SOTI MobiControl Upgrade Behavior for “Unlimited” Maximum Passcode Age (maxPINAgeInDays)

Publish Date: SOTI MobiControl
16

Summary

The Maximum Passcode Age setting (maxPINAgeInDays) may behave differently after upgrading SOTI MobiControl. This article explains version-specific behavior and provides remediation steps to ensure Apple devices receive the intended passcode setting.

Related SOTI ONE Platform Products

SOTI MobiControl

Related Device OS

iOS

Environment

Customers upgrading SOTI MobiControl and managing Apple passcode profiles.

Affected Products and Versions

  • SOTI MobiControl 2025.1.0
  • SOTI MobiControl 2026.1.0

Description

Symptoms

After upgrading SOTI MobiControl:

  • Existing devices that already have a Passcode profile installed do not automatically receive an updated maxPINAgeInDays setting.
  • The Maximum Passcode Age value displayed in the SOTI MobiControl Web Console may differ between SOTI MobiControl versions.
  • The deployed Apple payload may continue to represent Unlimited as 0 or null, depending on the SOTI MobiControl version and stored profile value.

Cause

The representation and validation of the Maximum Passcode Age setting changed between SOTI MobiControl versions. As a result, the value displayed in the SOTI MobiControl Web Console, the value stored in the SOTI MobiControl database, and the value contained in the payload delivered to devices may not always appear identical.

Upgrading SOTI MobiControl does not automatically cause existing Passcode profiles to be redeployed to devices that already have the profile installed.

Impact

Devices may continue to use their previously deployed Maximum Passcode Age setting after a SOTI MobiControl upgrade.

For example, a device may continue using its existing setting even when the SOTI MobiControl Web Console displays a different value. The updated setting is not applied until the Passcode profile is updated and redeployed.

Recommended Action

After upgrading SOTI MobiControl:

  1. Open the affected Passcode profile.
  2. Select Edit.
  3. Select Save.

Saving the profile updates the stored value and triggers redeployment of the profile to assigned devices.

If the devices do not receive the updated setting after saving the profile:

  1. Remove the affected devices from the device group to which the Passcode profile is assigned.
  2. Add the devices back to the device group.

This unassigns and reassigns the profile and forces the Passcode payload to be installed again.

Version-Specific Behavior

SOTI MobiControl versions between 2025.1.0 and 2026.1.0

  • The Unlimited option is not available in the SOTI MobiControl Web Console.
  • The maximum supported value is 732 days.
  • Existing deployments may still contain a payload value representing Unlimited as 0 or null.

SOTI MobiControl 2026.1.0 and later

  • 0 can be used for maxPINAgeInDays.
  • A value of 0 represents Unlimited.
  • To ensure the intended value is applied to existing devices after an upgrade, save the Passcode profile and allow it to redeploy. If necessary, unassign and reassign the profile.

Important

Upgrading SOTI MobiControl alone does not automatically redeploy an existing Passcode profile to devices. If the Maximum Passcode Age setting must be updated or validated after an upgrade, follow the remediation steps above.

Was this helpful?