Apple Autodiscovery setup for user-driven enrollment
From iOS 16 to 17, in order to run user-driven enrollment via iOS's Settings > General > VPN and Remote Management > Access to Work or School account, admin needs to make a preliminary manual setup on Managed Apple Accounts approved domains.
- Login in %whitelabelText2% Admin
- Download com.apple.remotemanagement file from Devices Enrollment > Apple
- Upload com.apple.remotemanagement file in .well-known folder into the root of the hosting of the Managed Apple Accounts approved domains
On iOS 17.3 and newer, in order to run account-driven enrollment via iOS's Settings > General > VPN and Remote Management > Access to Work or School account, admin can ignore manual domain configuration but it has to login in Apple Business Manager or Apple School Manager and set %whitelabelText2% as the default MDM for iPad, iPhone devices.
References
https://developer.apple.com/documentation/devicemanagement/discover_authentication_servers