Posted on 06-08-2023 12:17 PM
Aloha All,
We are a K-12 located in Hawaii. At this time, we are prepping for Summer School, which begins next week. We have been able to set up iPad Air 4 as shared devices for the past year. Our requirements have grown beyond our inventory and are trying to set up iPad Air 3 to accommodate the excess.
Following the same steps that we've done in the past, we are able to get to the Sign In screen which takes us to our SSO landing page. After entering the account password, it kicks back to the Sign In screen with a pop-up message "Sign In on a Managed Device. This account can only be used on a device managed by your organization." The most confusing part is that we are able to log in on an Air 4 with that same account.
We have unsuccessfully tried to set up iPad Air 3 and iPad Pro 12.9 Gen3 thus far. New Air 4 set ups go through just fine. Any help or thoughts would be appreciated. Thank you!
Posted on 06-09-2023 12:17 PM
I believe there is a requirement that the ipad and the user be members of the same Apple School Manager instance. Is it possible that the ipads rejecting the sign-in are not in your ASM?
Jamf can manage devices from multiple ASM instances - but the rules for users and shared ipads are same ASM instance.
We ran into this 1-2 years ago during a shared ipad pilot project so if anything changed I am sure someone on this list will chime in. Since then, when we purchase devices, we have our county level purchasing org specify that the devices get added to OUR ASM portal and all is good. Definitely a live and learn experience for us.
I believe there are ways to manually add devices to your ASM so that might be one option to explore. Depending on your situation, an option might be to use the older ipads with youngest students with out shared mode and logins - then find a way to match their user needs to a un-shared device config. They could still sign-in to Apps or web based learning as themselves, just no signin for the device itself.
Posted on 06-09-2023 12:34 PM
Thanks bzuckrow, we have verified that all the users and devices are in the same instance of ASM. We've also double checked to make sure that all of these devices are pointing to the same MDM.
Just to add in another oddity, yesterday we were able to successfully configure an 9th Gen iPad with the same share setup. More and more it seems like something is preventing communication with certain device models.