Cisco Secure Access Help

PDF

Cisco Secure Access Help

Unmanaged Mobile Device Protection

Want to summarize with AI?

Log in

Describes Unmanaged Mobile Device Protection in Cisco Secure Access. Secure Access for unmanaged mobile devices is a solution targeted at devices that are not managed by a Mobile Device Manager (MDM).


Secure Access for unmanaged mobile devices is a solution targeted at devices that are not managed by a Mobile Device Manager (MDM). The solution can be deployed to any iOS or Android device that meets the minimum requirements.

As with any unmanaged solution, deployment of security coverage requires user action.


Administrator Actions

An admin can deploy a mobile device that is not managed by a Mobile Device Management (MDM) system. As a full administrator, you must provision authorized users by uploading the list of users from a comma-separated values (CSV) file or syncing the users from Active Directory (AD) using the AD Connector. Then, after you register a user in Secure Access, share the enrollment information with the user.


Enrolling Unmanaged Mobile Devices

Note

Be aware that:

  • Only users in the authorized list are permitted to enroll.

  • The enrollment is time-limited and the enrollment link expires at the date indicated.

  • Once expired, a new enrollment data set must be supplied to continue enrollment.

Before you begin

Ensure that you:

  • Have full admin access to Secure Access. For more information, see Manage Accounts.
  • Upload or sync authorized users to Secure Access:
    • Upload the list of users from a CSV file.

    • Integrate Active Directory (AD) users using the AD Connector.

  • Have a Secure Access subscription that supports the deployment of mobile devices.

Procedure

  1. Navigate to Connect > End User Connectivity and click Internet Security. Click the Android or iOS tab.


    The Android Unmanaged interface.
  2. Under the Unmanaged Devices Configuration section, click Register.


    The Configuration Android interface.
  3. In the Configure Unmanaged Android Clients window, click Copy User Registration Information to download the enrollment information.

  4. Click Link to copy the enrollment link that will be used to enroll the Cisco Secure Client app on your mobile device.

  5. Share the enrollment Information with the provisioned users.After at least one user is deployed, you can view any provisioned users in Secure Access. To enroll, an admin must share enrollment data with users directly.


End-user Actions

This topic walks you through how to register and enable Secure Access security on your mobile device when invited by a Secure Access administrator. Administrator enrollment is required to begin activation. Users that are not authorized to deploy Secure Access mobile are not permitted to configure the application.

Secure Access for unmanaged mobile devices can be deployed to any Android or iOS device that meets the minimum requirements.


Android

Prerequisites

  • Android 8.0 or higher version
  • Valid invite to an authorized user from a Secure Access administrator
  • Device with a camera or Firefox Browser installed
  • Cisco Secure Client application installed

Deployment

Download the Cisco Secure Client application from the Google Play Store.

Enrollment

Enrollment is available in two ways: QR code (camera required) or manual enrollment link. Follow the steps of your desired enrollment method:

Enrollment by QR code

  1. Open the Cisco Secure Client app and open the main menu.
  2. Select Diagnostics.
    The Umd Eu Diagnostics interface.
  3. Select Scan QR Code and scan the QR code provided.
    The Umd Eu Scan QR interface.

    Continue to activation steps. 

Enrollment without Camera Access

  1. Open the Cisco Secure Client app and open the main menu.
  2. Select Settings.
  3. Select External Control and change the setting to Prompt.
    The Umd Eu Prompt interface.
  4. Open the browser on your phone and paste the enrollment link into the address bar. You can obtain the enrollment link from the enrollment information shared by the Administrator.
  5. Open the main menu and select the option for Open in App.

    Continue to activation steps. 


Registration and Activation

Procedure

  1. Enter your authorized email address to complete enrollment.

    Note
    If the email provided is not authorized, the registration fails, and protection will not be prompted to activate. Please try again or contact your administrator.
  2. Activate the prompted VPN connection to initialize DNS coverage.

    A VPN connection is used locally to apply protection to your DNS queries. Allow the VPN Connection when prompted to complete activation of protection.

  3. Visit welcome.umbrella.com to verify that your protection is active.


iOS

Prerequisites

  • iOS 14 or higher version
  • Valid invite to an authorized user from a Secure Access administrator
  • Cisco Security Connector application installed

Deployment

Download the Cisco Security Connector application from the AppStore. Once installed, we recommend enrolling with the enrollment link. If a link is not provided, enrollment is also possible by scanning the QR code.

Enrollment via Link

  1. Open the browser on your phone and paste the enrollment link shared by the Administrator.
  2. When prompted, tap to open it with the Cisco Security Connector app. If you are not prompted and the link opens directly in Safari, please ensure the Cisco Security Connector app is installed.

Enrollment by QR code

  1. Scan the QR code provided.
  2. Allow the link to be opened via the Cisco Security Connector.

Registration and Activation

After tapping enrollment, a popup appears. In this text field, enter your email address. This must be the email address configured by your administrator.


The Umd Eu Ios Register interface.

Follow the on-screen instructions to enable DNS Security.

Procedure

  1. Tap Enable.

  2. Under the DNS option list, select Cisco Secure Access.


    The Secure Access Activate interface.

What to do next

If the direct settings link does not appear, the setting may also be reached manually with the steps below:

  1. Navigate to Settings.

  2. Tap General.

  3. Tap VPN and Device Management. Once enabled, this will read VPN, DNS, and Device Management.

  4. Under the DNS option, select Umbrella.

Return to the Cisco Security Connector app and visit welcome.umbrella.com to verify that your protection is active.