Network Usage Rules (com.apple.networkusagerules)

com.apple.networkusagerules

The payload that configures network-usage rules.

iOS(9.0)
Branch: release

Settings (11)

SettingTypeRequiredDefaultManual InstallSupported OS
ApplicationRules
ApplicationRules
An array of application rules, that apply to only managed apps.
1 subkey
arrayoptional—
✗No
iOS (9.0+)
└─
ApplicationRulesItem
ApplicationRulesItem
The application rules dictionary.
3 subkeys
dictionary—
✗No
iOS (9.0+)
└─ └─
AppIdentifierMatches
AppIdentifierMatches
A list of managed app identifiers, as strings, that must follow the associated rules. If this key is missing, the rules apply to all managed apps on the device. Each string in the `AppIdentifierMatches` array may either be an exact app identifier match (for example, `com.mycompany.myapp`) or it may specify a prefix match for the bundle ID by using the \* wildcard character. If used, this character must appear after a period (.) and may only appear once, at the end of the string; for example, `com.mycompany.\*`.
1 subkey
arrayoptional—
✗No
iOS (9.0+)
└─ └─ └─
AppIdentifierMatchesItem
AppIdentifierMatchesItem
A managed app identifier.
stringrequired—
✗No
iOS (9.0+)
└─ └─
AllowRoamingCellularData
AllowRoamingCellularData
If `false`, disables cellular data while roaming for all matching managed apps.
booleanoptionaltrue
✗No
iOS (9.0+)
└─ └─
AllowCellularData
AllowCellularData
If `false`, disables cellular data for all matching managed apps.
booleanoptionaltrue
✗No
iOS (9.0+)
SIMRules
SIMRules
An array of SIM rules, that apply to all apps.
1 subkey
arrayoptional—
✓Yes
iOS (13.0+)
└─
SIMRulesItem
SIMRulesItem
The policy for individual SIM cards.
2 subkeys
dictionary—
✗No
iOS (9.0+)
└─ └─
ICCIDs
ICCIDs
One or more ICCIDs of SIM cards for which the `WiFiAssistPolicy` applies. All ICCIDs in all installed Network Usage Rules payloads must be unique. An example ICCID is `89310410106543789301`.
1 subkey
arrayrequired—
✗No
iOS (9.0+)
└─ └─ └─
ICCID
ICCID
An ICCID.
stringrequired—
✗No
iOS (9.0+)
└─ └─
WiFiAssistPolicy
WiFiAssistPolicy
The Wi-Fi Assist policy to apply to the SIM cards specified in the ICCIDs. Allowed values: - `2`: Use the default system policy for the specified SIM card(s). - `3`: Make Wi-Fi Assist switch more aggressively from a poor Wi-Fi connection to cellular data for the specified SIM card(s). This setting may increase cellular data use and may impact battery life. For more information, see [About Wi-Fi Assist](https://support.apple.com/en-us/HT205296).
integerrequired—
✗No
iOS (9.0+)

Apple MDM & DDM Policy Explorer

Explore the full catalogue of Apple Mobile Device Management (MDM) and Declarative Device Management (DDM) policies for macOS and iOS. Search, filter, and reference policy keys for use with Microsoft Intune, Jamf, or any standards-compliant MDM solution.

Reference: policy categories & common keys

Policy categories

  • Configuration Profile
  • Declarative Configuration
  • Declarative Activation
  • Declarative Asset
  • Declarative Management

Common policy keys

  • com.apple.wifi.managed – Wi-Fi network configuration
  • com.apple.vpn.managed – VPN configuration
  • com.apple.applicationaccess – App and feature restrictions
  • com.apple.security.pkcs1 – Certificate (PKCS#1) payload
  • com.apple.security.pkcs12 – Identity certificate (PKCS#12) payload
  • com.apple.security.scep – SCEP certificate enrolment
  • com.apple.mail.managed – Mail account configuration
  • com.apple.eas.account – Exchange ActiveSync account
  • com.apple.MCX – Managed Client (macOS) preferences
  • com.apple.MCX.FileVault2 – FileVault 2 disk encryption
  • com.apple.dock – macOS Dock configuration
  • com.apple.screensaver – Screensaver configuration
  • com.apple.loginwindow – macOS login window configuration
  • com.apple.systempolicy.managed – Gatekeeper / system policy
  • com.apple.systempreferences – System Preferences pane restrictions
  • com.apple.SoftwareUpdate – Software update behaviour
  • com.apple.TCC.configuration-profile-policy – Privacy Preferences Policy Control (PPPC)
  • com.apple.notificationsettings – Per-app notification settings
  • com.apple.webcontent-filter – Web content filter
  • com.apple.dnsSettings.managed – DNS settings (DoH / DoT)
  • com.apple.relay.managed – Network relay configuration
  • com.apple.extensiblesso – Extensible Single Sign-On
  • com.apple.configuration.passcode.settings – DDM: passcode policy
  • com.apple.configuration.softwareupdate.enforcement.specific – DDM: enforced software update
  • com.apple.configuration.services.configuration-files – DDM: service configuration files
  • com.apple.configuration.management.status-subscriptions – DDM: status subscriptions
  • com.apple.activation.simple – DDM: simple activation predicate
  • com.apple.management.organization-info – DDM: organization information