I am looking for a way to restrict icloud login on managed macbooks to using managed apple ids only. Does anyone know a way of doing this?
At the moment, even if we give a user a managed apple id, there is nothing we can do to stop them using a personal apple id on company macbooks
thanks
Page 1 / 1
@ssrai20 There is currently no mechanism to require a Managed Apple ID (MAID) be used to when signing in to iCloud. File Feedback with Apple, and if you have an Apple Enterprise account open a case, telling them this is something you require to utilize MAIDs. They did implement a restriction in macOS Sonoma that prevents MAIDs from being used to sign in to iCloud on non-managed Macs.
You can utilize an EA to report what Apple ID was used to sign in to iCloud so you can determine non-MAID users.
There is not a way to restrict this. Not being able to restrict what AppleID's are used to log in to macOS is the main reason we don't use managed AppleID's.
If this will help anyone else looking for advise on this question: September 2025 - we have been notified that the feature has been finally enabled by Apple. We have tested in our environment and proved that it works. You will need to go to ASM\ABM and enable the feature under “Acess Management>Apple Services”
If this will help anyone else looking for advise on this question: September 2025 - we have been notified that the feature has been finally enabled by Apple. We have tested in our environment and proved that it works. You will need to go to ASM\ABM and enable the feature under “Acess Management>Apple Services”
Not sure how this will affect users already logged in with unmanaged apple IDs.