There's a new home for Articles. Find Articles on Our Product Support Page.
Is it possible to identify (dynamic) the devices connected and not connected on server V13.4. I tried with virtual group but I have no status parameter. It's impossible to sort the icon column. Thank you for your help
Server version is 13.4 Agent version is 13.5 We have a lot of C-five Coppernic devices with around 2Go data consumption. We generated a report ''Telecom data usage data collection'' where we can see the consumption of each application. Is it possible to have more details by application besause we have to explain to our customer why we have some much data consumption ? Thank you
Hello, We have Samsung devices with lockdown, with Disable Status Bar Expansion, so the user may not display QuickSettings. But, when the battery is below 10% there appears a low battery notification, and the user may display QuickSettings from it. Is there any way to disable such notifications or Quick Settings completly? Thank you for your comments
I have a conundrum? I have a Samsung Galaxy Tab Active 2 running Android 7 and it has MobiControl client 13.5.1.1044. It has a lockdown screen and MobiControl is one of the apps available. All other apps open as expected but MobiControl does not. The screen just flashes and returns to the lockdown screen. This has only happened to one device but cynical experience says it could become an issue. I have other Tab 2s on this and other clients running fine. Also Tab 1s again with no issue. The link on lockdown HTML is launch://net.soti.mobicontrol.elm.samsung. If I disable the lockdown screen and open the client it opens fine. Server is 14.1.4.1693 running in the cloud. I'm open to suggestions
In case you are trying to implement single sign on with the MobiControl console, we are finally moving forward after a long running open case. Here are some items to be aware of when setting it up that are not currently documented: Under the "IdP Settings" header it states: MobiControl implements the web browser SSO profile of SAML 2.0 specifications. Refer to the SAML 2.0 specification for more information on SSO profiles.The SAML specification documents two SP initiated and one IdP initiated methods. MobiControl only supports one of the three (5.1.2 SP Initiated POST/Redirect). That is not documented and was an initial obstacle as our company default is to use 5.1.4. The Identity Provider Manager utility page has a button to import the IdP metadata file. It is broken because it does not fully support the http://www.w3.org/2000/09/xmldsig#schema. It will fail if your metadata file X509Data section has anything besides X509Certificate. If it does not require the other X509Data items it should just silently ignore them rather than failing. At any rate, manually editing the metadata XML and removing the other X509Data items was required in order for the Import button to work correctly.MobiControl REQUIRES that the assertion response from the IdP be signed. The spec only mandates that the assertion itself be signed, not the response. If MobiControl requires the response ALSO be signed then it should be documented somewhere. MobiControl CANNOT accept an encrypted assertion. It SHOULD be able to accept one but it cannot. That detail is also not documented anywhere. MobiControl implements a user authorization mechanism that is based on an additional AttributeStatement section that contains one or more group names associated with the authorized principal. Those groups determine what access the user is allowed. The "Group Settings" section of the help document states:Enter a List Attribute and, optionally, a List Delimiter. A List Attribute is an assertion attribute in the incoming SAML authentication response that contains groups. A List Delimiter splits up attribute values into multiple values. If a delimiter is not set, it is assumed that the attribute value contains multiple XML nodes, each one a different group name. No where in the documentation does it state that THESE GROUP DEFINITIONS ARE WHAT IS ACTUALLY USED TO AUTHORIZE THE USER. So, you need to create "IdP User Groups" in the Manage Users section of the console and provide the desired access to those groups. You also need to create those attribute values in your IdP and assign those values to users in the IdP. Then, provide the values in a AttributeStatement section of the assertion response. These attribute values are matched against the defined "IdP User Groups" to determine the access the user is afforded. Hopefully you can avoid some of the headaches I encountered going down this path.
is it possible to add contacts into an address book via SOTI package / script? We are using v13.4 on samsung android plus or android enterprise agents many thanks!
We have a very strange issue happening with one of the enterprise apps we use. Whenever the trust profile is installed, this particular app gets an invalid certificate error. With the trust profile removed, it works fine. We unchecked the option to require the trust profile on the server and the devices that we enroll through the web browser work perfect...our iOS profile is signed by a third-party. However, most of our devices are enrolled through DEP and the trust profile is still installed on those devices. Is there not a way to prevent the trust profile from being installed on those devices as well?
Morning, Has anyone attempted to transfer devices from one SOTI environment to another without user interaction? If so how did it go for you. Looking thru my scripts it seems I should be able to just send this: Post Moderated for content
I'd like to turn on the NFC on every Android+ devices (Panasonic FZ-N1) we registered in Mobi. I checked which parameters were set with the "watchsettings on" script and I executed these two lines to activate NFC on a device : writesecuresetting -glo airplane_mode_nfc_p2p 1writesecuresetting -glo nfc_status_p2p 1 Unfortunately, this only toggles the checkbox in the settings. It doesn't show the NFC logo on the top of the screen and I can't read any NFC tags. Is there a way to activate NFC from the MobiControl console? Mobi version: 14.1.4.1693 Mobi agent version on device : 13.5.0 build 1327 Android version : 5.1.1
I have an internally programmed application that has a database that it uploads. I want to wait until the program is not running on the phone before the package pushes out because it removes that application first so that, if there are database changes, it recreates the database. This means that we can't have the program push out while a user is using the program. If it's not possible to wait until the process is no longer running before pushing out, is it possible to wait until the device is charging?
I’m trying to push some applications via “Profiles” to a Samsung Note 8 BYOD device but it seems doesn’t work. (Android for work profile. BYOD) Are we able to push apps to a device which is managed by Android for work profile? The applications from "Google Play for Work Applications" can be downloaded and installed without any issues. However when I tried "Enterprise Applications" it doesn't work. I'm trying to push the in-house applications to BYOD devices without uploading them to Google Play Store. Are there any other methods can help me to achieve it? Any advice and suggestions will be greatly appreciated. MobiControl version: 13.4.0.5121 Agent version: 13.5.1 Build 1273
When I enroll a device into Mobicontrol, is there a way to have it prompt for the device name to use?
Hi, I already have a case for this(C00275940), but just wanted to check if anyone might have a suggestion. Issue: Devices of various (7.0+) Android builds, networks (4G, Wi-Fi) and OEMs cannot enroll (times our when trying to connect to server in MC agent) after a DNS update. Everything is marked green by admin util. and already enrolled devices connect just fine. If I manually enter the enrollment page in a browser, then it is properly displayed and accessible from all devices and networks (available from on internet). The weirdest is however, that when testing alongside support, THEY where able to enroll devices to the environment. None of us have been able to explain this behaviour yet. For now we have fetched ADB-logs which is then to be submitted to development. I however just have a feeling this has to do with the DS certificate. Even though this is mapped to the correct hostname and everything is marked green (And support was able to enroll their test device.). This entry is repeated in the ADB logs during enrollment: 11-01 15:37:18.310 8859 8917 E soti : Caused by: java.security.cert.CertificateException: Certificate with Issuer: 2.5.4.46=#132433323346343431352d304146332d343139392d424430432d363433323331424246454243,CN=MobiControl Root CA and Subj: CN=MobiControl Server is not trusted Brgds, Ole
I need to install ica client (.cab file) on old windows mobile devices, and it has to be silent. The \noui switch works fine for all other .cab files, but for Citrix .cab file it still asks to accept EULA to continue installation on the handheld devices. Does anyone know how to remove this ?
Top-tier experts who are delivering outstanding content. Should have more than 7000 points.
Experts who are consistent with great content. Should have more than 1000 points.
Highly experienced members with valuable inputs. Should have more than 700 points.
Beginners taking the initiative. Should have more than 500 points.
New contributors starting their journey. Should have more than 250 points.