Last updated: August 14, 2026
Wi-Fi
This page explains how to configure Wi-Fi settings for Apple TV devices using MDM. Administrators can add multiple Wi-Fi configurations to a single profile, ensuring Apple TV devices automatically connect to any specified network within range and reducing the risk of devices becoming unmanaged. The page covers key profile settings including network identification, security types, enterprise protocol options (TTLS, PEAP, TLS, EAP-FAST), authentication with identity certificates, trusted certificates, and proxy settings. Notably, Wi-Fi networks deployed via MDM cannot be removed or forgotten by end users.
You can configure the Wi-Fi settings and configure protocol settings for Apple TV. To ease the Wi-Fi configuration process, you can add all the required Wi-Fi configurations to a single profile. This will ensure the device connects to any of the specified Wi-Fi networks when in it's vicinity. It also reduces the chances of the device being unmanaged, in case connection to Wi-Fi networks not distributed by MDM, is restricted.
Note: Wi-Fi networks deployed through MDM on Apple devices cannot be removed or forgotten by end users.
| PROFILE SETTINGS | DESCRIPTION |
|---|---|
| Wireless Network identification | Network identification |
| Connect to this Wi-Fi automatically | Automatically join this Wi-Fi network, on detection |
| Hidden network | Enable if target network is not broadcasting |
| Security type | Wireless network encryption while connecting |
| Password | Password authentication to connect the Wi-Fi. |
| Configure Protocol(Can be configured only if Security Type is one amongst WEP Enterprise, WPA/WPA2 Enterprise and Any(Enterprise) | |
| Protocols Supported | Choose the type of protocol |
| Use Protected Access Credential | Enabling protected access |
| Provision Protected Access Credential | Allow protected access |
| Provision PAC anonymously | Enabling PAC anonymously |
| Authentication Protocol(Can be configured only if Protocol Supported is TTLS) | Select the Authentication Protocol to be used |
| Configure Authentication(Can be configured only if Security Type is one amongst WEP Enterprise, WPA/WPA2 Enterprise and Any(Enterprise) | |
| User Name | User Name of the device, (%username%)will get the appropriate User Name, mapped to the device |
| Use per connection Password | User password for initial connection |
| Identity Certificate(Can be configured only if Protocol Supported is TLS/EAP-FAST/TTLS/PEAP | Specify the certificate to be used for Client-based authentication. SCEP certificates can also be utilized for this. |
| Externally Visible Identification | Visible identification |
| Certificate | Specify the CA certificate to be used. |
| Trusted Certificate(Can be configured only if Security Type is one amongst WEP Enterprise, WPA/WPA2 Enterprise and Any(Enterprise) | |
| Configure Proxy | |
| Proxy Settings | Manual or Automatic |
Dynamic Variables :
The below mentioned dynamic variables are retrieved from the data that has been provided while enrolling the device.
- %username% - will get the appropriate user name, mapped to the device
Frequently Asked Questions
Can end users remove a Wi-Fi network deployed through MDM?
No. Wi-Fi networks deployed through MDM on Apple devices cannot be removed or forgotten by end users.
Can I add multiple Wi-Fi networks to a single profile?
Yes. Adding all required Wi-Fi configurations to a single profile ensures the device connects automatically to any of the specified networks and reduces the chance of the device becoming unmanaged.
When do I need to configure the Protocol and Authentication sections?
These sections are only required if Security Type is set to WEP Enterprise, WPA/WPA2 Enterprise, or Any (Enterprise).