Configuring and deploying through an endpoint management solution

Use your Mobile Device Management (MDM) or Unified Endpoint Management (UEM) solution to configure and deploy Nexthink Mobile.

This documentation uses Microsoft Intune admin center as an example; however, you can perform the same configuration using any other solution as well.

Creating an installation token in Nexthink

To configure Nexthink Mobile in your MDM or UEM solution and on mobile devices, you must first create an installation token in your Nexthink instance by completing the following steps.

1

Select Administration > Collector management:

Accessing Collector management
2

Select the Mobile tab:

Accessing the Mobile tab
3

Select Generate installation token and fill in the following values:

  • Name: Add a meaningful name for the token.

  • Valid until: Define an expiration date for the token. The maximum token validity is one year, which is also the default value.

4

Select Generate installation token to generate a new token.

Copying the installation token

Select Copy token in the action menu to copy it to the clipboard:

Copying the installation token

Use this token while creating an app policy in Intune and when manually setting the connection on mobile devices.

Configuring and deploying Nexthink Mobile in Intune

Adding Nexthink Mobile

Perform the following steps to add Nexthink Mobile to Intune.

1

Select Apps > Android > Create.

2

For App type, select Managed Google Play app:

3

In Google Play, go to the Search Play Store dashboard.

4

Search for the keyword "Nexthink Mobile" and install the app from the search result:

Creating an app configuration policy

Create an app configuration policy and assign it to your Entra ID groups by following the steps below.

1

Go to Apps > Manage apps > Configuration.

2

Select Create > Managed devices:

3

On the Create app configuration policy dashboard, fill in the following fields:

  • Name: Add a meaningful name for your policy.

  • Platform: Select Android Enterprise.

  • Profile type: Select the profile that is applicable to your organization.

4

Select Targeted app and select the previously created app from the list and proceed to Settings:

5

Select +Add and enable the Post notification permission with the Auto grant state to allow the app to run in the background:

6

In Configurations settings format, select Use configuration designer from the dropdown and select the lower +Add button:

7

Select the following configuration keys, and set the pertaining value types and configuration values:

Configuration key
Value type
Configuratoin value

Data Upload Network

choice

Choose one of the following options:

  • Upload Always: Includes Wi-Fi and mobile data

  • Upload only when not roaming: Includes Wi-Fi and mobile data

  • Upload only over wifi: Wi-Fi only

Force Show Settings Screen

bool

Select the checkbox.

Nexthink Installation Token

string

The installation token you generated for your Nexthink tenant.

Nexthink Proxy URL

string

The URL of your Nexthink tenant, such as instance.data.eu.nexthink.cloud.

Primary user UPN

variable

Select User principal name (UPN) in the Configuration value dropdown list.

Unique Device Identifier

variable

Select Intune Device ID in the Configuration value dropdown list.

⚠️ This is needed to ensure correct functionality with the connector.

8

Select Add groups and add the groups to which you want to assign the policy, then select Create to finalize the app.

Installing Nexthink Mobile on client devices

After creating an app configuration policy, you can define which device groups install Nexthink Mobile automatically and which ones must install it manually:

  • Fully company-managed devices can automatically install Nexthink Mobile through the MDM or UEM solution.

  • Bring-your-own devices (BYOD) must have a work profile on them and install Nexthink Mobile manually from the app store.

First, select Nexthink Mobile by following the steps below.

1

Select the app from the list of Android apps:

Select app to set up for automatic and manual installation
2

Select Properties, then Assignments > Edit.

Proceed with Automatic installation or Manual installation based on the specific device types.

Automatic installation

Select + Add group under Required, and set the Update priority to High priority:

Automatic installation groups

Device groups in this category will install Nexthink Mobile automatically the next time Intune syncs with the devices.

Manual installation

Select + Add group under Available for enrolled devices:

Manual installation groups

At this point, Nexthink Mobile will be available in your organization's company portal, from where users can install it directly on their client mobile devices.

Launching Nexthink Mobile automatically

By default, after the installation, the mobile device user must open Nexthink Mobile manually for the first time. This only has to be done once; after that, the app will automatically launch following each device reboot.

However, depending on the device manufacturer, you might use an OEM plugin, configured in Intune, to launch it automatically on user devices after installation. The following sections explain such use cases.

Samsung Knox Service Plugin

Prerequisites

  • The Samsung Knox Service Plugin is added to your organization’s app collection.

  • The plugin is deployed and installed on the target Samsung mobile devices.

Plugin configuration

1

In Intune, go to Devices > Managed devices > Configuration.

2

Select Create profile, add the following values and select Create:

  • Platform: Android Enterprise

  • Profile type: Templates

  • Template name: OEMConfig

3

Add a meaningful name for the profile, then click Select an OEMConfig app and select the Knox Service Plugin app.

4

Select the Knox Service Plugin profile type and configure a Device-wide policy:

Knox plugin device-wide policies
5

Configure the following settings:

  • Enable device policy controls: Set to true.

  • Application management policies: Select Configure and configure the following policies:

    • Enable application management controls: Set to true.

    • Battery optimization allowlist: Add the following Nexthink Mobile package name: com.nexthink.mobile.nexthinkapp

    • Package Name for Auto-Launch: Add the following Nexthink Mobile package name: com.nexthink.mobile.nexthinkapp

    • Enable permission controls: Set to true.

6

You do not need to define Scope tags; proceed to Assignments, and select + Add groups to define which device groups will be part of the policy.

Zebra OEM Plugin

Prerequisites

  • The Zebra OEMConfig Powered by MX is added to your organization’s app collection.

  • The plugin is deployed and installed on the target Samsung mobile devices.

Plugin configuration

1

In Intune, go to Devices > Managed devices > Configuration.

2

Select Create profile, add the following values and select Create:

  • Platform: Android Enterprise

  • Profile type: Templates

  • Template name: OEMConfig

3

Add a meaningful name for the profile, then click Select an OEMConfig app and select the Zebra OEMConfig Powered by MX app.

4

Select the Zebra OEMConfig Powered by MX profile type and open the Package Configuration:

Adding a Package Configuration
5

Add a new setting:

Adding a new setting
6

Add the Nexthink Mobile package name com.nexthink.mobile.nexthinkapp, and app signature:

Adding package name and certificate
7

Select Feature Variances and add a new feature variance:

Adding a feature variance
8

Add a new setting and select the Exempt from Battery Optimization variance type:

Adding Exemp from Battery Optimization feature variance
9

To make sure the Nexthink Notification is not shown on Zebra devices to users, add a new feature variance and select the Hide Notification variance type.

Adding Hide Notifications featrure variance
10

To enable auto-launch for Nexthink Mobile, add a new feature variance and select the Launch app after install/upgrade variance type.

Adding Launch app feature variance

Certificate signature

When asked for a certificate signature for Nexthink Mobile, provide the value in the expandable section below.

Certificate signature value
MIIFiDCCA3CgAwIBAgIUNTeXGS/rLl8rCnrzzoovmN5YApowDQYJKoZIhvcNAQEL
BQAwdDELMAkGA1UEBhMCVVMxEzARBgNVBAgTCkNhbGlmb3JuaWExFjAUBgNVBAcT
DU1vdW50YWluIFZpZXcxFDASBgNVBAoTC0dvb2dsZSBJbmMuMRAwDgYDVQQLEwdB
bmRyb2lkMRAwDgYDVQQDEwdBbmRyb2lkMCAXDTI1MDUzMDA4MDkxNVoYDzIwNTUw
NTMwMDgwOTE1WjB0MQswCQYDVQQGEwJVUzETMBEGA1UECBMKQ2FsaWZvcm5pYTEW
MBQGA1UEBxMNTW91bnRhaW4gVmlldzEUMBIGA1UEChMLR29vZ2xlIEluYy4xEDAO
BgNVBAsTB0FuZHJvaWQxEDAOBgNVBAMTB0FuZHJvaWQwggIiMA0GCSqGSIb3DQEB
AQUAA4ICDwAwggIKAoICAQCtyYkdcFGsJJby58L22uMCK+l5XztQLZn6ZO/d1zbN
QWY9KODtrcI9sDe2XSGCU7OvGbM3gGQBFIB7HZmSCCYEmIzvvVn3Rb9ENdE1oRX1
ny8widuQQvZBDQwe0B4UAlVPuSaiEsFDQ/B4F+yhg+CjZfKxfPMJyxMTNbzPPWbA
Y4W40BnWjRN4Pr0pA9MitDqm1aOqgHcT4y3nzmdisa2xT4Oi+Xdk01605c7NH/Uh
KMZUIoVldok9nJKw6TNfdJgaovWTr7AsGeIn2qO58W32nErJ0TSwkWbPWgAYRQ4o
I2ZHm8s9X6j4+a2h7B0sv6gwuUhC/Ch3xfOjTMbBzBqEfiIQJuN+bbtLnOhpSjjz
Qe2fTAQ10Qdo7LeoQK8VyQCQZDg8ab7Dhpu3xz6SAEG7B1vA5hNvTFWq9/nZBASC
v7PFdSnXmLtRA4HWuZCvCNt+aInc/hlO2myrq97S1lXGem7IO3pXcTbzGw8bbOWR
cKumqDof+jy+4JTpsekqrSR+fHFDJ/5etPpFx8Wf+VS7BwcSS9QGL9+9BTEngUzA
49pjqtQ94ANFncn1Gh04f3wKxenZovHa3f4Auwetkcit6XIQexRsgFoH8WSzH987
PUPVHuzpaezoWyd2Q2WreJGgoUHQVjte6y/xuGgP+bp3X01eaaKRfhp2+kWduKly
tQIDAQABoxAwDjAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBCwUAA4ICAQAPnF9t
4hk1X0xFVt8x+Hm+WAeq7t9s3FYy0QofSrKDWIlyy2qeywlHLe9nuZ0jBVQjv998
w76uc7pFTp6SxsV+sPisWoKJ1FXkMS5k7Ca0xLZQAvPXXqRvXImZHpLvSQQcGHE3
52qt/kacf3eu1hVwpyAhY4mm1Bw2gbedvvCVLXlocIeB6dj3XLxeeLRA53bBCooE
wyTYANA0s0tbT049agU2y0CQ2LJlv17bVfF7LNL8+ubqor8qBOMpPkyMjRY3DsQc
06JKc4gILBPgwOLX6t307R/GAie04S0xb80mnj/k4bBD2GEgPQhjJkFenhI8NpsW
2HpYpdwZh3ceR/+cQJe+UI7oCruGbNy3kRdmFUGmjm+ySA7mqFdzCOSAvcjdikMV
iJZ+DFBBaN9SngESLAtvhkxliXIWU/drcgecjmMtVo16/txatOyT3v8KiHh2fxuz
3dDTfwrJ9FL0dEtt3ROu2D9B8BDz3fnCD7q375FzQ4/CC0Do5E0Ku/6mQBMITM5D
HQWJjLU69+oohz2jQPJDCdasrZjyaDjf0JiMFx8eqSc/eNjr38M7YDqX8GbHRBYN
v3CdT9Hqc1womdHxTALOLLBgK3OuSGP/6iTqpuSa214Fba32yi1U7F4n0PUcrL7F
153wfz3lRXKfKeOkBB0cTgsdG9Vvn522lavXXg==

Last updated

Was this helpful?