Forum Discussion

Tharakaper's avatar
Tharakaper
Copper Contributor
Nov 07, 2024

Deploying and Activating Microsoft Defender on Android Kiosk Devices Without User Interaction

I’m working with an Android Kiosk device that deploys two applications. This device is enrolled under 'Corporate-owned dedicated devices' Enrollment Profiles and isn’t assigned to any specific user. Our company requires Microsoft Defender on all devices, but I’m encountering issues with Defender activation

—it won’t activate without a user login. Since this is a dedicated Kiosk device with no assigned user, this setup doesn’t align well with our needs.

Are there any options to deploy and activate Microsoft Defender on Android Kiosk devices without requiring user interaction? Any guidance on configuring Defender in this scenario would be greatly appreciated."

3 Replies

  • ARZHost's avatar
    ARZHost
    Copper Contributor

    Deploying Microsoft Defender on Android Kiosk devices without user interaction can be tricky since Defender usually requires user sign-in for activation. One potential workaround is using Intunes app configuration policies to preconfigure Defender settings. Also have you checked if Defender can be activated using a device-based license instead of a user based one.

  • garye's avatar
    garye
    Copper Contributor

    Microsoft Defender for Endpoint on Android isn't supported on userless or shared devices.

    https://learn.microsoft.com/en-us/defender-endpoint/microsoft-defender-endpoint-android

     

    This would include Kiosk device setups.

    I would recommend using a Device restrictions policy along with App configuration policies to lock-down the device and reduce your Attack Surface Area.

  • SIntune's avatar
    SIntune
    Copper Contributor

    same question from my side.. as Android kiosk [dedicated devices single app and entra shared mode enrolled without user affinity]

Resources