Global-Organisation

Introduction

With version 5.23.X, the Global-Organization has been introduced in Relution. This combines the ‘Store organization’ and the ‘System organization’. Until version 5.22, the store organization had to be activated manually. With version 5.23, this activation is automatic.

Identification of the global organization

The new organization has the name “Global”. Store_!

Accounts with the authorization of the system administrators and accounts with the authorization of the former ‘Store organization’ have access to it.

Functionality

The full range of functions is available to users with system administrator authorizations. New organizations can also be created in this organization. This is possible via the newly added menu item “Organizations”.

Users without authorization for organization administration, i.e. users who have been migrated from an existing ‘store organization’, have access to the typical range of functions of the ‘store organization’.

Range of functions

The following functions are made possible:

  • System-wide Apple Device Enrollment Program (DEP).
  • Native app distribution and versioning.
  • Publish policies.
  • Copy policies to organizations.
  • Global deployment of scripts.
  • System-wide LDAP configuration.
  • Move devices to another organization

System-wide Apple DEP

Via Apple School/Business Manager, Apple DEP devices can be assigned to the ‘Global Organization’. A DEP profile in the ‘Global Organization’ with the option ‘Enforce user authentication on enrollment’ assigns the Apple devices to the enrolled users in their corresponding organization.

Store_!

DEP →

Native app distribution and versioning

Native apps can be distributed via a policy with the configuration App conformity. The version assignment can be defined in the Global-Organization within the app.

Store_!

Store_!

Publish guidelines or copy them to organizations

Policies created in the Global-Organization can be distributed, there are 2 ways to do this:

  • Copying to a specific organization.
  • Global publishing for organizations.

Some of these options are only available for iOS policies.

Store_!

General policies →

Global provision of scripts

Powershell scripts uploaded in the Global-Organization can be made available read-only in all subordinate organizations. This works in a similar way to the publication of policies or apps. To do this, click on the three-dot menu on the script entry in the table and select the “Make publicly available” function.

System-wide LDAP configuration

The LDAP configuration can be made here in the ‘Settings’ and an organization-specific mapping can be made. The advantage is that the LDAP provider only needs to be configured centrally once.

This configuration can be set for user accounts, groups, classes, teacher and student accounts in the ‘Assign objects to organizations’ area.

Moving devices to other organizations

Devices can be moved to other organizations via the ‘Global organization’. This is not possible for Android Enterprise devices. Only policies that have been made publicly available via the global organization will be retained on the devices.