There's a new home for Articles. Find Articles on Our Product Support Page.
Dears,I'm facing an issue on new devices running Android 14, Samsung Galaxy Tab Active 4 Pro.Agent Version: 2024.0.5.1062MobiControl Version: 2024.0.1.1020I have a profile applied, with Lockdown and Camera and Gallery added to the Lockdown screen. Both apps has been enabled with script enable_system_app com.sec.android.app.camera/com.sec.android.gallery3d. However, when trying to open a camera, I got a pop up that "Security policy preventing use of Camera". Camera is enabled in feature control. I do have the same device running Android 13, enrolled with the same profile, where this issue is not present.Does someone faced similar issue, and have a solution?Best regards,Wiktor Mlynski
i want to add another windows admin user to mobicontrol administration utility. how can i achieve it
Hi all. Just wondering how to effectively to carry out the above? I can't remember what was done to grant TLS connectivity via mobicontrol admin or the server and the majority if not all devices that used TLS 1.0 have been deprecated so we no longer want enrolment/deployment to be able to carry out on TLS 1.0 going forward and certainly want to block TLS 1.0 Is it as simple as just removing / disabling the correct SHA1 certificate from admin? Will that throw up any warnings on the dashboard or is there some functionality required from TLS 1.0 we aren't aware of? Is there any specific ports we may have opened that use TLS 1.0 that can be safely removed? Mobicontrol server 15.5.1.1010 Thanks
Hello, I'm using a DS5AX from MobileBase/Daishin. - Android Enterprise - Agent Version: 15.3.1.1229 - Android 10, OEM-Version: Q5.626 (Jun 09 2023) I need to change the Screen Lock settings to "none" on 150+ devices. Is there a way to do so with MobiControl?
Hello there I’ve just got the question from a customer, if SOTI MobiControl or SOTI Assist is vulnerable to the new Spring4Shell Vulnerability. On the SOTI Central and Community I din’t found any statement. But if I dig deeper I see that JDK 9 and above is affected. https://www.kaspersky.com/blog/spring4shell-critical-vulnerability-in-spring-java-framework/44034/ As we have installed JDK 11 in the latest Version of Mobicontrol, this would be affected. How can we eliminate this issue or are the mentioned Products not affected? Thank you and best Regards Beni
f you access the site https://fqdn-of-the-erg/owa/auth/ and use the Debug Tools Networktrafic in IE or chrome you are able to get the OWA Version of the Exchange. This could be a security issue, as an attacker could use some vulnerabilities of this version to get access to the Exchange. Is there any possibility to cover this response? Thank you and best Regards Beni
Hello, for security purposes my team is reviewing traffic allowed on our firewalls. Regarding MobiControl, currently traffic is allowed on TCP ports 5494, 443, 80 and 62412 on our firewalls between our Android devices (with MobiControl Agent) and our SOTI Deployment/Management server (On-Premise v14.3). Traffic is allowed in both directions. I found some information regarding Network Ports on soti.net but I would like a confirmation before doing any change on our infrastructure : - Is TCP port 62412 related to SOTI Mobicontrol ? I did not find any information regarding this specific port ? It may be an error we did in the past and probably not related to MobiControl. - Is there any traffic on TCP port 80 (HTTP) between MobiControl Devices Agent and SOTI servers ? We used to allow it but it seems like only ports 5494 and 443 (HTTPS) are used, could you confirm ? - Do we need traffic allowed in both directions ? Thank you for your help, Maxence
Hello. I'm trying to deactivate the lock screen (Screen lock: None) in the Security part of Android I launched the "watchsettings on" command, but it does not appear in the logs. Do you know what the command is ?Platform : Android +OS : 6.0Thanks
Hello, [MC Version: 14.3.3.1111 // Devices: Android Enterprise DO] Could someone tell us how this script works, what is the flow and above all, is the system secure and how? We are surprised that we do not know about this flow since it does not appear on the network config diagram: According to the online help: sendreport Sends a debug report from the device agent to the SOTI ftp server. This script ask the device agent to send a debug report (all following files) to the SOTI FTP server through the port 22 and without passing through the MC server (DS/MS). Since we are concerned about the security of our devices, we have some questions : Is the FTP flow used by SOTI (not SFTP) secure? If so, how it is secured? What is the authentication mechanism? Is it a one-way flow? Or is it two-way? From device to the SOTI FTP? From SOTI FTP to device? What types of files can transit through this flow? In case SOTI is attacked, what would be the possibilities for the hackers and the consequences? Are there other flows of this type that do not appear at all on the network config diagram? Many thanks for your detailed answers. BR
Hi. Having some issues with latest mobicontrol. When I navigate to Rules and Console security i only get a blank page. Nothing showing. Its not a browser issue I think, because I tried on Edge, Chrome and IE with the same results. I can mention, that I did an operation moving deployment server from old to new server. did an upgrade run from 15.1 to 15.3 with all the versions I could download in between. I only got one error after installing 15.3 , and that was an error during post-install operation.... guess starting some services... But after i restarted the server it started OK. But still have issues with rules and console security. any ideas?
Is there an API that I can use to view what groups have rights to a profile and also update the security rights? I have a need to add a new user group and need to add it to 700+ profiles. Would really like not to have to touch each profile to update the permissions.
Hi, I want to give permission to allow customers to create users but not let them see and edit users of other customers, how do I do this? Hope there is a workaround for this problem. Many thanks!
Hey Guy's, we're actually working with Zebra Devices on Android Nougat (7.1.2) very successfull. All new Devices and also the old one's had to be upgraded to Oreo in the future in Case of security Updates etc. Unfortunately we're not using a PIN or Pattern so far and on Android Nougat it works great. But when I join an Oreo Device, it has to be set up with a Device PIN or Pattern to work correctly. In our specific Case no Certificate for Wifi e.g. can be pushed to device. Also other stuff like mxconfig Things wont work until we set up a PIN on the Device. Is there any Chance to get Oreo running without the need of a PIN on the Device? many thanks PS: Were using MobiControl 13.4.0.5074, Agent Version 14.0.0.1579 in DoA Mode, Zebra TC20 & TC51 / TC52 Devices
2-Factor Authentication is required by Security to be used by all of our staff for accessing the MobiControl Console in our department. Our potential options are as follows: Citrix Vlan 1601 Entrust tokens E-Auth Piv Card (LincPass with chip) and pin What is SOTI's recommended approach?
Hello all, i have some zebra tc75x device on android 6.0 and android 7.0. On this device we have the soti client on version : 13.6.0 build 1476 The server version is on version : 13.3.0.3454 i would like to disable the option under security -> unknow source But i've looks and nothing found ... Anyone have an idea about how i can disable this option ? Perhpas in the new version of mobicontrol or any other idea ? thanks for all
Top-tier experts who are delivering outstanding content. Should have more than 7000 points.
Experts who are consistent with great content. Should have more than 1000 points
Highly experienced members with valuable inputs. Should have more than 700 points
Beginners taking the initiative. Should have more than 500 points