This week a quick tip about enabling browser access on Android Enterprise Corporate-Owned Fully Managed devices and Android Enterprise Corporate-Owned devices with Work Profile, to work with device-based Conditional Access. That will enable the user to eventually use different apps for accessing company data. That includes for example using the Chrome browser app for accessing SharePoint Online or Exchange Online. On the Android Enterprise devices, this requires a configuration in the Microsoft Authenticator app. In this post I’ll simply provide the steps that are required within the Microsoft Authenticator app.
Note: Before providing the mentioned steps, a big thank you to Pat Freeman for pointing me in the right direction.
Enable browser access in the Microsoft Authenticator app
When knowing the availability of the setting, it’s actually quite simple, but it wasn’t mentioned in the documentation. Eventually it only takes a few simple steps that are described below including screenshots.
- Open the Microsoft Authenticator app and navigate to the three dots > Settings as shown in Figure 1
- On the Settings page, scroll down to Work or school accounts and select Device registration as shown in Figure 2
- On the Device registration page, select Enable browser access as shown in Figure 3
- On the Enable browser access pop-up, select CONTINUE as shown in Figure 4
- On the Activate device admin app page, read the information and select Activate as shown in Figure 5
- Back on the Device registration page, a message with Browser access enabled will show as shown in Figure 6
After performing these steps, access will be available. That includes access via the Chrome browser app. It does, however, often requires a restart of the Chrome browser app.
Note: This configuration is similar as for Android Enterprise Personally-Owned devices with Work Profile. However, that configuration was performed in the Company Portal app and isn’t needed anymore starting December 2020.