New Sophos Support Phone Numbers in Effect July 1st, 2023

E-Mail Settings are not beeing applied to Android Devices

Hi Sophos Community,

yesterday we made a change to our policy which is also beeing used to deploy mail settings company wide for our android devices.

We simply wanted a specific user to be able to add another e-mail account which was initially not possible due to the policy not allowing this to happen.

We use the Samsung E-Mail App for all our Android Devices.

Screenshot1 no changes

Screenshot2 changes

Unfortunately this lead to all mailaccountconfigurations to be deleted of our devices after synchronizing the changes with sophos central.

After realizing these changes we rolled back our configuration in hopes of being able to just add the accounts to those device which had received the changes so far but, we were not able to get any auto enrollment information on the devices again. Weirdly all android devices synchronizing with sophos central kept losing their mailaccount settings too.

We tried using another policy and applied it to one of the device which lost its configuration but this got us the same result no auto configuration possible.

We tried deleting and reinstalling the Samsung Mail App that was also no solution for our problem.

After being discouraged and no solution in sight we proceeded to using a managed configuration for the application.

Screenshot3 managed configuration

With this we had the following issue. Instead of domain\username we just had \username missing the domain in front.

So we tried adding our domain in Screenshot3 using domain\$USERNAME and now we received domain\domain\$USERNAME on our test device.

How can we get this working again? We would appreaciate any insight.

Edit tags
[edited by: GlennSen at 4:37 AM (GMT -7) on 2 Apr 2023]
Parents Reply Children
  • Hi guys,

    we now have a solution at hand on how to properly deploy the samsung e-mail app on android device.

    If you are using on permise exchange servers you need to fill the fields in my recent posted Screenshot3 as well as the EAS domain field. It is mandatory to insert your domain otherwiese you need everybody to manually enter your domain. This helped us to propagate the fields properly to our android devices and we were able to automatically connect users with their mail accounts after they entered their passwords again.

    As for Screenshot2. This Exchange Configuration has been confirmed to offically only work with GMAIL App owned by Google. If you own Office365 it is mandatory to use modern authentication as well as %_EMAILADDRESS_% for both Username and email address variable.

    If you use exchange on premise do not use modern authentication. For variable email address you need to use %_EMAILADDRESS_% and for  variable username %_USERNAME_%.

    Kind Regards

    Marc Dostal