Views:

View information about groups and manage groups on the Groups tab.

You can view the following information on the Groups tab.
  • For integration with Microsoft Endpoint Manager (Intune), VMware Workspace ONE UEM, or Microsoft Entra ID
    Data
    Description
    Group
    The group name
    For MDM integration, this is a group created in the MDM. For Microsoft Entra ID integration, this is an Entra ID group.
    Group type
    Note
    Note
    This attribute is available only when you integrate with VMware Workspace ONE UEM.
    The type of group in VMware Workspace ONE UEM
    Applied Android policy
    The Android policy that applies to the enrolled devices of the group
    Applied iOS/iPadOS policy
    The iOS/iPadOS policy that applies to the enrolled devices of the group
    User count
    The total number of users who belong to the group
    Device count
    The total number of enrolled devices owned by the group users
  • For integration with Google Workspace
    Data
    Description
    Organizational unit
    The organizational unit name
    Applied ChromeOS policy
    The ChromeOS policy that applies to the enrolled devices of the group
    Applied Android policy
    The Android policy that applies to the enrolled devices of the group
    Applied iOS/iPadOS policy
    The iOS/iPadOS policy that applies to the enrolled devices of the group
    User count
    The total number of users who belong to the group
    Device count
    The total number of enrolled devices owned by the group users
  • For integration with other MDMs through managed configuration
    Data
    Description
    Assignment group
    The assignment group name
    Assignment groups are created to manage enrolled users and devices that security policies and compliance policies can be assigned to.
    The built-in assignment group "All devices" contains all devices managed by the organization.
    Membership type
    The type of assignment group membership
    • Selected devices
      You manually assign your organization's devices to this assignment group and manually remove the devices.
    • Dynamic devices
      You create dynamic membership criteria to automatically add and remove devices. Dynamic group membership adds and removes group members automatically using membership criteria based on member attributes. When the attributes of a device change, the system evaluates all dynamic group criteria to see if the change would trigger any group adds or removes. If a device satisfies the criteria on a group, they are added as a member of that group. If they no longer satisfy the criteria, they are removed. You cannot manually add or remove a member of a dynamic group.
    Applied security policies
    The number of security policies that apply to the assignment groups
    Device count
    The number of devices that belong to the assignment group
    Membership last updated
    The time the group membership was last calculated
    This data applies only to the group membership type Dynamic devices.
You can perform the following actions on the Groups tab.
Action
Description
Filter group data
Use the search box to locate specific group data.
Remove groups
Select one or more groups from the list and click Remove Group.
Removing a group unenrolls all the devices that belong to the group users.
Note
Note
This action is not available when you integrate with Google Workspace.
Delete assignments
Click the delete icon (delete_policy=cce60f96-0e5c-4565-895f-d648c42e8495.jpg) corresponding to a device or select one or more groups from the list and click Delete.
Removing assignments deletes the groups and unenrolls all the devices that belong to the group users.
Note
Note
This action is only available when using MDM integration.
Show the users of a group
In the User count column, click the number to see a list of users filtered by Group:.
Show the enrolled devices owned by the group users
In the Device count column, click the number to see a list of enrolled devices filtered by Group:.
Add assignment groups
Note
Note
This action is available only when you integrate with an MDM through managed configuration.
  1. Click Add Assignment Group.
  2. Specify the group name.
  3. Specify the membership type.
    • If you select Selected devices, add devices as group members.
    • If you select Dynamic devices, specify the dynamic membership criteria.
      Devices meeting the criteria will be automatically added to the group.
Edit assignment groups
Note
Note
This action is available only when you integrate with an MDM through managed configuration.
In the Assignment group column, click the assignment group name number to edit the group name and group members.
Calculate memberships
Note
Note
This action is available only when you integrate with an MDM through managed configuration.
Click the calculate memberships icon (Sync_icon=bc994a2c-3a6c-419b-a584-a12efb14eacc.png) to calculate the group membership.
Based on the calculation result, Mobile Security updates the membership for groups of the "Dynamic devices" type.
Note
Note
This action applies only to the groups of the "Dynamic devices" type.
Sync user data from Microsoft Entra ID
Note
Note
This action is available only when you integrate with an MDM through managed configuration.
Click the Sync icon (calculate_icon=a2e509e3-0e6c-45a4-806a-4376e81e9147.jpg) corresponding to a group to synchronize user data from Microsoft Entra ID.
Based on the synchronization result, Mobile Device Director updates the membership for groups of the Microsoft Entra ID groups type.
Note
Note
This action applies only to the groups of the "Microsoft Entra ID groups" type.