Platform coverage
Feature matrix by platform
Every capability across iOS, Android, Windows and macOS, by management mode (BYOD, Managed). Based on the Appaloosa admin console.
- Included
- Not available in this mode
- Not supported on this platform
BYOD is available on iOS and Android only; macOS and Windows are managed-only. Availability reflects the Appaloosa admin console.
Summary: capabilities by use case
High-level recap, with the enrollment method for each use case.
| Capability |
iOS
BYOD
|
iOS
Managed
|
Android
BYOD
|
Android
Managed
|
macOS
Managed
|
Windows
Managed
|
|---|---|---|---|---|---|---|
|
Enrollment method
How devices are enrolled. Android managed also QR code, token and Knox Mobile Enrollment (KME); macOS also profile-based.
|
Email/SMS invite | ADE/DEP | Email/SMS invite | Zero-touch / QR / KME | ADE / profile | Per-device / batch |
|
Enrollment profile
The management profile/mode created. Android managed = fully managed, COPE or dedicated/kiosk.
|
Restricted MDM profile | MDM Profile | Work Profile | Fully managed | MDM Profile | MDM enrollment |
|
Disk encryption
Full-disk encryption. Recovery key escrowed in Appaloosa for FileVault (macOS) and BitLocker (Windows).
|
Native | Native | Native | Native | FileVault | BitLocker |
|
Security inventory
Security state (e.g. FileVault status) reported automatically.
|
||||||
|
Kiosk
Single or multi-app locked mode.
|
Single App Mode | Dedicated | ||||
|
Web filter
Domain filtering capability.
|
||||||
|
Advanced profiles / restrictions
Depth of OS-level policy control.
|
partial | |||||
|
Remote support
Seamless remote screen assistance, powered by TeamViewer.
|
||||||
|
eSIM
eSIM provisioning support.
|
||||||
|
Files
Distribute shared files to devices.
|
||||||
|
Dynamic configuration assignment
Your metadata to dynamically target and group configurations.
|
||||||
|
Action history
Log of commands and events sent to the device.
|
||||||
|
App inventory
Apps installed on the device.
|
Swipe
Security & compliance
| Capability |
iOS
BYOD
|
iOS
Managed
|
Android
BYOD
|
Android
Managed
|
macOS
Managed
|
Windows
Managed
|
|---|---|---|---|---|---|---|
|
Passcode / password
Passcode strength, length and lock policy.
|
||||||
|
Disk encryption
Full-disk encryption with recovery-key escrow, stored encrypted in Appaloosa.
|
FileVault | BitLocker | ||||
|
VPN
Configure device or per-app VPN.
|
||||||
|
Certificates
Deploy security certificates.
|
||||||
|
Security posture
React automatically to at-risk devices.
|
||||||
|
Compliance settings
Define compliance rules for access.
|
||||||
|
Data sharing
Control data sharing between apps and profiles.
|
COPE | |||||
|
Account & user management
Restricts which accounts a user can add or remove and controls on-device user/account management. This is a restriction, not account provisioning.
|
||||||
|
Factory Reset Protection
Bind the device to your org after a reset.
|
||||||
|
External storage management
Control USB and external storage.
|
||||||
|
Location
Track and log device location.
|
Swipe
Configuration & policies
| Capability |
iOS
BYOD
|
iOS
Managed
|
Android
BYOD
|
Android
Managed
|
macOS
Managed
|
Windows
Managed
|
|---|---|---|---|---|---|---|
|
Wi-Fi networks
Push corporate Wi-Fi networks to devices and user groups.
|
||||||
|
Accounts
Provisions and pre-configures user accounts on devices (email, calendar, Exchange, CardDAV/CalDAV). This pushes accounts, it does not restrict them.
|
||||||
|
Contact groups
Push shared corporate contact directories.
|
||||||
|
OEM settings
Manufacturer OEM settings (Samsung Knox, Zebra, etc.) on Android; custom configuration profiles (mobileprovision) on iOS and macOS, used as a last resort.
|
mobileprovision | mobileprovision | Samsung Knox, Zebra, etc. | mobileprovision | ||
|
Web filter
Block malicious or unwanted domains.
|
||||||
|
OS update management
Defer and set deadlines for OS updates. On Windows: active hours, block Insider Preview builds, and split feature updates (new Windows versions) from quality updates (security patches) to deploy them independently.
|
||||||
|
Maintenance window
Restrict actions and updates to a time window.
|
||||||
|
Connectivity (Wi-Fi, airplane)
Manage Wi-Fi, airplane mode and radios. On Apple, control Bluetooth and force Wi-Fi on/off via restrictions.
|
||||||
|
Device personalization
Screen and display behavior, plus a custom lock-screen message.
|
Swipe
Applications
| Capability |
iOS
BYOD
|
iOS
Managed
|
Android
BYOD
|
Android
Managed
|
macOS
Managed
|
Windows
Managed
|
|---|---|---|---|---|---|---|
|
Public store apps
Apps from the platform's public store.
|
App Store | App Store | Managed Play | Managed Play | App Store | Store |
|
Private / in-house apps
Your own enterprise apps.
|
.msi | |||||
|
Web apps / web clips
Web shortcuts pushed as apps.
|
||||||
|
Public app license management
Buy and assign public-app licenses in volume (Apple: VPP). Not applicable on Android; not supported on Windows.
|
VPP | VPP | VPP | |||
|
Allow / block apps
Allow or block specific apps (package name on Android, bundle ID / Apple catalog on Apple).
|
||||||
|
App permission management
Manage app runtime permissions (Android).
|
||||||
|
Mandatory (silent) install
Force-install without user action.
|
||||||
|
Self-service (available) install
Users install on demand from the catalog.
|
||||||
|
Target user groups
Assign apps to specific user groups.
|
||||||
|
Block app store access
Blocks access to the public app store: App Store (iOS, macOS), public Google Play (Android), Microsoft Store (Windows).
|
Swipe
Remote actions & management
| Capability |
iOS
BYOD
|
iOS
Managed
|
Android
BYOD
|
Android
Managed
|
macOS
Managed
|
Windows
Managed
|
|---|---|---|---|---|---|---|
|
Wipe
Erase the device (factory reset).
|
||||||
|
Lock device
Remotely lock the screen.
|
||||||
|
Restart
Reboot the device remotely.
|
||||||
|
Enable lost mode
Put a supervised device into lost mode, which also returns its location.
|
||||||
|
Locate
Get the current device location on demand.
|
||||||
|
Location history
View the device location trail.
|
||||||
|
Manage passcode (PIN / clear)
Set or clear the device passcode.
|
||||||
|
Assign eSIM
Provision an eSIM plan to the device.
|
||||||
|
Assign / unassign user
Link or unlink the device owner.
|
||||||
|
BitLocker recovery key
Retrieve the Windows encryption recovery key.
|
||||||
|
Remote support
Seamless remote screen assistance, powered by TeamViewer.
|
Swipe
Manage every platform from one console
Get started today with unrestricted access to our platform and help from our product experts.
Get Started- Free 14-day trial
- Cancel anytime, no questions asked.
- Expert Support
- Get customized and expert onboarding to get started.