LDAP (com.apple.ldap.account)

com.apple.ldap.account

The payload that configures a Lightweight Directory Access Protocol (LDAP) account.

iOS(4.0)macOS(10.7)visionOS(1.1)
Branch: release

Settings (11)

SettingTypeRequiredDefaultManual InstallSupported OS
Account description
LDAPAccountDescription
The description of the account.
stringoptional—
✓Yes
iOS (4.0+)macOS (10.7+)visionOS (1.1+)
Account hostname
LDAPAccountHostName
The server's address.
stringrequired—
✓Yes
iOS (4.0+)macOS (10.7+)visionOS (1.1+)
Account username
LDAPAccountUserName
The user's user name.
stringoptional—
✓Yes
iOS (4.0+)macOS (10.7+)visionOS (1.1+)
Account password
LDAPAccountPassword
The user's password. Only use this in encrypted profiles.
stringoptional—
✓Yes
iOS (4.0+)macOS (10.7+)visionOS (1.1+)
Use SSL
LDAPAccountUseSSL
If `true`, the system enables SSL.
booleanoptionaltrue
✓Yes
iOS (4.0+)macOS (10.7+)visionOS (1.1+)
Search settings
LDAPSearchSettings
An array of search settings dictionaries.
1 subkey
arrayoptional—
✓Yes
iOS (4.0+)macOS (10.7+)visionOS (1.1+)
└─
An LDAP search setting
LDAPSearchSettingsItem
3 subkeys
dictionary—
✓Yes
iOS (4.0+)macOS (10.7+)visionOS (1.1+)
└─ └─
Description
LDAPSearchSettingDescription
The description of this search setting.
stringoptional—
✓Yes
iOS (4.0+)macOS (10.7+)visionOS (1.1+)
└─ └─
Search setting search base
LDAPSearchSettingSearchBase
The path to the node where a search should start.
stringrequired—
✓Yes
iOS (4.0+)macOS (10.7+)visionOS (1.1+)
└─ └─
Search setting scope
LDAPSearchSettingScope
The type of recursion to use in the search: - `LDAPSearchSettingScopeBase`: The search uses only the immediate node that the search base points to. - `LDAPSearchSettingScopeOneLevel`: The search uses the node plus its immediate children. - `LDAPSearchSettingScopeSubtree`: The search uses the node plus all children, regardless of depth.
stringoptionalLDAPSearchSettingScopeSubtree
✓Yes
iOS (4.0+)macOS (10.7+)visionOS (1.1+)
VPNUUID
VPNUUID
The VPNUUID of the per-app VPN the account uses for network communication.
stringoptional—
✓Yes
iOS (14.0+)

Apple MDM & DDM Policy Explorer

Explore the full catalogue of Apple Mobile Device Management (MDM) and Declarative Device Management (DDM) policies for macOS and iOS. Search, filter, and reference policy keys for use with Microsoft Intune, Jamf, or any standards-compliant MDM solution.

Reference: policy categories & common keys

Policy categories

  • Configuration Profile
  • Declarative Configuration
  • Declarative Activation
  • Declarative Asset
  • Declarative Management

Common policy keys

  • com.apple.wifi.managed – Wi-Fi network configuration
  • com.apple.vpn.managed – VPN configuration
  • com.apple.applicationaccess – App and feature restrictions
  • com.apple.security.pkcs1 – Certificate (PKCS#1) payload
  • com.apple.security.pkcs12 – Identity certificate (PKCS#12) payload
  • com.apple.security.scep – SCEP certificate enrolment
  • com.apple.mail.managed – Mail account configuration
  • com.apple.eas.account – Exchange ActiveSync account
  • com.apple.MCX – Managed Client (macOS) preferences
  • com.apple.MCX.FileVault2 – FileVault 2 disk encryption
  • com.apple.dock – macOS Dock configuration
  • com.apple.screensaver – Screensaver configuration
  • com.apple.loginwindow – macOS login window configuration
  • com.apple.systempolicy.managed – Gatekeeper / system policy
  • com.apple.systempreferences – System Preferences pane restrictions
  • com.apple.SoftwareUpdate – Software update behaviour
  • com.apple.TCC.configuration-profile-policy – Privacy Preferences Policy Control (PPPC)
  • com.apple.notificationsettings – Per-app notification settings
  • com.apple.webcontent-filter – Web content filter
  • com.apple.dnsSettings.managed – DNS settings (DoH / DoT)
  • com.apple.relay.managed – Network relay configuration
  • com.apple.extensiblesso – Extensible Single Sign-On
  • com.apple.configuration.passcode.settings – DDM: passcode policy
  • com.apple.configuration.softwareupdate.enforcement.specific – DDM: enforced software update
  • com.apple.configuration.services.configuration-files – DDM: service configuration files
  • com.apple.configuration.management.status-subscriptions – DDM: status subscriptions
  • com.apple.activation.simple – DDM: simple activation predicate
  • com.apple.management.organization-info – DDM: organization information