Category filter
Integrate Check Point Harmony Mobile with Hexnode UEM
Check Point Harmony Mobile is a threat defense solution designed to safeguard mobile devices against emerging cyber-attacks. It provides complete protection over corporate data across all mobile attack surfaces like operating systems, applications, and networks. Its App Protection capability detects and prevents the download of malware apps. Moreover, it blocks phishing attacks across all applications and curtails the distribution of sensitive data from infected devices to malicious botnets, enhancing data protection.
Admins can further optimize mobile device security by integrating Check Point Harmony Mobile with Hexnode UEM. This integration enhances the security capabilities of both iOS and Android devices. With this integration, admins can access device-specific threat-related information in Hexnode UEM synced by the Harmony Mobile Protect app installed on the devices.
Check Point Harmony Mobile integration with Hexnode UEM
In the Hexnode UEM console,
- Log in to the Hexnode portal.
- Navigate to Admin > Integrations and select Check Point Harmony Mobile.
- Create the API key by configuring the following details:
- Instance Name: Provide a name to identify the integration in the Hexnode portal.
- Server address: Copy the displayed server address of your Hexnode console.
- Expiry Date: Specify the date of expiration of the generated API Key. The expiry date cannot be set more than 1 year from the date of generating the API key.
- Check the Notify Admin via Email on Key Expiry option to send an email to the admin when the API key expires.
- Click Create.
- The username and the API key will be generated.
In the Infinity Portal,
- Log in to the Infinity Portal.
- Go to Settings > Integrations.
- Click + Add > UEMs to create a new integration.
- Select Hexnode from the list of UEMs.
- Configure the following server details for Hexnode integration:
- Display Name: Provide a name to your service in the Infinity Portal. By default, the display name is Hexnode Default.
- Server Address: Paste the server address you copied from the Hexnode console.
- Username: Copy and paste the username generated in the Hexnode console.
- Password: Copy and paste the API key generated when configuring the instance in the Hexnode portal.
In the Hexnode UEM console,
- Click Done.
- Select Add Device Groups and select the device groups (consisting of the required iOS and Android devices) you want to add to this instance.
- Click Save. The selected device groups will be added to this instance.
In the Infinity Portal,
- Click Verify > Next.
- Select the device groups that are synced.
- In the Advanced settings, you can choose to import Personally Identifiable Information (PII) of devices that includes the device name, device number and device email. Additionally, choose to set up the interval configuration:
- Device sync interval: Set the interval for connecting with UEM to synchronize devices. Acceptable values: 30-1440 minutes. It must be in multiples of 10 minutes.
- Device deletion threshold: Percentage of devices allowed for deletion after UEM device sync. Set 100% for no threshold.
- Device deletion after: The number of syncs that should elapse before the deletion of missing devices.
- App sync interval: Harmony Mobile will start the next app synchronisation with the UEM after the specified minutes has passed. Acceptable values: 10-1440 min. It must be in multiples of 10 minutes.
- Click Verify > Next.
- Send tag information to Hexnode UEM to communicate the deployment status of Harmony Mobile Protect app and the risk level of the device. You can choose the following characteristics:
- Tag device status: The device status in Harmony Mobile Protect app.
- Tag device risk: The device risk level in Harmony Mobile Protect app.
- Click Verify > Next.
- Ignore the generated token and select Finish to complete Hexnode integration with Check Point Harmony Mobile.
The integration of Check Point Harmony Mobile with Hexnode UEM will be available on the page.
Register the devices using the Harmony Mobile Protect app
Get the device registration credentials from the Infinity Portal:
- On the Infinity Portal, go to Devices. This page displays all the devices synced from Hexnode UEM.
- Enable the checkbox of the synced device.
- Go to the More actions dropdown and select Registration code.
- The registration credentials will be generated for the device.
Add the Harmony Mobile Protect app for Android and iOS devices to the Hexnode app inventory and deploy the app to the device groups added to the instance. After successfully installing the application, proceed with completing the device’s registration from the Infinity Portal.
You can register devices on the Infinity Portal by scanning the QR code.
- Launch the app.
- Grant the necessary app permissions.
- Click the QR code scanner and scan the QR code generated in the Infinity Portal.
- Grant the Location and Background activity security settings as per the requirements. The policies configured in the Infinity Portal will get downloaded and the app will start scanning the device for any threats.
You can register devices by entering the device registration credentials appearing in the Infinity Portal to the app.
- Launch the app.
- Grant the necessary app permissions.
- Click the Register with credentials option:
- Server Address: Enter the server address generated in the Infinity Portal.
- Registration Key: Enter the registration code generated in the Infinity Portal.
- Click Login. The policies configured in the Infinity Portal will get downloaded and the app will start scanning the device for any threats.
On the Infinity Portal, click the Refresh button to update and retrieve the device’s details and status.
How to check the device risk status and app status on Hexnode UEM?
You can check the Harmony Mobile Protect app status and the Harmony Mobile device risk status on the device details page.
- On the Hexnode portal, navigate to Manage > Devices.
- Click on a device.
- From Actions, select Scan Device.
- You can check whether the scan is successful from the Action History.
- Upon successful scan, reload the page to view the changes.
- Go to the Device Info sub-tab.
- You will find two new fields:
- Harmony Mobile Protect app status: Provides the status of the app installed on the devices.
Field value | Definition |
---|---|
Provisioned | The app is not installed on the device. |
Active | The app is installed and activated on the device. |
Inactive | The device has not contacted Check Point Harmony Mobile for a certain number of days. (The number of days is configured in the Infinity Portal. Navigate to Policy > Global > Devices > Connectivity Settings. You can set the number of days from 1 to 45.) |
- Harmony Mobile device risk status: Provides the risk status of the device.
Field value | Definition |
---|---|
None | No risk detected by the app. |
Low | Low risk detected by the app. |
Medium | Medium risk detected by the app. |
High | High risk detected by the app. |
Managing the Check Point Harmony Mobile instance on the Hexnode portal
To view the details of the Check Point Harmony Mobile instance in the Hexnode portal, navigate to Admin > Integrations > Configured Integrations and select the instance. Here, you can see a complete list of all the device groups associated with the instance and generate a device risk status report in PDF or CSV format. The report consists of device’s Name, Group Name, Group Type, Harmony Mobile Protect Status, and Risk Status.
You can delete the device group by clicking on its corresponding trash icon. Once deleted, you will no longer be able to view the risk status of the devices associated with the group from the Hexnode portal.
Click on the Actions button to Reset or Delete the instance from the Hexnode portal. By resetting the integration instance, the associated API key and configurations will be reset. A new API key will be generated, which can be used to re-configure the integration. By deleting the integration instance, the associated API key and configurations will be permanently deleted from Hexnode UEM.