Everything you need to manage Apple devices
From enrollment to compliance, Visir gives you complete control over your iPhone, iPad, and Mac fleet.
Product capabilities built for Apple operations
Enrollment
Device Enrollment
Multiple enrollment paths to fit any deployment scenario. From zero-touch with Apple Business Manager to manual QR-code enrollment for BYOD.
Configuration
Configuration Profiles & DDM
Manage devices with traditional MDM profiles or modern Declarative Device Management. Build configurations visually — no XML editing needed.
Apps
App Management
Deploy and manage applications across your fleet. Integration with Apple's VPP and Apps & Books for licensed app distribution.
Supporting capabilities for day-two operations
Beyond the core workflows, Visir gives teams the organizational controls and policy depth needed to run Apple operations reliably at scale.
Operations
Remote Commands
Execute commands on any managed device instantly. Every command is tracked from request through completion with full audit trail.
- Device Information query
- Lock, Restart, Shutdown, Erase/Wipe
- Return to Service (erase + auto-re-enroll)
- Install/remove profiles and apps remotely
Organization
Smart Tags & Blueprints
Organize devices dynamically with rule-based smart tags. Create policies that automatically apply to devices matching your criteria.
- Smart tags with dynamic rule evaluation
- Manual tags for explicit device grouping
- System tags seeded per tenant
- Tag-based profile and app assignment
Security
Device Restrictions
Enforce granular security policies with 130+ Apple restriction keys. Full supervision awareness — know exactly which restrictions require supervised mode.
- 130+ restriction keys from Apple's MDM spec
- Supervision requirement indicators
- Organized by category: functionality, apps, media, network
- Restriction profiles assigned via tags or locations
Audit Logging
Every admin action is recorded with structured metadata. Know who did what, when, and to which device — with full resource tracking.
- Structured events with resource type, ID, and name
- JSONB metadata for rich context
- Dashboard activity feed for at-a-glance monitoring
- Location-scoped audit entries
- Filterable by resource type, user, and date range
Certificate Management
Automated certificate lifecycle management. SCEP CA auto-initializes, certs renew before expiry, and you get alerts before anything breaks.
- SCEP CA with auto-initialization
- Certificate expiry detection and alerting
- Guided renewal workflow for APNs and push certs
- All private keys encrypted at rest (AES-256-GCM)
- Token lifecycle tracking for ABM/ADE
Multi-Network Management
Manage devices across multiple locations or networks from a single console. Scope policies, profiles, and views by network.
- Location-based organizational scoping
- Network-specific profile and policy assignment
- Per-location check-in health intervals
- Consolidated or filtered fleet views
RBAC & Multi-tenancy
Enterprise-grade access control with four built-in roles and complete tenant isolation. Every query is tenant-scoped — no data leaks, guaranteed.
- Four roles: Owner, Admin, Helpdesk, ReadOnly
- Location-scoped user access
- Complete tenant isolation at the database level
- MFA/TOTP for admin accounts
- Platform admin for multi-tenant management
Ready to modernize your Apple device management?
See how Visir fits your enrollment, policy, compliance, and operations workflow.