End of summer brings a new wave of updates across the entire product suite, from Scalefusion UEM, OneIdP and Veltar.

  1. Introducing Extended Access Policies, Skip Password, and SSO Application Access Logs in OneIdP

OneIdP now brings stronger, context-aware access controls, streamlined password handling, and deeper visibility across SSO-enabled applications. Balance security, compliance, and user experience across managed devices.

Highlights include: 

  • Extended Access Policies (XAP):

i) Enforce access based not only on user credentials, but also device compliance signals from Veltar, device location, reported IP, and application installation status.

ii) Ensure SSO access adapts to context and reduces blind spots in enterprise workflows.

  • Skip Password on Managed Devices:

i) Allow users on verified, continuously monitored Scalefusion UEM-managed devices to sign in to SSO applications without entering a password.

ii) Maintain security by tying authentication to the right user on the right device.

iii) Streamline user experience and reduce friction for power users.

  • SSO Application Access Logs:

i) Track every login attempt across managed and unmanaged devices.

ii) Gain deeper insights for audits, compliance reporting, and overall access oversight.

  1. Introducing MXConfig Remote Commands for Zebra Devices

Android device management for Zebra devices just got easier with dedicated MXConfig-based Remote Commands.

What you can do:

  • Streamlined Command Setup: Use a new wizard to paste, validate, or import StageNow XML payloads directly for MXConfig commands.

  • Granular Output Viewer: View detailed API responses for queries and failures to simplify troubleshooting.

  1. Zero-Day Support for iOS and macOS 26

Scalefusion now offers zero-day management support for iOS and macOS 26, giving IT admins enhanced control over device features, app behavior, and software updates. New settings streamline handling of Safari, messaging, call features, and Rapid Security Response updates, while deprecated options are consolidated to simplify management.

  1. Geofencing for User-assigned COD and BYOD

Geofencing is now available for user-enrolled devices, enabling you to apply location-based policies irrespective of device ownership. Devices automatically register as Move-In or Move-Out when crossing defined geofences along with location tracking dependent. 

Note: For BYOD devices, location tracking is dependent on user consent.

  1. Introducing One-Click Compliance for Windows Devices

Scalefusion Veltar now brings one-click compliance management to Windows devices, helping IT admins enforce CIS Level 1 benchmarks across Windows 11 (Domain-joined and non-domain joined), Windows Server 2022, and Windows Server 2025.

What you can do:

  • Apply compliance policies easily: Create Compliance Policy Groups and assign them to device profiles to ensure devices meet CIS Level 1 benchmarks.

  • Customizable benchmarks: Override default policy settings to match organizational requirements.

  • Comprehensive device reports: View and download device-level compliance status, risk status, and detailed rule-level outcomes.

  • Audit-ready insights: Access summaries of overall compliance scores and risk, and run on-demand scans to maintain a continuous security posture.

  1. Zebra Printer FOTA

Deploy over-the-air (OTA) updates to managed Zebra printers using FOTA files. Updates can be uploaded directly to the Scalefusion portal or provided via public FTP links.

What you can do:

  • Seamless OTA deployment: Apply firmware updates to supported Zebra printers without manual intervention.

  • Flexible upload options: Use Scalefusion portal uploads or link to existing FTP servers.

  • Verified support: FOTA updates are validated for ZD 421, ZD 621, ZQ630 Plus, and other supported models.

  1. Alternate Discovery URL for Modern BYO on iOS/iPadOS

Scalefusion now supports an alternate discovery URL for Modern BYO, simplifying device enrollment for iOS and iPadOS without requiring DNS or domain changes. This update reduces setup complexity, enabling faster, smoother BYO adoption for iOS/iPadOS devices.

What you can do:

  • Programmatic setup: Connect Scalefusion to Apple Business/School Manager (ABM/ASM) and configure the discovery URL directly from the ABM/ASM site.

  • Simplified deployment: Eliminates the need for DevOps intervention or hosting the discovery JSON file manually.

  • Safe cleanup: Deleting the token automatically removes the alternate discovery URL, allowing seamless migration or discontinuation of Scalefusion.