Skip to content

Create a DEP Profile

A DEP profile tells a device from Apple Business Manager how to enroll in CapaInstaller during Setup Assistant. The profile sets the MDM service and Enrollment Configuration the device uses, whether the device is supervised, and which Setup Assistant screens are skipped.

  1. In System Administration, expand Software Accounts → Apple Device Enrollment Programs, and then expand your DEP server.
  2. Right-click Profiles and select Create. The Create DEP Profile dialog opens.
  3. Enter a Name for the profile.
  4. Select the MDM service that devices contact during Setup Assistant.
  5. Select the Enrollment Configuration. It decides which Business Units, groups, and folders the devices are placed in, and how users authenticate.
  6. Check the Enrollment URL. It’s built from the MDM service and the Enrollment Configuration.
  7. Set the enrollment options. See Profile settings.
  8. Under Skip Setup Assistant screens, select the screens that devices skip. See Setup Assistant screens.
  9. Click Ok.

The profile is created in CapaInstaller and at Apple, and it appears under Profiles. To use it, assign it to devices. See Assign DEP Profiles to Devices.

Setting Description Default
Name The name of the profile. Required.
Department Shown on the device during setup, as part of the configuration information.
Support Phone A phone number shown to users who need help during setup.
Support Email An email address shown to users who need help during setup.
MDM service The MDM service the devices contact during Setup Assistant. Required.
Enrollment Configuration Places the devices in Business Units, groups, and folders, and sets the authentication method and enrollment policies. Required.
Supervised Enables supervision during setup. Supervision allows more restrictions and features, such as Single App Mode and web content filtering. iOS and macOS. Selected
Mandatory Devices are enrolled automatically as part of setup. If you clear this option, users can skip enrollment. iOS and macOS. Selected
Removable Users can remove the MDM management profile. You can only clear this option for supervised devices. iOS and macOS. Selected
Multiuser Configures the device as a Shared iPad. Devices that don’t meet the Shared iPad requirements ignore this setting. Cleared
Allow Pairing Devices can be paired with a computer. iOS and macOS. Cleared
Auto Advance Setup tvOS Setup Assistant advances through its screens automatically. tvOS only. Cleared

If the dialog shows a warning icon next to the enrollment URL, the URL of an existing profile no longer matches an MDM service or an Enrollment Configuration. Create a matching MDM service or Enrollment Configuration, or replace the profile with a new one.

Under Platforms Enabled, select iOS/iPadOS, macOS, and tvOS to show the screens that apply to those platforms. Click Checked to select all available screens, or Unchecked to clear them.

A selected screen is skipped during Setup Assistant.

Screen What skipping does Availability
Accessibility Skips the Accessibility pane, only if the Mac is on Ethernet and has downloaded the configuration macOS 11+
Appearance Skips the Choose Your Look screen iOS 13+, macOS 10.14+
Apple ID Skips Apple ID setup iOS 7+, tvOS 10.2+, macOS 10.9+
AppStore Skips the App Store pane iOS 14.3+, macOS 11.1+
Biometric Skips biometric setup iOS 8.1+, macOS 10.12.4+
Device To Device Migration Skips the Device to Device Migration pane iOS 13+
Diagnostics Skips the App Analytics pane iOS 7+, tvOS 10.2+, macOS 10.9+
Display Tone Skips Display Tone setup iOS 9.3.2+, macOS 10.13.6+
FileVault Skips the FileVault pane macOS 10.10+
Home Button Sensitivity Skips the Meet the New Home Button screen on devices with that button iOS 10+
iCloud Diagnostics Skips the iCloud Analytics screen macOS 10.12.4+
iCloudStorage Skips the iCloud Documents and Desktop screen macOS 10.13.4+
iMessage and Face Time Skips the iMessage and FaceTime screen iOS 12+
Location Disables Location Services iOS 7+, macOS 10.11+
Messaging Activation Using Phone Number Skips the iMessage pane iOS 10+
Move from Android Removes the Move from Android option from the Restore screen, if that screen isn’t skipped iOS 9+
On Boarding Skips the informational screens for user education iOS 11 to 13.6
Passcode Hides and disables the passcode pane iOS 7+
Payment Skips Apple Pay setup iOS 8.1+, macOS 10.12.4+
Privacy Skips the privacy pane iOS 11.3+, tvOS 11.3+, macOS 10.13.4+
Restore Completed Skips the Restore Completed pane iOS 14+
Restore from backup Disables restoring from backup iOS 7+, macOS 10.9+
Screen Saver Skips the aerial screen saver screen tvOS 10.2+
Screen Time Skips the Screen Time pane iOS 12+, macOS 10.15+
SIM Setup Skips the add cellular plan pane iOS 12+
Siri Disables Siri iOS 7+, tvOS 10.2+, macOS 10.12+
Software Update Skips the mandatory software update screen iOS 12+
Tap To Setup Skips the option to set up Apple TV with an iOS device tvOS 10.2+
Terms and Conditions Skips Terms and Conditions iOS 7+, tvOS 10.2+, macOS 10.9+
TV Home Screen Sync Skips the home screen layout sync screen tvOS 11+
TV Provider Sign In Skips the TV provider sign-in screen tvOS 11+
TV Room Skips the Where Is This Apple TV? screen tvOS 11.4+
Unlock with Watch Skips the Unlock Your Mac with Apple Watch pane macOS 12+
Update Completed Skips the Software Update Complete pane iOS 14+
Watch Migration Skips the watch migration screen iOS 11+
Welcome Skips the Get Started pane iOS 13+
Zoom Skips zoom setup iOS 8.3+

Keyboard and Registration are deprecated by Apple and can’t be selected in new profiles.

Right-click a profile under Profiles:

  • Modify opens the profile for editing. When you click Ok, the profile is updated in CapaInstaller and at Apple.
  • View shows the profile settings without editing.
  • Delete deletes the profile. If the profile is assigned to devices, it’s created again during the next synchronization with Apple.
  • Synchronize with Apple fetches the profiles from Apple now.