https://support.eset.com/kb3686
Issue
- Remotely Deploy ESET Endpoint Security for Android 2.x to client devices using ESET Remote Administrator
Solution
To enroll Android devices in ESET Mobile Device Connector, follow the steps in each section:
III. Register your Android device in ERA
IV. Enroll your Android device
V. Create an Activation task for Android MDM
I. Create an MDM certificate
If you already have an MDM certificate, proceed to Create an MDM Policy.
- Open ESET Remote Administrator Web Console (ERA Web Console) in your web browser and log in. How do I open ERA Web Console?
- Click Admin→ Certificates → New → Certificate.
Figure 1-1
Click the image to view larger in new window
- In the Basic section, select Mobile Device Connector from the Product drop-down menu. Type the IP address or Hostname of the server where Mobile Device Connector is installed in the Host field.
If the MDM server does not have internet access and communications are port-forwarded from a router connected to an outside network, use the IP address or Hostname of that router instead. You can also enter the IP address from the HTTPS certificate.
-
In the Attributes (Subject) section, type the organization name used in ESET Remote Administrator in the Organization Name field.
Figure 1-2
Click the image to view larger in new window
- Expand the Sign section and click Select Certification Authority.
Figure 1-3
Click the image to view larger in new window
- Select the certification authority that you want to use and click OK.
Figure 1-4
Click the image to view larger in new window
- Click Finish and proceed to Create an MDM Policy.
II. Create an MDM Policy
- Open ESET Remote Administrator Web Console (ERA Web Console) in your web browser and log in. How do I open ERA Web Console?
- Click Admin → Policies.
- Click New Policy.
Figure 2-1
Click the image to view larger in new window
- Expand Basic and type a name for the policy in the Name field (the Description field is optional).
- Expand Settings and select ESET Remote Administrator Mobile Device Connector from the drop-down menu.
Figure 2-2
Click the image to view larger in new window
- Type the IP address of the server where Mobile Device Connector is installed in the Hostname field. If the MDM server does not have internet access and communications are port-forwarded from a router connected to an outside network, use the IP adress or Hostname of that router instead.
- Type the organization name used in ESET Remote Administrator in the Organization field. This name will be used by the enrollment profile generator to update the profile.
- In the HTTPS certificate section, click Change certificate → Open certificate list, select the MDM Certificate created in part II and then click OK.
Figure 2-3
Click the image to view larger in new window
-
Expand the Assign section and click Assign to display all Static and Dynamic Groups and their members. Select the Mobile Device Connector instance to which you want to apply the policy and click OK.
Figure 2-4
Click the image to view larger in new window
When you are finished, proceed to Register your Android device in ERA.
III. Register your Android device in ERA and send an enrollment link
View instructions for ERA version 6.3 or earlier
- Open ESET Remote Administrator Web Console (ERA Web Console) in your web browser and log in. How do I open ERA Web Console?
- Click Computers, select the group to which you want to add your mobile device, and then click Add New → Mobile devices.
Figure 3-1
Click the image to view larger in new window
- In the Add mobile devices window, select Enrollment via e-mail and click Continue. Click here for instructions to enroll a single device at a time.
Figure 3-2
Click the image to view larger in new window
- In the General section, select the target for Mobile Device Connector, the ESET License that will be used for mobile device activation, and the Parent Group.
- In the List of Devices section, type in the Email Address (this email address will be used to deliver the enrollment email message), Device Name and Description. To assign a specific user, click Pair under Assigned User to match it to a designated policy. To add another row, click +Add device.
Figure 3-4
Click the image to view larger in new window
-
Once you have finished adding mobile devices, continue to the Enrollment Email Message section. Make any desired modifications to the Subject line and the Content section of the enrollement email message. The Instructions field displays the body of the enrollment email message with the steps that must be performed by the user on the mobile device.
-
Click Enroll and proceed to Enroll your Android device.
Figure 3-8
Click the image to view larger in new window
- Select Individual enrollment via link or QR code in the Add mobile devices window and click Continue.
Figure 3-9
Click the image to view larger in new window
- Type the Device name and Description in the appropriate fields, select the appropriate Mobile Device Connector and ESET License, and then click Next to proceed.
Figure 3-10
Click the image to view larger in new window
- The last preview window will display a summary of the enrollment, including the download link and QR code. Send the enrollment link to the mobile device using email or an instant messaging application if the device is not physically present. If the device is physically present, scan the QR code with the mobile device and proceed to Enroll your Adnroid device. To enroll another device, click Enroll Another and repeat step 2.
Figure 3-11
Click the image to view larger in new window
IV. Enroll your Android device and deploy ESET Endpoint Security for Android (2.x)
- On the mobile device, open the enrollment email that was sent in section III above and tap the enrollment link.
Figure 4-1
- Tap Connect.
Figure 4-3
-
Tap Accept to accept the Google Play terms of service.
Figure 4-4
-
Tap Install.
Figure 4-5
- Review the permissions for ESET Endpoint Security for Android and tap Accept.
Figure 4-6
-
After the installation is complete, tap Open to open ESET Endpoint Security for Android.
Figure 4-7
- Tap Admin setup.
Figure 4-8
-
Select the Language and Country. Select the check box next to I want to help improve ESET products by sending anonymous data about application usage if you would like to and tap Accept to continue. By tapping "Accept" you agree to the End User License Agreement.
Figure 4-9
-
Tap Accept to accept the User consent.
Figure 4-10
-
Type in the name for your device and tap Save. This will help the administrator recognize your device.
Figure 4-11
-
Tap Enable to enable uninstall protection. Uninstall protection restricts unauthorized users from uninstalling ESET Endpoind Security for Android.
Figure 4-12
-
Tap Activate to activate ESET Endpoint Security for Android as Device Administrator.
Figure 4-13
-
Tap Finish.
Figure 4-14
- Proceed to Create activation task for Android MDM.
V. Create activation Task for Android MDM
After completing sections I – V above, the device will appear in the Computers section of ESET Remote Administrator under Lost & Found and will automatically be added to the dynamic group Mobile devices→ Android devices.
To send an activation task from ESET Remote Administrator, follow the instructions in Activate ESET business products in ESET Remote Administrator (6.x)
VI. ERA version 6.3 and earlier:
-
Open ESET Remote Administrator Web Console (ERA Web Console) in your web browser and log in. How do I open ERA Web Console?
- Click Computers, select the desired group for your mobile device(s), click Add New and then click Mobile devices.
Figure 5-1
Click the image to view larger in new window
- Type a name for your task in the Name field of the Basic section.
- Expand the Settings section.Type the name for your mobile device in the Name field. Type the IMEI/WiFi MAC Address or MEID (ERA 6.2 and earlier) for your device in the Device Identification field.
Figure 5-2
Click the image to view larger in new window
- If you are addig multiple devices, click + Add Another to add another device. Click Finish when you have finished entering the names and identifications for all devices to display the enrollment link and/or email client devices.
Complete steps 6-12 on the Android device you are enrolling
Figure 5-4
- Tap Connect.
Figure 5-6
- Tap Accept to accept the Google Play terms of service.
Figure 5-7
- Tap Install.
Figure 5-8
- Review the permissions for ESET Endpoint Security for Android and tap Accept.
Figure 5-9
- Tap Open to open ESET Endpoint Security for Android following installation. You will be prompted to enter a name, enable uninstall protection, and activate device administration.
Figure 5-10
- When the Setup finished screen is displayed, you (or your admin) can send an activation task to the device to complete activation of ESET Endpoint Security for Android.
Figure 5-11
Add a comment
Please log in or register to submit a comment.