Commands for Android devices
Android
devicesFor
Android Management
activation types, see Considerations for Android Management activation types.Command | Description | Activation types |
---|---|---|
View device report | This command displays detailed information about a device. You can export and save the device report. | All (except BlackBerry 2FA ) |
View device actions | This command displays any actions that are in progress on a device.. | All (except BlackBerry 2FA ) |
Lock device | This command locks the device. The user must type the existing device password to unlock the device. When you send this command, the device locks only if there is an existing device password. Otherwise, no action is taken on the device. | Work and personal - full control (Android Management )Work and personal - user privacy (Android Management )Work space only (Android Management )Work and personal - full control (Android Enterprise )Work and personal - user privacy (Android Enterprise )Work space only (Android Enterprise )MDM controls |
Delete all device data | This command deletes all user information and app data that the device stores, including information in the work space, and returns the device to factory default settings. If the device is unable to connect to UEM when you send this command, you can either cancel the command or remove the device from the console. If the device connects to UEM after you remove it, only the work data is deleted from the device, including the work space, if applicable. | Work and personal - full control (Android Management )Work space only (Android Management )Work and personal - full control (Android Enterprise )Work and personal - full control (Samsung Knox )Work space only - (Samsung Knox )MDM controls |
Delete only work data | This command deletes work data, including the IT policy, profiles, apps, and certificates that are on the device and deactivates the device. If the device has a work space, the work space is deleted from the device but all personal apps and data remain. When you use this command on Android Enterprise devices, you can type a reason that appears in the notification on the user's device to explain why the work profile was deleted.If the device is unable to connect to UEM when you send this command, you can either cancel the command or remove the device from the console. If the device connects to UEM after you remove it, the work data is deleted from the device, including the work space, if applicable. | Work and personal - full control (Android Management )Work and personal - user privacy (Android Management )Work and personal - full control (Android Enterprise )Work and personal - user privacy (Android Enterprise )Work and personal - full control (Samsung Knox )Work and personal - user privacy (Samsung Knox )Work space only (Samsung Knox )MDM controls |
Unlock device and clear password | This command unlocks the device and prompts the user to create a new device password. If the user skips the "Create device password" screen, the previous password is retained. You can use this command if a user forgets the device password. This command is not supported by devices with Samsung Knox SDK 3.2.1 and later. | Work and personal - full control (Samsung Knox )Work and personal - user privacy (Samsung Knox )MDM controls (Samsung devices only) |
Specify device password and lock | This command allows you to create a device password and then lock the device. You must create a password that complies with existing password rules. To unlock the device, the user must type the new password. | Work and personal - user privacy (Android Management )Work space only (Android Management )Work space only (Android Enterprise )Work and personal - full control (Samsung Knox ) |
Reset work space password | This command deletes the current work space password from the device. When the user opens the work space, the device prompts the user to set a new work space password. | Work and personal - full control (Samsung Knox )Work and personal - user privacy - (Samsung Knox )Work space only - (Samsung Knox ) |
Specify work space password and lock | This command allows you to specify a work profile password and lock the device. When the user opens a work app, they must type the password that you specified. | Work and personal - full control (Android Enterprise )Work and personal - user privacy (Android Enterprise ) |
Disable/enable work space | This command disables or enables access to the work space apps on the device. | Work and personal - full control (Android Management )Work and personal - user privacy (Android Management )Work space only (Android Management )Work and personal - full control (Samsung Knox )Work and personal - user privacy - (Samsung Knox )Work space only - (Samsung Knox ) |
Deactivate BlackBerry 2FA | This command deactivates devices that are activated with the BlackBerry 2FA activation type. The device is removed from UEM and the user can't use the BlackBerry 2FA feature. | BlackBerry 2FA |
Wipe apps | This command wipes data from all Microsoft Intune managed apps on the device. The apps are not removed from the device. | All (except BlackBerry 2FA ) |
Update device information | This command sends and receives updated device information. For example, you can send newly updated IT policy rules or profiles to a device and receive updated information about a device such as OS version or battery level. | All (except BlackBerry 2FA ) |
Request bug report | This command sends a request to the device for the client logs. The device user must accept or decline the request. | Work space only (Android Enterprise )Work and personal - full control (Android Enterprise ) |
Restart device | This command sends a request to the device to restart. A message displays to the user that the device will restart in one minute. The device user has the option to snooze the restart for 10 minutes. | Work space only (Android Management )Work space only (Android Enterprise ) |
Remove device | This command removes the device from UEM but does not remove data from the device. The device may continue to receive email and other work data.This command is intended for devices that have been irretrievably lost or damaged and are not expected to contact the server again. If a device that has been removed attempts to contact UEM , the user receives a notification and the device won't be able to communicate with UEM unless it is reactivated. | All (except BlackBerry 2FA ) |