Forum Discussion
Re-issuing Zero Touch enrolled devices to other users
Interesting...Yes it's still registered in ZT pointing to our MDM. Our standard Android Corp model is a COPE one so the user would/could have logged in to the the Personal Profile with his own Google account. While we know we still can't do device PIN resets for example we expected that ZT would give us that flexibility to wipe and re-use the device without it being FRP locked to the previous user.
Looks like we could set an FRP admin email in our MDM Corp device config...we could still allow users to wipe the device themselves (or we block that as well) from system settings which would disable FRP however if a Corp device is reset through recovery mode we would have the associated FRP google email address to be able to set the device back up for someone else. I guess the downside is users who have to reset the device through recovery mode due to forgotten PIN would need our direct involvement...but if that means we can reuse all devices that's probably a good tradeoff...though I expect we'd need the device in hand or give the use the current google account creds which is not great...
Do I have that right? 🙂
Not worked so deep with COPE yet (as we don't use it right now) but i see in our MDM i can setup accounts being allowed for factory reset:
Which i guess would mean that those accounts can always being used to wipe the devices for reuse but never tested/used yet.
Related Content
- 11 months ago
- 5 months ago
- 10 months ago