# Mobile Device Manager Release Notes ## Build 11.2.2500 ### Quarter 1 (March 2026) #### 11.2.2512.05 to 11.2.2602.16 ##### Enhancements 1. Audit logs can now be filtered based on device parameters too, apart from date-range, modules and users. 2. Enhancements have been made to the Security Advisory collection via the Security Settings page. In cases of restricted access or reachability issues, reconfiguration is required. 3. VPN now supports rule-based actions such as Connect, Disconnect, Ignore, and Connect if needed, enabling secure connectivity only when required on iOS devices. 4. Access Management is now supported for Managed Apple Accounts, allowing administrators to restrict sign-ins to managed or supervised devices. 5. Clear app Data and Default App Configuration is now supported for Android Kiosk devices. 6. MDM now displays the previous version details of the profile. 7. MDM now supports .mmpk (Mobile Map Package) files in Content Catalog, enabling the distribution of offline, interactive ArcGIS maps directly to devices. 8. MDM now supports .nwd, .cmf2, .rtn file formats in Content Management. 9. Minor enhancements have been made in device enrollment to strengthen security. ##### Bug fixes 1. Issues with uploading CSV files where domain names contain commas have been fixed. 2. Issues with adding Windows MSI apps to the App Repository have been fixed. ### Quarter 4 (December 2025) #### 11.2.2508.16 to 11.2.2512.04 ##### Features 1. Introducing integration between Mobile Device Manager Plus and Syslog for seamless log forwarding and centralized monitoring. ##### Enhancements 1. Enhancements have been made to the Security Advisory collection via the Security Settings page. In cases of restricted access or reachability issues, reconfiguration is required. 2. You can now configure Always On VPN and VPN Lockdown for other VPN apps by adding them to App Repository on Android devices. 3. File transfers from the secure Work Profile to the Personal space can now be restricted on Android devices. 4. New restrictions have been added to Android App Control, such as blocking app uninstalls, data clearing, force stops, and default resets. 5. The reset settings option is now supported for Android Home Screen Layout customization. 6. Bulk user reassignment via CSV is now supported for Devices under the Managed tab. 7. You can now bulk-add devices to a group by including their UDIDs in a CSV file. 8. The process for configuring Apple User Enrollment is now automated, eliminating the need to manually generate and upload a JSON file. [Learn More](https://www.manageengine.com/mobile-device-management/help/enrollment/mdm_apple_user_enrollment.html) 9. With iOS /iPadOS /macOS 26, MDM supports native device migration, allowing managed devices to move seamlessly from one MDM solution to another. 10. Admins can now apply the latest iOS /iPadOS /macOS 26 restrictions and settings to managed devices, improving compliance and security. 11. You can now initiate or cancel sync for individual directories. 12. Geo Tracking access is now role-based within the Inventory module, providing granular control over who can access location details. ##### Bug fixes 1. Zoho Assist integration for Remote Control is now restricted to Admin-role users for enhanced security. 2. Fixed an issue where Windows SCEP profiles were not applied to devices when certain certificate template names were used. 3. Certificate Common Name can now be used in the domain name field for the Android Wi-Fi profile. 4. Fixed issues with profile and app distribution on Apple devices in specific scenarios. 5. Fixed an issue where Google work accounts were not removed from devices even after the Managed Google Play accounts were deleted from the server. 6. Fixed an issue where app configurations were not removed from iOS devices even after being deleted from the server. 7. Updated AD CS Template Security Recommendations - Review the updated Active Directory Certificate Services (AD CS) template [documentation](https://www.manageengine.com/mobile-device-management/how-to/secure-ndes-certificate-template-permissions.html) used for SCEP certificate distribution, and restrict any additional permissions to prevent unintended certificate usage. ### Quarter 3 (Aug & Sep 2025) #### 11.2.2506.16 to 11.2.2508.15 ##### Features 1. MDM now supports [Dynamic Groups](https://www.manageengine.com/mobile-device-management/help/profile_management/dynamic-groups.html) to automatically categorize devices based on OS, model, device type, and more. ##### Enhancements 1. User-initiated self-enrollment method is now supported for onboarding employee-owned devices. 2. Invite-based enrollment method now supports user authentication through directories such as Zoho Directory, Google Workspace, Okta, and Entra ID. 3. MDM now supports the newly introduced restrictions in iOS 18 and macOS 15, with a focus on managing Apple Intelligence features. 4. MDM MSP now supports global agent rebranding settings for Android devices. 5. The 'Pause Kiosk' command has been moved to Inventory > Recovery Password. 6. Revoke Admin Password has been moved from Android MDM App Settings to Inventory > Recovery Password for better security management. 7. You can now allow Android system apps such as Camera, Gallery, Calendar, Email, Contacts to appear in the Work Profile through the [Workspace Security](https://www.manageengine.com/mobile-device-management/help/profile_management/android/mdm_workspace_security.html) settings in the Android profile. 8. Android [web shortcuts](https://www.manageengine.com/mobile-device-management/help/profile_management/android/mdm_android_webclips.html) can now use the enhanced MDM Secure browser (formerly "Browser with Restricted Access"), allowing you to: - Enforce clearing cache and cookie on every refresh - Restrict copy-paste actions - Enable full-screen mode - Enable desktop mode 9. You can now specify which browser should be used to open a particular [Android web shortcut](https://www.manageengine.com/mobile-device-management/help/profile_management/android/mdm_android_webclips.html). 10. Device passcode and display settings can now be configured as part of [Android Kiosk Mode's custom settings](https://www.manageengine.com/mobile-device-management/help/profile_management/android/android_kiosk.html). 11. You can now prevent users from clearing storage and force stopping specified app(s) using [Android restriction profile](https://www.manageengine.com/mobile-device-management/help/profile_management/android/mdm_android_restrictions.html). 12. You can now set separate wallpapers for portrait and landscape orientations in the [Android Asset Tag profile](https://www.manageengine.com/mobile-device-management/help/profile_management/android/mdm_android_asset_tagging.html). 13. You can now restrict users from accessing personal accounts in the Play Store using the [Android Restriction profile](https://www.manageengine.com/mobile-device-management/help/profile_management/android/mdm_android_restrictions.html). 14. You can now restrict users from adding specific accounts (e.g., Google, Samsung, Gmail Exchange, Samsung Exchange, etc.) using the [Android Restriction profile](https://www.manageengine.com/mobile-device-management/help/profile_management/android/mdm_android_restrictions.html). 15. MDM now supports AD certificate binding for SCEP, enhancing client certificate security. [Learn more](https://support.microsoft.com/en-us/topic/kb5014754-certificate-based-authentication-changes-on-windows-domain-controllers-ad2c23b0-15d8-4340-a468-4d4f3b188f16) 16. Next OS update date is now displayed under Inventory > Device details > OS summary. 17. You can now view the summary of details configured in the OS update policy. 18. Device and user-specific certificate provisioning is now supported under Windows SCEP profile. 19. Key Storage Provider (KSP) can now be configured using the Windows SCEP profile. 20. Pre-installed apps are now displayed under inventory only when a device is enrolled. ##### Bug fixes 1. Incorrect SIM card details previously displayed in the Inventory section have now been fixed. 2. Modifying Remote Control option now redirects to device-specific privacy settings, ensuring proper configuration for personal and corporate devices. 3. Fixed an issue where the domain (mdm.manageengine.com) unreachability banner did not close automatically after the network was restored. 4. Issue in loading the restriction profile while modifying has been fixed. 5. Issue with group assignment for iOS and MacOS Platform during self-enrollment has been fixed. 6. Fixed an issue where scheduled actions set between 12.00 AM and 12:59 AM did not execute. 7. Fixed issues with configuring AD Certificate profile for Mac devices. 8. Fixed an issue where Mac ABM user enrolment failed when routed through the Secure Gateway Server in specific cases. 9. Resolved an error that prevented the Geo-fencing policy template from loading when MSSQL was configured. 10. Fixed an issue where restriction profiles saved as drafts in older versions failed to apply after upgrading to a newer version. --- Due to the extensive length of the original page, the remaining sections continue in the same structured format: - **Quarter 2 (April and May 2025)** — 11.2.2504.15 to 11.2.2506.15 - **Quarter 1 (Jan & Feb 2025)** — 11.1.2408.13 to 11.2.2500.10 - **Quarter 4 (Nov & Dec 2024)** — 11.1.2406.10 to 11.1.2408.12 - **Quarter 3 (Aug, Sep & Oct 2024)** — 11.1.2404.6 to 11.1.2406.9 - **Quarter 2 (Apr, Jun & July 2024)** — 11.1.2401.8 to 11.1.2404.5 - **Quarter 1 (Jan, Feb & Mar 2024)** — 11.1.2400.09 to 11.1.2401.7 ## Build 11.1.2400 - Quarter 4 (Oct, Nov & Dec 2023) — 11.1.2400.1 to 11.1.2400.9 - Quarter 3 (July, Aug & Sep 2023) — 10.1.2307.1 to 10.1.2309.9 - Quarter 2 (Apr, May & Jun 2023) — 10.1.2304.2 to 10.1.2306.3 - Quarter 1 (Jan, Feb & Mar 2023) — 10.1.2301.1 to 10.1.2303.3 ## Build 10.1.2006 - Quarter 2 (Apr, May & Jun 2020) — 92000 to 10.1.2006.12 - Quarter 1 — 91030 to 92000