following the post below we were able to setup Sophos Intercept X for Mobile using Google Workspace EMM.
In our case we wanted to use Google Workspace Mobile Management to automatically Install and configure (enroll) Sophos Intercept X.
Please note that we are not using Sophos Mobile here, we just want to install the Intercept X for Mobile app from Goole Play and enroll it.
This is possible, and we managed to do it using Managed Configuration . on the Sophos console we activated Third party EMM and we imported the token on Google side.
The only problem we have now is that we cannot automatically configure the user on the device The device is enrolled but it is not automatically assigned to the correct user.
My guess is that, in order to do so we have to use some variable in the managed configuration, as the Sophos documentation states.
Does anybody know ho set up these placeholder in Google Workspace EMM?
Thanks a lot to everybody,
Some further information I was able to find is as follows.
Google Workspace currently supports 2 wildcards ($LOGIN_EMAIL and $LOGIN_ID) which can be used in App Config policies. These can be used in the Intercept X app configuration settings, for example using $LOGIN_EMAIL in the Device Name field will mean devices appear in Central with that value.
Let me know if this helps.
Thank you Qoosh ! This was exactly what we were looking for!
We already tested and it works just fine, the devices are now associated automatically to the users.
Out of curiosity can you please let us know where didi you find this pice of info? Google support was not helpful so far.
We were able to gather this information from our Product Team here at Sophos. We reached out to Google directly in the past to inquire into this, and the feedback we received is mentioned above.
Thank you for posing this question on our forum, now this information is available for all to utilize.
really thank you for your reply!
As my collegue Simone said, we successfully configured Google Workspace and Sophos Intercept X so that when a Google user setup his Android Phone with the Google account, the phone is pushed to install Google Apps and Intercept X and after the user finish the Intercept X configuration (giving authorizations...), that phone is visible in the Sophos console with the correct user / email assisgned.Now..we want to try to do the same with IPhone, do you have some other usefull tips for the configuration? Thank you!
Unfortunately, I do not have much information on the iPhone side of things. If the iPhone is being deployed in a similar fashion using Google Workspace EMM, then the same wildcards should continue to work.
Hi again Kushal,
and thank you again for your kind reply.
We'll give a try and we'll let you know the result, I think it will be usefull for the community
Thanks, Qoosh this google workspace EMM is what I was looking for.....