---|---|
App bundle identifier AppBundleIdentifier Deprecated (iOS 27.0, macOS 27.0, visionOS 27.0) The bundle identifier of the app containing the DNS proxy network extension. | string | required | — | ✓Yes | iOS (11.0 - 27.0)macOS (10.15 - 27.0)visionOS (1.1 - 27.0) |
Provider bundle identifier ProviderBundleIdentifier Deprecated (iOS 27.0, macOS 27.0, visionOS 27.0) The bundle identifier of the DNS proxy network extension to use. Declaring the bundle identifier is useful for apps that contain more than one DNS proxy extension. | string | optional | — | ✓Yes | iOS (11.0 - 27.0)macOS (10.15 - 27.0)visionOS (1.1 - 27.0) |
Provider designated requirement ProviderDesignatedRequirement Deprecated (iOS 27.0, macOS 27.0, visionOS 27.0) The designated requirement string that the system embeds in the code signature of the DNS proxy network extension. Use this to correctly identify the DNS proxy extension when `ProviderBundleIdentifier` is present. | string | optional | — | ✗No | |
Provider configuration ProviderConfiguration Deprecated (iOS 27.0, macOS 27.0, visionOS 27.0) The dictionary of vendor-specific configuration items. 1 subkey | dictionary | optional | — | ✓Yes | iOS (11.0 - 27.0)macOS (10.15 - 27.0)visionOS (1.1 - 27.0) |
└─ ANY ANY Deprecated (iOS 27.0, macOS 27.0, visionOS 27.0) Key/value pairs. | any | optional | — | ✓Yes | iOS (11.0 - 27.0)macOS (10.15 - 27.0)visionOS (1.1 - 27.0) |
DNS proxy UUID DNSProxyUUID Deprecated (iOS 27.0, macOS 27.0, visionOS 27.0) A globally unique identifier for this DNS proxy configuration. The proxy processes DNS lookups traffic for managed apps with the same `DNSProxyUUID` in their app attributes. This key is required for user enrollment. | string | optional | — | ✓Yes | iOS (16.0 - 27.0) |
Explore the full catalogue of Apple Mobile Device Management (MDM) and Declarative Device Management (DDM) policies for macOS and iOS. Search, filter, and reference policy keys for use with Microsoft Intune, Jamf, or any standards-compliant MDM solution.
com.apple.wifi.managed – Wi-Fi network configurationcom.apple.vpn.managed – VPN configurationcom.apple.applicationaccess – App and feature restrictionscom.apple.security.pkcs1 – Certificate (PKCS#1) payloadcom.apple.security.pkcs12 – Identity certificate (PKCS#12) payloadcom.apple.security.scep – SCEP certificate enrolmentcom.apple.mail.managed – Mail account configurationcom.apple.eas.account – Exchange ActiveSync accountcom.apple.MCX – Managed Client (macOS) preferencescom.apple.MCX.FileVault2 – FileVault 2 disk encryptioncom.apple.dock – macOS Dock configurationcom.apple.screensaver – Screensaver configurationcom.apple.loginwindow – macOS login window configurationcom.apple.systempolicy.managed – Gatekeeper / system policycom.apple.systempreferences – System Preferences pane restrictionscom.apple.SoftwareUpdate – Software update behaviourcom.apple.TCC.configuration-profile-policy – Privacy Preferences Policy Control (PPPC)com.apple.notificationsettings – Per-app notification settingscom.apple.webcontent-filter – Web content filtercom.apple.dnsSettings.managed – DNS settings (DoH / DoT)com.apple.relay.managed – Network relay configurationcom.apple.extensiblesso – Extensible Single Sign-Oncom.apple.configuration.passcode.settings – DDM: passcode policycom.apple.configuration.softwareupdate.enforcement.specific – DDM: enforced software updatecom.apple.configuration.services.configuration-files – DDM: service configuration filescom.apple.configuration.management.status-subscriptions – DDM: status subscriptionscom.apple.activation.simple – DDM: simple activation predicatecom.apple.management.organization-info – DDM: organization information