Hi @gnishilda,
Accurate device time is important for several management and security functions, including SSL/TLS certificate validation, authentication, MDM communication, scheduled policies, and update enforcement. If users can alter the local clock, it may cause sync failures, authentication errors, or policy bypasses.
Hexnode app update policies are handled through background agent services with elevated permissions, so standard users do not need access to date and time settings for updates to work.
For Windows devices:
- Go to Policies > Windows > Advanced Restrictions.
- Open Allow Device Functionality.
- Disable Users can change date and time.
- Save and associate the policy with the required devices or device groups.
For macOS devices:
Date and time settings should be enforced centrally. You can do this by deploying a custom configuration profile or a shell script through Hexnode to configure the NTP time server and time zone. This helps keep macOS devices synchronized without relying on users to set the time manually.
Regards,
Sienna Carter
Hexnode UEM