Disallow account management

Disallow account management

An administrator of a WeGuard account may need to restrict users from adding or accessing personal Gmail accounts or any other unauthorized accounts on enterprise-enrolled devices.


If this restriction is not enabled, users may add their personal accounts to the device and potentially access or synchronize corporate data through unauthorized services. This can create a security risk and may allow users to bypass the organization’s security controls.


As demonstrated in this section of the video, without the required restriction, a user can add a personal Gmail account to a WeGuard-enrolled device. Therefore, administrators should ensure that only approved enterprise accounts can be added to managed devices.



Disallow the user from managing the account


  • Log in to the WeGuard  Console.

  • Navigate to Policies and Select the Policy Group.



  • Click on Security and find Disallow Account Management.



  • Give package ID (Eg. com.google.android.gm) and click Add Type.

  • Admin can get the package ID's for any application they want to block and add there.



  • Click on Pending Change, then click on Save & Confirm.



Notes
When user tried to login to the blocked application, it will show an error message stating the action is blocked.





We hope this article was helpful. For additional support: