This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Compliance checks - Does anyone actually know how it works?

I'm puzzled.

Could someone please explain how compliance checks are carried out on iOS devices and whether the SMC app is a requirement?

For instance, I have configured a basic compliance rule stating devices must have a passcode, but removing the passcode from devices does not create a non-compliance situation no matter how long I wait.

Does the SMC app have to be installed for all aspects of compliance checks to work or only for certain features? If so is there any way to enforce the installation other than on "supervised" devices, after all we can't configure BYOD objects as "supervised".

Hopefully someone knows or is everyone as confused as I am.

Come on Sophos, the documentation and information around this is pretty poor.

:54397


This thread was automatically locked due to age.
Parents
  • Thanks for that Ross.

    I am aware of those requirements, but it doesn't really help.

    I need to know whether the SMC app has to be installed in order for all aspect of compliance checks to work. If not which features are available without the SMC app?

    Why are devices without a passcode not flagged as non-compliant? Why is non-compliance not flagged immediately? Enterprises aren't prepared to wait for hours, sometimes days before non-compliance is flagged, all the while allowing access to corporate data.

    It would be nice if Sophos could give us a matrix listing compliance check features and dependencies.

    I have a large organisation who are about to drop SMC due to the flaky nature of compliance checks, which is the only reason they bought it. Other MDM products are available.

    Regards.

    :54469
Reply
  • Thanks for that Ross.

    I am aware of those requirements, but it doesn't really help.

    I need to know whether the SMC app has to be installed in order for all aspect of compliance checks to work. If not which features are available without the SMC app?

    Why are devices without a passcode not flagged as non-compliant? Why is non-compliance not flagged immediately? Enterprises aren't prepared to wait for hours, sometimes days before non-compliance is flagged, all the while allowing access to corporate data.

    It would be nice if Sophos could give us a matrix listing compliance check features and dependencies.

    I have a large organisation who are about to drop SMC due to the flaky nature of compliance checks, which is the only reason they bought it. Other MDM products are available.

    Regards.

    :54469
Children
No Data