Category filter
How to Blocklist / Allowlist apps on Windows devices
Some situations demand organizations to keep track of the apps used by the endpoints to determine that no insecure apps are present on corporate devices. Hexnode UEM lets you either blocklist or allowlist apps, which helps restrict unwanted apps and allows only company-approved apps on the device. In addition, it enables the administrators to take remedial actions so that the users do not access any untrusted apps from corporate devices.
App Blocklisting
- Login to your Hexnode UEM portal > Navigate to Policies tab > Click on New Policy to create a new one or click on any policy to edit an existing one > Enter the Policy Name and Description in the provided fields.
- Go to Windows > From App Management, choose Blocklist/Allowlist > Click on Configure.
- Choose Blocklist as the Type > Click on +Add button > Choose either Add App or Add Group.
- Select Add App,
From Local Apps, search and select the required apps > Click Done.
Or
Select Public Store to install apps directly from the public app store > Search and select the required apps > Click Done.Select Add Group,
search and select the required app group(s) > Click Done. - Navigate to Policy Targets > Click on +Add Devices > Select the target devices > Click OK > Save.
On applying the Blocklist policy to Windows device(s)
The device will be marked as non-compliant if any of the blocklisted apps are present on the device. The device summary page shows the exact number of blocklisted apps present on the device.
App Allowlisting
- Login to your Hexnode UEM portal > Navigate to the Policies tab > Click on New Policy to create a new one or click on any policy to edit an existing one > Enter the Policy Name and Description in the provided fields.
- Go to Windows > From App Management, choose Blocklist/Allowlist > Click on Configure.
- Choose Allowlist as the Type > Click on +Add button > Choose either Add App or Add Group.
- Select Add App,
from Local Apps, search and select the required apps > Click Done.
Or
Select Public Store to install apps directly from the public app store > Search and select the required apps > Click Done.Select Add Group,
search and select the required app group(s) > Click Done. - Navigate to Policy Targets > Click on +Add Devices > Select the target devices > Click OK > Save.
On applying the Allowlist policy to Windows device(s)
The apps that are not allowlisted will be treated as blocklisted, thus marking the device non-compliant.