Skip to main content

27 augustus 2026

Implementing Omnissa Access Mobile SSO (for Apple) Authentication for Workspace ONE UEM Managed Apple Mobile Devices

The Omnissa Access Mobile single sign-on (for Apple) authentication method is an implementation of the certificate authentication method for Workspace ONE® UEM (Unified Endpoint Management) managed iOS devices (MDM).

A certificate is deployed in the UEM device profile and is installed on the device when the device is enrolled in device management. When users access their corporate apps and resources, the certificate is automatically presented, eliminating the need for them to re-enter their credentials to open apps on their device.

When you implement Mobile SSO (for Apple) authentication with the Omnissa Access service in the cloud, you use an identity provider that is built into the service to provide access to Mobile SSO (for Apple) authentication.

Note: The Mobile SSO (for Apple) authentication method is the recommended Omnissa Access authentication method to use for iOS devices. If you are using Mobile SSO for iOS authentication, you can migrate to Mobile SSO (for Apple). See How to Migrate from Omnissa Access Mobile SSO (iOS) to Mobile SSO (for Apple) Authentication Method.

Prerequisites to use Mobile SSO (for Apple)

The following are the configuration requirements to use Mobile SSO (for Apple).

  • Omnissa Access Cloud service or Omnissa Access on-premises version 26.07 or later
  • Workspace ONE UEM version 23.08 or later
  • Workspace ONE Intelligent Hub app version 23.06 or later
  • Apple iOS / iPadOS version 13 or later
  • For Omnissa Access on-premises deployments, the Mobile SSO (for Apple) authentication method requires port 17443 (TCP) to be open on Omnissa Access nodes for inbound end user traffic from devices. See the Omnissa Ports and Protocols site for more information.

Workflow to Configure Mobile SSO (for Apple) Authentication

To set up the Mobile SSO (for Apple) authentication method for Workspace ONE UEM Mobile Device Management (MDM) for Apple devices, you configure the following components.

Workspace ONE UEM console
  • Configure Workspace ONE UEM Apple device profile and define the type of UEM certificate to deploy in the Apple iOS devices.
  • Enroll the device with Workspace ONE UEM for mobile device management.
Omnissa Access console
  • Configure the Mobile SSO (for Apple) authentication method and enable the authentication method in the built-in identity provider.
  • Create an access policy that is configured to use the Mobile SSO (for Apple) authenticating method.
Apple devices Apple device is enrolled in the Workspace ONE UEM MDM solution. Enrollment options.
  • Install the Workspace ONE Intelligent Hub app from the Apple store and use the app to enroll the device
  • Browser-based enrollment through the iOS device's built-in Safari browser.
See Enroll iOS Devices in the Workspace ONE UEM documentation set.

Was deze pagina nuttig?

Feedback geven over dit onderwerp

Was dit onderwerp nuttig?

Vermeld geen persoonlijke of vertrouwelijke informatie.

Link genereren…