Android Enterprise enrollment asks for Google Workspace login even when Hexnode authentication is set to No AuthenticationSolved

Participant
Discussion
3 weeks ago Jun 01, 2026

Hi, I’m enrolling Android devices using an Android Enterprise QR code. The enrollment profile is set to No Authentication, but during setup the device still asks for a Google Workspace / G Suite account.

The device is being enrolled as Device Owner. After signing in, enrollment completes, but the work account used during enrollment is visible to the end user in the Play Store and under Settings > Google. These are shared devices, so I was hoping there would be no visible account associated with the device.

Is this expected behavior, and is there a way to stop users from changing or removing that account?

Replies (3)

Marked SolutionPending Review
Hexnode Expert
3 weeks ago Jun 01, 2026
Marked SolutionPending Review

Hi @raelynn,

Yes, this can happen with Android Enterprise enrollment. The No Authentication option in the Hexnode enrollment profile controls whether Hexnode asks for user authentication during enrollment. It does not bypass the Google authentication step required by Android Enterprise.

If Android Enterprise was originally configured using a Google Workspace account, Google may require that account during device setup to bind and register the device with the enterprise domain. Signing in with the Google Workspace account allows the device to complete Android Enterprise Device Owner enrollment.

After enrollment, the managed Google account may be visible on the device, including in the Play Store and under Google account settings.

Regards,
Sienna Carter
Hexnode UEM

Marked SolutionPending Review
Participant
3 weeks ago Jun 02, 2026
Marked SolutionPending Review

That makes sense. Signing in with the Workspace account did let the enrollment finish. The remaining concern is that these are shared devices, so I don’t want users removing that work account or adding their own Google accounts.

Marked SolutionPending Review
Hexnode Expert
3 weeks ago Jun 02, 2026
Marked SolutionPending Review

Hi @raelynn,

For Android devices enrolled as Device Owner, you can prevent users from modifying accounts through the Android restrictions policy in Hexnode.

Configure the Android Advanced restriction for Modify Accounts/Users, so users cannot remove the existing work account or add other internet accounts on the device. After saving the policy, associate it with the shared devices or the relevant device group.

This does not necessarily hide the managed Google account from every system screen, but it prevents end users from removing it or adding personal accounts, which is usually the recommended setup for shared Android Enterprise devices.

Regards,
Sienna Carter
Hexnode UEM

Save