<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: HOW TO: Using Blueprints to automate the preparing of iOS devices / WiFi profiles, etc in Endpoint Security</title>
    <link>https://community.cisco.com/t5/endpoint-security/how-to-using-blueprints-to-automate-the-preparing-of-ios-devices/m-p/5420164#M10495</link>
    <description>&lt;P&gt;&lt;SPAN&gt;EGG FOUND!&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Fri, 14 Apr 2023 11:21:22 GMT</pubDate>
    <dc:creator>MerryAki</dc:creator>
    <dc:date>2023-04-14T11:21:22Z</dc:date>
    <item>
      <title>HOW TO: Using Blueprints to automate the preparing of iOS devices / WiFi profiles, etc</title>
      <link>https://community.cisco.com/t5/endpoint-security/how-to-using-blueprints-to-automate-the-preparing-of-ios-devices/m-p/5420163#M10494</link>
      <description>&lt;P&gt;Hello all.&lt;/P&gt;

&lt;P&gt;Prompted by a discussion last week with a customer, I wanted to put together a guide on how to use the &lt;STRONG&gt;Blueprint&lt;/STRONG&gt; feature of Apple's Apple Configurator to simply and automate the preparing of devices / adding to Automated Device Enrollment&lt;/P&gt;

&lt;P&gt;So, what is a Blueprint: Essentially, it's a configuration of multiple items that you'd normally have to do manually, such as adding a custom app, WiFi profile and or enrolling / adding to ADE&lt;/P&gt;

&lt;P&gt;You'll need:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;A macOS device&lt;/LI&gt;
&lt;LI&gt;the latest version of Apple Configurator installed (it's available in the App Store)&lt;/LI&gt;
&lt;LI&gt;a test device&lt;/LI&gt;
&lt;LI&gt;a lightning to USB cable&lt;/LI&gt;
&lt;/UL&gt;

&lt;P&gt;I'm going to assume that nothing is configured on Apple Configurator for this guide.&lt;/P&gt;

&lt;H2&gt;Configure Organisation / MDM Server in Apple Configurator (AC):&lt;/H2&gt;
&lt;P&gt;Open AC&lt;/P&gt;

&lt;P&gt;Click &lt;STRONG&gt;Apple Configurator &amp;gt; Settings&lt;/STRONG&gt; on the Menu bar&lt;/P&gt;

&lt;P&gt;This pop up box should appear:&lt;/P&gt;

&lt;P&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2023-04-03 at 9.58.49 AM.png" style="width: 400px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.png"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/263616i90419C9D92A11481/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;

&lt;P&gt;Firstly, click on &lt;STRONG&gt;Organizations&lt;/STRONG&gt;&lt;/P&gt;

&lt;P&gt;If you don't already have one configured, like this:&lt;/P&gt;

&lt;P&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2023-04-03 at 9.45.26 AM.png" style="width: 400px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.png"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/263614iDA9497A130545835/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;

&lt;P&gt;Click on the &lt;STRONG&gt; +&lt;/STRONG&gt; at the bottom of the screen. There should now be a small wizard to create an Organization:&lt;/P&gt;

&lt;P&gt;Click &lt;STRONG&gt;Next&lt;/STRONG&gt;, then enter:&lt;/P&gt;

&lt;UL&gt;
&lt;LI&gt;The name of the Organization&lt;/LI&gt;
&lt;LI&gt;Phone, email address and address are optional&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;Click &lt;STRONG&gt;next&lt;/STRONG&gt;, then, when prompted, enter your username and address for the Mac and it should save&lt;/P&gt;

&lt;P&gt;Next, we will create an MDM server. From the Settings window above, click&lt;STRONG&gt; Servers&lt;/STRONG&gt;&lt;/P&gt;

&lt;P&gt;Click on the &lt;STRONG&gt;+&lt;/STRONG&gt; at the bottom of the screen. There should now be a small wizard to create an MDM Server:&lt;/P&gt;

&lt;P&gt;Click &lt;STRONG&gt;next&lt;/STRONG&gt;, then, when prompted, type in a name.&lt;/P&gt;

&lt;P&gt;For &lt;STRONG&gt;Host name or URL&lt;/STRONG&gt;, go to the Meraki Dashboard. Click &lt;STRONG&gt;Systems Manager &amp;gt; Add devices &amp;gt; iOS (or macOS):&lt;/STRONG&gt;&lt;/P&gt;

&lt;P&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2023-04-03 at 9.47.44 AM.png" style="width: 400px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.png"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/263615iC8ABFB88EF0539AA/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;

&lt;P&gt;Copy the 2.0 URL&lt;/P&gt;

&lt;P&gt;Go back to Apple Configurator and paste in the URL&lt;/P&gt;

&lt;P&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2023-04-03 at 10.06.42 AM.png" style="width: 400px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.png"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/263618iD90434CCA634854D/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;

&lt;P&gt;Click &lt;STRONG&gt;Next&lt;/STRONG&gt;. The screen may pause for a second whilst Apple Configurator gets the &lt;STRONG&gt;Trust Anchors&lt;/STRONG&gt; from the MDM server, and then the screen updates to show the newly configured MDM server&lt;/P&gt;

&lt;H2&gt;Creating a Blueprint&lt;/H2&gt;

&lt;P&gt;In Apple Configurator, click &lt;STRONG&gt;Blueprints&lt;/STRONG&gt;, then &lt;STRONG&gt;Edit Blueprints&lt;/STRONG&gt;&lt;/P&gt;

&lt;P&gt;From the window that appears, click &lt;STRONG&gt;New&lt;/STRONG&gt; in the bottom left hand corner. Give this a name&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2023-04-03 at 10.11.17 AM.png" style="width: 400px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.png"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/263617i42A11FDA9E5FF279/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;

&lt;P&gt;You can now double click it to edit it:&lt;/P&gt;

&lt;P&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2023-04-03 at 10.12.11 AM.png" style="width: 400px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.png"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/263619iEC8F3D8EA657DAB6/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;
&lt;P&gt;Things that you can do:&lt;/P&gt;

&lt;H3&gt;Add an App / Profile&lt;/H3&gt;

&lt;P&gt;If you want to add a custom app or WiFi profile:&lt;/P&gt;

&lt;P&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2023-04-03 at 10.13.11 AM.png" style="width: 400px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.png"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/263620i4538AFC15A3E65AC/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;

&lt;P&gt; Click the &lt;STRONG&gt;+&lt;/STRONG&gt; then chose Apps or Profiles.&lt;/P&gt;

&lt;P&gt;&lt;STRONG&gt;Note: &lt;/STRONG&gt;Adding a WiFi profile, even if you add one within Systems Manager, is good idea, as sometimes the device can fail to enroll&lt;/P&gt;

&lt;H3&gt;Prepare&lt;/H3&gt;
&lt;P&gt;This allows you to either Add the device to ADE and / or enroll the device.&lt;/P&gt;

&lt;P&gt;Choose your first action: Whether to add to ADE, and whether you wish to allow the device to connect to other Mac devices after enrollment via USB&lt;/P&gt;

&lt;P&gt;&lt;STRONG&gt;NOTE: &lt;/STRONG&gt;You'll only be able to change this setting by wiping the device&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;
&lt;P&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2023-04-03 at 9.49.57 AM.png" style="width: 400px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.png"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/263621i0354C7A14045DA0F/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;

&lt;P&gt;The next step allows you to chose the MDM server you wish to use:&lt;/P&gt;

&lt;P&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2023-04-03 at 9.50.10 AM.png" style="width: 400px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.png"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/263624iA15DB41AF4B76689/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;

&lt;P&gt;Select the MDM server we created earlier&lt;/P&gt;

&lt;P&gt;The next step asks which organization we wish to assign the device to: Chose the organization you created earlier&lt;/P&gt;

&lt;P&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2023-04-03 at 9.50.17 AM.png" style="width: 400px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.png"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/263623i9B11DBB8D51513C3/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;

&lt;P&gt;And the last step allows us to create an ADE profile that hides / shows the various setup screens&lt;/P&gt;

&lt;P&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2023-04-03 at 9.50.23 AM.png" style="width: 400px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.png"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/263622iBB89B18F45488274/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;
&lt;P&gt;When finished, click &lt;STRONG&gt;Prepare&lt;/STRONG&gt; This won't actually prepare any connected devices&lt;/P&gt;

&lt;H2&gt;Running the Blueprint&lt;/H2&gt;
&lt;P&gt;When you're ready to prepare and configure your devices, select the devices from the list in Apple Configurator, click &lt;STRONG&gt;Blueprints&lt;/STRONG&gt;, then select the Blueprint you created earlier:&lt;/P&gt;


&lt;P&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2023-04-03 at 9.50.47 AM.png" style="width: 400px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.png"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/263625iB2554DAD16B048EF/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;





&lt;H2&gt; &lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-left" image-alt="The gnomes' hidden egg has been found!" style="width: 100px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.png"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/263626iD99D8E383DFE9DA4/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;SPAN class="lia-inline-image-caption" onclick="event.preventDefault();"&gt;The gnomes' hidden egg has been found!&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/H2&gt;

&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Mon, 03 Apr 2023 09:22:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/how-to-using-blueprints-to-automate-the-preparing-of-ios-devices/m-p/5420163#M10494</guid>
      <dc:creator>Arthur Dent</dc:creator>
      <dc:date>2023-04-03T09:22:38Z</dc:date>
    </item>
    <item>
      <title>Re: HOW TO: Using Blueprints to automate the preparing of iOS devices / WiFi profiles, etc</title>
      <link>https://community.cisco.com/t5/endpoint-security/how-to-using-blueprints-to-automate-the-preparing-of-ios-devices/m-p/5420164#M10495</link>
      <description>&lt;P&gt;&lt;SPAN&gt;EGG FOUND!&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 14 Apr 2023 11:21:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/how-to-using-blueprints-to-automate-the-preparing-of-ios-devices/m-p/5420164#M10495</guid>
      <dc:creator>MerryAki</dc:creator>
      <dc:date>2023-04-14T11:21:22Z</dc:date>
    </item>
    <item>
      <title>Re: HOW TO: Using Blueprints to automate the preparing of iOS devices / WiFi profiles, etc</title>
      <link>https://community.cisco.com/t5/endpoint-security/how-to-using-blueprints-to-automate-the-preparing-of-ios-devices/m-p/5420165#M10496</link>
      <description>&lt;P&gt;Egg found!&lt;/P&gt;</description>
      <pubDate>Fri, 14 Apr 2023 11:27:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/how-to-using-blueprints-to-automate-the-preparing-of-ios-devices/m-p/5420165#M10496</guid>
      <dc:creator>Mohsin Barkat</dc:creator>
      <dc:date>2023-04-14T11:27:03Z</dc:date>
    </item>
  </channel>
</rss>

