Admin Part

Policy Definition

  • Log into gControl from admin console (App button -> More -> gControl).

  • From quick links open “Device Login settings”

  • You will be taken to the following screen where you need to define your device policy

  • Click on add policy

  • In the screen shown below you need to define the device policy for your users/OU.DeviseMGM.png

  • Fill in the details as explained below

    • Title: Fill in a title for your policy

    • Description: Fill in description for your policy

    • Enabled: With this check box you can enable/disable the policy.

    • Valid Always: With this check box the policy will stay valid always.

    • Valid From: If you chose to have a validity for your policy you can define the start date of validity in Valid From.

    • Valid To: If you chose to have a validity for your policy you can define the end date of validity in Valid to.

    • Message: You can save a message for the user who is violating the device policy.

    • Machine Binding: If predefined is chosen, admin would need to provide the user and mac id combination in the policy. If Approval is chosen, Admin can set approval policy for the users and register their MAC Ids when they try to log in.

    • No of Devices Allowed: YOu can define maximum number of MAC Id the users would be using.

    • No of Skips Allowed: This option shows up, if Approval option is chosen. If the admin allows skipping the approval process, admin can define maximum how many times user can skip the approval before he is forced for approval.

    • Action Of Violation: This option shows up, if Approval option is chosen. There are three options in here.

      • Request for approval and Proceed: Here user can request for approval and proceed to log in to his account. For the next log in the user needs to have his MAC ID configured in gControl with approval.

      • Register Or Skip: This will allow user to skip the registration process number of times defined in the “No of Skips Allowed field”

      • Force For Registration: Will not allow user to log in until his MAC ID is registered.

    • All Users: This option will apply policy to all users in the domain

    • User emails Section: Here admin can define user one by one or he can import a CSV for adding multiple users at the same time.

    • Notify For Approval/Violation: This again has 3 options which can be used together or in combination as per requirement

      • Google Apps Admin: An email of violation/approval would be sent to Google apps admin account

      • Manager: If reporting is defined in the Google apps contacts, it will pick the immediate manager and send notification to that ID.

      • Individual: Admin can define email addresses that get notified.

User - MAC Management

Once the Policy is defined, go to User MAC Management Tab to define the user and MAC combination as shown below

  • Click the Add User MAC button. Following screen will show up

  • Enter the user email ID in User Email text box and Devide MAC Id in the next text box and click Add. You can also upload csv in the format shown above.

  • Once the MAC ID is added it will show as follows.

End User Part

Following steps need to be followed by the end user with device policy to log into his account

  • Open the Google apps sign in page and login with your credentials

  • Following screen will show up for the user under device policy

  • Since the user is under device policy, user needs to log in via Agent. He can download the agent using the Download Agent button.
    • Popup asking for saving the agent file will show up as shown

    • Click on Save and run the file. A permission window will open as shown.

    • Click Run. Installation will start as shown

    • Keep all the default options in the following screen and click continue
    • Please click “I Agree” button on the following screen to proceed

    • Click Yes on the following screen.

    • Once the installation is complete, the agent will open the login popup

    • Please provide your complete email address and password as shown above. Click Login

    • It will open your account in the web (default browser).

    • An Icon for the agent gets created on desktop for future log in.