Device connectivity
This configuration manages the connectivity settings of Android Enterprise devices.
The Device connectivity configuration combines the settings for USB data access, Wi-Fi, tethering, Bluetooth sharing, private DNS, Wi-Fi roaming, access points (APN) and preferential network services. The portal shows the enrollment types and Android versions a setting applies to as badges on the respective field; they are listed below under Support.
In a new configuration, Unspecified is preselected for the selection fields. The exception is the Wi-Fi SSID restriction, where the denylist is preselected.
The configuration replaces the deprecated options for Wi-Fi configuration, USB file transfer and tethering in the Restrictions configuration. If a policy contains both configurations, the device connectivity settings apply (see Restrictions →).
USB data access
Controls what files and/or data can be transferred via USB. Charging is not affected.
Options:
- Unspecified
- Allow USB data transfer
- Disallow USB data transfer
- Disallow USB file transfer
The effect of Unspecified on USB file transfer is described in File transfer via USB →.
Support:
- COPE Work profile
- Managed Device
- For Disallow USB data transfer additionally Android 12+ and USB HAL 1.3+
Configure Wi-Fi
Controls to what extent users may configure Wi-Fi networks themselves.
Options:
- Unspecified
- Allow configuring Wi-Fi
- Disallow adding Wi-Fi – supported from Android 13 on COPE Work profile and Managed Device.
- Disallow configuring Wi-Fi – supported on COPE Work profile and Managed Device.
With Disallow configuring Wi-Fi, the portal shows the warning “The device can’t use Wi-Fi, unless a Wi-Fi configuration is added!”. In this case, the required networks are distributed via the Wi-Fi → configuration.
Wi-Fi direct settings
Controls the use of Wi-Fi Direct.
Options:
- Unspecified
- Allow Wi-Fi direct
- Disallow Wi-Fi direct
Support:
- COPE Work profile
- Managed Device
- Android 13+
Tethering settings
Controls to what extent users may use tethering such as Wi-Fi or Bluetooth tethering.
Options:
- Unspecified
- Allow all tethering
- Disallow Wi-Fi tethering – supported from Android 13 on COPE Work profile and Managed Device.
- Disallow all tethering – supported on COPE Work profile and Managed Device.
Bluetooth sharing
Controls whether content may be shared via Bluetooth.
Options:
- Unspecified
- Allowed
- Disallowed
Wi-Fi SSID restriction
Defines which Wi-Fi SSIDs the device may connect to. This does not affect which networks can be configured on the device.
Options:
- Disallow connection to Wi-Fi SSIDs (preselected) – denylist. The SSIDs are entered in the field Wi-Fi SSIDs which cannot be connected to.
- Allow connection only to Wi-Fi SSIDs – allowlist. The SSIDs are entered in the field Wi-Fi SSIDs which can be connected to; at least one entry is required.
Support:
- COPE Work profile
- Managed Device
- Android 13+
Private DNS
- Private DNS mode – configuration mode for the device’s global private DNS settings.
- Unspecified – defaults to User choice.
- User choice – users may configure private DNS themselves.
- Automatic – the device tries to use the network-provided DNS server over an encrypted connection before resorting to cleartext. Users cannot change the setting.
- Specified host – the device only uses the DNS server specified in the Private DNS host field. Users cannot change the setting.
- Private DNS host – host name of the DNS server. The field can only be edited in Specified host mode and is then required; without a host name, Relution rejects saving.
Support:
- Private DNS mode: Work profile, Managed Device
- Private DNS host: Managed Device
Wi-Fi roaming
In the Wi-Fi roaming area, Add creates one Wi-Fi roaming setting per SSID:
- SSID (required) – network name the setting applies to. Only one setting per SSID is possible.
- Wi-Fi roaming mode – Default (preselected), Disabled or Aggressive.
Support:
- Managed Device
- COPE Work profile
- Android 15+
APN
The Access Point Name (APN) area manages mobile network access points.
Enable override APNs
Options: Unspecified, Disabled, Enabled. Supported on Managed Device from Android 10.
APN settings
Add creates an APN setting. In the dialog, the portal points out that only the APN type Enterprise should be selected to use the setting in a work profile. An APN setting with the same name or the same APN as an existing one is not accepted.
| Field | Description |
|---|---|
| APN types | Required, multiple selection: Enterprise (Android 13+), Bearer Independent Protocol (BIP) (Android 12+), Carrier Branded Services (CBS), Default, Dial-up Networking (DUN), Emergency, Firmware Over-the-Air (FOTA), High-Priority (HiPri), Initial Attach (IA), IP Multimedia Subsystem (IMS), Mission Critical Service (MCX), Multimedia Messaging System (MMS), Rich Communication Services (RCS) (Android 15+), Secure User Plane Location (SUPL), Virtual SIM (VSIM) (Android 12+), XML Configuration Access Protocol (XCAP) (Android 11+) |
| Name | Required, display name of the APN setting |
| APN | Required, name of the access point |
| Numeric operator ID | Optional |
| Carrier ID | Optional, value from 0 |
| Authentication type | Unspecified, None, PAP, CHAP, PAP or CHAP |
| Username, Password | Optional |
| Proxy address, Proxy port | Optional, port from 0 |
| Server address (MMSC) | Optional |
| MMS proxy address, MMS Proxy port | Optional, port from 0 |
| Protocol, Roaming protocol | Unspecified, IP, IPv4/IPv6, IPv6, Non-IP, Point to point (PPP), Unstructured |
| Network types | Multiple selection: EDGE, GPRS, GSM, HSDPA, HSPA, HSPAP, HSUPA, IWLAN, LTE, NR (New Radio) 5G, TD_SCDMA, UMTS |
| Enable Always-on PDU Session | Unspecified, Not always on, Always on (Android 15+) |
| MVNO type | Unspecified, Group Identifier level 1 (GID), Integrated Circuit Card Identifier (ICCID), International Mobile Subscriber Identity (IMSI), Service Provider Name (SPN) |
| MTU v4, MTU v6 | Optional, value from 0 (Android 13+) |
Preferential network services
The Preferential network service settings area assigns apps to dedicated enterprise network slices, such as 5G enterprise slices.
- Default preferential network ID – applies to apps without their own configuration. Options: Unspecified (preselected), No preferential network, Preferential network 1 to Preferential network 5. A preferential network selected here must also be included in the list of configurations.
Under Preferential network service configurations, Add creates one configuration per network ID:
- Preferential network ID (required) – Preferential network 1 to Preferential network 5. Each ID can only be used once.
- Fallback to default connection – whether the app may fall back to the default connection when the preferential network is unavailable. Options: Unspecified, Allowed, Disallowed.
- Use of other networks – whether the app may use networks that do not match the preferential network service criteria. Options: Unspecified, Allowed, Disallowed (Android 14+).
If Use of other networks is set to Disallowed, Fallback to default connection must also be set to Disallowed. If the list contains no configuration, Relution transfers nothing for this area to the device, including no default network ID.
Support:
- Android 13+
- Managed Device
- Work profile