# Apple Configurator Enrollment for iOS: The Complete Guide

 The **Apple Configurator enrollment for iOS** method uses a Mac computer to physically tether devices into Hexnode UEM. This method is primarily used to apply **Supervision** status to devices that are not eligible for Automated Device Enrollment (ADE) or when an organization needs to manage small batches of devices locally.

1. What is Apple Configurator Enrollment?
-----------------------------------------

 Apple Configurator enrollment is a **tethered** process that allows an administrator to apply a configuration profile to an iOS/iPadOS device via a USB connection to a Mac running the Apple Configurator app.

- **Primary Outcome:** It forces the device into **[Supervised Mode](https://www.hexnode.com/mobile-device-management/help/ios-supervised-mode/)**, enabling advanced security and management features.
- **Data Loss:** This process involves a **full device wipe**, meaning all existing data is erased.

2. Essential Prerequisites
--------------------------

The following assets and configurations must be in place before beginning the enrollment process:

PrerequisiteDetail**MDM Configuration**A valid **Apple Push Notification service (APNs) Certificate** must be configured in the Hexnode UEM console.**VPP App Integration**The Hexnode UEM app must be “purchased” for free via **[Apple’s Volume Purchase Program (VPP)](https://www.hexnode.com/mobile-device-management/help/apple-volume-purchase-program/)** and synced with the Hexnode UEM portal.

 Note: 
 Purchasing the Hexnode UEM app via Apple Business/VPP ensures that the app installs automatically and silently during enrollment.

 

 **Hardware/Software**A Mac computer running **Apple Configurator** latest version is recommended.**Network Profile**A **Wi-Fi Configuration Profile** must be created in Apple Configurator to allow the supervised device to connect to the network over the air after the wipe.**Device Status**The device must be in an **unactivated state**, meaning it should be fully erased or brand new.3. Enrollment Procedure
-----------------------

 The enrollment procedure involves three main phases: defining the necessary profiles, preparing the device configuration using a Blueprint, and applying the final enrollment.

### Phase A: Create Wi-Fi Profile and Blueprint

This phase defines the network settings and bundles the configurations into a reusable Blueprint.

1. **Create Wi-Fi Profile:** Within Apple Configurator, create a new profile defining the corporate Wi-Fi network’s SSID and security credentials. 
    1. Open Apple Configurator.
    2. Click on **File > New Profile**.  [ ![Option to create new profile](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Create-new-profile.png "Create new profile")
         ](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Create-new-profile.png)
    3. Give a name to the profile. All other fields are optional.
    4. Select the **Security type** as **With Authorization** and provide a password. Set **Automatically Remove Profile** as **Never**.  [ ![Options to customize the profile details](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Customizing-profile-details.png "Customizing profile details")
         ](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Customizing-profile-details.png)
    5. Select **Wi-Fi** from the left menu and click **Configure**.  [ ![Option to select Wi-Fi profile](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Select-Wi-Fi-profile.png "Select Wi-Fi profile")
         ](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Select-Wi-Fi-profile.png)
    6. Give the name of the Wi-Fi network at **Service Set Identifier (SSID)**.
    7. Select **Auto join**.
    8. Configure the **Proxy Setup** and select the **Security Type**.
    9. Provide the **Wi-Fi password**.
    10. Select **Network Type** as **Standard**.  [ ![Option to configure Wi-Fi for Apple Configurator MDM enrollment](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Configuring-Wi-Fi-profile-for-apple-configurator-mdm-enrollment.png "Configuring Wi-Fi profile for Apple Configurator MDM enrollment")
         ](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Configuring-Wi-Fi-profile-for-apple-configurator-mdm-enrollment.png)
    11. Click on **File** and **Save** the profile.  [ ![Option to save the configured Wi-Fi profile](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Save-the-Wi-Fi-profile.png "Save the Wi-Fi profile")
         ](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Save-the-Wi-Fi-profile.png)
        
         [ ![Save the configured Wi-Fi profile on the device](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Name-the-file-and-save.png "Name the file and save")
         ](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Name-the-file-and-save.png)
2. **Create Blueprint:** Create a new Blueprint within Apple Configurator. Blueprints are templates used to quickly apply configurations to multiple devices. 
    1. On the Apple Configurator window, click on **File > New Blueprint**.  [ ![Option to create new blueprint for Apple Configurator MDM enrollment](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Create-new-blueprint-for-apple-configurator-mdm-enrollment.png "Create new blueprint for Apple Configurator MDM enrollment")
         ](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Create-new-blueprint-for-apple-configurator-mdm-enrollment.png)
    2. Name the Blueprint.  [ ![Name the created blueprint](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Name-the-blueprint.png "Name the blueprint")
         ](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Name-the-blueprint.png)
    3. Select the created Blueprint, click on **Add > Profiles**, select the Wi-Fi profile you created earlier, and click **Add**.  [ ![Option to add the created Wi-Fi profile to the blueprint](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Add-the-Wi-Fi-profile-to-blueprint.png "Add the Wi-Fi profile to blueprint")
         ](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Add-the-Wi-Fi-profile-to-blueprint.png)
        
         [ ![Select the Wi-Fi profile](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Select-the-Wi-Fi-profile.png "Select the Wi-Fi profile")
         ](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Select-the-Wi-Fi-profile.png)
        
         [ ![The chosen Wi-Fi profile is being added to the blueprint](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Add-the-Wi-Fi-profile-to-the-blueprint.png "Add the Wi-Fi profile to the blueprint")
         ](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Add-the-Wi-Fi-profile-to-the-blueprint.png)

### Phase B: Configure Preparation Settings and Apply Blueprint

This phase links the Blueprint to the Hexnode UEM server and initiates the device wipe and supervision process.

1. **Prepare the Device:** Select the Blueprint and begin the preparation process. Configure the following options in the wizard: 
    1. **Configuration:** Select **Manual**.  [ ![Select the configuration type as manual](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Prepare-the-blueprint-select-the-configuration-type-as-manual.png "Prepare the blueprint - select the configuration type as manual")
         ](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Prepare-the-blueprint-select-the-configuration-type-as-manual.png)
    2. **MDM Server:** Select **New Server** and enter the Hexnode UEM server enrollment URL, for example, `https://portalname.hexnodemdm.com/enroll`.  [ ![Select a new server to enroll in Hexnode UEM](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Prepare-the-blueprint-select-new-server.png "Prepare the blueprint - select new server")
         ](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Prepare-the-blueprint-select-new-server.png)
    3. **Supervision:** Ensure the **Supervise devices** option is checked.
    4. **Organization:** Enter the required organizational details, such as name, department, and address.
2. **Setup Assistant:** Choose the specific **Setup Assistant steps** you want the end user to skip after the wipe, such as Apple ID and Diagnostics.  [ ![Choose the iOS Setup Assistant steps you would like to display](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Configure-iOS-setup-assistant.png "Configure iOS Setup Assistant")
     ](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Configure-iOS-setup-assistant.png)
    
     [ ![The blueprint is being prepared according to the configured settings](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Prepare-the-configured-blueprint.png "Prepare the configured blueprint")
     ](https://cdn.hexnode.com/mobile-device-management/help/wp-content/uploads/2025/05/Prepare-the-configured-blueprint.png)
3. **Connect and Apply:** Physically connect the iOS devices to the Mac via USB. Select the devices and apply the Blueprint to initiate the wipe and supervision.

### Phase C: Supervision and Final Enrollment

The process initiates a device wipe and applies the supervision profile.

1. **Device Wipe:** Apple Configurator will automatically erase all content and settings on the device.
2. **Supervision:** The device is configured into **Supervised Mode** with the Hexnode UEM server details.
3. **Wi-Fi Connection:** The device restarts and automatically connects to the pre-configured Wi-Fi network from the Blueprint.
4. **Final Enrollment:** The Hexnode UEM profile is downloaded and installed over the air. The user may be prompted for authentication credentials to complete the final enrollment step, depending on the server settings.

4. Comparison to Automated Device Enrollment (ADE)
--------------------------------------------------

While both methods achieve Supervision, there are key distinctions relevant to enterprise scale.

FeatureApple Configurator EnrollmentAutomated Device Enrollment (ADE)Connection Type**Tethered**, requires physical USB connection to a Mac.**Over-the-Air (OTA)**, zero-touch process.ScaleBest for **small batches** or ineligible devices.Best for **bulk deployment** and large corporate fleets.Device SourceAny new or erased device.Only devices purchased through or added to **Apple Business/School Manager**.SetupRequires creating and storing configuration profiles locally on the Mac via **Blueprints**.Configuration is managed remotely via Apple Business Manager or Apple School Manager.