Jump to:navigation, search
Wiki

































  • Note

    This article includes descriptions of third-party software and is based on the status at the time this page was created.
    Changes to the user interface on the part of the manufacturer are possible at any time and must be taken into account accordingly in the implementation.
    All information without warranty.









  • Enrollment of Android devices when using a Managed Google Domain Enterprise

    New article with version: 2.5

    notempty
    This article refers to a Beta version
    Access: portal.securepoint.cloud  Mobile Security Android Devices



    Introduction

    If a Managed Google Domain Enterprise is available, it can be used to enroll an Android device.
    This means that the device will not be linked to a specific user, making private use and authentication via the company identity impossible.


    Prerequisite

    The following must be available on Google for the enrollment process with Managed Google Domain Enterprise to work:

    • A domain is required (for example: ttt-point.com)
    • A Google Workspace ( admin.google.com) has been created with this domain
    • This domain must be verified
    • A payment method must be entered
    • Enable Authenticate with Google in Google Workspace
    • A policy must be created

    The following must also be available in the Securepoint portal:


    Device enrollment

    Registration token for a profile

    Under  Mobile Security AndroidDevices , you can use the button labeled  Register new device.
    Caption Value Description
    Would you like to use an existing registration token? Create a new registration token
    Create a new registration token
    Profile COBO Profile The profile to be applied to the Android device
    License TTT-Point AG | Mobile Security The license to be applied to the Android device
    Use code    When    is activated, the Android device is enrolled via Zero-Touch.
    Additional options
    Duration 1 hour The duration for which the token can be used
    Additional data     Any data linked to the registration token
    Only once    When    is activated, the registration token is only used once.
    Allow private use Private use is not permitted (userless) In order for enrollment via Managed Google Domain Enterprise to be applied, Private use is not permitted (userless) must be selected here.
     Create registration token Creates a registration token with a QR code and a value that can be entered using the keyboard.

    The name of the associated profile is displayed, as well as the date on which it expires and can no longer be used.

    Register device

    1. The Android device must be reset to factory settings
    2. Then scan the QR code from the generated enrollment token
    3. Follow the setup steps on the Android device
    4. A login window will appear, where you can log in with your Google Workspace account (for example: alice@ttt-point.de)
    5. The Android device will now use the Google account (for example: alice@ttt-point.de) from the Managed Google Domain Enterprise