Device connectivity

This configuration manages the connectivity settings of Android Enterprise devices.

The Device connectivity configuration combines the settings for USB data access, Wi-Fi, tethering, Bluetooth sharing, private DNS, Wi-Fi roaming, access points (APN) and preferential network services. The portal shows the enrollment types and Android versions a setting applies to as badges on the respective field; they are listed below under Support.

In a new configuration, Unspecified is preselected for the selection fields. The exception is the Wi-Fi SSID restriction, where the denylist is preselected.

The configuration replaces the deprecated options for Wi-Fi configuration, USB file transfer and tethering in the Restrictions configuration. If a policy contains both configurations, the device connectivity settings apply (see Restrictions →).


USB data access

Controls what files and/or data can be transferred via USB. Charging is not affected.

Options:

  • Unspecified
  • Allow USB data transfer
  • Disallow USB data transfer
  • Disallow USB file transfer

The effect of Unspecified on USB file transfer is described in File transfer via USB →.

Support:

  • COPE Work profile
  • Managed Device
  • For Disallow USB data transfer additionally Android 12+ and USB HAL 1.3+

Configure Wi-Fi

Controls to what extent users may configure Wi-Fi networks themselves.

Options:

  • Unspecified
  • Allow configuring Wi-Fi
  • Disallow adding Wi-Fi – supported from Android 13 on COPE Work profile and Managed Device.
  • Disallow configuring Wi-Fi – supported on COPE Work profile and Managed Device.

With Disallow configuring Wi-Fi, the portal shows the warning “The device can’t use Wi-Fi, unless a Wi-Fi configuration is added!”. In this case, the required networks are distributed via the Wi-Fi → configuration.


Wi-Fi direct settings

Controls the use of Wi-Fi Direct.

Options:

  • Unspecified
  • Allow Wi-Fi direct
  • Disallow Wi-Fi direct

Support:

  • COPE Work profile
  • Managed Device
  • Android 13+

Tethering settings

Controls to what extent users may use tethering such as Wi-Fi or Bluetooth tethering.

Options:

  • Unspecified
  • Allow all tethering
  • Disallow Wi-Fi tethering – supported from Android 13 on COPE Work profile and Managed Device.
  • Disallow all tethering – supported on COPE Work profile and Managed Device.

Bluetooth sharing

Controls whether content may be shared via Bluetooth.

Options:

  • Unspecified
  • Allowed
  • Disallowed

Wi-Fi SSID restriction

Defines which Wi-Fi SSIDs the device may connect to. This does not affect which networks can be configured on the device.

Options:

  • Disallow connection to Wi-Fi SSIDs (preselected) – denylist. The SSIDs are entered in the field Wi-Fi SSIDs which cannot be connected to.
  • Allow connection only to Wi-Fi SSIDs – allowlist. The SSIDs are entered in the field Wi-Fi SSIDs which can be connected to; at least one entry is required.

Support:

  • COPE Work profile
  • Managed Device
  • Android 13+

Private DNS

  • Private DNS mode – configuration mode for the device’s global private DNS settings.
    • Unspecified – defaults to User choice.
    • User choice – users may configure private DNS themselves.
    • Automatic – the device tries to use the network-provided DNS server over an encrypted connection before resorting to cleartext. Users cannot change the setting.
    • Specified host – the device only uses the DNS server specified in the Private DNS host field. Users cannot change the setting.
  • Private DNS host – host name of the DNS server. The field can only be edited in Specified host mode and is then required; without a host name, Relution rejects saving.

Support:

  • Private DNS mode: Work profile, Managed Device
  • Private DNS host: Managed Device

Wi-Fi roaming

In the Wi-Fi roaming area, Add creates one Wi-Fi roaming setting per SSID:

  • SSID (required) – network name the setting applies to. Only one setting per SSID is possible.
  • Wi-Fi roaming mode – Default (preselected), Disabled or Aggressive.

Support:

  • Managed Device
  • COPE Work profile
  • Android 15+

APN

The Access Point Name (APN) area manages mobile network access points.

Enable override APNs

Options: Unspecified, Disabled, Enabled. Supported on Managed Device from Android 10.

APN settings

Add creates an APN setting. In the dialog, the portal points out that only the APN type Enterprise should be selected to use the setting in a work profile. An APN setting with the same name or the same APN as an existing one is not accepted.

FieldDescription
APN typesRequired, multiple selection: Enterprise (Android 13+), Bearer Independent Protocol (BIP) (Android 12+), Carrier Branded Services (CBS), Default, Dial-up Networking (DUN), Emergency, Firmware Over-the-Air (FOTA), High-Priority (HiPri), Initial Attach (IA), IP Multimedia Subsystem (IMS), Mission Critical Service (MCX), Multimedia Messaging System (MMS), Rich Communication Services (RCS) (Android 15+), Secure User Plane Location (SUPL), Virtual SIM (VSIM) (Android 12+), XML Configuration Access Protocol (XCAP) (Android 11+)
NameRequired, display name of the APN setting
APNRequired, name of the access point
Numeric operator IDOptional
Carrier IDOptional, value from 0
Authentication typeUnspecified, None, PAP, CHAP, PAP or CHAP
Username, PasswordOptional
Proxy address, Proxy portOptional, port from 0
Server address (MMSC)Optional
MMS proxy address, MMS Proxy portOptional, port from 0
Protocol, Roaming protocolUnspecified, IP, IPv4/IPv6, IPv6, Non-IP, Point to point (PPP), Unstructured
Network typesMultiple selection: EDGE, GPRS, GSM, HSDPA, HSPA, HSPAP, HSUPA, IWLAN, LTE, NR (New Radio) 5G, TD_SCDMA, UMTS
Enable Always-on PDU SessionUnspecified, Not always on, Always on (Android 15+)
MVNO typeUnspecified, Group Identifier level 1 (GID), Integrated Circuit Card Identifier (ICCID), International Mobile Subscriber Identity (IMSI), Service Provider Name (SPN)
MTU v4, MTU v6Optional, value from 0 (Android 13+)

Preferential network services

The Preferential network service settings area assigns apps to dedicated enterprise network slices, such as 5G enterprise slices.

  • Default preferential network ID – applies to apps without their own configuration. Options: Unspecified (preselected), No preferential network, Preferential network 1 to Preferential network 5. A preferential network selected here must also be included in the list of configurations.

Under Preferential network service configurations, Add creates one configuration per network ID:

  • Preferential network ID (required) – Preferential network 1 to Preferential network 5. Each ID can only be used once.
  • Fallback to default connection – whether the app may fall back to the default connection when the preferential network is unavailable. Options: Unspecified, Allowed, Disallowed.
  • Use of other networks – whether the app may use networks that do not match the preferential network service criteria. Options: Unspecified, Allowed, Disallowed (Android 14+).

If Use of other networks is set to Disallowed, Fallback to default connection must also be set to Disallowed. If the list contains no configuration, Relution transfers nothing for this area to the device, including no default network ID.

Support:

  • Android 13+
  • Managed Device
  • Work profile
Top