Category Filter
 
 

Last updated: August 14, 2026

Wi-Fi

This page explains how to configure Wi-Fi settings for Apple TV devices using MDM. Administrators can add multiple Wi-Fi configurations to a single profile, ensuring Apple TV devices automatically connect to any specified network within range and reducing the risk of devices becoming unmanaged. The page covers key profile settings including network identification, security types, enterprise protocol options (TTLS, PEAP, TLS, EAP-FAST), authentication with identity certificates, trusted certificates, and proxy settings. Notably, Wi-Fi networks deployed via MDM cannot be removed or forgotten by end users.

You can configure the Wi-Fi settings and configure protocol settings for Apple TV. To ease the Wi-Fi configuration process, you can add all the required Wi-Fi configurations to a single profile. This will ensure the device connects to any of the specified Wi-Fi networks when in it's vicinity. It also reduces the chances of the device being unmanaged, in case connection to Wi-Fi networks not distributed by MDM, is restricted.

Note: Wi-Fi networks deployed through MDM on Apple devices cannot be removed or forgotten by end users.

PROFILE SETTINGSDESCRIPTION
Wireless Network identificationNetwork identification
Connect to this Wi-Fi automaticallyAutomatically join this Wi-Fi network, on detection
Hidden networkEnable if target network is not broadcasting
Security typeWireless network encryption while connecting
PasswordPassword authentication to connect the Wi-Fi.
Configure Protocol(Can be configured only if Security Type is one amongst WEP Enterprise, WPA/WPA2 Enterprise and Any(Enterprise)
Protocols SupportedChoose the type of protocol
Use Protected Access CredentialEnabling protected access
Provision Protected Access CredentialAllow protected access
Provision PAC anonymouslyEnabling PAC anonymously
Authentication Protocol(Can be configured only if Protocol Supported is TTLS)Select the Authentication Protocol to be used
Configure Authentication(Can be configured only if Security Type is one amongst WEP Enterprise, WPA/WPA2 Enterprise and Any(Enterprise)
User NameUser Name of the device, (%username%)will get the appropriate User Name, mapped to the device
Use per connection PasswordUser password for initial connection
Identity Certificate(Can be configured only if Protocol Supported is TLS/EAP-FAST/TTLS/PEAPSpecify the certificate to be used for Client-based authentication. SCEP certificates can also be utilized for this.
Externally Visible IdentificationVisible identification
CertificateSpecify the CA certificate to be used.
Trusted Certificate(Can be configured only if Security Type is one amongst WEP Enterprise, WPA/WPA2 Enterprise and Any(Enterprise)
Configure Proxy
Proxy SettingsManual or Automatic

Dynamic Variables :

The below mentioned dynamic variables are retrieved from the data that has been provided while enrolling the device.

  • %username% - will get the appropriate user name, mapped to the device

 

Frequently Asked Questions

Can end users remove a Wi-Fi network deployed through MDM?

No. Wi-Fi networks deployed through MDM on Apple devices cannot be removed or forgotten by end users.

Can I add multiple Wi-Fi networks to a single profile?

Yes. Adding all required Wi-Fi configurations to a single profile ensures the device connects automatically to any of the specified networks and reduces the chance of the device becoming unmanaged.

When do I need to configure the Protocol and Authentication sections?

These sections are only required if Security Type is set to WEP Enterprise, WPA/WPA2 Enterprise, or Any (Enterprise).

 

Jump To