Fight for IP Reporting (Apple)

dmccluskey
Contributor II

Just to be clear this is not a JAMF issue or any MDM issue. This is an apple issue and unless people speak up by opening apple tickets or feedback cases or talking with their apple engineer, apple will not take this seriously.

If you as system engineer of your environment would like IP addresses reported from your devices please feel free to use as much or as little of my argument to apple from my ticket I opened with them.

 

-----------------------

I am writing to advocate for the inclusion of IP address reporting within MDM solutions for devices supervised under the DEP for iOS, macOS, visionOS, and tvOS.

The ability to report IP addresses is not merely a desirable feature; it is an essential capability for enterprises to gain a comprehensive understanding of their devices and network environment. This functionality will significantly enhance our ability to scope and troubleshoot Apple devices effectively. Currently, the process involves multiple teams and systems to ascertain a device's IP address, which requires first obtaining its MAC address via MDM and then collaborating with other teams to translate that MAC address into an IP address.

By enabling IP address reporting, we can approximate a device's location, which is particularly advantageous in extensive environments, such as our hospital system, which encompasses numerous regional buildings across various cities. The inclusion of IP addresses can facilitate advanced scoping for operating system rollouts based on specific buildings or areas within a building. Furthermore, this capability will allow us to optimize deployment timing, minimizing network congestion.

Advanced IP scoping will also enable MDM functions that support devices moving across buildings. For instance, should devices transition between locations, we could dynamically add or remove specific applications or web clips relevant to that building.

In our setting with over 10,000 devices, including iPads and iPhones, we frequently encounter situations where devices are misplaced in desk drawers or other unconventional locations. When a device is reported lost, activating lost mode may prove futile if the device's battery has already drained. However, having the IP address reported as its last known location would provide valuable insight into where the device might be located.

Given that MDMs already have the capability to collect MAC addresses and that mobile applications can retrieve local device IPs, there is no justifiable reason for MDM solutions to lack the ability to report IP addresses.

Additionally, it is noteworthy that competing operating systems, such as Android and Windows, already permit MDMs to collect device IP addresses. This feature is a substantial asset that can significantly enhance operational efficiency for any enterprise environment.

I urge you to consider the implementation of IP address reporting in our MDM solutions to strengthen our device management capabilities.

Thank you for your attention to this matter.

images.jpg

0 REPLIES 0