Software Update:Enforcement:Specific ()

The declaration to configure a software update enforcement policy for a specific OS release.

iOS(17.0)macOS(14.0)tvOS(18.4)visionOS(26.0)
Branch: release

Settings (4)

SettingTypeRequiredDefaultManual InstallSupported OS
Target OS version
TargetOSVersion
The target OS version to update the device to by the appropriate time. This is the OS version number, for example, `16.1`.
stringrequired—
✓Yes
iOS (17.0+)macOS (14.0+)tvOS (18.4+)visionOS (26.0+)
Target build version
TargetBuildVersion
The target build version to update the device to by the appropriate time, for example, `20A242`. Use the build version for testing during seeding periods. The build version can include a supplemental version identifier, for example, `20A242a`.
stringoptional—
✓Yes
iOS (17.0+)macOS (14.0+)tvOS (18.4+)visionOS (26.0+)
Target local date time
TargetLocalDateTime
The local date time value that specifies when to force install the software update. Use the format `yyyy-mm-ddThh:mm:ss`, which is derived from RFC 3339 but doesn't include a time zone offset or fractional seconds. If the user doesn't trigger the software update before this time, the device force installs it.
stringrequired—
✓Yes
iOS (17.0+)macOS (14.0+)tvOS (18.4+)visionOS (26.0+)
Details URL
DetailsURL
The URL of a web page that shows details that the organization provides about the enforced software update.
stringoptional—
✓Yes
iOS (17.0+)macOS (14.0+)tvOS (18.4+)visionOS (26.0+)

Apple MDM & DDM Policy Explorer

Explore the full catalogue of Apple Mobile Device Management (MDM) and Declarative Device Management (DDM) policies for macOS and iOS. Search, filter, and reference policy keys for use with Microsoft Intune, Jamf, or any standards-compliant MDM solution.

Reference: policy categories & common keys

Policy categories

  • Configuration Profile
  • Declarative Configuration
  • Declarative Activation
  • Declarative Asset
  • Declarative Management

Common policy keys

  • com.apple.wifi.managed – Wi-Fi network configuration
  • com.apple.vpn.managed – VPN configuration
  • com.apple.applicationaccess – App and feature restrictions
  • com.apple.security.pkcs1 – Certificate (PKCS#1) payload
  • com.apple.security.pkcs12 – Identity certificate (PKCS#12) payload
  • com.apple.security.scep – SCEP certificate enrolment
  • com.apple.mail.managed – Mail account configuration
  • com.apple.eas.account – Exchange ActiveSync account
  • com.apple.MCX – Managed Client (macOS) preferences
  • com.apple.MCX.FileVault2 – FileVault 2 disk encryption
  • com.apple.dock – macOS Dock configuration
  • com.apple.screensaver – Screensaver configuration
  • com.apple.loginwindow – macOS login window configuration
  • com.apple.systempolicy.managed – Gatekeeper / system policy
  • com.apple.systempreferences – System Preferences pane restrictions
  • com.apple.SoftwareUpdate – Software update behaviour
  • com.apple.TCC.configuration-profile-policy – Privacy Preferences Policy Control (PPPC)
  • com.apple.notificationsettings – Per-app notification settings
  • com.apple.webcontent-filter – Web content filter
  • com.apple.dnsSettings.managed – DNS settings (DoH / DoT)
  • com.apple.relay.managed – Network relay configuration
  • com.apple.extensiblesso – Extensible Single Sign-On
  • com.apple.configuration.passcode.settings – DDM: passcode policy
  • com.apple.configuration.softwareupdate.enforcement.specific – DDM: enforced software update
  • com.apple.configuration.services.configuration-files – DDM: service configuration files
  • com.apple.configuration.management.status-subscriptions – DDM: status subscriptions
  • com.apple.activation.simple – DDM: simple activation predicate
  • com.apple.management.organization-info – DDM: organization information