work managed enrollment policy - but device is work profile

Hey guys,

we have a problem an no idea what's the reason...

I cofigured an enrollment policy for android devices. This policy is made for Legamaster android TVs.

With our first order of this TVs (android 11) everything works fine. The devices were enrolled with type "work managed".

With our second order (newer Type of TVs with android 13), every device I try to enroll with the same policy, will be enrolled as "work profile". We can't use the TVs with a work profile because we need a lockdown there.

Have anyone any idea how I can solve that issue?

Tank you and best regards!

a year ago
Android
ANSWERS

I think as this is very special you may investigate it with Soti and the manufacturer of those devices.

Do the device start with the default Android welcome screen or boot directly into the homescreen? 

TB

Yes that is very special... The manufacturer says that the problem ist not at there side and i should contact SOTI.
Our TAM don't have any idea so far.

After factory reset the device starts with the welcome screen.

It's always easy to point to someone else (especially as/to a company) :)

I guess you nee to enroll using DPC identifier and later enter the enrollment ID when Mobicontrol agent starts?

But if it works on Android 11 devices with the current agent but doesn't on Android 13 anymore, i definitely see a need for a collaboration between both. Bring them (TAM + Support of the manufacturer) together in a meeting, this often helps to get things rolling.

RC
Raymond Chan Diamond Contributor
a year ago

I believe the Legamaster android TV devices are not GMS/Play-Protect certified, and thus enrolling with MobiControl AE device agent is not guaranteed.    

Please provide details of the procedure you took to enrol the Android 13 device.  Also pay attention to what is shown on the device screen in the process, and compare with those for Android 11 device to find any difference(s).

MD
Matt Dermody Diamond Contributor
a year ago

Do you know if the A13 version devices come pre-configured in any way? One of the principles of Device Owner is the device should start from a factory default state. This is a consumer protection feature designed to save end consumers from accidentally granting this permission to malicious apps as that was a possible vulnerability in the Device Administrator days. Therefore if the A13 devices were preconfigured by the manufacturer in some way it may prevent you from getting them enrolled as Fully Managed. I think the factory reset that you've attempted is a good start to isolate that as a possible cause. You'll just need to attempt an AEDO enrollment method from there. Since these are TVs I'm guessing QR and NFC based enrollment are off the table and assuming you aren't using ZTE with them then you're left with DPC identifier (afw#mobicontrol)

A
AKMOD@SOTI
a year ago

Hi Tobias Bultmann,

Thanks for posting on SOTI Pulse, Thanks Rafael, Matt and Raymond for responding to the post, your expertise and willingness to help are greatly appreciated!

Have you had an opportunity to test the suggested solutions by Rafael, Matt , Raymond and has it successfully addressed your query?

If not, or If you have any additional questions or concerns, please don't hesitate to reach out. We're dedicated to providing assistance and support.