Skip to content

Mobile Device Management Service

This page describes the settings of the Mobile Device Management (MDM) Service. To open the settings, right-click the MDM Service in System Administration and select Service settings…. The dialog has the tabs General, Configuration, MDM agreements, and Allowed Domains.

The MDM Service depends on a Front-end Service and a Back-end Service. It gets its configuration from the Back-end Service, so it has no Database tab.

This tab resembles the property page of the service in Services in Windows.

Service settings for the MDM Service, General tab

Element Description
Service status Status of the MDM Service, as shown in Services in Windows.
Service name The name of the service used by the operating system.
Display name The name shown in Services in Windows.
Description Description of the service.
Startup type Automatic, manual, or disabled. The default value is automatic.
Last heartbeat The time of the last heartbeat from the service.
Path to executable The full path to the program that the service starts.

Service settings for the MDM Service, Configuration tab

Element Description
Public URL The URL that devices use to connect to the service.
Public port The port the service listens on.
Organization Name The organization name shown on managed devices.
SSL Certificate The certificate that secures the communication with the devices. Click the browse button to select it.
SCEP Service The SCEP endpoint that the service uses to enroll devices. You can’t change this value.
Front-end Service The Front-end Service that the MDM Service uses.
Back-end Service The Back-end Service that the MDM Service gets its configuration and data from.
Apple iOS Support, Apple MacOS Support Enables management of Apple devices.
Android Support Enables management of Android devices.
Windows Desktop Support, Windows Phone Support Enables management of Windows devices.
Windows Phone TLS port The TLS port used for Windows devices. The field is available when Windows support is enabled.
ChromeOS Support Enables management of ChromeOS devices.

On the MDM agreements tab, you change the texts shown when a device is enrolled.

Service settings for the MDM Service, MDM agreements tab

Element Description
User Agreement The text shown to a user who enrolls a device.
Operator Agreement The text shown to an operator who enrolls a device.

Service settings for the MDM Service, Allowed Domains tab

Element Description
Allowed User Domains The list of domains that users can belong to when they enroll devices. Use Add and Delete to change the list.