{
    "api_version": "1",
    "kind": "dse_post",
    "self": "https://update.dsesecurity.com/api/v1/posts/dse-20260909-235-include-user-sign-out-in-the-maintenance-plan-for-shared-ipads/",
    "item": {
        "id": "https://update.dsesecurity.com/updates/dse-20260909-235-include-user-sign-out-in-the-maintenance-plan-for-shared-ipads/",
        "slug": "dse-20260909-235-include-user-sign-out-in-the-maintenance-plan-for-shared-ipads",
        "url": "https://update.dsesecurity.com/updates/dse-20260909-235-include-user-sign-out-in-the-maintenance-plan-for-shared-ipads/",
        "alternate_urls": {
            "markdown": "https://update.dsesecurity.com/updates/dse-20260909-235-include-user-sign-out-in-the-maintenance-plan-for-shared-ipads.md",
            "json": "https://update.dsesecurity.com/api/v1/posts/dse-20260909-235-include-user-sign-out-in-the-maintenance-plan-for-shared-ipads/"
        },
        "title": "Include user sign-out in the maintenance plan for shared iPads",
        "summary": "Can an Intune-managed shared iPad complete its update while a user remains signed in?",
        "format": {
            "slug": "guide",
            "name": "Guide"
        },
        "priority": {
            "slug": "info",
            "name": "Information"
        },
        "featured": false,
        "image": {
            "theme": "cyber-defense",
            "label": "Cyber defense",
            "alt": "Layered glass and metal cyber-defense structure with controlled blue and gold signal paths.",
            "card_url": "https://update.dsesecurity.com/assets/editorial/cyber-defense-card.webp?v=1.8.20",
            "hero_url": "https://update.dsesecurity.com/assets/editorial/cyber-defense-hero.webp?v=1.8.20",
            "social_url": "https://update.dsesecurity.com/assets/editorial/cyber-defense-social-v2.jpg?v=1.8.20",
            "width": 2400,
            "height": 1350
        },
        "topics": [
            {
                "slug": "cybersecurity",
                "name": "Cybersecurity",
                "url": "https://update.dsesecurity.com/topic/cybersecurity/"
            },
            {
                "slug": "it",
                "name": "IT",
                "url": "https://update.dsesecurity.com/topic/it/"
            }
        ],
        "author": {
            "name": "DSE Security Editorial Team",
            "url": "https://update.dsesecurity.com/#editorial-team",
            "type": "Organization"
        },
        "publisher": {
            "name": "Detection Systems & Engineering",
            "url": "https://dsesecurity.com/"
        },
        "published_at": "2026-09-10T00:28:01+00:00",
        "modified_at": "2026-09-10T01:20:46+00:00",
        "reviewed_on": "2026-09-09",
        "reading_minutes": 2,
        "word_count": 237,
        "potentially_affected": "Review supervised iOS/iPadOS devices enrolled in Intune and used by multiple people. Confirm the current supported update-management method for the actual shared-device configuration before adapting the guide's older scheduling examples.",
        "dse_recommendation": "Assign ownership of the shared-device handoff as well as the update policy.",
        "primary_source": {
            "name": "Admin checklist for iOS/iPadOS software updates in Microsoft Intune - Microsoft Intune | Microsoft Learn",
            "url": "https://learn.microsoft.com/en-us/intune/device-updates/apple/planning-guide-ios-ipados",
            "published_on": null,
            "authority": "Microsoft Learn"
        },
        "publishing_principles": "https://update.dsesecurity.com/updates/dse-updates-editorial-methodology/",
        "usage_info": "https://update.dsesecurity.com/usage/",
        "copyright_notice": "Copyright © 2026 Detection Systems & Engineering. All rights reserved.",
        "content_html": "<h2>Source facts</h2>\n<p>Microsoft&#8217;s supervised iOS/iPadOS update guide says all users of a shared device must be signed out before updates can be applied. Signing users out or rebooting the device satisfies that session requirement. The guide also warns that MDM-based Apple update workloads are deprecated and recommends declarative device management for software updates. <a href=\"https://learn.microsoft.com/en-us/intune/device-updates/apple/planning-guide-ios-ipados\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft Learn</a>.</p>\n<h2>Applicability</h2>\n<p>Review supervised iOS/iPadOS devices enrolled in Intune and used by multiple people. Confirm the current supported update-management method for the actual shared-device configuration before adapting the guide&#8217;s older scheduling examples.</p>\n<h2>DSE recommendation</h2>\n<p>Assign ownership of the shared-device handoff as well as the update policy. Ask the device and operational owners when every user can safely end their session and who will confirm that state. Plan how ongoing work will be saved and how a delayed handoff will be escalated. Keep an authorized reboot distinct from a forced interruption of active work. Do not assume an empty room or an apparently idle screen proves every account has signed out.</p>\n<h2>Verification</h2>\n<p>During an approved maintenance exercise, record the session state, chosen update action and resulting operating-system version. Confirm that the shared workflow and required applications are available afterward. If the update remains pending, preserve the observed state before repeatedly changing policy. Use the result to refine the handoff procedure without claiming that a schedule alone guarantees installation.</p>\n<h2>Official references</h2>\n<p><a href=\"https://learn.microsoft.com/en-us/intune/device-updates/apple/planning-guide-ios-ipados\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft Learn: Admin checklist for iOS/iPadOS software updates in Microsoft Intune</a>.</p>",
        "content_text": "Source facts\nMicrosoft’s supervised iOS/iPadOS update guide says all users of a shared device must be signed out before updates can be applied. Signing users out or rebooting the device satisfies that session requirement. The guide also warns that MDM-based Apple update workloads are deprecated and recommends declarative device management for software updates. Microsoft Learn.\nApplicability\nReview supervised iOS/iPadOS devices enrolled in Intune and used by multiple people. Confirm the current supported update-management method for the actual shared-device configuration before adapting the guide’s older scheduling examples.\nDSE recommendation\nAssign ownership of the shared-device handoff as well as the update policy. Ask the device and operational owners when every user can safely end their session and who will confirm that state. Plan how ongoing work will be saved and how a delayed handoff will be escalated. Keep an authorized reboot distinct from a forced interruption of active work. Do not assume an empty room or an apparently idle screen proves every account has signed out.\nVerification\nDuring an approved maintenance exercise, record the session state, chosen update action and resulting operating-system version. Confirm that the shared workflow and required applications are available afterward. If the update remains pending, preserve the observed state before repeatedly changing policy. Use the result to refine the handoff procedure without claiming that a schedule alone guarantees installation.\nOfficial references\nMicrosoft Learn: Admin checklist for iOS/iPadOS software updates in Microsoft Intune.",
        "content_markdown": "## Source facts\n\nMicrosoft’s supervised iOS/iPadOS update guide says all users of a shared device must be signed out before updates can be applied. Signing users out or rebooting the device satisfies that session requirement. The guide also warns that MDM-based Apple update workloads are deprecated and recommends declarative device management for software updates. [Microsoft Learn](https://learn.microsoft.com/en-us/intune/device-updates/apple/planning-guide-ios-ipados).\n\n## Applicability\n\nReview supervised iOS/iPadOS devices enrolled in Intune and used by multiple people. Confirm the current supported update-management method for the actual shared-device configuration before adapting the guide’s older scheduling examples.\n\n## DSE recommendation\n\nAssign ownership of the shared-device handoff as well as the update policy. Ask the device and operational owners when every user can safely end their session and who will confirm that state. Plan how ongoing work will be saved and how a delayed handoff will be escalated. Keep an authorized reboot distinct from a forced interruption of active work. Do not assume an empty room or an apparently idle screen proves every account has signed out.\n\n## Verification\n\nDuring an approved maintenance exercise, record the session state, chosen update action and resulting operating-system version. Confirm that the shared workflow and required applications are available afterward. If the update remains pending, preserve the observed state before repeatedly changing policy. Use the result to refine the handoff procedure without claiming that a schedule alone guarantees installation.\n\n## Official references\n\n[Microsoft Learn: Admin checklist for iOS/iPadOS software updates in Microsoft Intune](https://learn.microsoft.com/en-us/intune/device-updates/apple/planning-guide-ios-ipados)."
    },
    "json_ld": {
        "@context": "https://schema.org",
        "@graph": [
            {
                "@type": "Organization",
                "@id": "https://dsesecurity.com/#organization",
                "name": "Detection Systems & Engineering",
                "alternateName": "DSE Security",
                "url": "https://dsesecurity.com/",
                "logo": {
                    "@type": "ImageObject",
                    "url": "https://update.dsesecurity.com/assets/dse-logo-20260812.png?v=1.8.20"
                }
            },
            {
                "@type": "Organization",
                "@id": "https://update.dsesecurity.com/#editorial-team",
                "name": "DSE Security Editorial Team",
                "url": "https://update.dsesecurity.com/",
                "parentOrganization": {
                    "@id": "https://dsesecurity.com/#organization"
                }
            },
            {
                "@type": "WebSite",
                "@id": "https://update.dsesecurity.com/#website",
                "name": "DSE Updates",
                "alternateName": "DSE Security Knowledge Hub",
                "url": "https://update.dsesecurity.com/",
                "inLanguage": "en-US",
                "publisher": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "potentialAction": {
                    "@type": "SearchAction",
                    "target": {
                        "@type": "EntryPoint",
                        "urlTemplate": "https://update.dsesecurity.com/?q={search_term_string}"
                    },
                    "query-input": "required name=search_term_string"
                }
            },
            {
                "@type": "WebPage",
                "@id": "https://update.dsesecurity.com/updates/dse-20260909-235-include-user-sign-out-in-the-maintenance-plan-for-shared-ipads/",
                "url": "https://update.dsesecurity.com/updates/dse-20260909-235-include-user-sign-out-in-the-maintenance-plan-for-shared-ipads/",
                "isPartOf": {
                    "@id": "https://update.dsesecurity.com/#website"
                },
                "lastReviewed": "2026-09-09"
            },
            {
                "@type": "BreadcrumbList",
                "@id": "https://update.dsesecurity.com/updates/dse-20260909-235-include-user-sign-out-in-the-maintenance-plan-for-shared-ipads/#breadcrumbs",
                "itemListElement": [
                    {
                        "@type": "ListItem",
                        "position": 1,
                        "name": "DSE Updates",
                        "item": "https://update.dsesecurity.com/"
                    },
                    {
                        "@type": "ListItem",
                        "position": 2,
                        "name": "Include user sign-out in the maintenance plan for shared iPads",
                        "item": "https://update.dsesecurity.com/updates/dse-20260909-235-include-user-sign-out-in-the-maintenance-plan-for-shared-ipads/"
                    }
                ]
            },
            {
                "@type": [
                    "Article",
                    "TechArticle"
                ],
                "@id": "https://update.dsesecurity.com/updates/dse-20260909-235-include-user-sign-out-in-the-maintenance-plan-for-shared-ipads/#article",
                "identifier": "https://update.dsesecurity.com/updates/dse-20260909-235-include-user-sign-out-in-the-maintenance-plan-for-shared-ipads/",
                "url": "https://update.dsesecurity.com/updates/dse-20260909-235-include-user-sign-out-in-the-maintenance-plan-for-shared-ipads/",
                "headline": "Include user sign-out in the maintenance plan for shared iPads",
                "description": "Can an Intune-managed shared iPad complete its update while a user remains signed in?",
                "abstract": "Can an Intune-managed shared iPad complete its update while a user remains signed in?",
                "articleBody": "Source facts\nMicrosoft’s supervised iOS/iPadOS update guide says all users of a shared device must be signed out before updates can be applied. Signing users out or rebooting the device satisfies that session requirement. The guide also warns that MDM-based Apple update workloads are deprecated and recommends declarative device management for software updates. Microsoft Learn.\nApplicability\nReview supervised iOS/iPadOS devices enrolled in Intune and used by multiple people. Confirm the current supported update-management method for the actual shared-device configuration before adapting the guide’s older scheduling examples.\nDSE recommendation\nAssign ownership of the shared-device handoff as well as the update policy. Ask the device and operational owners when every user can safely end their session and who will confirm that state. Plan how ongoing work will be saved and how a delayed handoff will be escalated. Keep an authorized reboot distinct from a forced interruption of active work. Do not assume an empty room or an apparently idle screen proves every account has signed out.\nVerification\nDuring an approved maintenance exercise, record the session state, chosen update action and resulting operating-system version. Confirm that the shared workflow and required applications are available afterward. If the update remains pending, preserve the observed state before repeatedly changing policy. Use the result to refine the handoff procedure without claiming that a schedule alone guarantees installation.\nOfficial references\nMicrosoft Learn: Admin checklist for iOS/iPadOS software updates in Microsoft Intune.",
                "datePublished": "2026-09-10T00:28:01+00:00",
                "dateModified": "2026-09-10T01:20:46+00:00",
                "mainEntityOfPage": {
                    "@id": "https://update.dsesecurity.com/updates/dse-20260909-235-include-user-sign-out-in-the-maintenance-plan-for-shared-ipads/"
                },
                "inLanguage": "en-US",
                "isAccessibleForFree": true,
                "author": {
                    "@type": "Organization",
                    "name": "DSE Security Editorial Team",
                    "url": "https://update.dsesecurity.com/#editorial-team"
                },
                "publisher": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "image": {
                    "@type": "ImageObject",
                    "@id": "https://update.dsesecurity.com/updates/dse-20260909-235-include-user-sign-out-in-the-maintenance-plan-for-shared-ipads/#primaryimage",
                    "url": "https://update.dsesecurity.com/assets/editorial/cyber-defense-social-v2.jpg?v=1.8.20",
                    "contentUrl": "https://update.dsesecurity.com/assets/editorial/cyber-defense-social-v2.jpg?v=1.8.20",
                    "width": 1200,
                    "height": 630,
                    "caption": "Include user sign-out in the maintenance plan for shared iPads"
                },
                "articleSection": [
                    "Cybersecurity",
                    "IT"
                ],
                "keywords": [
                    "Cybersecurity",
                    "IT",
                    "Guide",
                    "Information priority"
                ],
                "genre": "Guide",
                "about": [
                    {
                        "@type": "Thing",
                        "name": "Cybersecurity",
                        "url": "https://update.dsesecurity.com/topic/cybersecurity/"
                    },
                    {
                        "@type": "Thing",
                        "name": "IT",
                        "url": "https://update.dsesecurity.com/topic/it/"
                    }
                ],
                "wordCount": 237,
                "timeRequired": "PT2M",
                "publishingPrinciples": "https://update.dsesecurity.com/updates/dse-updates-editorial-methodology/",
                "usageInfo": "https://update.dsesecurity.com/usage/",
                "copyrightHolder": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "copyrightNotice": "Copyright © 2026 Detection Systems & Engineering. All rights reserved.",
                "citation": {
                    "@type": "CreativeWork",
                    "name": "Admin checklist for iOS/iPadOS software updates in Microsoft Intune - Microsoft Intune | Microsoft Learn",
                    "url": "https://learn.microsoft.com/en-us/intune/device-updates/apple/planning-guide-ios-ipados"
                }
            }
        ]
    }
}