App Policy

Install the Authenticator app from the app policy and set all necessary advanced configurations.

About this task

To create and assign one app policy:

Procedure

  1. Navigate to Policies > Apps then select New App Policy to create one new app policy for Android Enterprise.
  2. Add the Microsoft Authenticator app.
    Select Apps Screen
  3. Select Add.
    Create App Policy Screen
  4. Select Configure to open ADVANCED CONFIGURATIONS.
  5. Select the Installation Options section, then select Mandatory as the deployment type. Select High Priority, then toggle on Launch App After Installation.
    Advanced Configurations Screen
  6. Select the Managed App Config section, then toggle on Enable Managed App Config.
  7. Do one of the following:
    • If you have added credentials (Microsoft Entra Tenant ID) to Microsoft Integration, select Populate. you may skip step 9.
    • If you have not or want to select Manual Entry, proceed with the following steps.
  8. Toggle on Shared Device Mode.
  9. Enter the same tenant id used for conditional access integration into the Shared Device Mode Tenant Identifier field. Enter macro %SHARED_DEVICE_REG_TOKEN% in the Shared Device Mode Registration token field.
    Advanced Configuration Screen showing Managed App Config tab
  10. Select SAVE then SAVE AND ASSIGN. Assign the policy to the device or group where the device resides.

What to do next

Configure the Single Sign-on group.