Profile Structure
Summary
Silverback deploys several profiles to Apple, Android and Samsung SAFE devices when it is enrolled. It does not put all of the content into one profile, but it does group some settings into certain profiles. This article is to explain what profiles Silverback will deploy, and what the content of each one is.
This is important to know, as changing a profile will force that profile to be re-installed, which could interrupt the user experience. A good example of this is changing the Exchange profile will cause the user's mail to resync as the profile is re-applied.
Profiles
Base MDM Profile
This is the core profile that enables device management. The Base MDM Profile is used for Apple devices only. No configured settings from the console are deployed in this profile. If the device loses this profile it is assumed to be no longer managed by Silverback.
Privileges Profile
This contains all of the items that the user gets access to when they are in a "managed" state, e.g. WiFi or VPN. When the user is blocked, this profile is removed. This contains all of the company settings that are deployed to the device, except for Exchange, Restrictions and Passcode and Webclips.
Exchange Profile
This contains any mail configurations for the device. This not only includes Exchange ActiveSync settings, but also IMAP and POP3 email settings. This profile is removed when the device is blocked.
Restrictions Profile
This contains the restrictions, such as blocking access to certain device apps or switching of camera. It also contains passcode settings that are deployed to the device. This profile will exist on the device whether it is managed or blocked.
Webclips profile
This contains any webclips or shortcuts that are pushed to the device for easy navigation for the user. This is removed when the device is blocked.