Adding Android mobile devices to the list of managed devices

Expand all | Collapse all

To add an Android mobile device to the list of managed devices, Kaspersky Endpoint Security for Android and a shared certificate must be delivered and installed on the mobile device. Shared certificates are used by Administration Server for identifying mobile devices. After a shared certificate is delivered and installed on a mobile device, the device appears in the list of managed devices.

You can add mobile devices of users to the list of managed devices by means of the Mobile device connection wizard. The wizard provides two options for delivery and installation of a shared certificate and Kaspersky Endpoint Security for Android:

Starting the Mobile device connection wizard

To start the Mobile device connection wizard, do one of the following:

Adding an Android mobile device by using a Google Play link

To install Kaspersky Endpoint Security for Android and a shared certificate on a mobile device using a Google Play link:

  1. Start the Mobile device connection wizard.
  2. On the Operating system page of the wizard, select Android as the mobile device operating system type.
  3. On the Method to install Kaspersky Endpoint Security for Android on devices page of the wizard, select Download the app from Google Play.
  4. On the Select users whose mobile devices you want to manage page of the wizard, select the users, security groups, or Active Directory security groups whose mobile devices you want to add to the list of managed devices.

    This step is skipped if the wizard is started by selecting Add mobile device in the context menu of User accounts folder.

    If you want to add a new user account into the list, click the Add button and enter the user account properties in the window that opens. If you want to modify or review the user account properties, select the user account from the list and click the Properties button.

  5. On the Certificate source page of the wizard, specify the method for creating the shared certificate that Administration Server will use to identify the mobile device. You can specify a shared certificate in one of the following ways:
    • Issue certificate through Administration Server tools
    • Specify certificate file
  6. On the User notification method page of the wizard, define the settings for notifying the mobile device user by SMS or email about certificate creation:
    • Show QR code in wizard
    • Send QR code to user
  7. On the Result page, click Finish to close the wizard.

After the wizard finishes, a link and a QR code will be sent to the user's mobile device, allowing download of Kaspersky Endpoint Security for Android. The user clicks the link or scans the QR code. Next, the mobile device's operating system prompts the user to accept installation of Kaspersky Endpoint Security for Android installation. After Kaspersky Endpoint Security for Android is downloaded and installed, the mobile device connects to the Administration Server and downloads a shared certificate. After the certificate is installed on the mobile device, the device is displayed in the Mobile devices folder, which is a subfolder of the Mobile Device Management folder in the console tree.

Adding an Android mobile device using a link from Kaspersky Security Center Web Server

Kaspersky Endpoint Security for Android installation package published on the Administration Server is used for installation.

To install Kaspersky Endpoint Security for Android and a shared certificate on a mobile device using a link from Web Server:

  1. Start the Mobile device connection wizard.
  2. On the Operating system page of the wizard, select Android as the mobile device operating system type.
  3. On the Method to install Kaspersky Endpoint Security for Android on devices page of the wizard, select Download the app installation package from Kaspersky Security Center.

    In the field that appears below, select an installation package or create a new one by clicking New.

  4. On the Select users whose mobile devices you want to manage page of the wizard, select the users, security groups, or Active Directory security groups whose mobile devices you want to add to the list of managed devices.

    This step is skipped if the wizard is started by selecting Add mobile device in the context menu of User accounts folder.

    If you want to add a new user account into the list, click the Add button and enter the user account properties in the window that opens. If you want to modify or review the user account properties, select the user account from the list and click the Properties button.

  5. On the Certificate source page of the wizard, specify the method for creating the shared certificate that Administration Server will use to identify the mobile device. You can specify a shared certificate in one of the following ways:
    • Issue certificate through Administration Server tools
    • Specify certificate file
  6. On the User notification method page of the wizard, define the settings for notifying the mobile device user by SMS or email about certificate creation:
    • Show QR code in wizard
    • Send QR code to user
  7. On the Result page, click Finish to close the wizard.

The mobile app package of Kaspersky Endpoint Security for Android is automatically published on the Kaspersky Security Center Web Server. The mobile app package contains the app, the settings for connecting the mobile device to the Administration Server, and a certificate. The mobile device user will receive a notification containing a link for downloading the package from the Web Server. The user clicks the link. The operating system of the device then prompts the user to accept installation of the mobile app package. If the user agrees, the package will be downloaded to the mobile device. After the package is downloaded and the mobile device is synchronized with the Administration Server, the device is displayed in the Mobile devices folder, which is a subfolder of the Mobile Device Management folder in the console tree.

See also:

Scenario: Mobile Device Management deployment

Page top