To the best of my knowledge, there's no way to bypass it for anything installed through the Apple App Store, whether its installed directly from there or if you have VPP licensing and are pushing it through self service (which just redirects to the app store anyway).
We handle it by having our users set up an apple account with their work email address, and leverage Jamf policies/profiles to make sure most iCloud features and backups are forcibly disabled. That way we don't end up with any unexpected activation locks on hardware or company files being backed up to iCloud.
It's not perfect from a security/identity management perspective but it's the best we can get with the way Apple handles app updates. It's ultimately up to the individual app developers whether or not they release in a way we can package ourselves for self service or *only* distribute through the App Store.
To the best of my knowledge, there's no way to bypass it for anything installed through the Apple App Store, whether its installed directly from there or if you have VPP licensing and are pushing it through self service (which just redirects to the app store anyway).
We handle it by having our users set up an apple account with their work email address, and leverage Jamf policies/profiles to make sure most iCloud features and backups are forcibly disabled. That way we don't end up with any unexpected activation locks on hardware or company files being backed up to iCloud.
It's not perfect from a security/identity management perspective but it's the best we can get with the way Apple handles app updates. It's ultimately up to the individual app developers whether or not they release in a way we can package ourselves for self service or *only* distribute through the App Store.
Thank you quip_MDavison! Not sure why I didn't consider the Devs just using their work emails. I also have locked down any icloud features so I'm not worried about that. Appreciate you!
If you are deploying VPP apps through Jamf, and are assigning apps to devices instead of users -
Make sure you have ticked "Assign Content Purchased in Volume" in Managed Distribution, and un-ticked "Free - App is free" on the General tab. We do this for all apps whether they are paid or not. No AppleID required.
