Android Enterprise Customer Community
Recently active
Hello Team, We are seeing an error during zero touch enrollment from today onward. Is there any issue from ZT side? Anyone else experiencing this issue?
Hello, we have a question to EFRP:If you specify a google account which can unlock FRP on this device in the future, does this google account have any other special permissions on that device or is it just like any other google account if logged in? Our Security Office wants to know that to be sure there is no other security concerns with configuring central EFRP accounts. If you have any technical references or KB articles to this topic, it would be highly appreciated. :) Thank you in advance
Hi, since recently it is now possible to migrate EMM (in my case Intune) from a corporate gmail account to a managed google workspace account. By using this guide. https://support.google.com/work/android/answer/16147675?hl=en#zippy=%2Cmanaged-google-play-iframe-initiated-upgrade I would please like a clarification that is not covered by the article. Will Private Play apps migrate to the workspace account seamlessly?Currently we use Google Play Console ro gather logs, crash reports etc for our apps. Will this be possible after the migration?I also feel those clarifications (especially the first) should be clearly mentioned in the article. Thank you.
Hi experts, I'm pretty new to managing Android devices using MDM solution and I went to the issue that need advises.I have a Samsung Android for testing & evaluating the MDM solutions. I was testing on Intune & Google MDM. Here are step by step I have done to lead to this issue. I enrolled it to Intune by using the QR code successfully and finished the first test, then I wiped it fully I added it to corporate-owned device under Google MDM by using csv with serial numberEnrolled it to Google MDM and finished the test with MDM. Then, I removed this device from corporate device, deleted it from devices tab from Google MDM and fully wiped (factory reset) this deviceI scanned the QR code again (the same one I scanned in step 1) but failedAfter few screens, like connect wifi, this device belongs to org, etc... it ended up with 'Something went wrong, please contact to your IT administartor. I tried to scan it multiple times without luck; other devi
We have reports of devices no longer being able to enroll.Our policy has a FORCE_INSTALL of Android Webview (com.google.android.webview), with a minimum version set to 593815300. Reproduced here with an Acer ACTAB10KB24. If I remove the minimum version requirement, I can enroll the device, and also update the webview to 139.0.7258.158. Why isn't the configuration with minimumVersionCode set working? We have previously enrolled many of these, but from our logs the latest successful enrollment was on the 16th of August (2025).
How to install whatsapp business in android enterprises?
I had upgraded my account to Google workspace Business Plus and wish to use the Android Enterprise function within Google platform. I had followed the steps and set to Advance mode in the mobile management "Custom" setting but the Android Enterprise did not appear for selection. Do i need a third party EEM or can i activate the Android Enterprise with Google Admin console without a third party one.
We are enterprise solution EMM partner. We want to validate the following feature 3.24. Managed Google Play Account upgradeAnyone please describe how to do this actually. Not understand way of integration in our solution.Thanks in advance.
Hello Everyone, I've noticed that the OnePlus 13 is not included in the Android Enterprise Recommended (AER) devices list, which can be found here: https://androidenterprisepartners.withgoogle.com/devices/#!?search=Oneplus. While the OnePlus 12 is currently listed, I'm curious to know when the OnePlus 13 might be added. My work profile on the OnePlus 13 was functioning properly for the past three weeks but has suddenly stopped working today. I discovered that the absence of the OnePlus 13 from the AER list could be the cause, although I'm puzzled as to why there were no issues until now. Could someone provide insight into whether the OnePlus 13 will be added to the AER list in the near future? Your guidance would be greatly appreciated.
Hello Community Members, The Android Enterprise team is excited to invite you to our upcoming in-person CAFÉ Takeover events in New York City and Paris! What is the Android Enterprise CAFÉ? The Android Customer Advisory Forum for Enterprise (CAFÉ) is an exclusive, invite-only group of customers who actively engage with the Android Enterprise Product team. As a member, you get a front-row seat to the future of Android Enterprise. Look out for more details about the Android CAFÉ in a future post. Join Us for the CAFÉ Takeover! We’re opening the CAFÉ experience to non-CAFE members with two in-person events. This is a fantastic opportunity to meet the Android Enterprise team, network with your peers, and share your feedback directly with us. These events are exclusively in-person. CAFÉ Takeover: NYC Date & Time: October 14th 10:00am (9:30 Check-in) Location: Google NYC RSVP here CAFÉ Takeover: Paris Date & Time: October 21st 10:00am (9:30 Check
Hi everyone, I'm turning to the community to see if there are any solutions being used out in the wild that assist with bulk wiping Android devices. I suspect that what I'm asking may not be possible - mainly due to the nature of Android Developer Options, USB Debugging etc. - but I've been I've been tasked by our management to investigate and possibly propose a solution. As an example, we currently use several Cambrionix ThunderSync3 16 port devices to DFU both iOS and macOS devices but they don't offer a similar solution for Android. Are there any solutions that can be used either in tandem with docking stations like Cambrionix or some other. Our use case is Work Managed and we use Omnissa Workspace ONE UEM to manage the devices. The devices themselves are Pixels and Samsungs. and each device is loaded into either the Google Zero Touch Portal or the Samsung Knox Portal. The expectation is that when a large number of Androids are returne
Hi,I am trying to configure Gmail to work with Exchange ActiveSync within a work profile via managed configuration according to the documentation - https://support.google.com/work/android/answer/7065453 The following parameters are specified: "exchange_host", "email_address", "exchange_username", "exchange_authentication_type" (allow_modern_authentication)The "exchange_login_certificate_alias" parameter is not set. I expect that the user will have to select a certificate via the system dialog. But as a result of such a configuration, the certificate selection dialog is not displayed to the user. The mail setup process is interrupted and the error message "Try again later, or contact your IT admin" is displayedHowever, if I specify any random value in the "exchange_login_certificate_alias" parameter, the certificate selection dialog is displayed.I would like to know whether this is expected behavior or a known issue? Versions InfoGmail client - 2025.08.25.800175820.Releas
We manage our mobile device through Intune; we also manage multiple tenants. I didn't know when I did this, but I made the mistake of signing into a new tenant with our Managed Google Play account that we use for our main tenant. Still, unaware of my error, I decided to disconnect the Managed Google Play account from the new tenant and create a new Google Play account for them.The new tenant works fine. I'm able to enroll Android devices and manage apps. However, in our main tenant, under Tenant Administration | Tenant Status for Managed Google Play, it shows a warning: Management Service Error. If I try to go to Android Apps to add an app, I get the following message: "It looks like your tenant has been unbound via the Google Play console. To browse Managed Google Play, your Intune account needs to be connected to your Android Enterprise account." But, in Devices | Android | Android Enrollment | Managed Google Play, it shows the account as Setup (with the green check). I'm also unable
Hello, I was searching for a precise info, but i cant find any official info, and unofficial sources are not precise, to say the least. How many devices can I upload to ZTP from resseller portal using a single .csv file? I have found that limitations are 30, 50, 60 devices per one file, or that the limitation is the size of the file- 50mb. The problem is, probably i will need to add tens of thousands of devices, and maximum 50 devices per one .csv is a big limitation in that case. Or is there any other way to add very large quantities of devices?
Hi Team, Can we add multiple managed accounts in Work Profile ? I was trying to achieve the same but I am getting error saying "A managed account already exists. Only one managed account is allowed for this device. If you have questions, contact your organization’s admin". If it is not possible, do we have any official document for the same. RegardsRahul Kumar
Has anyone able to purchase (paid) apps in the Managed Google Play store? I assume we still have the following limitation in 2025? "Managed Google Play no longer supports the ability to purchase app licenses. Your organization can still manage the app licenses it already owns. However, it won't be possible to purchase any additional licenses." OP: https://support.google.com/googleplay/work/answer/6150398?hl=en The paid app we're trying to purchase:
I want to validate 1.11. Dedicated device provisioning feature but failed. I have shown a zero touch enrollment for dedicated provisioning and provide below video for demonstration purpose.https://drive.google.com/file/d/1X0YD-kgNIODLPjzDHv-eG_U6s0fB2hi0/view?usp=sharing Anyone can please describe what actually I need to do.Thanks in advancee.
Hi everyone, I’m feeling very disappointed and need some help here. We’ve invested significant time and effort into building an EMM solution that aligns fully with Google’s own guidelines: Built according to Android Enterprise requirements Obtained Expert certification for our team Have clients ready to onboard devices immediately Despite doing all of the above, our application keeps getting rejected with the reason: “Doesn’t Meet Program Requirements.” The problem is, there’s no clear reason provided for rejection. Without clarity, there’s no way to improve or move forward. Google has a 500 device limit before allowing scaling, but without program approval, our clients may suffer. We have already done certifications, built the platform, and proven readiness. Our TESTING PLATFORM is live. At this point, I honestly don’t know what else can be done. If there’s no path forward and no constructive guidance, I may be forced to open-source the entire
Thanks to the keen eye of @jasonbayton for spotting this update in the documentation: https://developers.google.com/android/management/manage-custom-apps The lack of this feature has been a key reason I've avoided any AMAPI based EMM (looking at you Intune!) for fully managed device deployments. This is certainly a welcome enhancement to AMAPI and one that I'm honestly surprised Google delivered on. I think I can finally see the writing on the wall that Custom DPC will eventually now die given that AMAPI is finally catching up. I still need file system push and pull for it to truly be a replacement but this is a major step in the right direction. What are the community thoughts on the matter?
Hello everyone,I am exploring how to reduce resource usage on corporate-owned Android devices that are configured with multiple users or profiles.Currently, Android's VPN framework is per-user:Each user (or work profile) maintains its own VPN state.An Always-On VPN can only be configured within the context of the current user or profile.This means that if a device has several users, each user needs to run a separate VPN instance.This design results in unnecessary duplication:Multiple VPN processes or tunnels are active on the same device.System resources (CPU, battery, memory) are consumed redundantly.The VPN app itself must be installed and configured multiple times.My request/idea:Enable a single VPN instance at the device level (not just per-user), so that one VPN tunnel can secure network traffic across all users and profiles. This would:Greatly reduce resource waste.Simplify deployment and management for IT admins.Prevent the need for each user or profile to maintain its own VPN c
taking a page from @jasonbayton's LinkedIn post I wanted to post and discuss the announcement from Google yesterday and their upcoming Android developer verification requirements. This is something that fully managed devices with customer supplied applications will run into, and it will cause issues on devices A while ago Google stated that they wouldn't scan customer-sideloaded applications with GPP if they were fully managed. See here: https://www.androidenterprise.community/discussions/conversations/is-there-any-way-to-disable-google-play-protect-gpp-from-an-emm-or-to-otherwise-/2507 Would this requirement fall under the same umbrella?
My company is trying to provision tablets via headwind MDM.We have no problem on some of our networks, but the location they are being provisioned at at-scale have a strict no-random-mac address rule on their network.Thus far I have been unable to figure out how to create a QR code that will disable random mac address on the SSID of the network the device connects to when enrolling in our MDM.Is there a field I am missing? Surely there must be a way to overcome this.
We have a fleet that is managed with Android Management API that we use for pre prod testing. We started getting `Organization reached its usage limits, your work profile can't be set up` error recently in this enterprise. It had about 800 device when i did the list devices call. I have now removed the older devices and the list device call now returns 84 devices, but I still see the above error when trying to enroll new device. Its been about 2 days since i deleted the devices. Also been about 2 days since i have filled up https://docs.google.com/forms/d/e/1FAIpQLSf4VCzblf27V6jx1_iFt7lD1WjyCDpSDzQcxunTbQdbkEGG4Q/viewform to increase the quota for registered devices. Is there any way to investigate this issue? Can I check the registered devices qouta anywhere in GCP console? Are there any other case where I can see this error? I am seeing this error for both work profile and fully managed device.
Hi just wanted to know if there will be issues with already enrolled devices in Intune if we unlink these accounts.
I have implemented the following feature and I can set application track from my emm console but not understand what to show for validation or how it will further works after set app track info. Thanks in advance.
Already have an account? Login
No account yet? Create an account
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.