Device Pre-Enrollment
Pre-enrollment lets an admin enter device types, identifier types, and device identifiers, then add manual labels that will cause any associated policies to automatically deploy configurations. An admin also has the option to pre-assign users to devices during pre-enrollment.
Once imported, the configurations are ready for automatic deployment when the end user enrolls the device. Note that if the pre-enrolled device has been assigned a smart label, configurations from policies associated with that label will be deployed during enrollment.

Android
-
Android 5.0+ (Work profile enrollments)
-
Android 6.0+ (Fully managed afw#kace enrollments)
-
Android 8.0+ (Zero-touch enrollments)
Apple
-
iOS 8.0+ (Personal and supervised devices)
-
iOS 7.0+ (DEP enrollments)
-
iOS 11.0+ (Enrollment using Apple Configurator 2)
-
iPadOS 13.0+
-
macOS 10.13+ (Enrollments)
-
tvOS 10.2+
Windows
-
Windows Professional 1709 or later *
-
Windows Enterprise 1709 or later *
-
Autopilot and Azure Domain Joins require Azure AD P2
Browsers
-
Google Chrome 49+
-
Microsoft IE 11+
-
Microsoft Edge 13+ (Not supported on mobile devices.)
-
Mozilla Firefox 45+
-
Apple Safari 12+ (Mac only)
Note: System-provided mobile administrative applications are not currently available.
To pre-enroll and import devices:
- Go to Devices tab in top nagivation.
- Click Enrollment Options, then select Pre-Enroll Devices.
- Fill in the form regarding:
- Once the form is complete, click Import.
Note: For iOS and macOS, only serial numbers may be used as an identifier type. For Android, an admin can provide a serial number, IMEI, or MEID as an identifier type.
Tip: You can use pre-enrollment to deploy kiosk and passcode restrictions during the enrollment process.