1. Home
  2. Enrollment
  3. G Suite Enrollment for iOS Devices
  1. Home
  2. iOS
  3. G Suite Enrollment for iOS Devices

G Suite Enrollment for iOS Devices

Hexnode MDM allows you to assign iOS devices to G Suite users. You need to initially configure G Suite with the MDM console, followed by enrolling the devices which can later be assigned to G Suite users.

To Assign devices to G Suite Users

  1. Configure G Suite.
  2. Enroll iOS devices via No Authentication.
  3. Assign the devices to G Suite users.

To Configure G Suite


Your Organization should have a G Suite Account.

Create Service Account

Creating Service Account

  1. Using the G Suite admin credential, login to Google Developers Console.
  2. Click on Create Project.
  3. Create a New Project by providing the following details.
    • Project Name: Provide a suitable project name and a corresponding project ID will be generated.
  4. From the Navigation Menu on the left pane, select APIs & Services > Credentials.
  5. Click on Create Credentials and from the drop-down list that appears select Service account key.
  6. Select New service account and provide the following details.
    • Service account name: Provide a suitable name for the service account.
    • Service account ID: Provide a suitable ID for the service account.
    • Role: From the drop-down list select Service Accounts > Service Account Admin.
  7. Select the Key type as JSON and click on Create.
  8. A JSON key will be downloaded. This key is later uploaded on to Hexnode MDM Console.
  9. From Navigation menu > IAM & admin > Service accounts. Select your service account and click on Edit.
  10. Select the checkbox Enable G Suite Domain-wide Delegation and provide the Product name for the consent screen and click on Save.
  11. Click on View Client ID.
  12. Copy the Client ID.
  13. From the Navigation menu select Dashboard and click on Enable APIs and Services.
  14. In the search box that appears, type admin sdk and select the same from the search results.
  15. Click on Enable to enable Admin SDK API.

Manage API Client Access for MDM

This process provides the MDM with a specific API access to apply the configurations to the managed devices.Ensure to Enable API access in the Admin console.

Manage API Client Access for MDM

  1. Using your G Suite Admin credentials, login to Google Admin Console and click on Security.
  2. From Advanced Settings > select Manage API client access.
  3. Authorize the API clients by providing the following details.
    • Client Name: Paste the Client ID copied previously.
    • One or More API Scopes: Copy and paste the link
      • https://www.googleapis.com/auth/admin.directory.user – To sync individual users.
      • https://www.googleapis.com/auth/admin.directory.group – To sync user groups.
    • Click on Authorize.

Integration of G Suite with Hexnode MDM Server

  1. Login to your Hexnode MDM portal.
  2. Navigate to Admin > G Suite.
  3. You will have the following options to be configured.

    G Suite macOS Management - Hexnode MDM Portal

    • G Suite Admin Email: Provide the Administrator email address of the G Suite account.
    • Domain Name: Provide the domain name to be managed by the Administrator.
    • G Suite key: Upload the JSON key previously downloaded.
  4. Click on Save to configure G Suite.

Enroll iOS devices via No Authentication.

  1. Once the G Suite account is configured, you can start enrolling your iOS devices with Hexnode MDM.
  2. Select the enrollment mode as No Authentication under Enroll > Settings > Authentication Modes.
  3. Select a G Suite User as Default User.
  4. Enroll iOS devices via No Authentication mode.
  5. The enrolled devices will now be assigned to the selected user under Enroll > Settings > Authentication Modes > No Authentication > Default User.
  6. If you need to enroll all the devices to a specific G Suite user, you can select that user here.

Assign the devices to G Suite users

You can now assign the devices to the respective G Suite users.

  1. Navigate to Manage > Devices.
  2. Clicking on the device takes you to the device summary page.
  3. From Actions > Change Owner.
  4. Change the domain from local to your domain name from the pop-up that appears and assign the device to a G Suite user.

Was this article helpful?

Related Articles

Leave a Comment