Android Enterprise enrollment behind coporate firewall

I
Ivan
LOSAN GESTION INTEGRAL

Greetings. We want to enroll some Android Enterprise devices. We have a firewall that does not allow communications to download the required google components. Can you tell us what rules to create in our firewall?

6 years ago
Android
ANSWERS
JK
Jason Klotz
6 years ago

This should get you an idea of what you need:

https://www.soti.net/mc/help/v14.2/en/setup/installing/network_ports.html

I
Ivan
6 years ago

I have already reviewed this documentation. I need the addresses of the google play services servers, necessary for the correct Android Enterprise enrollment.

MD
Matt Dermody Diamond Contributor
6 years ago

I think you might just need:

play.google.com/work

JK
Jason Klotz
6 years ago

How mine are wrote out is:

tcp-80;tcp-443 Soti_Services activate2.soti.net;mc-enroll.soti.net;location2.soti.net;*.soti.net;*.samsungknox.com/*;*.secb2b.com;*.samsung.com
tcp-80;tcp-443 Soti_APP_Downloads amazon.com/*;play.google.com/*
I
Ivan
6 years ago
JB
James Beeching
6 years ago

Hi All,

I have been looking into this myself and I have found the following detail online:

  1. A device must be able to access the following 2 Google URL’s:

    EMM Play API 
    Authentication to EMM Play API

  2. VPN:  Ensure that your EMM is configured to send the full certificate chain if your company uses intermediate certificates.

  3. Proxy:  You can test proxy settings in Chrome by opening the Chrome Browser in your phone and entering in “Chrome://Policy” to view the configurations that were sent down to the device. 

  4. Wi-Fi: Ensure the Google Play Store isn't blocked via Wi-Fi

  5. Certificates:  Ensure the EMM uses the certificate alias API so that the user does not see the “Certificate Chooser” when they open an app that needs to use a certificate.

James

YW

Similar Discussions