Applies to Android users who use managed Chrome browser.
As a Chrome Enterprise administrator, you can use Microsoft Intune to deploy a Chrome Enterprise Core enrollment token and enroll your Chrome browsers. You can then use your Google Admin console to enforce policies for any users who open Chrome browser on an enrolled Android device.
Before you begin
- Make sure you connect your Intune account to your Managed Google Play Account. For details, see the Microsoft documentation.
Enroll browsers
Step 1: Generate the enrollment token
-
Sign in to your Google Admin console.
Sign in using your administrator account (does not end in @gmail.com).
-
Generate an enrollment token. See Generate enrollment token.
-
Copy the token to use in step 3.
Step 2: Add the Google Chrome app
-
Sign into the Microsoft Endpoint Manager admin center.
-
Click AppsAll AppsAdd.
-
Click Add.
-
For App type, select the Managed Google Play app and then click Select.
-
Search for and select the Google Chrome app.
-
At the bottom, click Select.
-
Click Approve to add the app to the list.
-
In the box that opens, click Approve.
-
(Optional) If prompted for permission handling, select the policy that applies for your enterprise.
We recommend you select Keep approved. -
Click Sync to sync the Google Play Store and then click Refresh.
-
Click Google Chrome.
-
Click Properties.
-
Next to the Assignments title, click Edit.
-
For Assignment type, select Required and add one of the following:
-
a group of users or devices
-
all users
-
all devices
-
-
Click Review + save.
Step 3: Assign the enrollment token to Chrome browser
-
Still in the Microsoft Endpoint Manager admin center, select AppsApp configuration policiesAdd.
-
Select Managed devices or Managed apps based on the device management status.
Below shows the configuration for managed devices. -
Enter a configuration name, for example Chrome Browser Management.
-
For platform, select Android Enterprise and then choose a profile type that matches your use case.
-
For Targeted app, click Select app, select Chrome, and click Ok.
-
Click Next.
-
For Configuration format, select Use configuration designer.
-
Click +Add.
-
In the search bar on the left, search for Enrollment token.
-
Check the box next to Enrollment token and click Ok.
-
In the Configuration value box, paste the enrollment token you generated in Step 1.
-
Click Next.
-
Select the Connected apps policy that matches your enterprise policy and click Next.
-
Select any applicable Included groups and Excluded groups.
-
Click NextCreate.
Google and related marks and logos are trademarks of Google LLC. All other company and product names are trademarks of the companies with which they are associated.