To use Profile Manager as a mobile device management (MDM) service, OS X Server should have a static Internet network address, and a fully qualified domain name, and it cannot be on an isolated network.
Devices communicate with the server to obtain configuration profiles over the network.
After a device is enrolled with the service, it’s called a managed device. You can:
Update its configuration
Query its status
Lock and wipe the device
Clear the passcode on iOS devices
Open the Server app, click Profile Manager, then click the Configure button next to Device Management.
If prompted to enable Open Directory, complete the setup assistant.
Select the SSL certificate to use to encrypt data between Profile Manager and users’ devices.
You can use the existing self-signed certificate. If you already configured your server with another certificate, you can select it now.
Enter an Apple ID to enable Apple Push Notification service.
This automatically downloads and installs the certificates necessary to use push notification on the managed devices.
Click Done.
You can now do one of several tasks:
Associate devices with your MDM service to begin managing them.
Associate users with devices for increased management capabilities.
Assign and push apps and books to users and groups.
Push profiles you create to users and devices.
Direct users to the user portal to download the profiles you create. The URL is https://your_server/mydevices/.