> ## Documentation Index
> Fetch the complete documentation index at: https://docs.getprimo.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Controls overview

> Apply security, restriction, login, and configuration controls to your managed devices, and see which platforms each control supports.

A control applies one setting or behavior to the devices you target: all devices, specific device groups, or a custom target. Create controls from **MDM > Controls > Add new control**, then choose the platform.

Once a control is deployed, [MDM compliance](/mdm/compliance/overview) checks that every targeted device still reports the expected state.

## Available controls

### OS updates

| Control | macOS | Windows | Linux | iOS / iPadOS | Android |
| - | :-: | :-: | :-: | :-: | :-: |
| [Enforce minimum OS version](/mdm/policies/enforce-minimum-os-version) | ✅ | ✅ | | ✅ | |
| [Automatic app and OS updates](/mdm/policies/automatic-updates) | ✅ | | | | |

### Security

| Control | macOS | Windows | Linux | iOS / iPadOS | Android |
| - | :-: | :-: | :-: | :-: | :-: |
| [Password and screenlock](/mdm/policies/password-policy) | ✅ | ✅ | | ✅ | ✅ |
| [Disk encryption](/mdm/policies/disk-encryption) | ✅ | ✅ | | | |
| [Firewall](/mdm/policies/firewall) | ✅ | ✅ | | | |
| [recoveryOS protection](/mdm/policies/recoveros-protection) | ✅ | | | | |
| [Lock MDM profiles pane](/mdm/policies/lock-mdm-profiles-pane) | ✅ | | | | |

### Restrictions

| Control | macOS | Windows | Linux | iOS / iPadOS | Android |
| - | :-: | :-: | :-: | :-: | :-: |
| [App blocking](/mdm/policies/app-blocking) | ✅ | | | | |
| [AirDrop restriction](/mdm/policies/airdrop-restriction) | ✅ | | | | |
| [Screen capture blocking](/mdm/policies/screen-capture-blocking) | ✅ | | | | |
| [USB storage blocking](/mdm/policies/usb-storage-blocking) | ✅ | ✅ | ✅ | | |

### Local admin accounts

| Control | macOS | Windows | Linux | iOS / iPadOS | Android |
| - | :-: | :-: | :-: | :-: | :-: |
| [Admin management](/mdm/policies/manage-admin-accounts) | ✅ | ✅ | | | |
| [Admin password rotation](/mdm/policies/admin-password-rotation) | ✅ | ✅ | | | |

### Login and SSO

| Control | macOS | Windows | Linux | iOS / iPadOS | Android |
| - | :-: | :-: | :-: | :-: | :-: |
| [Mac login with Primo](/mdm/policies/mac-login-primo) | ✅ | | | | |
| [Mac login with Entra](/mdm/policies/mac-login-entra) | ✅ | | | | |
| [Mac login with Okta](/mdm/policies/set-up-okta) | ✅ | | | | |
| [Windows login with Okta](/mdm/policies/okta-windows) | | ✅ | | | |

### Device configuration

| Control | macOS | Windows | Linux | iOS / iPadOS | Android |
| - | :-: | :-: | :-: | :-: | :-: |
| [Wi-Fi](/mdm/policies/wifi) | ✅ | ✅ | ✅ | ✅ | ✅ |
| [Google Chrome](/mdm/policies/google-chrome) | ✅ | ✅ | | | |
| [Device naming](/mdm/policies/device-naming) | ✅ | ✅ | ✅ | | |
| [Remote access](/mdm/policies/remote-management) | ✅ | ✅ | ✅ | | |
| [AirPrint](/mdm/policies/airprint) | ✅ | | | | |

### Custom configuration

| Control | macOS | Windows | Linux | iOS / iPadOS | Android |
| - | :-: | :-: | :-: | :-: | :-: |
| [Custom file](/mdm/policies/custom-file) | ✅ | ✅ | | ✅ | ✅ |
| [Generate settings via AI](/mdm/policies/generate-settings-via-ai) | ✅ | | | ✅ | |

## Related articles

* [Device groups](/mdm/device-groups)
* [Script library](/mdm/scripts/script-library)
* [Software overview](/mdm/software-types)


This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.