
Addresses an issue where after allowing a user to unlock a FileVault-protected startup volume, the user would not always appear in the list of users in the login window. Configuration file does not specify default realm".
Fixes an issue where attempting to change a password using the Kerberos SSO Extension would fail with an error message saying "Password Change Failed. Hyperlinks in PDFs containing percent-encoded characters now open properly. Apple Push Notification service (APNs) traffic will correctly fall back to using a proxy if a direct connection is blocked by a firewall which doesn't send a TCP reset to clients. Provides MDM support for allowing standard users to permit Screen Recording or Input Monitoring in the Privacy pane of Security & Privacy preferences. Supports the RebuildKernelCache and KextPaths keys in the RestartDevice MDM command dictionary. Provides MDM support for allowing standard users to complete the installation of legacy kernel extensions by restarting their Mac from within System Preferences > Security & Privacy without having to provide administrator credentials. Resolves an issue where app installation may fail if MDM reissues the install command. Resolves an issue that prevents software updates from initiating at the login window. Resolves an issue with browsing network file servers hosting a large number of SMB shares. Safari now respects user-defined “Always Allow” access settings for SSO certificates. Updating a Wi-Fi payload that includes a certificate identity no longer creates a duplicate identity.
Resolves an issue where mobile account creation fails on the first login. Resolves an issue with content filtering rules when using multiple network extensions simultaneously. Resolves an issue where using MDM to remove approval for system extensions did not deactivate the extensions. Resolves an issue where system extensions already awaiting user approval could not be approved by MDM. MDM can now install and manage iOS apps on Mac computers with Apple silicon. When using MDM to restart a macOS device, you can optionally allow user interaction before restarting.
SMB Multichannel is now supported and enabled by default.MDM can now defer major and minor software releases separately.