The Credential manager policy configuration profile allows you to select which credential provider apps (for example, password managers or passkey providers) can be used by the device users. This configuration profile can allow or block the use of already installed credential provider applications.
Requirements
The following requirements must be met to deploy a Credential manager policy configuration profile on Android devices:
- The device must be running Android 14 or later.
- Miradore client version 2.18.10 or later must be installed on the device.
- Allowed credential provider applications must be installed on the device before deploying the configuration profile.
Steps
- Navigate to Management > Configuration profiles and select Add.
- Select Android, then select Next.
- Select Credential manager policy, then select Next.
- Select one of the following items from the Credential provider access drop-down list:
- Allow all credential providers: Device users can enable any credential provider app on their devices.
- Allow only selected credential providers: Device users can only enable those credential provider apps on their devices that are defined in the configuration profile. If selected, the Credential provider app package names field must be filled in.
- Allow selected credential providers and system/default providers: Device users can only enable those credential provider apps on their devices that are defined in the configuration profile or are preinstalled on the devices as system apps or default apps. If selected, the Credential provider app package names field must be filled in.
- Block selected credential providers: Device users cannot enable those credential provider apps on their devices that are defined in the configuration profile. They can still enable apps that are not blocked. If selected, the Credential provider app package names field must be filled in.
- Optional: If the selected Credential provider access is Allow only selected credential providers, Allow selected credential providers and system/default providers, or Block selected credential providers, enter the application's package name in the Credential provider app package names field, then select Add.
The package name is the unique identifier of the application in the Google Play store. It can be found at the end of the URL on the application's Google Play store page. For example, the Miradore client application's package name is com.miradore.client.v2, as shown in its Google Play store URL: https://play.google.com/store/apps/details?id=com.miradore.client.v2.
Note: For the Allow selected credential providers and system/default providers option, entering a package name is optional. If no app is allowed except for system and default apps, the field can be left empty.
You can define multiple apps by entering the package name in the text field and selecting Add. To remove an app from the list, select the bin
icon. - Select Next.
- Enter a name and description for the configuration profile, and select Create to finalize the configuration.
- Select Close to exit the wizard.
- Deploy the configuration profile to the managed Android devices as described in Deploying a configuration profile.
Tip: Consider adding the configuration profile to a business policy to automate deployment.
Results: Device users can enable allowed credential provider applications in the device's settings. Credential providers that are installed but blocked cannot be enabled.
