# Configure additional kiosk settings on ChromeOS devices from Hexnode UEM

While the [single](https://www.hexnode.com/mobile-device-management/help/single-app-kiosk-mode-chromeos/)/[multi](https://www.hexnode.com/mobile-device-management/help/multi-app-kiosk-mode-chromeos/) app kiosk mode in Hexnode creates a controlled environment on devices, there are several additional settings that allow for further customization to better suit the organization’s needs. These kiosk settings on ChromeOS include device-specific options such as power (AC/battery) settings, accessibility features, and restrictions like URL allowlisting/blocklisting, among others. Additionally, you can also set up alerts to notify administrators about the device’s status while it is in kiosk mode.

Through Hexnode UEM, you can use **Kiosk Settings** on ChromeOS devices to configure specific device settings including power (AC/battery) settings, accessibility options, and usage restrictions. The restrictions include URL allowlisting/blocklisting, control over WebUSB and Web Serial access and more. Additionally, you can also set up alerts to notify administrators about the device status while it is in kiosk mode.

 Notes:For the policy to take effect,

3. Organizations must purchase [Kiosk & Signage Upgrade](https://chromeos.google/products/device-management/#action-quadrant-os-device-management) licenses for each device.
4. **Kiosk Settings** must be configured alongside **Single/Multi App Kiosk Lockdown**.
 

Configuring kiosk settings
--------------------------

To configure the kiosk settings in ChromeOS devices enrolled in Hexnode UEM, follow the steps below:

1. Log in to your Hexnode portal.
2. Go to **Policies > New Policy** to create a new policy or select an existing policy from the list and click on **Manage > Modify**.
3. Navigate to **Kiosk Lockdown > ChromeOS Kiosk Lockdown > Kiosk Settings** and click on **Configure**.

You will have the following settings to configure,

SettingDescriptionDevice status alertsWhen enabled, alerts will be sent via email or SMS whenever the device is powered off. - **SMS**: If enabled, alerts will be sent through SMS when the device is turned off. The phone number(s) which should receive the SMS must be specified explicitly.
- **Email**: If enabled, alerts will be sent through email when the device is turned off. The email(s) which should receive the alert must be specified explicitly.

URL blocklistEnter the URLs to be blocklisted in kiosk mode.URL allowlistEnter the URLs to be allowlisted in kiosk mode.Virtual keyboard functionalityYou can enable virtual keyboard functionalities for web apps. The functionalities available are: - Auto suggest
- Handwriting
- Voice input

Kiosk troubleshooting toolsIf enabled, kiosk troubleshooting tools such as *Developer tools* and *Task manage*r will be accessible for users on the kiosk device.Allowed WebUSB DevicesWhen enabled, you can specify the URLs of websites that can access specific USB devices connected to the kiosk device via WebUSB API.
 Note: 
Only the USB devices explicitly listed with corresponding web URLs and product IDs will be accessible.

 

 Anonymized data collectionWhen enabled, the URLs of pages visited by users are anonymously sent to Google.Remote access file transferWhen enabled, admins can perform file transfers on the kiosk device during remote access sessions.Enterprise Hardware Platform APIWhen enabled, the Enterprise Hardware Platform API gets activated on the device.Allowed Web Serial DevicesWhen enabled, you can specify the URLs of websites that can access specific serial devices connected to the kiosk device.
 Note: 
Only the serial devices explicitly listed with corresponding web URLs and product IDs will be accessible.

 

 Lid close actionSpecify the device action that should occur when the lid of the device is closed.
The options available are: - Shutdown
- Suspend
- Do nothing

### AC/Battery power settings

The following settings can be configured for ChromeOS devices in kiosk mode when connected to AC or battery power:

SettingDescriptionIdle timeoutSet the duration of inactivity after which the device goes into idle mode. Idle actionSpecify the device action that should take place when the device becomes idle. Options include–**Log out**, **Suspend**, **Shut down**, or **Do nothing**.Idle warning timeoutSpecify the period of idle time after which a warning is displayed notifying the user that an idle action is about to occur on the device.Screen dim timeoutSet the amount of idle time after which the device screen dims.Screen off timeoutSpecify the amount of idle time after which device screen turns off.### Accessibility Settings

The following accessibility settings can be configured for ChromeOS devices in kiosk mode:

SettingDescriptionScheduled SleepWhen enabled, you can set schedules where the device can be put into sleep mode automatically. Show floating accessibility menuWhen enabled, the floating accessibility menu will be shown on the device.Kiosk spoken feedbackSpecify whether ChromeOS devices can read aloud text on the screen in kiosk mode. The available options include—**Enabled**, **Disabled**, or **User can choose**.Select to speakSpecify whether users can select on-screen items to hear the corresponding text read aloud. The available options include—**Enabled**, **Disabled**, or **User can choose**.High contrastSpecify if high contrast mode is enabled in the kiosk device to improve screen visibility. The available options include—**Enabled**, **Disabled**, or **User can choose**.Sticky KeysSpecify whether sticky keys is enabled on the device or not. The available options include—**Enabled**, **Disabled**, or **User can choose**.Virtual keyboardSpecify whether virtual on-screen keyboard can be displayed on the screen. The available options include—**Enabled**, **Disabled**, or **User can choose**.DictationSpecify whether the dictation feature can be used on the device. The available options include—**Enabled**, **Disabled**, or **User can choose**.Keyboard focus highlightSpecify whether on-screen items are highlighted when users move through them using keyboard navigation. The available options include—**Enabled**, **Disabled**, or **User can choose**.Caret highlightSpecify if the area around the caret is highlighted while editing text. The available options include—**Enabled**, **Disabled**, or **User can choose**.AutoclickSpecify if the Autoclick feature is enabled or not. The available options include—**Enabled**, **Disabled**, or **User can choose**.Large cursorSpecify if the mouse cursor should be displayed in a larger size. The available options include—**Enabled**, **Disabled**, or **User can choose**.Cursor highlightSpecify whether a highlight should appear around the mouse’s cursor. The available options include—**Enabled**, **Disabled**, or **User can choose**.Switch primary mouse buttonSpecify whether to switch the primary mouse button on the kiosk device. The available options include—**Enabled**, **Disabled**, or **User can choose**.Mono audioSpecify whether to enable mono audio on the device, ensuring the same sound plays through all speakers. The available options include—**Enabled**, **Disabled**, or **User can choose**.Screen magnifierConfigure the screen magnifier feature on the kiosk device. The available options include: - **Full screen**: The user will be able to magnify the entire screen.
- **Docked**: The user will be able to magnify only a part of the screen.
- **Disabled**
- **User can choose**

Accessibility shortcutsConfigure access to accessibility keyboard shortcuts for users on the kiosk device. The available options include—**Enabled**, **Disabled**, or **User can choose**.Associating the policy to Organizational Units (OUs)
----------------------------------------------------

Policies cannot be directly associated with ChromeOS devices; they can only be applied through Organizational Units (OUs).

To associate a ChromeOS policy to the devices upon configuration,

1. Navigate to **Policy Targets > Domains/OUs**.
2. Click on **+Add Domain/OUs**. From the list, select the Google Workspace account integrated with Hexnode, indicated by the (Google) tag.
3. The parent OU will be listed here and is indicated with a briefcase icon to differentiate it from domains.
4. Click the dropdown next to the parent OU to view its child OUs. Select the required Organizational Units and click **OK**.
5. Note that a policy assigned to a parent OU will automatically apply to all its child OUs. Associate the policies to the OUs to which the target devices are assigned.
6. Click **Save** to associate the policy to the devices under the selected Organization Units.