I recently tried experimenting with a BYOD iPhone.
The first trick I learned was that you have to use Safari to install the certificate. Chrome and Edge will fail. However, once I got it installed and I moved on to the enrollment I got this error from iOS 18:
"Profile Driven User Enrollment is not supported"
So, how else is there to enroll BOYD for iOS in SOTI?