Skip to main content

Deploying SureMDM Agent for Dual Enrollment

Devices enrolling in Autopilot via SureMDM by default enroll as EMM enrolled devices. To leverage complete functionality of SureMDM for managing Windows devices, Dual Enrollment is recommended. Below are steps to deploy SureMDM agent to EMM enrolled devices seamlessly

1. Navigate to SureMDM Web Console > Settings (icon located at the top right of the screen) > Account Settings > Customize SureMDM Agent/SureLock > Windows / Windows Server..

2. Select SureMDM Agent app from the Select App drop-down menu.

note

App Download URL field is auto-populated on selecting the application.

3. There are 2 ways to configure the application under the Select option:

a. Key Settings

  • Enable Nix: Enables communication between SureMDM Agent and SureMDM Account after Agent installation. Enabled by default, use Advanced settings to modify the setting.
  • Account ID: Account ID is the unique identifier for your SureMDM account. Enter the Account ID to which devices will enroll. (Click the Settings button on the top right corner of the SureMDM console to get Account ID.)
  • Server Path: Enter the SureMDM console URL to which devices will be enrolled. SureMDM Agent Password: If configured, the user has to provide the same password to access the SureMDM Agent settings.
  • Select Device Name: Choose the type of name to be used for the devices. Devices enrolled via Autopilot/OOBE will follow their respective device name configuration.
  • Enable Mailbox: Select this option to show the Mailbox option on the SureMDM Agent home screen.

b. Advanced Settings

  • App Settings: Use this section to add the xml of the application.

Sample xml:

<NixSettings>
<EnableNix>true</EnableNix>
<ServerPath>Enter ServerPath here</ServerPath>
<Password />
<DeviceEntityStatus>PREAPPROVED</DeviceEntityStatus>
<DeviceID />
<CustomerID>Enter AccountID here</CustomerID>
<NewIDType />
<NameType>MachineName</NameType>
<IDType>SYSTEMID</IDType>
<EnableMailbox>true</EnableMailbox>
<IsApproved>true</IsApproved>
</NixSettings>

note
  • Please reach out to 42Gears support for any additional available key pairs.
  • Supported on Windows SureMDM Agent version 4.39 or later and Windows Server SureMDM Agent version 6.29.0 or later.

4. Click Generate and then download the .exe of SureMDM Agent.

5. After downloading the .exe file in Step 6, convert it to the .msi format using any suitable tool before proceeding to the next step.

note

A .msi file can only be deployed on a devices enrolled in an EMM. When generating the .msi file, make sure to use the install switch /verysilent to ensure a silent installation process.

6. Upload the .msi file to SureMDM console.

  • SureMDM console > App Store > Windows > Add New App > Select MSI File.
  • Provide the URL where .msi file of SureMDM Agent is hosted > Click on Add.
  • Update App Title, Category and Description > Click Save.

7. Browse to SureMDM console > Profiles > Windows > Application Policy > Add > Windows App Store > Choose SureMDM Agent uploaded in previous step > Add.

8. Enter the Profile Name and click Save. Deploy these to group of EMM enrolled devices.

9. Once the process is completed, EMM-enrolled devices will be Dual Enrolled seamlessly without requiring any user intervention. As a result, the device will now fully support all the capabilities of SureMDM.

💬 Help us improve this documentation

Was this information useful?

Your feedback helps us keep our documentation accurate, up to date, and useful.