You can make a difference in the Apple Support Community!

When you sign up with your Apple Account, you can provide valuable feedback to other community members by upvoting helpful replies and User Tips.

Looks like no one’s replied in a while. To start the conversation again, simply ask a new question.

Advanced Tracking and Fingerprinting Protection in iOS17 vs MDM / Apple Configurator

I cant find any details on how to disable Advanced Tracking and Fingerprinting Protection via MDM.

Initially sounds a good feature but changes the DNS settings - which we don't want happening.

Posted on Oct 3, 2023 3:15 AM

Reply
10 replies

Oct 4, 2023 10:25 AM in response to Device_Fitter

Content filtering and DLP should be implemented using settings other than DNS such as content filtering, full VPN, or per-app VPN. I've implemented this at multiple large organizations. Messing with DNS is manual and can cause issues with connectivity. These other methods can be done through MDM and will avoid the pitfalls caused by setting DNS.

Feb 9, 2024 9:12 AM in response to Device_Fitter

I don't see any change in DNS with this fingerprinting option. I use an AdGuard DNS server on the LAN and this logs all queries. Safari on iPadOS and iOS is still hitting this DNS server with Fingerprinting on.

However, when Safari is in Private mode, it does seem to use DoH. I've made a MDM profile that specifies my AdGuard DNS server as a DoH server. This overrides any application specific DoH setting.


[Edited by Moderator]

Advanced Tracking and Fingerprinting Protection in iOS17 vs MDM / Apple Configurator

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.