GroundControl can manage passcode locked devices by clearing the device’s passcode over-the-air via MDM, an action that requires WiFi connectivity on the device. In the event a passcode-locked device no longer has active connectivity, for example after a reboot, these devices can become unpaired and recovery mode is required to remove the passcode.
GroundControl 5.0 can now force recovery workflows via the admin console, allowing you to recover and reprovision an unpaired device remotely. Today, this action can be performed only one device at-a-time or automated via API, but it will be included as part of automation rules in a future release.
Important! On iOS 14.5+ devices, this feature requires allowing force recovery via MDM restrictions profile. If this option or checkbox is not available in the restrictions profile in your MDM, it may be possible to enable via custom .XML. We included custom XML below that can be used in AirWatch/ Workspace One.
- To force recovery on unpaired devices, navigate to Launchpads> Launchpad Details
- Click on the Actions drop down next to the device to expand the menu, and select Force Recovery
- Device will enter recovery mode. After recovery mode is completed, The Launchpad will automatically execute any rules enabled that match the device state.
Using Custom XML in Workspace One
<dict> <key>PayloadDescription</key> <string>Configures restrictions</string> <key>PayloadDisplayName</key> <string>Restrictions</string> <key>PayloadIdentifier</key> <string>com.apple.applicationaccess.D1B3FF5E-B7F4-467D-B9B2-B7BD17419D341</string> <key>PayloadType</key> <string>com.apple.applicationaccess</string> <key>PayloadUUID</key> <string>D1B3FF5E-B7F4-467D-B9B2-B7BD17419D341</string> <key>PayloadVersion</key> <integer>1</integer> <key>allowUnpairedExternalBootToRecovery</key> <true/> </dict>