REST Resource: enterprises.policies

উৎস: নীতি

পলিসি রিসোর্স হলো একগুচ্ছ সেটিংস, যা একটি পরিচালিত ডিভাইস এবং তাতে ইনস্টল করা অ্যাপগুলোর আচরণ নিয়ন্ত্রণ করে।

JSON উপস্থাপনা
{
  "name": string,
  "version": string,
  "applications": [
    {
      object (ApplicationPolicy)
    }
  ],
  "maximumTimeToLock": string,
  "screenCaptureDisabled": boolean,
  "cameraDisabled": boolean,
  "keyguardDisabledFeatures": [
    enum (KeyguardDisabledFeature)
  ],
  "defaultPermissionPolicy": enum (PermissionPolicy),
  "persistentPreferredActivities": [
    {
      object (PersistentPreferredActivity)
    }
  ],
  "openNetworkConfiguration": {
    object
  },
  "systemUpdate": {
    object (SystemUpdate)
  },
  "accountTypesWithManagementDisabled": [
    string
  ],
  "addUserDisabled": boolean,
  "adjustVolumeDisabled": boolean,
  "factoryResetDisabled": boolean,
  "installAppsDisabled": boolean,
  "mountPhysicalMediaDisabled": boolean,
  "modifyAccountsDisabled": boolean,
  "safeBootDisabled": boolean,
  "uninstallAppsDisabled": boolean,
  "statusBarDisabled": boolean,
  "keyguardDisabled": boolean,
  "minimumApiLevel": integer,
  "statusReportingSettings": {
    object (StatusReportingSettings)
  },
  "bluetoothContactSharingDisabled": boolean,
  "shortSupportMessage": {
    object (UserFacingMessage)
  },
  "longSupportMessage": {
    object (UserFacingMessage)
  },
  "passwordRequirements": {
    object (PasswordRequirements)
  },
  "wifiConfigsLockdownEnabled": boolean,
  "bluetoothConfigDisabled": boolean,
  "cellBroadcastsConfigDisabled": boolean,
  "credentialsConfigDisabled": boolean,
  "mobileNetworksConfigDisabled": boolean,
  "tetheringConfigDisabled": boolean,
  "vpnConfigDisabled": boolean,
  "wifiConfigDisabled": boolean,
  "createWindowsDisabled": boolean,
  "networkResetDisabled": boolean,
  "outgoingBeamDisabled": boolean,
  "outgoingCallsDisabled": boolean,
  "removeUserDisabled": boolean,
  "shareLocationDisabled": boolean,
  "smsDisabled": boolean,
  "unmuteMicrophoneDisabled": boolean,
  "usbFileTransferDisabled": boolean,
  "ensureVerifyAppsEnabled": boolean,
  "permittedInputMethods": {
    object (PackageNameList)
  },
  "stayOnPluggedModes": [
    enum (BatteryPluggedMode)
  ],
  "recommendedGlobalProxy": {
    object (ProxyInfo)
  },
  "setUserIconDisabled": boolean,
  "setWallpaperDisabled": boolean,
  "choosePrivateKeyRules": [
    {
      object (ChoosePrivateKeyRule)
    }
  ],
  "alwaysOnVpnPackage": {
    object (AlwaysOnVpnPackage)
  },
  "frpAdminEmails": [
    string
  ],
  "deviceOwnerLockScreenInfo": {
    object (UserFacingMessage)
  },
  "dataRoamingDisabled": boolean,
  "locationMode": enum (LocationMode),
  "networkEscapeHatchEnabled": boolean,
  "bluetoothDisabled": boolean,
  "complianceRules": [
    {
      object (ComplianceRule)
    }
  ],
  "blockApplicationsEnabled": boolean,
  "installUnknownSourcesAllowed": boolean,
  "debuggingFeaturesAllowed": boolean,
  "funDisabled": boolean,
  "autoTimeRequired": boolean,
  "permittedAccessibilityServices": {
    object (PackageNameList)
  },
  "appAutoUpdatePolicy": enum (AppAutoUpdatePolicy),
  "kioskCustomLauncherEnabled": boolean,
  "androidDevicePolicyTracks": [
    enum (AppTrack)
  ],
  "skipFirstUseHintsEnabled": boolean,
  "privateKeySelectionEnabled": boolean,
  "encryptionPolicy": enum (EncryptionPolicy),
  "usbMassStorageEnabled": boolean,
  "permissionGrants": [
    {
      object (PermissionGrant)
    }
  ],
  "playStoreMode": enum (PlayStoreMode),
  "setupActions": [
    {
      object (SetupAction)
    }
  ],
  "passwordPolicies": [
    {
      object (PasswordRequirements)
    }
  ],
  "policyEnforcementRules": [
    {
      object (PolicyEnforcementRule)
    }
  ],
  "kioskCustomization": {
    object (KioskCustomization)
  },
  "advancedSecurityOverrides": {
    object (AdvancedSecurityOverrides)
  },
  "personalUsagePolicies": {
    object (PersonalUsagePolicies)
  },
  "autoDateAndTimeZone": enum (AutoDateAndTimeZone),
  "oncCertificateProviders": [
    {
      object (OncCertificateProvider)
    }
  ],
  "crossProfilePolicies": {
    object (CrossProfilePolicies)
  },
  "preferentialNetworkService": enum (PreferentialNetworkService),
  "usageLog": {
    object (UsageLog)
  },
  "cameraAccess": enum (CameraAccess),
  "microphoneAccess": enum (MicrophoneAccess),
  "deviceConnectivityManagement": {
    object (DeviceConnectivityManagement)
  },
  "deviceRadioState": {
    object (DeviceRadioState)
  },
  "credentialProviderPolicyDefault": enum (CredentialProviderPolicyDefault),
  "printingPolicy": enum (PrintingPolicy),
  "displaySettings": {
    object (DisplaySettings)
  },
  "assistContentPolicy": enum (AssistContentPolicy),
  "workAccountSetupConfig": {
    object (WorkAccountSetupConfig)
  },
  "wipeDataFlags": [
    enum (WipeDataFlag)
  ],
  "enterpriseDisplayNameVisibility": enum (EnterpriseDisplayNameVisibility),
  "appFunctions": enum (AppFunctions),
  "defaultApplicationSettings": [
    {
      object (DefaultApplicationSetting)
    }
  ],
  "autofillPolicy": enum (AutofillPolicy),
  "crossDevicePolicies": {
    object (CrossDevicePolicies)
  },
  "backupService": enum (BackupService)
}
ক্ষেত্র
name

string

পলিসির নামটি enterprises/{enterpriseId}/policies/{policyId} ফর্ম্যাটে থাকে।

version

string ( int64 format)

পলিসির সংস্করণ। এটি একটি পঠনযোগ্য ক্ষেত্র। প্রতিবার পলিসি আপডেট করার সময় সংস্করণটি এক বৃদ্ধি পায়।

applications[]

object ( ApplicationPolicy )

অ্যাপগুলিতে নীতিমালা প্রয়োগ করা হয়েছে। এতে সর্বাধিক ৩,০০০টি উপাদান থাকতে পারে।

maximumTimeToLock

string ( int64 format)

ডিভাইসটি লক হওয়ার আগে ব্যবহারকারীর কার্যকলাপের জন্য সর্বোচ্চ সময়সীমা (মিলিসেকেন্ডে)। ০ মানের অর্থ হলো কোনো সীমাবদ্ধতা নেই।

screenCaptureDisabled

boolean

স্ক্রিন ক্যাপচার নিষ্ক্রিয় করা আছে কিনা। এটি ‘সার্কেল টু সার্চ’ বিকল্পটিও ব্লক করে দেয়।

cameraDisabled
(deprecated)

boolean

যদি cameraAccess মান CAMERA_ACCESS_UNSPECIFIED ছাড়া অন্য কিছু সেট করা থাকে, তবে এর কোনো প্রভাব পড়ে না। অন্যথায়, এই ফিল্ডটি ক্যামেরা নিষ্ক্রিয় থাকবে কিনা তা নিয়ন্ত্রণ করে: যদি 'true' হয়, তবে সমস্ত ক্যামেরা নিষ্ক্রিয় থাকে, অন্যথায় সেগুলি ব্যবহারযোগ্য থাকে। সম্পূর্ণরূপে পরিচালিত ডিভাইসগুলির জন্য, এই ফিল্ডটি ডিভাইসের সমস্ত অ্যাপের ক্ষেত্রে প্রযোজ্য। ওয়ার্ক প্রোফাইলের ক্ষেত্রে, এই ফিল্ডটি শুধুমাত্র ওয়ার্ক প্রোফাইলের অ্যাপগুলির জন্য প্রযোজ্য, এবং ওয়ার্ক প্রোফাইলের বাইরের অ্যাপগুলির ক্যামেরা অ্যাক্সেস প্রভাবিত হয় না।

keyguardDisabledFeatures[]

enum ( KeyguardDisabledFeature )

উইজেটের মতো কীগার্ড কাস্টমাইজেশন নিষ্ক্রিয় করা হয়েছে।

defaultPermissionPolicy

enum ( PermissionPolicy )

রানটাইম অনুমতি অনুরোধের জন্য ডিফল্ট অনুমতি নীতি।

persistentPreferredActivities[]

object ( PersistentPreferredActivity )

ডিফল্ট ইনটেন্ট হ্যান্ডলার অ্যাক্টিভিটিসমূহ।

সতর্কীকরণ: একই ইন্টেন্ট ডোমেনের (যেমন ওয়েব ব্রাউজিং) জন্য এটি এবং defaultApplicationSettings কনফিগার করবেন না। একই ইন্টেন্ট ডোমেনের জন্য উভয়ই সেট করলে অপ্রত্যাশিত আচরণ দেখা দিতে পারে।

openNetworkConfiguration

object ( Struct format)

ডিভাইসটির জন্য নেটওয়ার্ক কনফিগারেশন। আরও তথ্যের জন্য ‘নেটওয়ার্ক কনফিগারেশন’ দেখুন।

systemUpdate

object ( SystemUpdate )

সিস্টেম আপডেট পলিসি, যা নিয়ন্ত্রণ করে ওএস আপডেটগুলো কীভাবে প্রয়োগ করা হবে। যদি আপডেটের ধরণ WINDOWED হয়, তাহলে আপডেট উইন্ডোটি স্বয়ংক্রিয়ভাবে প্লে অ্যাপ আপডেটের ক্ষেত্রেও প্রযোজ্য হবে।

দ্রষ্টব্য: গুগল প্লে সিস্টেম আপডেট (যাকে মেইনলাইন আপডেটও বলা হয়) স্বয়ংক্রিয়ভাবে ডাউনলোড হয় এবং এটি ইনস্টল করার জন্য ডিভাইসটি রিবুট করার প্রয়োজন হয়। আরও বিস্তারিত তথ্যের জন্য 'সিস্টেম আপডেট পরিচালনা করুন' -এর মেইনলাইন বিভাগটি দেখুন।

accountTypesWithManagementDisabled[]

string

যেসব অ্যাকাউন্টের ধরন ব্যবহারকারী দ্বারা পরিচালিত হয় না।

addUserDisabled

boolean

নতুন ব্যবহারকারী এবং প্রোফাইল যোগ করা নিষ্ক্রিয় করা আছে কিনা। যেসব ডিভাইসের managementMode DEVICE_OWNER , সেসব ক্ষেত্রে এই ফিল্ডটি উপেক্ষা করা হয় এবং ব্যবহারকারীকে কখনও ব্যবহারকারী যোগ বা অপসারণ করার অনুমতি দেওয়া হয় না।

adjustVolumeDisabled

boolean

মাস্টার ভলিউম অ্যাডজাস্ট করা নিষ্ক্রিয় করা আছে কিনা। এটি ডিভাইসটিকেও মিউট করে দেয়। এই সেটিংটি শুধুমাত্র সম্পূর্ণভাবে পরিচালিত ডিভাইসগুলিতেই কার্যকর হয়।

factoryResetDisabled

boolean

সেটিংস থেকে ফ্যাক্টরি রিসেট করা নিষ্ক্রিয় করা আছে কিনা।

installAppsDisabled

boolean

ব্যবহারকারীর অ্যাপ ইনস্টলেশন নিষ্ক্রিয় করা আছে কিনা।

mountPhysicalMediaDisabled

boolean

ব্যবহারকারীর ফিজিক্যাল এক্সটার্নাল মিডিয়া মাউন্ট করার সুবিধাটি নিষ্ক্রিয় করা আছে কিনা।

modifyAccountsDisabled

boolean

অ্যাকাউন্ট যোগ করা বা মুছে ফেলা নিষ্ক্রিয় করা হয়েছে।

safeBootDisabled
(deprecated)

boolean

ডিভাইসটিকে সেফ বুটে রিবুট করা নিষ্ক্রিয় করা আছে কিনা।

uninstallAppsDisabled

boolean

ব্যবহারকারী কর্তৃক অ্যাপ্লিকেশন আনইনস্টল করার সুবিধা নিষ্ক্রিয় করা আছে কিনা। এটি অ্যাপ আনইনস্টল হওয়া থেকে বিরত রাখে, এমনকি applications ব্যবহার করে সরানো অ্যাপগুলোও।

statusBarDisabled
(deprecated)

boolean

স্ট্যাটাস বার নিষ্ক্রিয় করা আছে কিনা। এটি নোটিফিকেশন, কুইক সেটিংস এবং অন্যান্য স্ক্রিন ওভারলে নিষ্ক্রিয় করে, যেগুলো ফুল-স্ক্রিন মোড থেকে বেরিয়ে আসার সুযোগ দেয়। এটি এখন আর ব্যবহৃত হয় না। একটি কিয়স্ক ডিভাইসে স্ট্যাটাস বার নিষ্ক্রিয় করতে, InstallType KIOSK অথবা kioskCustomLauncherEnabled ব্যবহার করুন।

keyguardDisabled

boolean

সত্য হলে, এটি প্রাথমিক এবং/অথবা মাধ্যমিক ডিসপ্লেগুলির জন্য লক স্ক্রিন নিষ্ক্রিয় করে দেয়। এই নীতিটি শুধুমাত্র ডেডিকেটেড ডিভাইস ম্যানেজমেন্ট মোডে সমর্থিত।

minimumApiLevel

integer

সর্বনিম্ন অনুমোদিত অ্যান্ড্রয়েড এপিআই স্তর।

statusReportingSettings

object ( StatusReportingSettings )

স্ট্যাটাস রিপোর্টিং সেটিংস

bluetoothContactSharingDisabled

boolean

ব্লুটুথ কন্টাক্ট শেয়ারিং নিষ্ক্রিয় করা আছে কিনা।

shortSupportMessage

object ( UserFacingMessage )

অ্যাডমিন কর্তৃক কোনো কার্যকারিতা নিষ্ক্রিয় করা হলে, সেটিংস স্ক্রিনে ব্যবহারকারীকে এই বার্তাটি দেখানো হয়। বার্তাটি ২০০ অক্ষরের বেশি দীর্ঘ হলে তা সংক্ষিপ্ত করা হতে পারে।

longSupportMessage

object ( UserFacingMessage )

ডিভাইস অ্যাডমিনিস্ট্রেটরের সেটিংস স্ক্রিনে ব্যবহারকারীকে একটি বার্তা দেখানো হয়।

passwordRequirements
(deprecated)

object ( PasswordRequirements )

পাসওয়ার্ডের শর্তাবলী। passwordRequirements.require_password_unlock ফিল্ডটি সেট করা যাবে না। অপ্রচলিত - passwordPolicies ব্যবহার করুন।

দ্রষ্টব্য:

PasswordQuality এর জটিলতা-ভিত্তিক মান, অর্থাৎ COMPLEXITY_LOW , COMPLEXITY_MEDIUM এবং COMPLEXITY_HIGH , এখানে ব্যবহার করা যাবে না। unifiedLockSettings এখানে ব্যবহার করা যাবে না।

wifiConfigsLockdownEnabled
(deprecated)

boolean

এটি অপ্রচলিত।

bluetoothConfigDisabled

boolean

ব্লুটুথ কনফিগার করা নিষ্ক্রিয় করা আছে কিনা।

cellBroadcastsConfigDisabled

boolean

সেল ব্রডকাস্ট কনফিগার করা নিষ্ক্রিয় করা আছে কিনা।

credentialsConfigDisabled

boolean

ব্যবহারকারীর পরিচয়পত্র কনফিগার করা নিষ্ক্রিয় করা আছে কিনা।

mobileNetworksConfigDisabled

boolean

মোবাইল নেটওয়ার্ক কনফিগার করা নিষ্ক্রিয় করা আছে কিনা।

tetheringConfigDisabled
(deprecated)

boolean

টিথারিং এবং পোর্টেবল হটস্পট কনফিগার করা নিষ্ক্রিয় করা আছে কিনা। যদি tetheringSettings TETHERING_SETTINGS_UNSPECIFIED ছাড়া অন্য কিছুতে সেট করা থাকে, তাহলে এই সেটিংটি উপেক্ষা করা হবে।

vpnConfigDisabled

boolean

ভিপিএন কনফিগার করা নিষ্ক্রিয় করা আছে কিনা।

wifiConfigDisabled
(deprecated)

boolean

ওয়াই-ফাই নেটওয়ার্ক কনফিগার করা নিষ্ক্রিয় করা আছে কিনা। এটি সম্পূর্ণরূপে পরিচালিত ডিভাইস এবং কোম্পানির মালিকানাধীন ডিভাইসের ওয়ার্ক প্রোফাইলে সমর্থিত। সম্পূর্ণরূপে পরিচালিত ডিভাইসের ক্ষেত্রে, এটিকে 'true' সেট করলে সমস্ত কনফিগার করা নেটওয়ার্ক মুছে যায় এবং শুধুমাত্র openNetworkConfiguration ' ব্যবহার করে কনফিগার করা নেটওয়ার্কগুলো থেকে যায়। কোম্পানির মালিকানাধীন ডিভাইসের ওয়ার্ক প্রোফাইলের ক্ষেত্রে, বিদ্যমান কনফিগার করা নেটওয়ার্কগুলো প্রভাবিত হয় না এবং ব্যবহারকারীকে ওয়াই-ফাই নেটওয়ার্ক যোগ, অপসারণ বা পরিবর্তন করার অনুমতি দেওয়া হয় না। যদি configureWifi CONFIGURE_WIFI_UNSPECIFIED ছাড়া অন্য কিছুতে সেট করা থাকে, তাহলে এই সেটিংটি উপেক্ষা করা হবে। দ্রষ্টব্য: যদি বুট করার সময় নেটওয়ার্ক সংযোগ স্থাপন করা না যায় এবং ওয়াই-ফাই কনফিগার করা নিষ্ক্রিয় থাকে, তাহলে ডিভাইসের পলিসি রিফ্রেশ করার জন্য নেটওয়ার্ক এস্কেপ হ্যাচ দেখানো হবে (দেখুন networkEscapeHatchEnabled ')।

createWindowsDisabled

boolean

অ্যাপ উইন্ডো ছাড়াও অন্য উইন্ডো তৈরি করা নিষ্ক্রিয় আছে কিনা।

networkResetDisabled

boolean

নেটওয়ার্ক সেটিংস রিসেট করা নিষ্ক্রিয় আছে কিনা। এটি শুধুমাত্র সম্পূর্ণরূপে পরিচালিত ডিভাইসগুলিতে প্রযোজ্য। অন্যান্য ম্যানেজমেন্ট মোডের জন্য MANAGEMENT_MODE সহ একটি NonComplianceDetail রিপোর্ট করা হয়।

outgoingBeamDisabled

boolean

অ্যাপ থেকে ডেটা পাঠানোর জন্য NFC ব্যবহার নিষ্ক্রিয় করা আছে কিনা।

outgoingCallsDisabled

boolean

বহির্গামী কল নিষ্ক্রিয় করা আছে কিনা।

removeUserDisabled

boolean

অন্যান্য ব্যবহারকারীদের অপসারণ করা নিষ্ক্রিয় করা আছে কিনা।

shareLocationDisabled

boolean

অবস্থান শেয়ারিং নিষ্ক্রিয় করা আছে কিনা।

smsDisabled

boolean

এসএমএস পাঠানো এবং গ্রহণ করা নিষ্ক্রিয় করা আছে কিনা।

unmuteMicrophoneDisabled
(deprecated)

boolean

যদি microphoneAccess মান MICROPHONE_ACCESS_UNSPECIFIED ছাড়া অন্য কিছু সেট করা থাকে, তবে এর কোনো প্রভাব পড়ে না। অন্যথায়, এই ফিল্ডটি নিয়ন্ত্রণ করে যে মাইক্রোফোনগুলি নিষ্ক্রিয় থাকবে কিনা: যদি 'true' হয়, তবে সমস্ত মাইক্রোফোন নিষ্ক্রিয় হয়ে যায়, অন্যথায় সেগুলি উপলব্ধ থাকে। এটি শুধুমাত্র সম্পূর্ণরূপে পরিচালিত ডিভাইসগুলিতে উপলব্ধ।

usbFileTransferDisabled
(deprecated)

boolean

ইউএসবি-র মাধ্যমে ফাইল স্থানান্তর নিষ্ক্রিয় করা আছে কিনা। এই সুবিধাটি শুধুমাত্র কোম্পানির মালিকানাধীন ডিভাইসগুলিতেই সমর্থিত।

ensureVerifyAppsEnabled
(deprecated)

boolean

অ্যাপ যাচাইকরণ বাধ্যতামূলকভাবে চালু করা আছে কিনা।

permittedInputMethods

object ( PackageNameList )

যদি এই ফিল্ডটি উপস্থিত থাকে, তবে শুধুমাত্র এই তালিকায় থাকা প্যাকেজগুলো দ্বারা প্রদত্ত ইনপুট মেথডগুলোই অনুমোদিত হবে। যদি এই ফিল্ডটি উপস্থিত থাকে, কিন্তু তালিকাটি খালি থাকে, তবে শুধুমাত্র সিস্টেম ইনপুট মেথডগুলোই অনুমোদিত হবে।

stayOnPluggedModes[]

enum ( BatteryPluggedMode )

ব্যাটারি প্লাগ-ইন মোডগুলো ডিভাইসটিকে চালু রাখে। এই সেটিংটি ব্যবহার করার সময়, maximumTimeToLock আনচেক করার পরামর্শ দেওয়া হয়, যাতে ডিভাইসটি চালু থাকা অবস্থায় নিজে থেকে লক না হয়ে যায়।

recommendedGlobalProxy

object ( ProxyInfo )

নেটওয়ার্ক-নিরপেক্ষ গ্লোবাল HTTP প্রক্সি। সাধারণত openNetworkConfiguration এ প্রতিটি নেটওয়ার্কের জন্য আলাদাভাবে প্রক্সি কনফিগার করা উচিত। তবে, সাধারণ অভ্যন্তরীণ ফিল্টারিংয়ের মতো ব্যতিক্রমী কনফিগারেশনের জন্য একটি গ্লোবাল HTTP প্রক্সি কার্যকর হতে পারে। যদি প্রক্সিটি অ্যাক্সেসযোগ্য না হয়, তাহলে নেটওয়ার্ক অ্যাক্সেস ব্যাহত হতে পারে। গ্লোবাল প্রক্সি শুধুমাত্র একটি সুপারিশ এবং কিছু অ্যাপ এটি উপেক্ষা করতে পারে।

setUserIconDisabled

boolean

ব্যবহারকারীর আইকন পরিবর্তন করার সুবিধাটি নিষ্ক্রিয় করা আছে কিনা। এটি শুধুমাত্র অ্যান্ড্রয়েড ৭ এবং তার পরবর্তী সংস্করণ চালিত ডিভাইসগুলিতে প্রযোজ্য।

setWallpaperDisabled

boolean

ওয়ালপেপার পরিবর্তন করা নিষ্ক্রিয় করা আছে কিনা।

choosePrivateKeyRules[]

object ( ChoosePrivateKeyRule )

প্রাইভেট কী-তে অ্যাপগুলির অ্যাক্সেস নির্ধারণের নিয়মাবলী। বিস্তারিত জানতে ChoosePrivateKeyRule দেখুন। যদি কোনো অ্যাপ্লিকেশনের CERT_SELECTION ডেলিগেশন স্কোপ থাকে, তবে এটি অবশ্যই খালি থাকতে হবে।

alwaysOnVpnPackage

object ( AlwaysOnVpnPackage )

সর্বদা-সক্রিয় ভিপিএন সংযোগের জন্য কনফিগারেশন। এই সেটিংটির পরিবর্তন রোধ করতে vpnConfigDisabled এর সাথে ব্যবহার করুন।

frpAdminEmails[]

string

ফ্যাক্টরি রিসেট সুরক্ষার জন্য ডিভাইস অ্যাডমিনিস্ট্রেটরদের ইমেল ঠিকানা। যখন ডিভাইসটি ফ্যাক্টরি রিসেট করা হবে, তখন ডিভাইসটি আনলক করার জন্য এই অ্যাডমিনদের মধ্যে একজনকে গুগল অ্যাকাউন্টের ইমেল এবং পাসওয়ার্ড দিয়ে লগ ইন করতে হবে। যদি কোনো অ্যাডমিন নির্দিষ্ট করা না থাকে, তবে ডিভাইসটি ফ্যাক্টরি রিসেট সুরক্ষা দেবে না।

deviceOwnerLockScreenInfo

object ( UserFacingMessage )

ডিভাইসের মালিকের তথ্য লক স্ক্রিনে দেখানো হবে।

dataRoamingDisabled

boolean

রোমিং ডেটা পরিষেবা নিষ্ক্রিয় করা আছে কিনা।

locationMode

enum ( LocationMode )

অবস্থান শনাক্তকরণের সক্রিয় মাত্রা।

networkEscapeHatchEnabled

boolean

নেটওয়ার্ক এস্কেপ হ্যাচ সক্রিয় আছে কিনা। বুট করার সময় যদি কোনো নেটওয়ার্ক সংযোগ স্থাপন করা না যায়, তবে ডিভাইস পলিসি রিফ্রেশ করার জন্য এস্কেপ হ্যাচটি ব্যবহারকারীকে সাময়িকভাবে একটি নেটওয়ার্কে সংযোগ করতে অনুরোধ করে। পলিসি প্রয়োগ করার পর, অস্থায়ী নেটওয়ার্কটি মুছে যাবে এবং ডিভাইসটি বুট হতে থাকবে। এর ফলে এমন পরিস্থিতি এড়ানো যায় যেখানে সর্বশেষ পলিসিতে কোনো উপযুক্ত নেটওয়ার্ক না থাকলে এবং ডিভাইসটি লক টাস্ক মোডে কোনো অ্যাপে বুট করলে, অথবা ব্যবহারকারী অন্য কোনো কারণে ডিভাইসের সেটিংসে পৌঁছাতে না পারলে, নেটওয়ার্কে সংযোগ করতে না পারার মতো অবস্থা তৈরি হয়।

দ্রষ্টব্য: wifiConfigDisabled true-তে সেট করলে নির্দিষ্ট পরিস্থিতিতে এই সেটিংটি ওভাররাইড হয়ে যাবে। আরও বিস্তারিত জানতে অনুগ্রহ করে wifiConfigDisabled দেখুন। configureWifi DISALLOW_CONFIGURING_WIFI তে সেট করলে নির্দিষ্ট পরিস্থিতিতে এই সেটিংটি ওভাররাইড হয়ে যাবে। আরও বিস্তারিত জানতে অনুগ্রহ করে DISALLOW_CONFIGURING_WIFI দেখুন।

bluetoothDisabled

boolean

ব্লুটুথ নিষ্ক্রিয় আছে কিনা। bluetoothConfigDisabled এর পরিবর্তে এই সেটিংটি ব্যবহার করুন, কারণ ব্যবহারকারী bluetoothConfigDisabled এড়িয়ে যেতে পারেন।

complianceRules[]
(deprecated)

object ( ComplianceRule )

যখন কোনো ডিভাইস তার নীতিমালা মেনে চলে না, তখন কী কী প্রশমনমূলক ব্যবস্থা নিতে হবে, তা ঘোষণা করে এমন নিয়মাবলী। যখন একাধিক নিয়মের শর্ত পূরণ হয়, তখন সেই নিয়মগুলোর জন্য প্রযোজ্য সমস্ত প্রশমনমূলক ব্যবস্থা গ্রহণ করা হয়। সর্বোচ্চ ১০০টি নিয়মের সীমা রয়েছে। এর পরিবর্তে নীতিমালা প্রয়োগের নিয়ম ব্যবহার করুন।

blockApplicationsEnabled
(deprecated)

boolean

এই ক্ষেত্রের কোনো প্রভাব নেই।

installUnknownSourcesAllowed
(deprecated)

boolean

এই ক্ষেত্রের কোনো প্রভাব নেই।

debuggingFeaturesAllowed
(deprecated)

boolean

ব্যবহারকারীকে ডিবাগিং বৈশিষ্ট্যগুলি সক্রিয় করার অনুমতি দেওয়া হয়েছে কিনা।

funDisabled

boolean

ব্যবহারকারীকে মজা করার অনুমতি দেওয়া হবে কিনা। এটি নিয়ন্ত্রণ করে যে সেটিংসে থাকা ইস্টার এগ গেমটি নিষ্ক্রিয় থাকবে কিনা।

autoTimeRequired
(deprecated)

boolean

স্বয়ংক্রিয় সময় প্রয়োজন কিনা, যা ব্যবহারকারীকে ম্যানুয়ালি তারিখ ও সময় সেট করা থেকে বিরত রাখে। যদি autoDateAndTimeZone সেট করা থাকে, তাহলে এই ফিল্ডটি উপেক্ষা করা হয়।

permittedAccessibilityServices

object ( PackageNameList )

অনুমোদিত অ্যাক্সেসিবিলিটি পরিষেবাগুলি নির্দিষ্ট করে। যদি ফিল্ডটি সেট করা না থাকে, তবে যেকোনো অ্যাক্সেসিবিলিটি পরিষেবা ব্যবহার করা যেতে পারে। যদি ফিল্ডটি সেট করা থাকে, তবে শুধুমাত্র এই তালিকার অ্যাক্সেসিবিলিটি পরিষেবাগুলি এবং সিস্টেমের অন্তর্নির্মিত অ্যাক্সেসিবিলিটি পরিষেবা ব্যবহার করা যাবে। বিশেষ করে, যদি ফিল্ডটি খালি রাখা হয়, তবে শুধুমাত্র সিস্টেমের অন্তর্নির্মিত অ্যাক্সেসিবিলিটি পরিষেবাগুলি ব্যবহার করা যাবে। এটি সম্পূর্ণরূপে পরিচালিত ডিভাইস এবং ওয়ার্ক প্রোফাইলে সেট করা যেতে পারে। যখন কোনো ওয়ার্ক প্রোফাইলে এটি প্রয়োগ করা হয়, তখন এটি ব্যক্তিগত প্রোফাইল এবং ওয়ার্ক প্রোফাইল উভয়কেই প্রভাবিত করে।

appAutoUpdatePolicy

enum ( AppAutoUpdatePolicy )

প্রস্তাবিত বিকল্প: autoUpdateMode , যা প্রতিটি অ্যাপের জন্য আলাদাভাবে সেট করা যায়, আপডেটের ফ্রিকোয়েন্সি বা কত ঘন ঘন আপডেট হবে সে বিষয়ে আরও বেশি নমনীয়তা প্রদান করে।

যখন autoUpdateMode AUTO_UPDATE_POSTPONED বা AUTO_UPDATE_HIGH_PRIORITY তে সেট করা হয়, তখন এই ফিল্ডটির কোনো কার্যকারিতা থাকে না।

অ্যাপের স্বয়ংক্রিয় আপডেট নীতি, যা নিয়ন্ত্রণ করে কখন অ্যাপের স্বয়ংক্রিয় আপডেটগুলো প্রয়োগ করা যাবে।

kioskCustomLauncherEnabled

boolean

কিয়স্ক কাস্টম লঞ্চারটি সক্রিয় করা আছে কিনা। এটি হোম স্ক্রিনকে এমন একটি লঞ্চার দিয়ে প্রতিস্থাপন করে, যা applications সেটিংয়ের মাধ্যমে ইনস্টল করা অ্যাপগুলোর মধ্যে ডিভাইসটিকে সীমাবদ্ধ করে রাখে। অ্যাপগুলো একটি একক পৃষ্ঠায় বর্ণানুক্রমিকভাবে প্রদর্শিত হয়। কিয়স্ক ডিভাইসের আচরণ আরও কনফিগার করতে kioskCustomization ব্যবহার করুন।

androidDevicePolicyTracks[]
(deprecated)

enum ( AppTrack )

এই সেটিংটি সমর্থিত নয়। যেকোনো মান উপেক্ষা করা হবে।

skipFirstUseHintsEnabled

boolean

প্রথমবার ব্যবহারে ইঙ্গিত এড়িয়ে যাওয়ার জন্য ফ্ল্যাগ। এন্টারপ্রাইজ অ্যাডমিন অ্যাপগুলির জন্য সিস্টেম সুপারিশ সক্রিয় করতে পারেন, যাতে সেগুলি প্রথমবার চালু হওয়ার সময় তাদের ব্যবহারকারী টিউটোরিয়াল এবং অন্যান্য প্রাথমিক ইঙ্গিতগুলি এড়িয়ে যায়।

privateKeySelectionEnabled

boolean

ChoosePrivateKeyRules-এ কোনো মিল থাকা নিয়ম না থাকলে, ব্যবহারকারীকে একটি প্রাইভেট কী অ্যালিয়াস বেছে নেওয়ার জন্য ডিভাইসে UI দেখানোর অনুমতি দেয়। Android P-এর নিচের ডিভাইসগুলির জন্য, এটি সেট করলে এন্টারপ্রাইজ কীগুলি ঝুঁকিপূর্ণ হয়ে যেতে পারে। যদি কোনো অ্যাপ্লিকেশনের CERT_SELECTION ডেলিগেশন স্কোপ থাকে, তাহলে এই মানটির কোনো প্রভাব থাকবে না।

encryptionPolicy

enum ( EncryptionPolicy )

এনক্রিপশন সক্রিয় আছে কিনা

usbMassStorageEnabled
(deprecated)

boolean

ইউএসবি স্টোরেজ সক্রিয় আছে কিনা। অপ্রচলিত।

permissionGrants[]

object ( PermissionGrant )

সমস্ত অ্যাপের জন্য সুস্পষ্ট অনুমতি বা গোষ্ঠীগত অনুমোদন বা অস্বীকৃতি। এই মানগুলি defaultPermissionPolicy বাতিল করে দেয়।

playStoreMode

enum ( PlayStoreMode )

এই মোডটি নিয়ন্ত্রণ করে যে প্লে স্টোরে ব্যবহারকারীর জন্য কোন অ্যাপগুলো উপলব্ধ থাকবে এবং পলিসি থেকে অ্যাপগুলো সরিয়ে দেওয়া হলে ডিভাইসে কী আচরণ ঘটবে।

setupActions[]

object ( SetupAction )

সেটআপ প্রক্রিয়ার সময় করণীয় পদক্ষেপ। সর্বাধিক একটি পদক্ষেপ নির্দিষ্ট করা যেতে পারে।

passwordPolicies[]

object ( PasswordRequirements )

ঐচ্ছিক। পাসওয়ার্ড আবশ্যকতা সংক্রান্ত নীতিমালা। পলিসির passwordScope ফিল্ডটি সেট করার মাধ্যমে ওয়ার্ক প্রোফাইল বা সম্পূর্ণভাবে পরিচালিত ডিভাইসগুলোর জন্য ভিন্ন ভিন্ন নীতি নির্ধারণ করা যেতে পারে।

policyEnforcementRules[]

object ( PolicyEnforcementRule )

যে নিয়মগুলো নির্ধারণ করে দেয় যে, কোনো নির্দিষ্ট পলিসি ডিভাইসে প্রয়োগ করা না গেলে তার আচরণ কেমন হবে।

kioskCustomization

object ( KioskCustomization )

ঐচ্ছিক। কিয়স্ক মোডে একটি ডিভাইসের আচরণ নিয়ন্ত্রণকারী সেটিংস। কিয়স্ক মোড সক্রিয় করতে, kioskCustomLauncherEnabled true তে সেট করুন অথবা পলিসিতে installType KIOSK সহ একটি অ্যাপ নির্দিষ্ট করুন।

advancedSecurityOverrides

object ( AdvancedSecurityOverrides )

ঐচ্ছিক। উন্নত নিরাপত্তা সেটিংস। বেশিরভাগ ক্ষেত্রে, এগুলো সেট করার প্রয়োজন হয় না।

personalUsagePolicies

object ( PersonalUsagePolicies )

কোম্পানির মালিকানাধীন ডিভাইসে ব্যক্তিগত ব্যবহার নিয়ন্ত্রণকারী নীতিমালা।

autoDateAndTimeZone

enum ( AutoDateAndTimeZone )

কোম্পানির মালিকানাধীন ডিভাইসে স্বয়ংক্রিয় তারিখ, সময় এবং সময় অঞ্চল চালু আছে কিনা। যদি এটি সেট করা থাকে, তাহলে autoTimeRequired উপেক্ষা করা হবে।

oncCertificateProviders[]

object ( OncCertificateProvider )

এই বৈশিষ্ট্যটি সাধারণত উপলব্ধ নয়।

crossProfilePolicies

object ( CrossProfilePolicies )

ঐচ্ছিক। ডিভাইসে ক্রস-প্রোফাইল নীতিমালা প্রয়োগ করা হয়।

preferentialNetworkService

enum ( PreferentialNetworkService )

ওয়ার্ক প্রোফাইলে বা সম্পূর্ণরূপে পরিচালিত ডিভাইসগুলিতে অগ্রাধিকারমূলক নেটওয়ার্ক পরিষেবা সক্রিয় থাকবে কিনা তা এটি নিয়ন্ত্রণ করে। উদাহরণস্বরূপ, কোনো সংস্থার কোনো ক্যারিয়ারের সাথে এমন একটি চুক্তি থাকতে পারে যে, তাদের কর্মীদের ডিভাইস থেকে সমস্ত কাজের ডেটা এন্টারপ্রাইজ ব্যবহারের জন্য নিবেদিত একটি নেটওয়ার্ক পরিষেবার মাধ্যমে পাঠানো হবে। সমর্থিত অগ্রাধিকারমূলক নেটওয়ার্ক পরিষেবার একটি উদাহরণ হলো 5G নেটওয়ার্কের এন্টারপ্রাইজ স্লাইস। যদি Android 13 বা তার উপরের সংস্করণে চালিত ডিভাইসগুলিতে preferentialNetworkServiceSettings বা ApplicationPolicy.preferentialNetworkId সেট করা থাকে, তাহলে এই পলিসিটি কার্যকর হবে না।

usageLog

object ( UsageLog )

ঐচ্ছিক। ডিভাইস কার্যকলাপ লগিংয়ের কনফিগারেশন।

cameraAccess

enum ( CameraAccess )

ক্যামেরার ব্যবহার এবং ব্যবহারকারীর ক্যামেরা অ্যাক্সেস টগল ব্যবহারের সুযোগ থাকবে কিনা তা নিয়ন্ত্রণ করে।

microphoneAccess

enum ( MicrophoneAccess )

মাইক্রোফোনের ব্যবহার এবং ব্যবহারকারী মাইক্রোফোন অ্যাক্সেস টগলটি ব্যবহার করতে পারবে কিনা তা নিয়ন্ত্রণ করে। এটি শুধুমাত্র সম্পূর্ণভাবে পরিচালিত ডিভাইসগুলিতে প্রযোজ্য।

deviceConnectivityManagement

object ( DeviceConnectivityManagement )

এর মধ্যে রয়েছে ওয়াই-ফাই, ইউএসবি ডেটা অ্যাক্সেস, কিবোর্ড/মাউস সংযোগ এবং আরও অনেক কিছুর মতো ডিভাইস সংযোগের নিয়ন্ত্রণ।

deviceRadioState

object ( DeviceRadioState )

ঐচ্ছিক। এর আওতায় ওয়াই-ফাই, ব্লুটুথ এবং আরও অনেক কিছুর মতো রেডিও অবস্থার নিয়ন্ত্রণ অন্তর্ভুক্ত।

credentialProviderPolicyDefault

enum ( CredentialProviderPolicyDefault )

ঐচ্ছিক। অ্যান্ড্রয়েড ১৪ এবং তার পরবর্তী সংস্করণগুলিতে কোন অ্যাপগুলিকে ক্রেডেনশিয়াল প্রোভাইডার হিসেবে কাজ করার অনুমতি দেওয়া হবে, তা এটি নিয়ন্ত্রণ করে। এই অ্যাপগুলি ক্রেডেনশিয়াল সংরক্ষণ করে, বিস্তারিত জানতে এই এবং এই লিঙ্কগুলি দেখুন। আরও দেখুন credentialProviderPolicy ।

printingPolicy

enum ( PrintingPolicy )

ঐচ্ছিক। প্রিন্ট করার অনুমতি দেওয়া হবে কিনা তা এটি নিয়ন্ত্রণ করে। এটি অ্যান্ড্রয়েড ৯ এবং তার পরবর্তী সংস্করণ চালিত ডিভাইসগুলোতে সমর্থিত।

displaySettings

object ( DisplaySettings )

ঐচ্ছিক। প্রদর্শন সেটিংসের জন্য নিয়ন্ত্রণসমূহ।

assistContentPolicy

enum ( AssistContentPolicy )

ঐচ্ছিক। এটি নিয়ন্ত্রণ করে যে অ্যাসিস্টকন্টেন্ট কোনো বিশেষ সুবিধাপ্রাপ্ত অ্যাপ, যেমন অ্যাসিস্ট্যান্ট অ্যাপে, পাঠানো যাবে কি না। অ্যাসিস্টকন্টেন্টের মধ্যে স্ক্রিনশট এবং অ্যাপ সম্পর্কিত তথ্য, যেমন প্যাকেজ নেম অন্তর্ভুক্ত থাকে। এটি অ্যান্ড্রয়েড ১৫ এবং তার পরবর্তী সংস্করণগুলোতে সমর্থিত।

workAccountSetupConfig

object ( WorkAccountSetupConfig )

ঐচ্ছিক। এটি ওয়ার্ক অ্যাকাউন্ট সেটআপের কনফিগারেশন নিয়ন্ত্রণ করে, যেমন গুগল দ্বারা প্রমাণীকৃত অ্যাকাউন্টের প্রয়োজন আছে কিনা তার বিশদ বিবরণ।

wipeDataFlags[]

enum ( WipeDataFlag )

ঐচ্ছিক। যেকোনো কারণে (যেমন, নিয়ম না মানা) ডিভাইস বা প্রোফাইল ওয়াইপ করা হলে কোন ডেটা মুছে ফেলা হবে তা নির্দেশ করার জন্য ওয়াইপ ফ্ল্যাগ। এটি enterprises.devices.delete পদ্ধতির ক্ষেত্রে প্রযোজ্য নয়। এই তালিকায় কোনো পুনরাবৃত্তি থাকা যাবে না।

enterpriseDisplayNameVisibility

enum ( EnterpriseDisplayNameVisibility )

ঐচ্ছিক। এটি নিয়ন্ত্রণ করে যে enterpriseDisplayName ডিভাইসে দৃশ্যমান হবে কিনা (যেমন, কোম্পানির মালিকানাধীন ডিভাইসের লক স্ক্রিন বার্তা)।

appFunctions

enum ( AppFunctions )

ঐচ্ছিক। এটি নিয়ন্ত্রণ করে যে, সম্পূর্ণরূপে পরিচালিত ডিভাইসের ক্ষেত্রে ডিভাইসে থাকা অ্যাপগুলো অথবা ওয়ার্ক প্রোফাইলযুক্ত ডিভাইসের ক্ষেত্রে ওয়ার্ক প্রোফাইলে থাকা অ্যাপগুলো অ্যাপের ফাংশনগুলো প্রকাশ করতে পারবে কিনা।

defaultApplicationSettings[]

object ( DefaultApplicationSetting )

ঐচ্ছিক। সমর্থিত প্রকারগুলির জন্য ডিফল্ট অ্যাপ্লিকেশন সেটিং। যদি কোনো প্রোফাইলে অন্তত একটি অ্যাপ টাইপের জন্য ডিফল্ট অ্যাপ্লিকেশন সফলভাবে সেট করা থাকে, তাহলে ব্যবহারকারীরা সেই প্রোফাইলের কোনো ডিফল্ট অ্যাপ্লিকেশন পরিবর্তন করতে পারবেন না।

প্রতিটি DefaultApplicationType জন্য শুধুমাত্র একটি DefaultApplicationSetting অনুমোদিত।

সতর্কীকরণ: একই ইন্টেন্ট ডোমেনের (যেমন ওয়েব ব্রাউজিং) জন্য এটি এবং persistentPreferredActivities কনফিগার করবেন না। একই ইন্টেন্ট ডোমেনের জন্য উভয়ই সেট করলে অপ্রত্যাশিত আচরণ দেখা দিতে পারে।

আরও বিস্তারিত তথ্যের জন্য ডিফল্ট অ্যাপ্লিকেশন সেটিংস নির্দেশিকা দেখুন।

autofillPolicy

enum ( AutofillPolicy )

ঐচ্ছিক। অটোফিল পরিষেবার নীতিমালা।

crossDevicePolicies

object ( CrossDevicePolicies )

ঐচ্ছিক। বিভিন্ন ডিভাইসের মধ্যে যোগাযোগ নিয়ন্ত্রণকারী নীতিমালা।

backupService

enum ( BackupService )

ঐচ্ছিক। ব্যাকআপ পরিষেবাটি নিষ্ক্রিয় থাকবে কিনা তা নিয়ন্ত্রণ করে। শুধুমাত্র অ্যান্ড্রয়েড ৮ এবং তার পরবর্তী সংস্করণে চালিত সম্পূর্ণ পরিচালিত ডিভাইসগুলিতে সমর্থিত।

আবেদন নীতি

একটি স্বতন্ত্র অ্যাপের জন্য নীতিমালা। দ্রষ্টব্য: যদি installAppsDisabled সক্রিয় থাকে, তবে এই নীতিমালা ব্যবহার করে কোনো নির্দিষ্ট ডিভাইসে অ্যাপ্লিকেশনের প্রাপ্যতা পরিবর্তন করা যাবে না। প্রতি নীতিমালায় আপনি সর্বোচ্চ ৩,০০০টি অ্যাপ্লিকেশন নির্দিষ্ট করতে পারবেন।

JSON উপস্থাপনা
{
  "packageName": string,
  "installType": enum (InstallType),
  "lockTaskAllowed": boolean,
  "defaultPermissionPolicy": enum (PermissionPolicy),
  "permissionGrants": [
    {
      object (PermissionGrant)
    }
  ],
  "managedConfiguration": {
    object
  },
  "disabled": boolean,
  "minimumVersionCode": integer,
  "delegatedScopes": [
    enum (DelegatedScope)
  ],
  "managedConfigurationTemplate": {
    object (ManagedConfigurationTemplate)
  },
  "accessibleTrackIds": [
    string
  ],
  "connectedWorkAndPersonalApp": enum (ConnectedWorkAndPersonalApp),
  "autoUpdateMode": enum (AutoUpdateMode),
  "extensionConfig": {
    object (ExtensionConfig)
  },
  "alwaysOnVpnLockdownExemption": enum (AlwaysOnVpnLockdownExemption),
  "workProfileWidgets": enum (WorkProfileWidgets),
  "credentialProviderPolicy": enum (CredentialProviderPolicy),
  "customAppConfig": {
    object (CustomAppConfig)
  },
  "installConstraint": [
    {
      object (InstallConstraint)
    }
  ],
  "installPriority": integer,
  "userControlSettings": enum (UserControlSettings),
  "preferentialNetworkId": enum (PreferentialNetworkId),
  "signingKeyCerts": [
    {
      object (ApplicationSigningKeyCert)
    }
  ],
  "roles": [
    {
      object (Role)
    }
  ]
}
ক্ষেত্র
packageName

string

অ্যাপটির প্যাকেজ নেম। যেমন, ইউটিউব অ্যাপের জন্য com.google.android.youtube ।

installType

enum ( InstallType )

যে ধরনের ইনস্টলেশন করতে হবে।

lockTaskAllowed
(deprecated)

boolean

অ্যাপটিকে ফুল-স্ক্রিন মোডে নিজেকে লক করার অনুমতি দেওয়া হবে কিনা। এটি এখন আর ব্যবহৃত হয় না। একটি নির্দিষ্ট ডিভাইস কনফিগার করতে InstallType KIOSK বা kioskCustomLauncherEnabled ব্যবহার করুন।

defaultPermissionPolicy

enum ( PermissionPolicy )

অ্যাপ দ্বারা অনুরোধ করা সমস্ত অনুমতির জন্য ডিফল্ট নীতি। যদি এটি নির্দিষ্ট করা হয়, তবে এটি নীতি-স্তরের defaultPermissionPolicy ওভাররাইড করে, যা সমস্ত অ্যাপের জন্য প্রযোজ্য। এটি permissionGrants কে ওভাররাইড করে না, যা সমস্ত অ্যাপের জন্য প্রযোজ্য।

permissionGrants[]

object ( PermissionGrant )

অ্যাপটির জন্য সুস্পষ্ট অনুমতি প্রদান বা প্রত্যাখ্যান। এই মানগুলি defaultPermissionPolicy এবং permissionGrants বাতিল করে দেয়, যা সকল অ্যাপের জন্য প্রযোজ্য।

managedConfiguration

object ( Struct format)

অ্যাপে ম্যানেজড কনফিগারেশন প্রয়োগ করা হয়েছে। কনফিগারেশনের ফরম্যাটটি অ্যাপ দ্বারা সমর্থিত ManagedProperty ভ্যালুগুলো দ্বারা নির্ধারিত হয়। ম্যানেজড কনফিগারেশনের প্রতিটি ফিল্ডের নাম অবশ্যই ManagedProperty এর key ফিল্ডের সাথে মিলতে হবে। ফিল্ডের ভ্যালুটি অবশ্যই ManagedProperty এর type সাথে সামঞ্জস্যপূর্ণ হতে হবে।

প্রকার JSON মান
BOOL true বা false
STRING স্ট্রিং
INTEGER সংখ্যা
CHOICE স্ট্রিং
MULTISELECT স্ট্রিংগুলির অ্যারে
HIDDEN স্ট্রিং
BUNDLE_ARRAY অবজেক্টের অ্যারে
দ্রষ্টব্য: স্ট্রিং ভ্যালু ৬৫৫৩৫ অক্ষরের বেশি হতে পারবে না।

disabled

boolean

অ্যাপটি নিষ্ক্রিয় করা আছে কিনা। নিষ্ক্রিয় করা হলেও অ্যাপের ডেটা সংরক্ষিত থাকে।

minimumVersionCode

integer

ডিভাইসে চালিত অ্যাপটির সর্বনিম্ন সংস্করণ। এটি সেট করা থাকলে, ডিভাইসটি অ্যাপটিকে অন্তত এই সংস্করণ কোডে আপডেট করার চেষ্টা করে। অ্যাপটি আপ-টু-ডেট না থাকলে, ডিভাইসটিতে একটি NonComplianceDetail থাকবে, যেখানে nonComplianceReason হিসেবে APP_NOT_UPDATED সেট করা থাকবে। অ্যাপটিকে অবশ্যই এই মানের সমান বা তার চেয়ে বেশি একটি সংস্করণ কোডসহ গুগল প্লে-তে আগে থেকেই প্রকাশিত থাকতে হবে। প্রতিটি পলিসির অধীনে সর্বাধিক ২০টি অ্যাপ একটি সর্বনিম্ন সংস্করণ কোড নির্দিষ্ট করতে পারে।

delegatedScopes[]

enum ( DelegatedScope )

অ্যান্ড্রয়েড ডিভাইস পলিসি থেকে অ্যাপটিকে অর্পিত পরিধিসমূহ। এগুলি যে অ্যাপ্লিকেশনগুলিতে প্রয়োগ করা হয়, সেগুলির জন্য অতিরিক্ত সুবিধা প্রদান করে।

managedConfigurationTemplate

object ( ManagedConfigurationTemplate )

অ্যাপটির জন্য পরিচালিত কনফিগারেশন টেমপ্লেট, যা পরিচালিত কনফিগারেশন আইফ্রেম থেকে সংরক্ষিত হয়। যদি পরিচালিত কনফিগারেশন (managedConfiguration) সেট করা থাকে, তাহলে এই ক্ষেত্রটি উপেক্ষা করা হয়।

accessibleTrackIds[]

string

এন্টারপ্রাইজের অন্তর্ভুক্ত কোনো ডিভাইস অ্যাপটির যে ট্র্যাক আইডিগুলো অ্যাক্সেস করতে পারে, তার তালিকা। তালিকায় একাধিক ট্র্যাক আইডি থাকলে, ডিভাইসগুলো অ্যাক্সেসযোগ্য সমস্ত ট্র্যাকের মধ্যে থেকে সর্বশেষ সংস্করণটি পাবে। তালিকায় কোনো ট্র্যাক আইডি না থাকলে, ডিভাইসগুলো শুধুমাত্র অ্যাপটির প্রোডাকশন ট্র্যাক অ্যাক্সেস করতে পারবে। প্রতিটি ট্র্যাক সম্পর্কে আরও বিস্তারিত তথ্য AppTrackInfo- তে পাওয়া যাবে।

connectedWorkAndPersonalApp

enum ( ConnectedWorkAndPersonalApp )

ব্যবহারকারীর সম্মতি সাপেক্ষে, অ্যাপটি ডিভাইসের কর্মক্ষেত্র এবং ব্যক্তিগত প্রোফাইল জুড়ে নিজের সাথেই যোগাযোগ করতে পারবে কিনা তা নিয়ন্ত্রণ করে।

autoUpdateMode

enum ( AutoUpdateMode )

অ্যাপটির স্বয়ংক্রিয় আপডেট মোড নিয়ন্ত্রণ করে।

extensionConfig
(deprecated)

object ( ExtensionConfig )

এই অ্যাপটিকে একটি এক্সটেনশন অ্যাপ হিসেবে সক্রিয় করার কনফিগারেশন, যা অ্যান্ড্রয়েড ডিভাইস পলিসির সাথে অফলাইনে যোগাযোগ করার ক্ষমতা রাখে।

এই ফিল্ডটি সর্বাধিক একটি অ্যাপের জন্য সেট করা যাবে। যদি COMPANION_APP রোলযুক্ত কোনো অ্যাপ থাকে, তাহলে এই ফিল্ডটি সেট করা যাবে না।

অ্যান্ড্রয়েড ডিভাইস পলিসির সাথে যোগাযোগ করতে পারার জন্য, ডিভাইসে থাকা অ্যাপটির সাইনিং কী সার্টিফিকেট ফিঙ্গারপ্রিন্ট অবশ্যই ApplicationPolicy.signingKeyCerts বা ExtensionConfig.signingKeyFingerprintsSha256 (deprecated)-এর এন্ট্রিগুলোর কোনো একটির সাথে অথবা প্লে স্টোর থেকে প্রাপ্ত সাইনিং কী সার্টিফিকেট ফিঙ্গারপ্রিন্টের সাথে মিলতে হবে। যদি অ্যাপটি প্লে স্টোরে না থাকে এবং ApplicationPolicy.signingKeyCerts ও ExtensionConfig.signingKeyFingerprintsSha256 (deprecated) সেট করা না থাকে, তাহলে INVALID_VALUE সহ একটি NonComplianceDetail রিপোর্ট করা হয়।

alwaysOnVpnLockdownExemption

enum ( AlwaysOnVpnLockdownExemption )

ভিপিএন সংযুক্ত না থাকলে এবং alwaysOnVpnPackage.lockdownEnabled সক্রিয় থাকলে অ্যাপটি নেটওয়ার্কিং করার অনুমতি পাবে কিনা তা নির্দিষ্ট করে। যদি VPN_LOCKDOWN_ENFORCED সেট করা থাকে, তাহলে অ্যাপটি নেটওয়ার্কিং করার অনুমতি পাবে না, এবং যদি VPN_LOCKDOWN_EXEMPTION সেট করা থাকে, তাহলে অ্যাপটি নেটওয়ার্কিং করার অনুমতি পাবে। শুধুমাত্র Android 10 এবং তার উপরের সংস্করণে চালিত ডিভাইসগুলিতে সমর্থিত। যদি ডিভাইসটি এটি সমর্থন না করে, তাহলে ডিভাইসটিতে একটি NonComplianceDetail থাকবে যার nonComplianceReason API_LEVEL এ সেট করা থাকবে এবং একটি fieldPath থাকবে। যদি এটি অ্যাপটির জন্য প্রযোজ্য না হয়, তাহলে ডিভাইসটিতে একটি NonComplianceDetail থাকবে যার nonComplianceReason UNSUPPORTED এ সেট করা থাকবে এবং একটি fieldPath থাকবে। fieldPath-টি applications[i].alwaysOnVpnLockdownExemption এ সেট করা হয়, যেখানে i হলো applications পলিসিতে প্যাকেজের সূচক।

workProfileWidgets

enum ( WorkProfileWidgets )

ওয়ার্ক প্রোফাইলে ইনস্টল করা অ্যাপটি হোম স্ক্রিনে উইজেট যোগ করার অনুমতি পাবে কিনা তা নির্দিষ্ট করে।

credentialProviderPolicy

enum ( CredentialProviderPolicy )

ঐচ্ছিক। অ্যাপটি অ্যান্ড্রয়েড ১৪ এবং তার পরবর্তী সংস্করণগুলিতে ক্রেডেনশিয়াল প্রোভাইডার হিসেবে কাজ করার অনুমতি পাবে কিনা।

customAppConfig

object ( CustomAppConfig )

ঐচ্ছিক। এই কাস্টম অ্যাপের জন্য কনফিগারেশন।

এটি সেট করার জন্য installType অবশ্যই CUSTOM এ সেট করতে হবে।

installConstraint[]

object ( InstallConstraint )

ঐচ্ছিক। অ্যাপটি ইনস্টল করার জন্য সীমাবদ্ধতা। আপনি সর্বাধিক একটি InstallConstraint নির্দিষ্ট করতে পারেন। একাধিক সীমাবদ্ধতা প্রত্যাখ্যান করা হয়।

installPriority

integer

ঐচ্ছিক। যেসব অ্যাপের installType সেট করা আছে:

এটি ইনস্টলেশনের আপেক্ষিক অগ্রাধিকার নিয়ন্ত্রণ করে। ০ (ডিফল্ট) মানের অর্থ হলো, এই অ্যাপটির অন্য অ্যাপগুলোর ওপর কোনো অগ্রাধিকার নেই। ১ থেকে ১০,০০০-এর মধ্যবর্তী মানগুলোর ক্ষেত্রে, কম মান উচ্চতর অগ্রাধিকার নির্দেশ করে। ০ থেকে ১০,০০০-এর মধ্যবর্তী পরিসরের বাইরের মানগুলো বাতিল করা হয়।

userControlSettings

enum ( UserControlSettings )

ঐচ্ছিক। অ্যাপটির জন্য ব্যবহারকারীর নিয়ন্ত্রণ অনুমোদিত কিনা তা নির্দিষ্ট করে। ব্যবহারকারীর নিয়ন্ত্রণের মধ্যে জোরপূর্বক বন্ধ করা এবং অ্যাপের ডেটা মুছে ফেলার মতো ব্যবহারকারীর কার্যকলাপ অন্তর্ভুক্ত। নির্দিষ্ট কিছু ধরণের অ্যাপের জন্য বিশেষ ব্যবস্থা রয়েছে, আরও বিস্তারিত জানতে USER_CONTROL_SETTINGS_UNSPECIFIED এবং USER_CONTROL_ALLOWED দেখুন।

preferentialNetworkId

enum ( PreferentialNetworkId )

ঐচ্ছিক। অ্যাপ্লিকেশনটি যে পছন্দের নেটওয়ার্ক ব্যবহার করে তার আইডি। preferentialNetworkServiceConfigs এ নির্দিষ্ট নেটওয়ার্ক আইডির জন্য একটি কনফিগারেশন অবশ্যই থাকতে হবে। যদি PREFERENTIAL_NETWORK_ID_UNSPECIFIED এ সেট করা হয়, তাহলে অ্যাপ্লিকেশনটি defaultPreferentialNetworkId এ নির্দিষ্ট করা ডিফল্ট নেটওয়ার্ক আইডি ব্যবহার করবে। এই ডিফল্টিং থেকে বাদ দেওয়া অ্যাপগুলির তালিকার জন্য defaultPreferentialNetworkId এর ডকুমেন্টেশন দেখুন। এটি অ্যান্ড্রয়েড ১৩ এবং তার উপরের সংস্করণে ওয়ার্ক প্রোফাইল এবং সম্পূর্ণ পরিচালিত ডিভাইস উভয়ের ক্ষেত্রেই প্রযোজ্য।

signingKeyCerts[]

object ( ApplicationSigningKeyCert )

ঐচ্ছিক। অ্যাপটির মূল সার্টিফিকেটগুলোতে স্বাক্ষর করা।

নিম্নলিখিত ক্ষেত্রে এই ক্ষেত্রটি আবশ্যক:

  • অ্যাপটির installType CUSTOM হিসেবে সেট করা আছে (অর্থাৎ এটি একটি কাস্টম অ্যাপ)।
  • অ্যাপটিতে roles একটি নন-এম্পটি লিস্টে সেট করা আছে এবং অ্যাপটি প্লে স্টোরে নেই।
  • অ্যাপটিতে extensionConfig সেট করা আছে (অর্থাৎ এটি একটি এক্সটেনশন অ্যাপ), কিন্তু ExtensionConfig.signingKeyFingerprintsSha256 (যা এখন আর ব্যবহৃত হয় না) সেট করা নেই এবং অ্যাপটি প্লে স্টোরে নেই।

কাস্টম অ্যাপের জন্য এই ফিল্ডটি সেট করা না থাকলে, পলিসিটি প্রত্যাখ্যাত হয়। নন-কাস্টম অ্যাপের জন্য আবশ্যক হওয়া সত্ত্বেও যদি এটি সেট করা না থাকে, তাহলে INVALID_VALUE সহ একটি NonComplianceDetail রিপোর্ট করা হয়।

অন্যান্য ক্ষেত্রে, এই ক্ষেত্রটি ঐচ্ছিক এবং প্লে স্টোর থেকে প্রাপ্ত সাইনিং কী সার্টিফিকেট ব্যবহার করা হয়।

এই ফিল্ডটি কীভাবে ব্যবহৃত হয় তা দেখতে নিম্নলিখিত পলিসি সেটিংস দেখুন:

roles[]

object ( Role )

ঐচ্ছিক। অ্যাপটির ভূমিকাসমূহ।

অ্যান্ড্রয়েড ১৪ এবং তার পরবর্তী সংস্করণগুলিতে, নির্দিষ্ট কিছু রোলযুক্ত অ্যাপগুলিকে পাওয়ার ও ব্যাকগ্রাউন্ড এক্সিকিউশন সীমাবদ্ধতা, সাসপেনশন এবং হাইবারনেশন থেকে অব্যাহতি দেওয়া যেতে পারে। অ্যান্ড্রয়েড ১১ এবং তার পরবর্তী সংস্করণগুলিতে, নির্দিষ্ট কিছু রোলযুক্ত অ্যাপের জন্য ব্যবহারকারীর নিয়ন্ত্রণও নিষিদ্ধ করা যেতে পারে। আরও বিস্তারিত তথ্যের জন্য প্রতিটি RoleType ডকুমেন্টেশন দেখুন।

অ্যাপটির জন্য সেট করা রোলগুলো সম্পর্কে অ্যাপটিকে জানানো হয়, যদি অ্যাপটিতে <meta-data android:name="com.google.android.managementapi.notification.NotificationReceiverService.SERVICE_APP_ROLES" android:value="" /> সহ একটি নোটিফিকেশন রিসিভার সার্ভিস থাকে। যখনই অ্যাপটির রোলগুলো আপডেট করা হয় অথবা অ্যাপটি ইনস্টল হওয়ার পরে, যখন এর রোলের একটি নন-এম্পটি তালিকা থাকে, তখন অ্যাপটিকে জানানো হয়। ইনস্টলেশনের পরে নিজেকে বুটস্ট্র্যাপ করার জন্য অ্যাপটি এই নোটিফিকেশনটি ব্যবহার করতে পারে। সার্ভিসটির প্রয়োজনীয়তা সম্পর্কে আরও বিস্তারিত জানতে ‘Integrate with the AMAPI SDK’ এবং ‘Manage app roles’ গাইডগুলো দেখুন।

ছাড়গুলো প্রয়োগ করার জন্য এবং অ্যাপটিকে ভূমিকাগুলো সম্পর্কে অবহিত করার জন্য, ডিভাইসে থাকা অ্যাপটির সাইনিং কী সার্টিফিকেট ফিঙ্গারপ্রিন্ট অবশ্যই প্লে স্টোর থেকে প্রাপ্ত সাইনিং কী সার্টিফিকেট ফিঙ্গারপ্রিন্টগুলোর একটির সাথে অথবা ApplicationPolicy.signingKeyCerts এর এন্ট্রিগুলোর একটির সাথে মিলতে হবে। অন্যথায়, APP_SIGNING_CERT_MISMATCH সহ একটি NonComplianceDetail রিপোর্ট করা হয়।

একই roleType এর একাধিক রোল থাকতে পারবে না। একাধিক অ্যাপ একই roleType এর রোল ধারণ করতে পারবে না। ROLE_TYPE_UNSPECIFIED টাইপের কোনো রোল অনুমোদিত নয়।

ইনস্টল টাইপ

একটি অ্যাপের জন্য কোন ধরনের ইনস্টলেশন করতে হবে। যদি setupAction কোনো অ্যাপকে নির্দেশ করে, তবে সেটির installType অবশ্যই REQUIRED_FOR_SETUP হিসেবে সেট করতে হবে, অন্যথায় সেটআপ ব্যর্থ হবে।

এনাম
INSTALL_TYPE_UNSPECIFIED অনির্দিষ্ট। ডিফল্টরূপে উপলব্ধ।
PREINSTALLED অ্যাপটি স্বয়ংক্রিয়ভাবে ইনস্টল হয়ে যায় এবং ব্যবহারকারী চাইলে তা মুছে ফেলতে পারেন।
FORCE_INSTALLED নির্ধারিত রক্ষণাবেক্ষণ সময়সীমা নির্বিশেষে অ্যাপটি স্বয়ংক্রিয়ভাবে ইনস্টল হয়ে যায় এবং ব্যবহারকারী এটি সরাতে পারেন না।
BLOCKED অ্যাপটি ব্লক করা হয়েছে এবং ইনস্টল করা যাবে না। যদি অ্যাপটি পূর্ববর্তী কোনো পলিসির অধীনে ইনস্টল করা হয়ে থাকে, তবে তা আনইনস্টল করা হবে। এর ফলে এর ইনস্ট্যান্ট অ্যাপ কার্যকারিতাও ব্লক হয়ে যাবে।
AVAILABLE অ্যাপটি ইনস্টল করার জন্য উপলব্ধ আছে।
REQUIRED_FOR_SETUP অ্যাপটি স্বয়ংক্রিয়ভাবে ইনস্টল হয়ে যায় এবং ব্যবহারকারী এটি সরাতে পারেন না। ইনস্টলেশন সম্পূর্ণ না হওয়া পর্যন্ত এটি সেটআপ সম্পন্ন হতে বাধা দেবে।
KIOSK

কিয়স্ক মোডে অ্যাপটি স্বয়ংক্রিয়ভাবে ইনস্টল হয়ে যায়: এটিকে পছন্দের হোম ইন্টেন্ট হিসেবে সেট করা হয় এবং লক টাস্ক মোডের জন্য হোয়াইটলিস্টেড করা হয়। অ্যাপটি ইনস্টল না হওয়া পর্যন্ত ডিভাইস সেটআপ সম্পূর্ণ হবে না। ইনস্টলেশনের পরে, ব্যবহারকারীরা অ্যাপটি রিমুভ করতে পারবেন না। আপনি প্রতি পলিসিতে শুধুমাত্র একটি অ্যাপের জন্য এই installType সেট করতে পারবেন। পলিসিতে এটি উপস্থিত থাকলে, স্ট্যাটাস বার স্বয়ংক্রিয়ভাবে নিষ্ক্রিয় হয়ে যাবে।

অ্যান্ড্রয়েড ১১ এবং তার পরবর্তী সংস্করণগুলিতে, যখন কোনো অ্যাপের এই ইনস্টল টাইপ থাকে, তখন সমস্ত অ্যাপের জন্য ইউজার কন্ট্রোল নিষিদ্ধ থাকে। আইটি অ্যাডমিন নির্দিষ্ট অ্যাপের জন্য ইউজার কন্ট্রোল চালু করতে userControlSettings USER_CONTROL_ALLOWED এ সেট করতে পারেন।

যদি কোনো অ্যাপের KIOSK রোল থাকে, তাহলে কোনো অ্যাপের জন্যই এই ইনস্টল টাইপ সেট করা যাবে না।

CUSTOM

অ্যাপটি শুধুমাত্র AMAPI SDK কমান্ডের মাধ্যমে ইনস্টল এবং আপডেট করা যাবে।

দ্রষ্টব্য:

  • এটি শুধুমাত্র সম্পূর্ণরূপে পরিচালিত ডিভাইসগুলোকে প্রভাবিত করে।
  • অ্যাপটির জন্য প্লে-সম্পর্কিত ফিল্ড minimumVersionCode , accessibleTrackIds , autoUpdateMode , installConstraint এবং installPriority সেট করা যাবে না।
  • অ্যাপটি প্লে স্টোরে পাওয়া যাচ্ছে না।
  • ডিভাইসে ইনস্টল করা অ্যাপটির applicationSource CUSTOM হিসেবে সেট করা আছে।
  • যখন বর্তমান installType CUSTOM হয়, তখন ডিভাইসে থাকা কাস্টম অ্যাপের সাইনিং কী সার্টিফিকেট ফিঙ্গারপ্রিন্ট অবশ্যই ApplicationPolicy.signingKeyCerts এর এন্ট্রিগুলোর কোনো একটির সাথে মিলতে হবে। অন্যথায়, APP_SIGNING_CERT_MISMATCH সহ একটি NonComplianceDetail রিপোর্ট করা হয়।
  • installType CUSTOM থেকে অন্য কোনো মানে পরিবর্তন করতে হলে, তা অবশ্যই অ্যাপ্লিকেশন সাইনিং কী সার্টিফিকেটের ফিঙ্গারপ্রিন্টের প্লেস্টোর সংস্করণের সাথে মিলতে হবে। অন্যথায় APP_SIGNING_CERT_MISMATCH সহ একটি NonComplianceDetail রিপোর্ট করা হয়।
  • installType CUSTOM এ পরিবর্তন করলে বিদ্যমান অ্যাপটি আনইনস্টল হয়ে যায়, যদি ইনস্টল করা অ্যাপটির সাইনিং কী সার্টিফিকেটের ফিঙ্গারপ্রিন্ট ApplicationPolicy.signingKeyCerts এর ফিঙ্গারপ্রিন্টের সাথে না মেলে।
  • applications থেকে অ্যাপটি সরিয়ে ফেললেও বিদ্যমান অ্যাপটি আনইনস্টল হয় না, যদি এটি playStoreMode এর সাথে সামঞ্জস্যপূর্ণ থাকে।
  • customAppConfig ও দেখুন।
  • এটি গুগল প্লে কাস্টম অ্যাপ পাবলিশিং ফিচার থেকে ভিন্ন।

অনুমতি নীতি

অ্যাপগুলোকে অনুমতি প্রদানের নীতিমালা।

এনাম
PERMISSION_POLICY_UNSPECIFIED পলিসি নির্দিষ্ট করা হয়নি। যদি কোনো স্তরে কোনো পারমিশনের জন্য কোনো পলিসি নির্দিষ্ট করা না থাকে, তাহলে ডিফল্টরূপে PROMPT আচরণটি ব্যবহৃত হয়।
PROMPT ব্যবহারকারীকে একটি অনুমতি প্রদান করতে বলুন।
GRANT

স্বয়ংক্রিয়ভাবে একটি অনুমতি প্রদান করুন।

অ্যান্ড্রয়েড ১২ এবং তার পরবর্তী সংস্করণগুলিতে, READ_SMS এবং নিম্নলিখিত সেন্সর-সম্পর্কিত অনুমতিগুলি শুধুমাত্র সম্পূর্ণরূপে পরিচালিত ডিভাইসগুলিতেই প্রদান করা যেতে পারে:

DENY স্বয়ংক্রিয়ভাবে একটি অনুমতি প্রত্যাখ্যান করুন।

অনুমতি প্রদান

একটি অ্যান্ড্রয়েড অনুমতি এবং তার মঞ্জুর অবস্থার কনফিগারেশন।

JSON উপস্থাপনা
{
  "permission": string,
  "policy": enum (PermissionPolicy)
}
ক্ষেত্র
permission

string

অ্যান্ড্রয়েড পারমিশন বা গ্রুপ, যেমন android.permission.READ_CALENDAR অথবা android.permission_group.CALENDAR ।

policy

enum ( PermissionPolicy )

অনুমতি প্রদানের নীতিমালা।

অর্পিত পরিধি

ডেলিগেশন স্কোপ হলো এমন কিছু স্কোপ যা অন্য কোনো প্যাকেজ অ্যান্ড্রয়েড ডিভাইস পলিসি থেকে অর্জন করতে পারে। যে অ্যাপ্লিকেশনগুলিতে এগুলো প্রয়োগ করা হয়, সেগুলির জন্য এগুলি অতিরিক্ত সুবিধা প্রদান করে।

এনাম
DELEGATED_SCOPE_UNSPECIFIED প্রতিনিধিদলের পরিধি নির্দিষ্ট করা হয়নি।
CERT_INSTALL সার্টিফিকেট ইনস্টলেশন ও ব্যবস্থাপনার অ্যাক্সেস প্রদান করে। এই ক্ষমতা একাধিক অ্যাপ্লিকেশনকে অর্পণ করা যেতে পারে।
MANAGED_CONFIGURATIONS পরিচালিত কনফিগারেশন ব্যবস্থাপনার অ্যাক্সেস প্রদান করে। এই পরিধি একাধিক অ্যাপ্লিকেশনে অর্পণ করা যেতে পারে।
BLOCK_UNINSTALL আনইনস্টলেশন ব্লক করার অ্যাক্সেস প্রদান করে। এই ক্ষমতা একাধিক অ্যাপ্লিকেশনে অর্পণ করা যেতে পারে।
PERMISSION_GRANT অনুমতি নীতি এবং অনুমতি প্রদানের অবস্থা অ্যাক্সেস করার সুযোগ দেয়। এই পরিধি একাধিক অ্যাপ্লিকেশনে অর্পণ করা যেতে পারে।
PACKAGE_ACCESS প্যাকেজ অ্যাক্সেস স্টেটে প্রবেশাধিকার প্রদান করে। এই পরিধি একাধিক অ্যাপ্লিকেশনকে অর্পণ করা যেতে পারে।
ENABLE_SYSTEM_APP সিস্টেম অ্যাপ সক্রিয় করার জন্য অ্যাক্সেস প্রদান করে। এই ক্ষমতা একাধিক অ্যাপ্লিকেশনে অর্পণ করা যেতে পারে।
NETWORK_ACTIVITY_LOGS নেটওয়ার্ক অ্যাক্টিভিটি লগ-এ অ্যাক্সেস প্রদান করে। এটি ডেলিগেটেড অ্যাপ্লিকেশনকে setNetworkLoggingEnabled , isNetworkLoggingEnabled এবং retrieveNetworkLogs মেথডগুলো কল করার অনুমতি দেয়। এই স্কোপটি সর্বাধিক একটি অ্যাপ্লিকেশনকে ডেলিগেট করা যেতে পারে। অ্যান্ড্রয়েড ১০ এবং তার উপরের সংস্করণের সম্পূর্ণ ম্যানেজড ডিভাইসগুলোর জন্য সমর্থিত। অ্যান্ড্রয়েড ১২ এবং তার উপরের সংস্করণের ওয়ার্ক প্রোফাইলের জন্য সমর্থিত। যখন ডেলিগেশন সমর্থিত এবং সেট করা থাকে, তখন NETWORK_ACTIVITY_LOGS উপেক্ষা করা হয়।
SECURITY_LOGS নিরাপত্তা লগ অ্যাক্সেসের অনুমতি দেয়। এটি ডেলিগেটেড অ্যাপ্লিকেশনকে setSecurityLoggingEnabled , isSecurityLoggingEnabled , retrieveSecurityLogs এবং retrievePreRebootSecurityLogs মেথডগুলো কল করার অনুমতি দেয়। এই স্কোপটি সর্বাধিক একটি অ্যাপ্লিকেশনকে ডেলিগেট করা যেতে পারে। অ্যান্ড্রয়েড ১২ এবং তার উপরের সংস্করণে সম্পূর্ণ পরিচালিত ডিভাইস এবং ওয়ার্ক প্রোফাইলসহ কোম্পানির মালিকানাধীন ডিভাইসগুলোর জন্য এটি সমর্থিত। যখন ডেলিগেশন সমর্থিত এবং সেট করা থাকে, তখন SECURITY_LOGS উপেক্ষা করা হয়।
CERT_SELECTION অনুরোধকারী অ্যাপগুলির পক্ষ থেকে কীচেইন সার্টিফিকেট নির্বাচনের অ্যাক্সেস প্রদান করে। একবার মঞ্জুর করা হলে, ডেলিগেটেড অ্যাপ্লিকেশনটি DelegatedAdminReceiver#onChoosePrivateKeyAlias ​​গ্রহণ করা শুরু করবে। এটি ডেলিগেটেড অ্যাপ্লিকেশনকে grantKeyPairToApp এবং revokeKeyPairFromApp মেথডগুলি কল করার অনুমতি দেয়। এই স্কোপটি সর্বাধিক একটি অ্যাপ্লিকেশনের কাছে ডেলিগেট করা যেতে পারে। যদি সার্টিফিকেট নির্বাচন কোনো অ্যাপ্লিকেশনের কাছে ডেলিগেট করা হয়, তাহলে choosePrivateKeyRules অবশ্যই খালি থাকতে হবে এবং privateKeySelectionEnabled কোনো প্রভাব থাকবে না।

পরিচালিত কনফিগারেশন টেমপ্লেট

অ্যাপটির জন্য পরিচালিত কনফিগারেশন টেমপ্লেট, যা পরিচালিত কনফিগারেশন আইফ্রেম থেকে সংরক্ষণ করা হয়েছে।

JSON উপস্থাপনা
{
  "templateId": string,
  "configurationVariables": {
    string: string,
    ...
  }
}
ক্ষেত্র
templateId

string

পরিচালিত কনফিগারেশন টেমপ্লেটের আইডি। এই মানটি অবশ্যই একটি সাংখ্যিক স্ট্রিং হতে হবে, যাতে ঠিক এক বা একাধিক অঙ্ক থাকবে (উদাহরণস্বরূপ, "123456" )।

configurationVariables

map (key: string, value: string)

ঐচ্ছিক, একটি ম্যাপ যাতে কনফিগারেশনের জন্য সংজ্ঞায়িত <key, value> কনফিগারেশন ভেরিয়েবলগুলো থাকে।

একটি অবজেক্ট যা "key": value জোড়ের একটি তালিকা ধারণ করে। উদাহরণ: { "name": "wrench", "mass": "1.3kg", "count": "3" } ।

সংযুক্ত কাজ এবং ব্যক্তিগত অ্যাপ

ব্যবহারকারীর সম্মতি সাপেক্ষে, অ্যাপটি ক্রস-প্রোফাইলে নিজের সাথে যোগাযোগ করতে পারবে কিনা তা নিয়ন্ত্রণ করে।

এনাম
CONNECTED_WORK_AND_PERSONAL_APP_UNSPECIFIED অনির্দিষ্ট। ডিফল্ট হিসেবে CONNECTED_WORK_AND_PERSONAL_APPS_DISALLOWED ব্যবহৃত হয়।
CONNECTED_WORK_AND_PERSONAL_APP_DISALLOWED ডিফল্ট। অ্যাপটিকে একাধিক প্রোফাইলের মধ্যে যোগাযোগ করতে বাধা দেয়।
CONNECTED_WORK_AND_PERSONAL_APP_ALLOWED ব্যবহারকারীর সম্মতি পাওয়ার পর অ্যাপটিকে বিভিন্ন প্রোফাইলের মধ্যে যোগাযোগ করার অনুমতি দেয়।

স্বয়ংক্রিয় আপডেট মোড

অ্যাপটির স্বয়ংক্রিয় আপডেট মোড নিয়ন্ত্রণ করে। যদি কোনো ডিভাইস ব্যবহারকারী ম্যানুয়ালি ডিভাইসের সেটিংসে পরিবর্তন করেন, তবে AutoUpdateMode সেই পছন্দগুলোকে উপেক্ষা করে, কারণ স্বয়ংক্রিয় আপডেট মোডই অগ্রাধিকার পায়।

এনাম
AUTO_UPDATE_MODE_UNSPECIFIED অনির্দিষ্ট। ডিফল্ট হিসেবে AUTO_UPDATE_DEFAULT ব্যবহৃত হয়।
AUTO_UPDATE_DEFAULT

ডিফল্ট আপডেট মোড।

ব্যবহারকারীর উপর প্রভাব কমাতে অ্যাপটি স্বয়ংক্রিয়ভাবে কম অগ্রাধিকার দিয়ে আপডেট করা হয়।

নিম্নলিখিত সকল শর্ত পূরণ হলে অ্যাপটি আপডেট করা হয়:

  • ডিভাইসটি সক্রিয়ভাবে ব্যবহৃত হচ্ছে না।
  • ডিভাইসটি একটি সীমাহীন নেটওয়ার্কের সাথে সংযুক্ত।
  • ডিভাইসটি চার্জ হচ্ছে।
  • যে অ্যাপটি আপডেট করা হবে, সেটি ফোরগ্রাউন্ডে চলছে না।

ডেভেলপার কর্তৃক নতুন আপডেট প্রকাশিত হওয়ার ২৪ ঘণ্টার মধ্যে ডিভাইসটিকে জানিয়ে দেওয়া হয়, যার পরে উপরের শর্তগুলো পূরণ হলে অ্যাপটি আপডেট হয়ে যায়।

AUTO_UPDATE_POSTPONED

অ্যাপটি পুরোনো হয়ে যাওয়ার পর সর্বোচ্চ ৯০ দিন পর্যন্ত স্বয়ংক্রিয়ভাবে আপডেট হয় না।

অ্যাপটি পুরোনো হয়ে যাওয়ার ৯০ দিন পর, সর্বশেষ উপলব্ধ সংস্করণটি কম অগ্রাধিকার সহ স্বয়ংক্রিয়ভাবে ইনস্টল হয়ে যায় ( AUTO_UPDATE_DEFAULT দেখুন)। অ্যাপটি আপডেট হওয়ার পর, এটি পুনরায় পুরোনো হয়ে যাওয়ার ৯০ দিন পর পর্যন্ত আবার স্বয়ংক্রিয়ভাবে আপডেট হয় না।

ব্যবহারকারী যেকোনো সময় প্লে স্টোর থেকে অ্যাপটি ম্যানুয়ালি আপডেট করতে পারবেন।

AUTO_UPDATE_HIGH_PRIORITY

অ্যাপটি যত দ্রুত সম্ভব আপডেট করা হয়। কোনো সীমাবদ্ধতা আরোপ করা হয় না।

নতুন আপডেট উপলব্ধ হওয়ার সাথে সাথেই ডিভাইসটিকে জানিয়ে দেওয়া হয়।

দ্রষ্টব্য: অ্যান্ড্রয়েড ইকোসিস্টেম জুড়ে বৃহত্তর পরিসরে ব্যবহৃত অ্যাপগুলির আপডেট হতে ২৪ ঘণ্টা পর্যন্ত সময় লাগতে পারে।

এক্সটেনশনকনফিগ

একটি অ্যাপকে এক্সটেনশন অ্যাপ হিসেবে সক্রিয় করার কনফিগারেশন, যা অফলাইনে অ্যান্ড্রয়েড ডিভাইস পলিসির সাথে ইন্টারঅ্যাক্ট করার ক্ষমতা রাখে। অ্যান্ড্রয়েড ভার্সন ১১ এবং তার উপরের সংস্করণগুলির জন্য, এক্সটেনশন অ্যাপগুলি ব্যাটারির সীমাবদ্ধতা থেকে মুক্ত, তাই এগুলিকে সীমাবদ্ধ অ্যাপ স্ট্যান্ডবাই বাকেটে রাখা হবে না। এক্সটেনশন অ্যাপগুলি ব্যবহারকারীদের ডেটা মুছে ফেলা বা অ্যাপ্লিকেশনটি জোর করে বন্ধ করে দেওয়া থেকেও সুরক্ষিত থাকে, যদিও অ্যান্ড্রয়েড ১১ এবং তার উপরের সংস্করণগুলির জন্য প্রয়োজনে অ্যাডমিনরা এক্সটেনশন অ্যাপগুলিতে clear app data command ব্যবহার করা চালিয়ে যেতে পারেন।

JSON উপস্থাপনা
{
  "signingKeyFingerprintsSha256": [
    string
  ],
  "notificationReceiver": string
}
ক্ষেত্র
signingKeyFingerprintsSha256[]
(deprecated)

string

এক্সটেনশন অ্যাপের সাইনিং কী সার্টিফিকেটগুলোর হেক্স-এনকোডেড SHA-256 হ্যাশ। শুধুমাত্র ৬৪ অক্ষরের হেক্সাডেসিমাল স্ট্রিং উপস্থাপনা বৈধ।

সাইনিং কী সার্টিফিকেট ফিঙ্গারপ্রিন্টগুলো সর্বদা প্লে স্টোর থেকে সংগ্রহ করা হয় এবং এই ফিল্ডটি অতিরিক্ত সাইনিং কী সার্টিফিকেট ফিঙ্গারপ্রিন্ট সরবরাহ করার জন্য ব্যবহৃত হয়। তবে, যদি অ্যাপ্লিকেশনটি প্লে স্টোরে উপলব্ধ না থাকে, তাহলে এই ফিল্ডটি সেট করতে হবে। অ্যাপ্লিকেশনটি প্লে স্টোরে উপলব্ধ না থাকা অবস্থায় এই ফিল্ডটি সেট না করা হলে, INVALID_VALUE সহ একটি NonComplianceDetail রিপোর্ট করা হয়।

অ্যান্ড্রয়েড ডিভাইস পলিসির সাথে অ্যাপটির যোগাযোগ করতে পারার জন্য, ডিভাইসে থাকা এক্সটেনশন অ্যাপটির সাইনিং কী সার্টিফিকেট ফিঙ্গারপ্রিন্ট অবশ্যই প্লে স্টোর থেকে প্রাপ্ত সাইনিং কী সার্টিফিকেট ফিঙ্গারপ্রিন্টগুলোর কোনো একটির সাথে অথবা এই ফিল্ডে প্রদত্ত ফিঙ্গারপ্রিন্টগুলোর সাথে মিলতে হবে।

প্রোডাকশন ব্যবহারের ক্ষেত্রে এটি খালি রাখার পরামর্শ দেওয়া হয়।

notificationReceiver
(deprecated)

string

যেকোনো স্থানীয় কমান্ডের স্ট্যাটাস আপডেট সম্পর্কে এক্সটেনশন অ্যাপকে অবহিত করার জন্য অ্যান্ড্রয়েড ডিভাইস পলিসির রিসিভার সার্ভিস ক্লাসের সম্পূর্ণ যোগ্য ক্লাস নাম। সার্ভিসটি অবশ্যই এক্সটেনশন অ্যাপের AndroidManifest.xml এ এক্সপোর্ট করা থাকতে হবে এবং NotificationReceiverService এক্সটেন্ড করতে হবে (আরও বিস্তারিত জানতে AMAPI SDK গাইডের সাথে ইন্টিগ্রেট করুন দেখুন)।

AlwaysOnVpnLockdownExemption

কোনো অ্যাপ alwaysOnVpnPackage.lockdownEnabled সেটিং থেকে অব্যাহতি পাবে কি না, তা এটি নিয়ন্ত্রণ করে।

এনাম
ALWAYS_ON_VPN_LOCKDOWN_EXEMPTION_UNSPECIFIED অনির্দিষ্ট। ডিফল্ট হিসেবে VPN_LOCKDOWN_ENFORCED ব্যবহৃত হয়।
VPN_LOCKDOWN_ENFORCED অ্যাপটি সর্বদা-সক্রিয় ভিপিএন লকডাউন সেটিং মেনে চলে।
VPN_LOCKDOWN_EXEMPTION অ্যাপটি সর্বদা-সক্রিয় ভিপিএন লকডাউন সেটিংয়ের আওতামুক্ত।

ওয়ার্কপ্রোফাইলউইজেটস

কোনো ওয়ার্ক প্রোফাইল অ্যাপ্লিকেশন হোম স্ক্রিনে উইজেট যোগ করতে পারবে কি না, তা এটি নিয়ন্ত্রণ করে।

এনাম
WORK_PROFILE_WIDGETS_UNSPECIFIED অনির্দিষ্ট। ডিফল্ট হিসেবে workProfileWidgetsDefault ব্যবহৃত হয়।
WORK_PROFILE_WIDGETS_ALLOWED ওয়ার্ক প্রোফাইল উইজেট ব্যবহারের অনুমতি দেওয়া হয়েছে। এর মানে হলো, অ্যাপ্লিকেশনটি হোম স্ক্রিনে উইজেট যোগ করতে পারবে।
WORK_PROFILE_WIDGETS_DISALLOWED ওয়ার্ক প্রোফাইল উইজেট অনুমোদিত নয়। এর মানে হলো, অ্যাপ্লিকেশনটি হোম স্ক্রিনে উইজেট যোগ করতে পারবে না।

ক্রেডেনশিয়ালপ্রোভাইডারপলিসি

অ্যাপটি অ্যান্ড্রয়েড ১৪ এবং তার পরবর্তী সংস্করণগুলিতে ক্রেডেনশিয়াল প্রোভাইডার হিসেবে কাজ করার অনুমতিপ্রাপ্ত কিনা।

এনাম
CREDENTIAL_PROVIDER_POLICY_UNSPECIFIED অনির্দিষ্ট। আচরণটি credentialProviderPolicyDefault দ্বারা নিয়ন্ত্রিত হয়।
CREDENTIAL_PROVIDER_ALLOWED অ্যাপটি ক্রেডেনশিয়াল প্রোভাইডার হিসেবে কাজ করার অনুমতিপ্রাপ্ত।
CREDENTIAL_PROVIDER_DISALLOWED অ্যাপটি ক্রেডেনশিয়াল প্রোভাইডার হিসেবে কাজ করতে পারবে না।

কাস্টমঅ্যাপকনফিগ

কাস্টম অ্যাপের কনফিগারেশন।

JSON উপস্থাপনা
{
  "userUninstallSettings": enum (UserUninstallSettings)
}
ক্ষেত্র
userUninstallSettings

enum ( UserUninstallSettings )

ঐচ্ছিক। কাস্টম অ্যাপের ব্যবহারকারীর আনইনস্টল সেটিংস।

ব্যবহারকারী আনইনস্টল সেটিংস

কোনো ব্যবহারকারীকে কাস্টম অ্যাপটি আনইনস্টল করার অনুমতি দেওয়া হবে কিনা তা নির্দিষ্ট করে।

এনাম
USER_UNINSTALL_SETTINGS_UNSPECIFIED অনির্দিষ্ট। ডিফল্ট হিসেবে DISALLOW_UNINSTALL_BY_USER ব্যবহৃত হয়।
DISALLOW_UNINSTALL_BY_USER ব্যবহারকারীকে কাস্টম অ্যাপটি আনইনস্টল করার অনুমতি দেওয়া হয়নি।
ALLOW_UNINSTALL_BY_USER ব্যবহারকারীকে কাস্টম অ্যাপটি আনইনস্টল করার অনুমতি দেওয়া হয়েছে।

ইনস্টলকনস্ট্রেইন্ট

যেসব অ্যাপের InstallType সেট করা আছে:

এটি অ্যাপ ইনস্টলেশনের জন্য কিছু বিধিনিষেধ নির্ধারণ করে। ফিল্ডগুলোর মধ্যে অন্তত একটি অবশ্যই সেট করতে হবে। যখন একাধিক ফিল্ড সেট করা হয়, তখন অ্যাপটি ইনস্টল হওয়ার জন্য সমস্ত শর্ত পূরণ করতে হবে।

JSON উপস্থাপনা
{
  "networkTypeConstraint": enum (NetworkTypeConstraint),
  "chargingConstraint": enum (ChargingConstraint),
  "deviceIdleConstraint": enum (DeviceIdleConstraint)
}
ক্ষেত্র
networkTypeConstraint

enum ( NetworkTypeConstraint )

ঐচ্ছিক। নেটওয়ার্ক প্রকারের সীমাবদ্ধতা।

chargingConstraint

enum ( ChargingConstraint )

ঐচ্ছিক। চার্জিং সীমাবদ্ধতা।

deviceIdleConstraint

enum ( DeviceIdleConstraint )

ঐচ্ছিক। ডিভাইস নিষ্ক্রিয় থাকার সীমাবদ্ধতা।

নেটওয়ার্ক টাইপ সীমাবদ্ধতা

নেটওয়ার্ক প্রকারের সীমাবদ্ধতা।

এনাম
NETWORK_TYPE_CONSTRAINT_UNSPECIFIED অনির্দিষ্ট। ডিফল্ট হিসেবে INSTALL_ON_ANY_NETWORK ব্যবহৃত হবে।
INSTALL_ON_ANY_NETWORK যেকোনো সক্রিয় নেটওয়ার্ক (ওয়াই-ফাই, সেলুলার, ইত্যাদি)।
INSTALL_ONLY_ON_UNMETERED_NETWORK যেকোনো সীমাহীন নেটওয়ার্ক (যেমন ওয়াই-ফাই)।

চার্জিং সীমাবদ্ধতা

চার্জিং সীমাবদ্ধতা।

এনাম
CHARGING_CONSTRAINT_UNSPECIFIED অনির্দিষ্ট। ডিফল্ট হিসেবে CHARGING_NOT_REQUIRED ব্যবহৃত হবে।
CHARGING_NOT_REQUIRED ডিভাইসটি চার্জে থাকার প্রয়োজন নেই।
INSTALL_ONLY_WHEN_CHARGING ডিভাইসটি চার্জে থাকতে হবে।

ডিভাইস নিষ্ক্রিয় সীমাবদ্ধতা

ডিভাইসের নিষ্ক্রিয় অবস্থার সীমাবদ্ধতা।

এনাম
DEVICE_IDLE_CONSTRAINT_UNSPECIFIED অনির্দিষ্ট। ডিফল্ট হিসেবে DEVICE_IDLE_NOT_REQUIRED ব্যবহৃত হবে।
DEVICE_IDLE_NOT_REQUIRED ডিভাইসটি নিষ্ক্রিয় থাকার প্রয়োজন নেই, ব্যবহারকারী ডিভাইসটি ব্যবহার করার সময়েও অ্যাপটি ইনস্টল করা যেতে পারে।
INSTALL_ONLY_WHEN_DEVICE_IDLE ডিভাইসটি নিষ্ক্রিয় থাকতে হবে।

ব্যবহারকারী নিয়ন্ত্রণ সেটিংস

কোনো নির্দিষ্ট অ্যাপের জন্য ব্যবহারকারীর নিয়ন্ত্রণ অনুমোদিত কিনা তা নির্দিষ্ট করে। ব্যবহারকারীর নিয়ন্ত্রণের মধ্যে জোরপূর্বক বন্ধ করা এবং অ্যাপের ডেটা মুছে ফেলার মতো কার্যকলাপ অন্তর্ভুক্ত।

এনাম
USER_CONTROL_SETTINGS_UNSPECIFIED

ব্যবহারকারীর নিয়ন্ত্রণ অনুমোদিত হবে কি না, তা নির্ধারণ করতে অ্যাপটির ডিফল্ট আচরণ ব্যবহার করা হয়। বেশিরভাগ অ্যাপের ক্ষেত্রে ডিফল্টরূপে ব্যবহারকারীর নিয়ন্ত্রণ অনুমোদিত থাকে, কিন্তু নিম্নলিখিত ধরনের অ্যাপগুলোর ক্ষেত্রে তা অনুমোদিত নয়:

  • এক্সটেনশন অ্যাপস (আরও বিস্তারিত জানতে extensionConfig দেখুন)
  • কিয়স্ক অ্যাপস (আরও বিস্তারিত জানতে KIOSK ইনস্টল টাইপ দেখুন)
  • যেসব অ্যাপের roles একটি অ-খালি তালিকায় সেট করা আছে
  • অন্যান্য গুরুত্বপূর্ণ সিস্টেম অ্যাপস
USER_CONTROL_ALLOWED

অ্যাপটির জন্য ব্যবহারকারী নিয়ন্ত্রণ অনুমোদিত। কিয়স্ক অ্যাপগুলো ব্যবহারকারী নিয়ন্ত্রণের অনুমতি দিতে এটি ব্যবহার করতে পারে। এক্সটেনশন অ্যাপের ক্ষেত্রে (আরও বিস্তারিত জানতে extensionConfig দেখুন), এই মান সেট করা থাকলেও ব্যবহারকারী নিয়ন্ত্রণ অনুমোদিত নয়।

যেসব অ্যাপের roles একটি অ-খালি তালিকা হিসাবে সেট করা আছে (শুধুমাত্র KIOSK রোল থাকা roles ছাড়া), সেগুলির ক্ষেত্রে এই মানটি সেট করা যাবে না।

কিয়স্ক অ্যাপের ক্ষেত্রে (আরও বিস্তারিত জানতে KIOSK ইনস্টল টাইপ এবং KIOSK রোল টাইপ দেখুন), ব্যবহারকারীকে নিয়ন্ত্রণের সুযোগ দিতে এই মানটি ব্যবহার করা যেতে পারে।

USER_CONTROL_DISALLOWED অ্যাপটির জন্য ব্যবহারকারীর নিয়ন্ত্রণ অনুমোদিত নয়। এটি অ্যান্ড্রয়েড ১১ এবং তার উপরের সংস্করণগুলিতে সমর্থিত। যদি অ্যান্ড্রয়েড সংস্করণ ১১-এর কম হয়, তাহলে API_LEVEL সহ একটি NonComplianceDetail রিপোর্ট করা হয়।

অগ্রাধিকার নেটওয়ার্ক আইডি

অগ্রাধিকারমূলক নেটওয়ার্ক শনাক্তকারী।

এনাম
PREFERENTIAL_NETWORK_ID_UNSPECIFIED এই মানটি বৈধ কিনা এবং এর অর্থ কী, তা নির্ভর করে এটি কোথায় ব্যবহৃত হচ্ছে তার ওপর, এবং এই বিষয়টি প্রাসঙ্গিক ফিল্ডগুলোতে নথিভুক্ত করা থাকে।
NO_PREFERENTIAL_NETWORK অ্যাপ্লিকেশনটি কোনো অগ্রাধিকারমূলক নেটওয়ার্ক ব্যবহার করে না।
PREFERENTIAL_NETWORK_ID_ONE অগ্রাধিকারমূলক নেটওয়ার্ক শনাক্তকারী ১।
PREFERENTIAL_NETWORK_ID_TWO অগ্রাধিকারমূলক নেটওয়ার্ক শনাক্তকারী ২।
PREFERENTIAL_NETWORK_ID_THREE অগ্রাধিকারমূলক নেটওয়ার্ক শনাক্তকারী ৩।
PREFERENTIAL_NETWORK_ID_FOUR অগ্রাধিকারমূলক নেটওয়ার্ক শনাক্তকারী ৪।
PREFERENTIAL_NETWORK_ID_FIVE অগ্রাধিকারমূলক নেটওয়ার্ক শনাক্তকারী ৫।

ভূমিকা

একটি অ্যাপের ভূমিকা থাকতে পারে।

JSON উপস্থাপনা
{
  "roleType": enum (RoleType)
}
ক্ষেত্র
roleType

enum ( RoleType )

আবশ্যক। একটি অ্যাপের সম্ভাব্য ভূমিকার ধরন।

ভূমিকার ধরণ

একটি অ্যাপ যে ধরনের ভূমিকা পালন করতে পারে।

এনাম
ROLE_TYPE_UNSPECIFIED ভূমিকার ধরণ অনির্দিষ্ট। এই মানটি ব্যবহার করা যাবে না।
COMPANION_APP

কম্প্যানিয়ন অ্যাপের জন্য রোল টাইপ। এই রোলটি অ্যাপটিকে একটি কম্প্যানিয়ন অ্যাপ হিসেবে সক্ষম করে, যা অ্যান্ড্রয়েড ডিভাইস পলিসির সাথে অফলাইনে ইন্টারঅ্যাক্ট করতে পারে। একটি অ্যাপকে কম্প্যানিয়ন অ্যাপ হিসেবে কনফিগার করার জন্য এটিই প্রস্তাবিত পদ্ধতি। পুরোনো পদ্ধতির জন্য, extensionConfig দেখুন।

অ্যান্ড্রয়েড ১৪ এবং তার উপরের সংস্করণগুলিতে, এই রোলযুক্ত অ্যাপটি পাওয়ার ও ব্যাকগ্রাউন্ড এক্সিকিউশন সীমাবদ্ধতা, সাসপেনশন এবং হাইবারনেশন থেকে অব্যাহতিপ্রাপ্ত। অ্যান্ড্রয়েড ১১ এবং তার উপরের সংস্করণগুলিতে, এই রোলযুক্ত অ্যাপটির জন্য ইউজার কন্ট্রোল অনুমোদিত নয়। এই রোলযুক্ত অ্যাপটির জন্য userControlSettings USER_CONTROL_ALLOWED এ সেট করা যাবে না।

অ্যান্ড্রয়েড ডিভাইস পলিসি কম্প্যানিয়ন অ্যাপকে যেকোনো লোকাল কমান্ড স্ট্যাটাস আপডেটের বিষয়ে অবহিত করে, যদি অ্যাপটিতে <meta-data android:name="com.google.android.managementapi.notification.NotificationReceiverService.SERVICE_COMMAND_STATUS" android:value="" /> সহ একটি সার্ভিস থাকে। সার্ভিসটির প্রয়োজনীয়তা সম্পর্কে আরও বিস্তারিত জানতে AMAPI SDK-এর সাথে ইন্টিগ্রেট করার গাইডটি দেখুন।

KIOSK

কিয়স্ক অ্যাপের জন্য রোলের ধরণ। একটি অ্যাপ এই রোলটি তখনই পেতে পারে, যদি তার installType REQUIRED_FOR_SETUP বা CUSTOM হিসেবে সেট করা থাকে। CUSTOM ইনস্টল টাইপের কোনো অ্যাপে এই রোলটি যোগ করার আগে, অ্যাপটি অবশ্যই ডিভাইসে আগে থেকে ইনস্টল করা থাকতে হবে।

এই রোল টাইপের অ্যাপটিকে পছন্দের হোম ইন্টেন্ট হিসেবে সেট করা হয় এবং লক টাস্ক মোডের জন্য অনুমোদিত হিসেবে তালিকাভুক্ত করা হয়। যখন এই রোল টাইপের কোনো অ্যাপ থাকে, তখন স্ট্যাটাস বার স্বয়ংক্রিয়ভাবে নিষ্ক্রিয় হয়ে যাবে।

এটি installType KIOSK এ সেট করার চেয়ে শ্রেয়।

অ্যান্ড্রয়েড ১১ এবং তার পরবর্তী সংস্করণগুলিতে, যখন কোনো অ্যাপের এই ভূমিকাটি থাকে, তখন সমস্ত অ্যাপের জন্য ব্যবহারকারী নিয়ন্ত্রণ নিষিদ্ধ থাকে। আইটি অ্যাডমিন নির্দিষ্ট অ্যাপের জন্য ব্যবহারকারী নিয়ন্ত্রণের অনুমতি দিতে userControlSettings USER_CONTROL_ALLOWED এ সেট করতে পারেন।

MOBILE_THREAT_DEFENSE_ENDPOINT_DETECTION_RESPONSE

মোবাইল থ্রেট ডিফেন্স (MTD) / এন্ডপয়েন্ট ডিটেকশন অ্যান্ড রেসপন্স (EDR) অ্যাপের জন্য ভূমিকার ধরণ।

অ্যান্ড্রয়েড ১৪ এবং তার উপরের সংস্করণগুলিতে, এই রোলযুক্ত অ্যাপটি পাওয়ার ও ব্যাকগ্রাউন্ড এক্সিকিউশন সীমাবদ্ধতা, সাসপেনশন এবং হাইবারনেশন থেকে অব্যাহতিপ্রাপ্ত। অ্যান্ড্রয়েড ১১ এবং তার উপরের সংস্করণগুলিতে, ইউজার কন্ট্রোল অনুমোদিত নয় এবং এই রোলযুক্ত অ্যাপটির জন্য userControlSettings USER_CONTROL_ALLOWED এ সেট করা যায় না।

SYSTEM_HEALTH_MONITORING

সিস্টেম স্বাস্থ্য পর্যবেক্ষণ অ্যাপের ভূমিকার ধরণ।

অ্যান্ড্রয়েড ১৪ এবং তার উপরের সংস্করণগুলিতে, এই রোলযুক্ত অ্যাপটি পাওয়ার ও ব্যাকগ্রাউন্ড এক্সিকিউশন সীমাবদ্ধতা, সাসপেনশন এবং হাইবারনেশন থেকে অব্যাহতিপ্রাপ্ত। অ্যান্ড্রয়েড ১১ এবং তার উপরের সংস্করণগুলিতে, ইউজার কন্ট্রোল অনুমোদিত নয় এবং এই রোলযুক্ত অ্যাপটির জন্য userControlSettings USER_CONTROL_ALLOWED এ সেট করা যায় না।

KeyguardDisabledFeature

কীগার্ড (লক স্ক্রিন)-এর যে ফিচারগুলো নিষ্ক্রিয় করা যায়।

এনাম
KEYGUARD_DISABLED_FEATURE_UNSPECIFIED এই মানটি উপেক্ষা করা হয়।
CAMERA সুরক্ষিত কীগার্ড স্ক্রিনগুলিতে (যেমন পিন) ক্যামেরা নিষ্ক্রিয় করুন।
NOTIFICATIONS সুরক্ষিত কীগার্ড স্ক্রিনে সমস্ত নোটিফিকেশন দেখানো বন্ধ করুন।
UNREDACTED_NOTIFICATIONS সুরক্ষিত কীগার্ড স্ক্রিনে অবিকৃত নোটিফিকেশন নিষ্ক্রিয় করুন।
TRUST_AGENTS সুরক্ষিত কীগার্ড স্ক্রিনে ট্রাস্ট এজেন্টের অবস্থা উপেক্ষা করুন।
DISABLE_FINGERPRINT সিকিওর কীগার্ড স্ক্রিনে ফিঙ্গারপ্রিন্ট সেন্সর নিষ্ক্রিয় করুন।
DISABLE_REMOTE_INPUT অ্যান্ড্রয়েড ৬ এবং তার নিচের সংস্করণের ডিভাইসগুলিতে, সুরক্ষিত কীগার্ড স্ক্রিনের নোটিফিকেশনে টেক্সট এন্ট্রি নিষ্ক্রিয় করে দেয়। অ্যান্ড্রয়েড ৭ এবং তার উপরের সংস্করণগুলিতে এর কোনো প্রভাব নেই।
FACE সুরক্ষিত কীগার্ড স্ক্রিনগুলিতে ফেস অথেন্টিকেশন নিষ্ক্রিয় করুন।
IRIS সুরক্ষিত কীগার্ড স্ক্রিনগুলিতে আইরিস প্রমাণীকরণ নিষ্ক্রিয় করুন।
BIOMETRICS সুরক্ষিত কীগার্ড স্ক্রিনগুলিতে সমস্ত বায়োমেট্রিক প্রমাণীকরণ নিষ্ক্রিয় করুন।
SHORTCUTS অ্যান্ড্রয়েড ১৪ এবং তার পরবর্তী সংস্করণগুলিতে সিকিওর কীগার্ড স্ক্রিনের সমস্ত শর্টকাট নিষ্ক্রিয় করুন।
ALL_FEATURES বর্তমান ও ভবিষ্যতের সকল কীগার্ড কাস্টমাইজেশন নিষ্ক্রিয় করুন।

স্থায়ী পছন্দের কার্যকলাপ

একটি নির্দিষ্ট ইন্টেন্ট ফিল্টারের সাথে মেলে এমন ইন্টেন্টগুলি পরিচালনা করার জন্য একটি ডিফল্ট অ্যাক্টিভিটি। দ্রষ্টব্য: একটি কিয়স্ক সেট আপ করতে, স্থায়ী পছন্দের অ্যাক্টিভিটি ব্যবহার না করে InstallType-কে KIOSK এ সেট করুন।

JSON উপস্থাপনা
{
  "receiverActivity": string,
  "actions": [
    string
  ],
  "categories": [
    string
  ]
}
ক্ষেত্র
receiverActivity

string

যে অ্যাক্টিভিটিটি ডিফল্ট ইন্টেন্ট হ্যান্ডলার হওয়া উচিত। এটি একটি অ্যান্ড্রয়েড কম্পোনেন্টের নাম হওয়া উচিত, যেমন com.android.enterprise.app/.MainActivity । বিকল্পভাবে, এর মান কোনো অ্যাপের প্যাকেজ নেমও হতে পারে, যা অ্যান্ড্রয়েড ডিভাইস পলিসিকে ইন্টেন্টটি হ্যান্ডেল করার জন্য অ্যাপটি থেকে একটি উপযুক্ত অ্যাক্টিভিটি বেছে নিতে সাহায্য করে।

actions[]

string

ফিল্টারে যে ইনটেন্ট অ্যাকশনগুলো মেলানো হবে। যদি ফিল্টারে কোনো অ্যাকশন অন্তর্ভুক্ত থাকে, তবে একটি ইনটেন্টের অ্যাকশনকে অবশ্যই সেই মানগুলোর মধ্যে একটি হতে হবে, তবেই সেটি মিলবে। যদি কোনো অ্যাকশন অন্তর্ভুক্ত না থাকে, তবে ইনটেন্ট অ্যাকশনটি উপেক্ষা করা হয়।

categories[]

string

ফিল্টারে মেলানোর জন্য ইন্টেন্ট ক্যাটাগরিগুলো। একটি ইন্টেন্টে তার প্রয়োজনীয় ক্যাটাগরিগুলো অন্তর্ভুক্ত থাকে, এবং মেলানোর জন্য এই সবগুলোই ফিল্টারে অবশ্যই অন্তর্ভুক্ত থাকতে হবে। অন্য কথায়, ফিল্টারে কোনো ক্যাটাগরি যোগ করলে তা মেলানোর উপর কোনো প্রভাব ফেলে না, যদি না সেই ক্যাটাগরিটি ইন্টেন্টে নির্দিষ্ট করা থাকে।

সিস্টেম আপডেট

সিস্টেম আপডেট পরিচালনার জন্য কনফিগারেশন

দ্রষ্টব্য: গুগল প্লে সিস্টেম আপডেট (যাকে মেইনলাইন আপডেটও বলা হয়) স্বয়ংক্রিয়ভাবে ডাউনলোড হয়ে যায়, কিন্তু এটি ইনস্টল করার জন্য ডিভাইসটি রিবুট করার প্রয়োজন হয়। আরও বিস্তারিত তথ্যের জন্য 'সিস্টেম আপডেট পরিচালনা করুন' -এর মেইনলাইন বিভাগটি দেখুন।

JSON উপস্থাপনা
{
  "type": enum (SystemUpdateType),
  "startMinutes": integer,
  "endMinutes": integer,
  "freezePeriods": [
    {
      object (FreezePeriod)
    }
  ]
}
ক্ষেত্র
type

enum ( SystemUpdateType )

কনফিগার করার জন্য সিস্টেম আপডেটের ধরন।

startMinutes

integer

টাইপটি যদি WINDOWED হয়, তাহলে রক্ষণাবেক্ষণ উইন্ডোর শুরু, যা ডিভাইসের স্থানীয় সময় অনুযায়ী মধ্যরাতের পর মিনিটের সংখ্যা হিসাবে পরিমাপ করা হয়। এই মানটি অবশ্যই ০ থেকে ১৪৩৯-এর মধ্যে হতে হবে।

endMinutes

integer

যদি টাইপটি WINDOWED হয়, তাহলে মেইনটেন্যান্স উইন্ডোর শেষ সময়টি ডিভাইসের স্থানীয় সময় অনুযায়ী মধ্যরাতের পর মিনিটের সংখ্যা হিসাবে গণনা করা হবে। এই মানটি অবশ্যই ০ থেকে ১৪৩৯-এর মধ্যে হতে হবে। যদি এই মান startMinutes এর চেয়ে কম হয়, তাহলে মেইনটেন্যান্স উইন্ডোটি মধ্যরাত পর্যন্ত বিস্তৃত থাকবে। যদি নির্দিষ্ট মেইনটেন্যান্স উইন্ডোটি ৩০ মিনিটের চেয়ে ছোট হয়, তাহলে প্রকৃত উইন্ডোটি শুরুর সময়ের পর আরও ৩০ মিনিট পর্যন্ত বাড়ানো হবে।

freezePeriods[]

object ( FreezePeriod )

একটি বার্ষিক পুনরাবৃত্ত সময়কাল, যে সময়ে ডিভাইসে চলমান অপারেটিং সিস্টেমের (OS) সংস্করণকে স্থির রাখার জন্য ওভার-দ্য-এয়ার (OTA) সিস্টেম আপডেট স্থগিত করা হয়। ডিভাইসটি অনির্দিষ্টকালের জন্য স্থির হয়ে যাওয়া রোধ করতে, প্রতিটি স্থির থাকার সময়কালের মধ্যে কমপক্ষে ৬০ দিনের ব্যবধান থাকতে হবে।

সিস্টেম আপডেট টাইপ

সিস্টেম আপডেট কনফিগারেশনের ধরণ।

এনাম
SYSTEM_UPDATE_TYPE_UNSPECIFIED ডিভাইসের ডিফল্ট আপডেট পদ্ধতি অনুসরণ করুন, যার জন্য সাধারণত ব্যবহারকারীকে সিস্টেম আপডেট গ্রহণ করতে হয়।
AUTOMATIC আপডেট পাওয়া গেলেই স্বয়ংক্রিয়ভাবে ইনস্টল করুন।
WINDOWED

দৈনিক রক্ষণাবেক্ষণের নির্ধারিত সময়ের মধ্যে স্বয়ংক্রিয়ভাবে ইনস্টল করুন। এটি প্লে অ্যাপগুলোকেও ওই নির্দিষ্ট সময়ের মধ্যে আপডেট হওয়ার জন্য কনফিগার করে। কিয়স্ক ডিভাইসগুলোর জন্য এটি বিশেষভাবে সুপারিশ করা হয়, কারণ ফোরগ্রাউন্ডে স্থায়ীভাবে পিন করা অ্যাপগুলোকে প্লে দ্বারা আপডেট করার এটিই একমাত্র উপায়।

যদি কোনো অ্যাপের জন্য autoUpdateMode AUTO_UPDATE_HIGH_PRIORITY তে সেট করা থাকে, তাহলে সেই অ্যাপটির জন্য রক্ষণাবেক্ষণ সময়সীমা উপেক্ষা করা হয় এবং সেই সময়সীমার বাইরেও যত দ্রুত সম্ভব অ্যাপটি আপডেট করা হয়।

POSTPONE স্বয়ংক্রিয় ইনস্টল সর্বোচ্চ ৩০ দিন পর্যন্ত স্থগিত করুন। এই নীতিটি নিরাপত্তা আপডেট (যেমন মাসিক নিরাপত্তা প্যাচ) এর ক্ষেত্রে প্রযোজ্য নয়।

ফ্রিজপিরিয়ড

সিস্টেম ফ্রিজ পিরিয়ড। যখন কোনো ডিভাইসের ঘড়ি এই ফ্রিজ পিরিয়ডের মধ্যে থাকে, তখন সমস্ত আগত সিস্টেম আপডেট (সিকিউরিটি প্যাচ সহ) ব্লক হয়ে যায় এবং ইনস্টল হয় না।

ডিভাইসটি কোনো নির্ধারিত ফ্রিজ পিরিয়ডের বাইরে থাকলে, স্বাভাবিক পলিসি আচরণ (স্বয়ংক্রিয়, উইন্ডোড বা স্থগিত) প্রযোজ্য হবে।

ফ্রিজ পিরিয়ড গণনার ক্ষেত্রে অধিবর্ষ উপেক্ষা করা হয়, বিশেষত:

  • যদি কোনো ফ্রিজ পিরিয়ডের শুরু বা শেষের তারিখ হিসেবে ২৯শে ফেব্রুয়ারি নির্ধারণ করা হয়, তাহলে ফ্রিজ পিরিয়ডটি এর পরিবর্তে ২৮শে ফেব্রুয়ারি শুরু বা শেষ হবে।
  • যখন কোনো ডিভাইসের সিস্টেম ক্লকে ২৯শে ফেব্রুয়ারি তারিখ দেখায়, তখন সেটিকে ২৮শে ফেব্রুয়ারি হিসেবে গণ্য করা হয়।
  • একটি ফ্রিজ পিরিয়ডের দিন সংখ্যা অথবা দুটি ফ্রিজ পিরিয়ডের মধ্যবর্তী সময় গণনা করার সময়, ২৯শে ফেব্রুয়ারিকে উপেক্ষা করা হয় এবং দিন হিসেবে গণনা করা হয় না।

দ্রষ্টব্য: ফ্রিজ পিরিয়ড কার্যকর হওয়ার জন্য, SystemUpdateType SYSTEM_UPDATE_TYPE_UNSPECIFIED হিসেবে নির্দিষ্ট করা যাবে না, কারণ ফ্রিজ পিরিয়ডের জন্য একটি সংজ্ঞায়িত পলিসি নির্দিষ্ট করা আবশ্যক।

JSON উপস্থাপনা
{
  "startDate": {
    object (Date)
  },
  "endDate": {
    object (Date)
  }
}
ক্ষেত্র
startDate

object ( Date )

ফ্রিজ পিরিয়ডের শুরুর তারিখ (তারিখ সহ)। দ্রষ্টব্য: day এবং month অবশ্যই সেট করতে হবে। year সেট করার প্রয়োজন নেই, কারণ এটি ব্যবহৃত হয় না। উদাহরণস্বরূপ, {"month": 1,"date": 30} ।

endDate

object ( Date )

ফ্রিজ পিরিয়ডের শেষ তারিখ (উভয় তারিখ সহ)। এটি শুরুর তারিখ থেকে ৯০ দিনের বেশি হবে না। যদি শেষ তারিখ শুরুর তারিখের আগে হয়, তবে ফ্রিজ পিরিয়ডটি বছর শেষের সময়কাল হিসেবে গণ্য হবে। দ্রষ্টব্য: day এবং month অবশ্যই সেট করতে হবে। year সেট করার প্রয়োজন নেই কারণ এটি ব্যবহৃত হয় না। উদাহরণস্বরূপ, {"month": 1,"date": 30} ।

তারিখ

এটি একটি সম্পূর্ণ বা আংশিক ক্যালেন্ডার তারিখকে বোঝায়, যেমন জন্মদিন। দিনের সময় এবং সময় অঞ্চল হয় অন্য কোথাও উল্লেখ করা থাকে অথবা তা গুরুত্বহীন। তারিখটি গ্রেগরিয়ান ক্যালেন্ডারের সাপেক্ষে নির্ধারিত হয়। এটি নিম্নলিখিতগুলির মধ্যে যেকোনো একটিকে বোঝাতে পারে:

  • একটি পূর্ণাঙ্গ তারিখ, যেখানে বছর, মাস এবং দিনের মান শূন্য নয়।
  • একটি মাস ও দিন, সাথে শূন্য বছর (উদাহরণস্বরূপ, বিবাহবার্ষিকী)।
  • একটি স্বতন্ত্র বছর, যার একটি শূন্য মাস এবং একটি শূন্য দিন রয়েছে।
  • একটি বছর ও মাস, সাথে একটি শূন্য দিন (উদাহরণস্বরূপ, ক্রেডিট কার্ডের মেয়াদ শেষ হওয়ার তারিখ)।

সম্পর্কিত প্রকার:

JSON উপস্থাপনা
{
  "year": integer,
  "month": integer,
  "day": integer
}
ক্ষেত্র
year

integer

তারিখের বছর। বছরটি অবশ্যই ১ থেকে ৯৯৯৯-এর মধ্যে হতে হবে, অথবা বছর ছাড়া তারিখ নির্দিষ্ট করতে ০ দিতে হবে।

month

integer

বছরের মাস। অবশ্যই ১ থেকে ১২-এর মধ্যে হতে হবে, অথবা মাস ও দিন ছাড়া বছর বোঝাতে ০ হতে হবে।

day

integer

মাসের একটি দিন। দিনটি অবশ্যই ১ থেকে ৩১-এর মধ্যে হতে হবে এবং তা বছর ও মাস উভয়ের জন্য প্রযোজ্য হবে, অথবা শুধু বছর কিংবা এমন বছর ও মাস নির্দিষ্ট করার জন্য ০ ব্যবহার করা যাবে যেখানে দিনটি গুরুত্বপূর্ণ নয়।

স্ট্যাটাস রিপোর্টিং সেটিংস

স্ট্যাটাস রিপোর্টের আচরণ নিয়ন্ত্রণকারী সেটিংস।

JSON উপস্থাপনা
{
  "applicationReportsEnabled": boolean,
  "deviceSettingsEnabled": boolean,
  "softwareInfoEnabled": boolean,
  "memoryInfoEnabled": boolean,
  "networkInfoEnabled": boolean,
  "displayInfoEnabled": boolean,
  "powerManagementEventsEnabled": boolean,
  "hardwareStatusEnabled": boolean,
  "systemPropertiesEnabled": boolean,
  "applicationReportingSettings": {
    object (ApplicationReportingSettings)
  },
  "commonCriteriaModeEnabled": boolean,
  "defaultApplicationInfoReportingEnabled": boolean
}
ক্ষেত্র
applicationReportsEnabled

boolean

অ্যাপ রিপোর্ট চালু আছে কিনা।

deviceSettingsEnabled

boolean

ডিভাইস সেটিংস রিপোর্টিং চালু আছে কিনা।

softwareInfoEnabled

boolean

সফটওয়্যার তথ্য রিপোর্টিং সক্রিয় আছে কিনা।

memoryInfoEnabled

boolean

মেমরি ইভেন্ট রিপোর্টিং সক্রিয় আছে কিনা।

networkInfoEnabled

boolean

নেটওয়ার্ক তথ্য রিপোর্টিং সক্রিয় আছে কিনা।

displayInfoEnabled

boolean

ডিসপ্লে রিপোর্টিং সক্ষম করা আছে কিনা। ওয়ার্ক প্রোফাইলযুক্ত ব্যক্তিগত মালিকানাধীন ডিভাইসগুলির জন্য রিপোর্ট ডেটা উপলব্ধ নয়।

powerManagementEventsEnabled

boolean

পাওয়ার ম্যানেজমেন্ট ইভেন্ট রিপোর্টিং সক্রিয় আছে কিনা। ওয়ার্ক প্রোফাইলযুক্ত ব্যক্তিগত মালিকানাধীন ডিভাইসগুলির জন্য রিপোর্টের ডেটা উপলব্ধ নয়।

hardwareStatusEnabled

boolean

হার্ডওয়্যার স্ট্যাটাস রিপোর্টিং সক্রিয় আছে কিনা। ওয়ার্ক প্রোফাইলযুক্ত ব্যক্তিগত মালিকানাধীন ডিভাইসগুলির জন্য রিপোর্ট ডেটা উপলব্ধ নয়।

systemPropertiesEnabled

boolean

সিস্টেম প্রোপার্টি রিপোর্টিং সক্রিয় আছে কিনা।

applicationReportingSettings

object ( ApplicationReportingSettings )

অ্যাপ্লিকেশন রিপোর্টিং সেটিংস। শুধুমাত্র তখনই প্রযোজ্য হবে যখন applicationReportsEnabled-এর মান true হবে।

commonCriteriaModeEnabled

boolean

Common Criteria Mode রিপোর্টিং সক্রিয় আছে কিনা। এটি শুধুমাত্র কোম্পানির মালিকানাধীন ডিভাইসগুলিতে সমর্থিত।

defaultApplicationInfoReportingEnabled

boolean

ঐচ্ছিক। defaultApplicationInfo রিপোর্টিং সক্রিয় করা আছে কিনা।

অ্যাপ্লিকেশন রিপোর্টিং সেটিংস

অ্যাপ্লিকেশন রিপোর্টের আচরণ নিয়ন্ত্রণকারী সেটিংস।

JSON উপস্থাপনা
{
  "includeRemovedApps": boolean
}
ক্ষেত্র
includeRemovedApps

boolean

মুছে ফেলা অ্যাপগুলো অ্যাপ্লিকেশন রিপোর্টে অন্তর্ভুক্ত করা হয় কিনা।

প্যাকেজের নাম তালিকা

প্যাকেজের নামগুলোর একটি তালিকা।

JSON উপস্থাপনা
{
  "packageNames": [
    string
  ]
}
ক্ষেত্র
packageNames[]

string

প্যাকেজের নামগুলোর একটি তালিকা।

ব্যাটারি প্লাগড মোড

ব্যাটারি সংযোগ করার মোডসমূহ।

এনাম
BATTERY_PLUGGED_MODE_UNSPECIFIED এই মানটি উপেক্ষা করা হয়।
AC শক্তির উৎস হলো একটি এসি চার্জার।
USB পাওয়ার উৎস হলো একটি ইউএসবি পোর্ট।
WIRELESS বিদ্যুৎ উৎসটি বেতার।

প্রক্সিইনফো

একটি HTTP প্রক্সির জন্য কনফিগারেশন তথ্য। সরাসরি প্রক্সির জন্য, host , port , এবং excludedHosts ফিল্ডগুলো সেট করুন। PAC স্ক্রিপ্ট প্রক্সির জন্য, pacUri ফিল্ডটি সেট করুন।

JSON উপস্থাপনা
{
  "host": string,
  "port": integer,
  "excludedHosts": [
    string
  ],
  "pacUri": string
}
ক্ষেত্র
host

string

সরাসরি প্রক্সির হোস্ট।

port

integer

সরাসরি প্রক্সির পোর্ট।

excludedHosts[]

string

সরাসরি প্রক্সির ক্ষেত্রে, যে হোস্টগুলোর জন্য প্রক্সি বাইপাস করা হয়। হোস্টের নামগুলোতে *.example.com-এর মতো ওয়াইল্ডকার্ড থাকতে পারে।

pacUri

string

প্রক্সি কনফিগার করতে ব্যবহৃত PAC স্ক্রিপ্টের URI।

ব্যক্তিগত চাবির নিয়ম বেছে নিন

অ্যাপের প্রাইভেট কী-তে অ্যাক্সেস নিয়ন্ত্রণ করে। এই নিয়মটি নির্ধারণ করে যে, অ্যান্ড্রয়েড ডিভাইস পলিসি নির্দিষ্ট অ্যাপটিকে কোন প্রাইভেট কী প্রদান করবে (যদি আদৌ কোনোটি প্রদান করে থাকে)। অ্যাক্সেস দেওয়া হয় হয় যখন অ্যাপটি কোনো নির্দিষ্ট URL-এর জন্য প্রাইভেট কী অ্যালিয়াস অনুরোধ করতে KeyChain.choosePrivateKeyAlias ​​(বা এর যেকোনো ওভারলোড) কল করে, অথবা অ্যান্ড্রয়েড ১১ এবং তার উপরের সংস্করণগুলিতে, যেসব নিয়ম URL-নির্দিষ্ট নয় (অর্থাৎ, যদি urlPattern সেট করা না থাকে, বা খালি স্ট্রিং বা .* সেট করা থাকে), তখন সরাসরি অ্যাক্সেস দেওয়া হয়, যাতে অ্যাপটিকে প্রথমে KeyChain.getPrivateKey ​​কল না করেই KeyChain.choosePrivateKeyAlias কল করতে পারে।

যখন কোনো অ্যাপ KeyChain.choosePrivateKeyAlias ​​কল করে এবং একাধিক choosePrivateKeyRules মিলে যায়, তখন সর্বশেষ মিলে যাওয়া নিয়মটিই নির্ধারণ করে যে কোন কী অ্যালিয়াসটি ফেরত দেওয়া হবে।

JSON উপস্থাপনা
{
  "urlPattern": string,
  "packageNames": [
    string
  ],
  "privateKeyAlias": string
}
ক্ষেত্র
urlPattern

string

অনুরোধের URL-এর সাথে মেলানোর জন্য URL প্যাটার্ন। যদি এটি সেট করা না থাকে বা খালি থাকে, তবে এটি সমস্ত URL-এর সাথে মেলে। এর জন্য java.util.regex.Pattern এর রেগুলার এক্সপ্রেশন সিনট্যাক্স ব্যবহার করা হয়।

packageNames[]

string

যে প্যাকেজ নামগুলোর ক্ষেত্রে এই নিয়মটি প্রযোজ্য। অ্যাপটির সাইনিং কী সার্টিফিকেট ফিঙ্গারপ্রিন্ট, প্লে স্টোর এবং ApplicationPolicy.signingKeyCerts দ্বারা প্রদত্ত সাইনিং কী সার্টিফিকেট ফিঙ্গারপ্রিন্টের সাথে মিলিয়ে যাচাই করা হয়। যদি কোনো প্যাকেজ নাম নির্দিষ্ট করা না থাকে, তাহলে KeyChain.choosePrivateKeyAlias ​​বা এর যেকোনো ওভারলোড কল করা সমস্ত অ্যাপকে অ্যালিয়াসটি প্রদান করা হয় (কিন্তু KeyChain.choosePrivateKeyAlias ​​কল না করে নয়, এমনকি অ্যান্ড্রয়েড ১১ এবং তার উপরের সংস্করণগুলোতেও)। এখানে নির্দিষ্ট করা কোনো প্যাকেজের মতো একই অ্যান্ড্রয়েড UID থাকা যেকোনো অ্যাপ, KeyChain.choosePrivateKeyAlias ​​কল করার মাধ্যমে অ্যাক্সেস পাবে।

privateKeyAlias

string

ব্যবহৃতব্য প্রাইভেট কী-এর ছদ্মনাম।

অলওয়েজঅনভিপিএনপ্যাকেজ

সর্বদা চালু থাকা ভিপিএন সংযোগের কনফিগারেশন।

JSON উপস্থাপনা
{
  "packageName": string,
  "lockdownEnabled": boolean
}
ক্ষেত্র
packageName

string

ভিপিএন অ্যাপটির প্যাকেজ নাম।

lockdownEnabled

boolean

ভিপিএন সংযুক্ত না থাকলে নেটওয়ার্কিং নিষিদ্ধ করে।

অবস্থান মোড

ওয়ার্ক প্রোফাইল এবং সম্পূর্ণভাবে পরিচালিত ডিভাইসগুলিতে সক্রিয় অবস্থান শনাক্তকরণের মাত্রা।

এনাম
LOCATION_MODE_UNSPECIFIED ডিফল্টরূপে LOCATION_USER_CHOICE ব্যবহৃত হয়।
HIGH_ACCURACY

অ্যান্ড্রয়েড ৮ এবং এর নিচের সংস্করণগুলোতে, জিপিএস, নেটওয়ার্ক এবং অন্যান্য সেন্সর সহ অবস্থান শনাক্তকরণের সমস্ত পদ্ধতি সক্রিয় থাকে। অ্যান্ড্রয়েড ৯ এবং এর উপরের সংস্করণগুলোতে, এটি LOCATION_ENFORCED এর সমতুল্য।

SENSORS_ONLY

অ্যান্ড্রয়েড ৮ এবং এর নিচের সংস্করণগুলোতে শুধু জিপিএস এবং অন্যান্য সেন্সর সক্রিয় থাকে। অ্যান্ড্রয়েড ৯ এবং এর উপরের সংস্করণগুলোতে, এটি LOCATION_ENFORCED এর সমতুল্য।

BATTERY_SAVING

অ্যান্ড্রয়েড ৮ এবং এর নিচের সংস্করণগুলোতে শুধুমাত্র নেটওয়ার্ক লোকেশন প্রোভাইডার সক্রিয় থাকে। অ্যান্ড্রয়েড ৯ এবং এর উপরের সংস্করণগুলোতে, এটি LOCATION_ENFORCED এর সমতুল্য।

OFF

অ্যান্ড্রয়েড ৮ এবং এর নিচের সংস্করণগুলোতে লোকেশন সেটিং এবং নির্ভুলতা নিষ্ক্রিয় থাকে। অ্যান্ড্রয়েড ৯ এবং এর উপরের সংস্করণগুলোতে, এটি LOCATION_DISABLED এর সমতুল্য।

LOCATION_USER_CHOICE ডিভাইসে অবস্থান সেটিংস সীমাবদ্ধ করা নেই। কোনো নির্দিষ্ট আচরণ নির্ধারণ বা প্রয়োগ করা হয়নি।
LOCATION_ENFORCED ডিভাইসে অবস্থান সেটিং চালু করুন।
LOCATION_DISABLED ডিভাইসে অবস্থান সেটিং নিষ্ক্রিয় করুন।

সম্মতি বিধি

একটি নিয়ম যা ঘোষণা করে যে, যখন কোনো ডিভাইস তার পলিসি মেনে চলে না, তখন কী কী প্রতিকারমূলক ব্যবস্থা নিতে হবে। প্রতিটি নিয়মের জন্য, Device রিসোর্সের ক্ষেত্রে policyCompliant false-এ সেট করার এবং ডিভাইসটি যে তার পলিসি মেনে চলছে না তা নির্দেশ করে একটি বার্তা প্রদর্শন করার একটি অন্তর্নিহিত প্রতিকারমূলক ব্যবস্থা সর্বদা থাকে। নিয়মের ফিল্ড ভ্যালুগুলোর উপর নির্ভর করে, ঐচ্ছিকভাবে অন্যান্য প্রতিকারমূলক ব্যবস্থাও নেওয়া যেতে পারে।

JSON উপস্থাপনা
{
  "disableApps": boolean,
  "packageNamesToDisable": [
    string
  ],

  // The following is a list of mutually exclusive fields. At most one of the
  // fields will be set in a response:
  "nonComplianceDetailCondition": {
    object (NonComplianceDetailCondition)
  },
  "apiLevelCondition": {
    object (ApiLevelCondition)
  }
  // End of mutually exclusive fields.
}
ক্ষেত্র
disableApps

boolean

যদি 'true' সেট করা হয়, তাহলে নিয়মটিতে অ্যাপগুলিকে নিষ্ক্রিয় করার জন্য একটি প্রশমনমূলক ব্যবস্থা অন্তর্ভুক্ত থাকে, যার ফলে ডিভাইসটি কার্যকরভাবে নিষ্ক্রিয় হয়ে যায়, কিন্তু অ্যাপের ডেটা সংরক্ষিত থাকে। যদি ডিভাইসটি লকড টাস্ক মোডে কোনো অ্যাপ চালায়, তাহলে অ্যাপটি বন্ধ হয়ে যাবে এবং নিয়ম লঙ্ঘনের কারণ দেখিয়ে একটি UI প্রদর্শিত হবে।

packageNamesToDisable[]

string

সেট করা থাকলে, নিয়মটিতে তালিকায় উল্লেখিত অ্যাপগুলোকে নিষ্ক্রিয় করার একটি প্রতিকারমূলক ব্যবস্থা অন্তর্ভুক্ত থাকে, কিন্তু অ্যাপের ডেটা সংরক্ষিত থাকে।

এই শর্তটি পূরণ হলে, নিয়মে সংজ্ঞায়িত প্রশমনমূলক পদক্ষেপগুলো সক্রিয় হয়। শর্তগুলোর মধ্যে ঠিক একটি অবশ্যই সেট করতে হবে। নিচে পারস্পরিকভাবে স্বতন্ত্র ফিল্ডগুলোর একটি তালিকা দেওয়া হলো। একটি প্রতিক্রিয়ায় ফিল্ডগুলোর মধ্যে সর্বাধিক একটি সেট করা হবে:
nonComplianceDetailCondition

object ( NonComplianceDetailCondition )

এমন একটি শর্ত যা পূরণ হয়, যদি ডিভাইসটির জন্য কোনো অনুরূপ NonComplianceDetail বিদ্যমান থাকে।

apiLevelCondition

object ( ApiLevelCondition )

এমন একটি শর্ত যা পূরণ হয় যখন ডিভাইসের অ্যান্ড্রয়েড ফ্রেমওয়ার্ক এপিআই লেভেল একটি ন্যূনতম আবশ্যকতা পূরণ করে না।

পারস্পরিকভাবে বর্জনশীল ক্ষেত্রসমূহের সমাপ্তি।

অ-সম্মতি বিবরণ শর্ত

একটি কমপ্লায়েন্স রুল কন্ডিশন যা পূরণ হয় যদি ডিভাইসটির জন্য কোনো মিলে যাওয়া NonComplianceDetail বিদ্যমান থাকে। একটি NonComplianceDetail একটি NonComplianceDetailCondition সাথে মিলে যায়, যদি NonComplianceDetailCondition মধ্যে সেট করা সমস্ত ফিল্ড সংশ্লিষ্ট NonComplianceDetail ফিল্ডগুলির সাথে মিলে যায়।

JSON উপস্থাপনা
{
  "settingName": string,
  "nonComplianceReason": enum (NonComplianceReason),
  "packageName": string
}
ক্ষেত্র
settingName

string

পলিসি সেটিং-এর নাম। এটি একটি শীর্ষ-স্তরের Policy ফিল্ডের JSON ফিল্ডের নাম। যদি এটি সেট করা না থাকে, তাহলে এই শর্তটি যেকোনো সেটিং নামের সাথে মিলে যায়।

nonComplianceReason

enum ( NonComplianceReason )

ডিভাইসটি সেটিংয়ের সাথে সঙ্গতিপূর্ণ না হওয়ার কারণ। যদি সেট করা না থাকে, তাহলে এই অবস্থাটি যেকোনো কারণের সাথেই মিলে যায়।

packageName

string

যে অ্যাপটি নিয়ম মেনে চলছে না, তার প্যাকেজ নাম। যদি এটি সেট করা না থাকে, তাহলে এই অবস্থাটি যেকোনো প্যাকেজ নামের সাথে মিলে যাবে।

এপিআইলেভেলকন্ডিশন

একটি কমপ্লায়েন্স রুল কন্ডিশন যা পূরণ হয় যদি ডিভাইসের অ্যান্ড্রয়েড ফ্রেমওয়ার্ক এপিআই লেভেল একটি ন্যূনতম প্রয়োজনীয়তা পূরণ না করে। প্রতি পলিসিতে এই ধরনের কন্ডিশন সহ শুধুমাত্র একটি রুল থাকতে পারে।

JSON উপস্থাপনা
{
  "minApiLevel": integer
}
ক্ষেত্র
minApiLevel

integer

ন্যূনতম কাঙ্ক্ষিত অ্যান্ড্রয়েড ফ্রেমওয়ার্ক এপিআই লেভেল। ডিভাইসটি যদি ন্যূনতম প্রয়োজনীয়তা পূরণ না করে, তবে এই শর্তটি পূরণ হয়। এর মান অবশ্যই শূন্যের চেয়ে বেশি হতে হবে।

অ্যাপঅটোআপডেটপলিসি

প্রস্তাবিত বিকল্প: autoUpdateMode , যা প্রতিটি অ্যাপের জন্য আলাদাভাবে সেট করা যায়, আপডেটের ফ্রিকোয়েন্সি বা কত ঘন ঘন আপডেট হবে সে বিষয়ে আরও বেশি নমনীয়তা প্রদান করে।

যখন autoUpdateMode AUTO_UPDATE_POSTPONED বা AUTO_UPDATE_HIGH_PRIORITY তে সেট করা হয়, তখন এই ফিল্ডটির কোনো কার্যকারিতা থাকে না।

অ্যাপের স্বয়ংক্রিয় আপডেট নীতি, যা নিয়ন্ত্রণ করে কখন অ্যাপের স্বয়ংক্রিয় আপডেটগুলো প্রয়োগ করা যাবে।

এনাম
APP_AUTO_UPDATE_POLICY_UNSPECIFIED স্বয়ংক্রিয় আপডেট নীতি সেট করা নেই। এটি CHOICE_TO_THE_USER এর সমতুল্য।
CHOICE_TO_THE_USER ব্যবহারকারী স্বয়ংক্রিয় আপডেট নিয়ন্ত্রণ করতে পারেন।
NEVER অ্যাপগুলো কখনো স্বয়ংক্রিয়ভাবে আপডেট হয় না।
WIFI_ONLY অ্যাপগুলো শুধুমাত্র ওয়াই-ফাই এর মাধ্যমেই স্বয়ংক্রিয়ভাবে আপডেট হয়।
ALWAYS অ্যাপগুলো যেকোনো সময় স্বয়ংক্রিয়ভাবে আপডেট হয়। ডেটা চার্জ প্রযোজ্য হতে পারে।

অ্যাপট্র্যাক

গুগল প্লে অ্যাপ প্রকাশের একটি ট্র্যাক।

এনাম
APP_TRACK_UNSPECIFIED এই মানটি উপেক্ষা করা হয়।
PRODUCTION প্রোডাকশন ট্র্যাক, যা সর্বশেষ স্থিতিশীল রিলিজ প্রদান করে।
BETA বিটা ট্র্যাক, যা সর্বশেষ বিটা রিলিজ প্রদান করে।

এনক্রিপশন নীতি

এনক্রিপশনের ধরণ

এনাম
ENCRYPTION_POLICY_UNSPECIFIED এই মানটি উপেক্ষা করা হয়, অর্থাৎ কোনো এনক্রিপশনের প্রয়োজন নেই।
ENABLED_WITHOUT_PASSWORD বুট করার জন্য এনক্রিপশন প্রয়োজন, কিন্তু পাসওয়ার্ডের প্রয়োজন নেই।
ENABLED_WITH_PASSWORD বুট করার জন্য এনক্রিপশন এবং পাসওয়ার্ড প্রয়োজন।

প্লেস্টোরমোড

প্লে স্টোর মোড পলিসির সম্ভাব্য মানসমূহ।

এনাম
PLAY_STORE_MODE_UNSPECIFIED অনির্দিষ্ট। ডিফল্ট হিসেবে হোয়াইটলিস্ট ব্যবহৃত হয়।
WHITELIST শুধুমাত্র পলিসিতে থাকা অ্যাপগুলোই উপলব্ধ থাকবে এবং পলিসিতে নেই এমন যেকোনো অ্যাপ ডিভাইস থেকে স্বয়ংক্রিয়ভাবে আনইনস্টল হয়ে যাবে।
BLACKLIST সমস্ত অ্যাপ উপলব্ধ আছে এবং ডিভাইসে যে অ্যাপগুলো থাকা উচিত নয়, সেগুলোকে applications পলিসিতে স্পষ্টভাবে 'ব্লকড' হিসেবে চিহ্নিত করতে হবে।

সেটআপঅ্যাকশন

সেটআপের সময় সম্পাদিত একটি কার্যক্রম।

JSON উপস্থাপনা
{
  "title": {
    object (UserFacingMessage)
  },
  "description": {
    object (UserFacingMessage)
  },

  // The following is a list of mutually exclusive fields. At most one of the
  // fields will be set in a response:
  "launchApp": {
    object (LaunchAppAction)
  }
  // End of mutually exclusive fields.
}
ক্ষেত্র
title

object ( UserFacingMessage )

এই পদক্ষেপের শিরোনাম।

description

object ( UserFacingMessage )

এই পদক্ষেপের বিবরণ।

সেটআপের সময় যে কাজটি সম্পাদন করতে হবে। নিচে পারস্পরিকভাবে স্বতন্ত্র ফিল্ডগুলোর একটি তালিকা দেওয়া হলো। একটি রেসপন্সে এই ফিল্ডগুলোর মধ্যে সর্বাধিক একটি সেট করা হবে:
launchApp

object ( LaunchAppAction )

একটি অ্যাপ চালু করার জন্য একটি অ্যাকশন। অ্যাপটি একটি ইন্টেন্টের মাধ্যমে চালু করা হবে, যেটিতে com.google.android.apps.work.clouddpc.EXTRA_LAUNCHED_AS_SETUP_ACTION কী-সহ একটি এক্সট্রা থাকবে। এই এক্সট্রাটির বুলিয়ান ভ্যালু true তে সেট করা থাকবে, যা নির্দেশ করে যে এটি একটি সেটআপ অ্যাকশন ফ্লো। যদি SetupAction কোনো অ্যাপকে রেফারেন্স করে, তাহলে অ্যাপ্লিকেশন পলিসিতে সংশ্লিষ্ট installType অবশ্যই REQUIRED_FOR_SETUP হিসেবে সেট করতে হবে, অন্যথায় উক্ত সেটআপ ব্যর্থ হবে।

পারস্পরিকভাবে বর্জনশীল ক্ষেত্রসমূহের সমাপ্তি।

লঞ্চঅ্যাপঅ্যাকশন

একটি অ্যাপ চালু করার পদক্ষেপ।

JSON উপস্থাপনা
{

  // The following is a list of mutually exclusive fields. At most one of the
  // fields will be set in a response:
  "packageName": string
  // End of mutually exclusive fields.
}
ক্ষেত্র
যে লঞ্চ অ্যাকশনটি সম্পাদন করা হবে তার বিবরণ। নিম্নলিখিতটি হল পারস্পরিকভাবে স্বতন্ত্র ফিল্ডগুলির একটি তালিকা। একটি প্রতিক্রিয়ায় এই ফিল্ডগুলির মধ্যে সর্বাধিক একটি সেট করা হবে:
packageName

string

চালু হতে যাওয়া অ্যাপের প্যাকেজ নাম

পারস্পরিকভাবে বর্জনশীল ক্ষেত্রসমূহের সমাপ্তি।

নীতি প্রয়োগ বিধি

একটি নিয়ম যা নির্ধারণ করে যে, যদি কোনো ডিভাইস বা ওয়ার্ক প্রোফাইল settingName এ উল্লেখিত নীতিমালার সাথে সঙ্গতিপূর্ণ না হয়, তাহলে কী পদক্ষেপ নিতে হবে। একাধিক মিলে যাওয়া বা একাধিক সক্রিয় হওয়া প্রয়োগ নিয়মের ক্ষেত্রে, একটি একত্রীকরণ ঘটবে এবং সবচেয়ে কঠোর পদক্ষেপটি নেওয়া হবে। তবে, সক্রিয় হওয়া সমস্ত নিয়মের হিসাব রাখা হয়: এর মধ্যে অন্তর্ভুক্ত থাকে প্রাথমিক সক্রিয় হওয়ার সময় এবং এর সাথে সম্পর্কিত সমস্ত নিয়ম লঙ্ঘনের বিবরণ। যখন সবচেয়ে কঠোর প্রয়োগ নিয়মটি পূরণ হয়, তখন পরবর্তী সবচেয়ে উপযুক্ত পদক্ষেপটি প্রয়োগ করা হয়।

JSON উপস্থাপনা
{
  "blockAction": {
    object (BlockAction)
  },
  "wipeAction": {
    object (WipeAction)
  },

  // The following is a list of mutually exclusive fields. At most one of the
  // fields will be set in a response:
  "settingName": string
  // End of mutually exclusive fields.
}
ক্ষেত্র
blockAction

object ( BlockAction )

কোম্পানির মালিকানাধীন ডিভাইসে বা ওয়ার্ক প্রোফাইলে থাকা অ্যাপ এবং ডেটাতে অ্যাক্সেস ব্লক করার একটি ব্যবস্থা। এই ব্যবস্থাটি ব্যবহারকারীকে একটি নোটিফিকেশনও পাঠায়, যেখানে কমপ্লায়েন্স সমস্যাটি কীভাবে সমাধান করা যাবে সে সম্পর্কে তথ্য (যেখানে সম্ভব) দেওয়া থাকে। দ্রষ্টব্য: wipeAction অবশ্যই উল্লেখ করতে হবে।

wipeAction

object ( WipeAction )

কোম্পানির মালিকানাধীন ডিভাইস রিসেট করার বা কাজের প্রোফাইল মুছে ফেলার একটি পদক্ষেপ। দ্রষ্টব্য: blockAction ও অবশ্যই উল্লেখ করতে হবে।

যে শর্তের জন্য এই নিয়মটি কার্যকর হবে। নিচে পারস্পরিকভাবে বর্জনীয় ফিল্ডগুলোর একটি তালিকা দেওয়া হলো। একটি রেসপন্সে এই ফিল্ডগুলোর মধ্যে সর্বাধিক একটি সেট করা থাকবে:
settingName

string

প্রয়োগ করার জন্য সর্বোচ্চ স্তরের নীতি। উদাহরণস্বরূপ, applications বা passwordPolicies ।

পারস্পরিকভাবে বর্জনশীল ক্ষেত্রসমূহের সমাপ্তি।

ব্লকঅ্যাকশন

সম্পূর্ণভাবে পরিচালিত কোনো ডিভাইস বা ওয়ার্ক প্রোফাইলে অ্যাপ এবং ডেটাতে অ্যাক্সেস ব্লক করার একটি ব্যবস্থা। এই ব্যবস্থাটি ডিভাইস বা ওয়ার্ক প্রোফাইলকে একটি ব্যবহারকারী-মুখী নোটিফিকেশন প্রদর্শন করতেও সক্রিয় করে, যেখানে কমপ্লায়েন্স সমস্যাটি কীভাবে সমাধান করা যায় সে সম্পর্কে তথ্য (যেখানে সম্ভব) দেওয়া থাকে। দ্রষ্টব্য: wipeAction অবশ্যই নির্দিষ্ট করতে হবে।

JSON উপস্থাপনা
{
  "blockAfterDays": integer,
  "blockScope": enum (BlockScope)
}
ক্ষেত্র
blockAfterDays

integer

ডিভাইস বা ওয়ার্ক প্রোফাইল ব্লক করার আগে নীতিমালা অমান্য করার দিনের সংখ্যা। অবিলম্বে অ্যাক্সেস ব্লক করতে, এর মান ০ সেট করুন। blockAfterDays অবশ্যই wipeAfterDays থেকে কম হতে হবে।

blockScope

enum ( BlockScope )

এই BlockAction -এর পরিধি নির্দিষ্ট করে। শুধুমাত্র কোম্পানির মালিকানাধীন ডিভাইসগুলোর জন্য প্রযোজ্য।

ব্লকস্কোপ

BlockAction -এর পরিধি নির্দিষ্ট করে। শুধুমাত্র কোম্পানির মালিকানাধীন ডিভাইসগুলোর জন্য প্রযোজ্য।

এনাম
BLOCK_SCOPE_UNSPECIFIED অনির্দিষ্ট। ডিফল্ট হিসেবে BLOCK_SCOPE_WORK_PROFILE ব্যবহৃত হয়।
BLOCK_SCOPE_WORK_PROFILE ব্লক করার এই ব্যবস্থাটি শুধুমাত্র ওয়ার্ক প্রোফাইলের অ্যাপগুলোর ক্ষেত্রেই প্রযোজ্য। পার্সোনাল প্রোফাইলের অ্যাপগুলো এর দ্বারা প্রভাবিত হয় না।
BLOCK_SCOPE_DEVICE ব্যক্তিগত প্রোফাইলের অ্যাপগুলোসহ পুরো ডিভাইসে ব্লক ব্যবস্থাটি প্রয়োগ করা হয়।

ওয়াইপঅ্যাকশন

কোম্পানির মালিকানাধীন ডিভাইস রিসেট করার বা কাজের প্রোফাইল মুছে ফেলার একটি পদক্ষেপ। দ্রষ্টব্য: blockAction ও অবশ্যই উল্লেখ করতে হবে।

JSON উপস্থাপনা
{
  "wipeAfterDays": integer,
  "preserveFrp": boolean
}
ক্ষেত্র
wipeAfterDays

integer

ডিভাইস বা ওয়ার্ক প্রোফাইল মুছে ফেলার আগে নীতিমালা অমান্য থাকার দিনের সংখ্যা। wipeAfterDays অবশ্যই blockAfterDays থেকে বেশি হতে হবে।

preserveFrp

boolean

ডিভাইসে ফ্যাক্টরি-রিসেট সুরক্ষা ডেটা সংরক্ষিত থাকবে কিনা। এই সেটিংটি সম্পূর্ণরূপে পরিচালিত ডিভাইস এবং কোম্পানির মালিকানাধীন ডিভাইসের ওয়ার্ক প্রোফাইলের ক্ষেত্রে প্রযোজ্য।

কিয়স্ক কাস্টমাইজেশন

কিয়স্ক মোডে একটি ডিভাইসের আচরণ নিয়ন্ত্রণকারী সেটিংস। কিয়স্ক মোড চালু করতে, kioskCustomLauncherEnabled true তে সেট করুন অথবা পলিসিতে installType KIOSK সহ একটি অ্যাপ নির্দিষ্ট করুন।

JSON উপস্থাপনা
{
  "powerButtonActions": enum (PowerButtonActions),
  "systemErrorWarnings": enum (SystemErrorWarnings),
  "systemNavigation": enum (SystemNavigation),
  "statusBar": enum (StatusBar),
  "deviceSettings": enum (DeviceSettings)
}
ক্ষেত্র
powerButtonActions

enum ( PowerButtonActions )

ঐচ্ছিক। ব্যবহারকারী যখন পাওয়ার বাটনটি চেপে ধরে রাখেন (লং-প্রেস), তখন কিয়স্ক মোডে ডিভাইসটির আচরণ নির্ধারণ করে।

systemErrorWarnings

enum ( SystemErrorWarnings )

ঐচ্ছিক। কিয়স্ক মোডে ক্র্যাশ হওয়া বা সাড়া না দেওয়া অ্যাপের জন্য সিস্টেম এরর ডায়ালগ ব্লক করা হবে কিনা তা নির্দিষ্ট করে। ব্লক করা হলে, সিস্টেম অ্যাপটিকে এমনভাবে জোর করে বন্ধ করে দেবে, যেন ব্যবহারকারী UI-তে "ক্লোজ অ্যাপ" অপশনটি বেছে নিয়েছেন।

systemNavigation

enum ( SystemNavigation )

ঐচ্ছিক। কিয়স্ক মোডে কোন নেভিগেশন বৈশিষ্ট্যগুলি (যেমন হোম, ওভারভিউ বাটন) সক্রিয় থাকবে তা নির্দিষ্ট করে।

statusBar

enum ( StatusBar )

ঐচ্ছিক। কিয়স্ক মোডে সিস্টেমের তথ্য ও নোটিফিকেশন নিষ্ক্রিয় থাকবে কিনা তা নির্দিষ্ট করে।

deviceSettings

enum ( DeviceSettings )

ঐচ্ছিক। কিয়স্ক মোডে সেটিংস অ্যাপ ব্যবহারের অনুমতি আছে কিনা তা নির্দিষ্ট করে।

পাওয়ারবাটনঅ্যাকশনস

ব্যবহারকারী যখন পাওয়ার বাটনটি চেপে ধরে রাখেন (লং-প্রেস), তখন কিয়স্ক মোডে ডিভাইসটির আচরণ নির্ধারণ করে।

এনাম
POWER_BUTTON_ACTIONS_UNSPECIFIED অনির্দিষ্ট, ডিফল্টরূপে POWER_BUTTON_AVAILABLE ব্যবহৃত হয়।
POWER_BUTTON_AVAILABLE কিয়স্ক মোডে কোনো ডিভাইসের পাওয়ার বাটন ব্যবহারকারী দীর্ঘক্ষণ চেপে রাখলে পাওয়ার মেনু (যেমন পাওয়ার অফ, রিস্টার্ট) প্রদর্শিত হয়।
POWER_BUTTON_BLOCKED কিয়স্ক মোডে কোনো ডিভাইসের পাওয়ার বাটন দীর্ঘক্ষণ চেপে রাখলে পাওয়ার মেনু (যেমন পাওয়ার অফ, রিস্টার্ট) দেখানো হয় না। দ্রষ্টব্য: এর ফলে ব্যবহারকারীরা ডিভাইসটি বন্ধ করতে নাও পারতে পারেন।

সিস্টেম ত্রুটি সতর্কতা

কিয়স্ক মোডে ক্র্যাশ হওয়া বা সাড়া না দেওয়া অ্যাপের জন্য সিস্টেম এরর ডায়ালগ ব্লক করা হবে কিনা তা নির্দিষ্ট করে।

এনাম
SYSTEM_ERROR_WARNINGS_UNSPECIFIED অনির্দিষ্ট, ডিফল্ট হিসেবে ERROR_AND_WARNINGS_MUTED ব্যবহৃত হয়।
ERROR_AND_WARNINGS_ENABLED All system error dialogs such as crash and app not responding (ANR) are displayed.
ERROR_AND_WARNINGS_MUTED All system error dialogs, such as crash and app not responding (ANR) are blocked. When blocked, the system force-stops the app as if the user closes the app from the UI.

সিস্টেমনেভিগেশন

Specifies which navigation features are enabled (eg Home, Overview buttons) in kiosk mode.

এনাম
SYSTEM_NAVIGATION_UNSPECIFIED Unspecified, defaults to NAVIGATION_DISABLED .
NAVIGATION_ENABLED Home and overview buttons are enabled.
NAVIGATION_DISABLED The home and Overview buttons are not accessible.
HOME_BUTTON_ONLY Only the home button is enabled.

স্ট্যাটাসবার

Specifies whether system info and notifications are disabled in kiosk mode.

এনাম
STATUS_BAR_UNSPECIFIED Unspecified, defaults to INFO_AND_NOTIFICATIONS_DISABLED .
NOTIFICATIONS_AND_SYSTEM_INFO_ENABLED

System info and notifications are shown on the status bar in kiosk mode.

Note: For this policy to take effect, the device's home button must be enabled using kioskCustomization.systemNavigation .

NOTIFICATIONS_AND_SYSTEM_INFO_DISABLED System info and notifications are disabled in kiosk mode.
SYSTEM_INFO_ONLY Only system info is shown on the status bar.

ডিভাইস সেটিংস

Specifies whether a user can access the device's Settings app while in kiosk mode.

এনাম
DEVICE_SETTINGS_UNSPECIFIED Unspecified, defaults to SETTINGS_ACCESS_ALLOWED .
SETTINGS_ACCESS_ALLOWED Access to the Settings app is allowed in kiosk mode.
SETTINGS_ACCESS_BLOCKED Access to the Settings app is not allowed in kiosk mode.

অ্যাডভান্সডসিকিউরিটিওভাররাইডস

Advanced security settings. In most cases, setting these is not needed.

JSON উপস্থাপনা
{
  "untrustedAppsPolicy": enum (UntrustedAppsPolicy),
  "googlePlayProtectVerifyApps": enum (GooglePlayProtectVerifyApps),
  "developerSettings": enum (DeveloperSettings),
  "commonCriteriaMode": enum (CommonCriteriaMode),
  "personalAppsThatCanReadWorkNotifications": [
    string
  ],
  "mtePolicy": enum (MtePolicy),
  "contentProtectionPolicy": enum (ContentProtectionPolicy)
}
ক্ষেত্র
untrustedAppsPolicy

enum ( UntrustedAppsPolicy )

Optional. The policy for untrusted apps (apps from unknown sources) enforced on the device. Replaces installUnknownSourcesAllowed (deprecated).

googlePlayProtectVerifyApps

enum ( GooglePlayProtectVerifyApps )

Optional. Whether Google Play Protect verification is enforced. Replaces ensureVerifyAppsEnabled (deprecated).

developerSettings

enum ( DeveloperSettings )

Optional. Controls access to developer settings: developer options and safe boot. Replaces safeBootDisabled (deprecated) and debuggingFeaturesAllowed (deprecated). On personally-owned devices with a work profile, setting this policy will not disable safe boot. In this case, a NonComplianceDetail with MANAGEMENT_MODE is reported.

commonCriteriaMode

enum ( CommonCriteriaMode )

Optional. Controls Common Criteria Mode—security standards defined in the Common Criteria for Information Technology Security Evaluation (CC). Enabling Common Criteria Mode increases certain security components on a device, see CommonCriteriaMode for details.

Warning: Common Criteria Mode enforces a strict security model typically only required for IT products used in national security systems and other highly sensitive organizations. Standard device use may be affected. Only enabled if required. If Common Criteria Mode is turned off after being enabled previously, all user-configured Wi-Fi networks may be lost and any enterprise-configured Wi-Fi networks that require user input may need to be reconfigured.

personalAppsThatCanReadWorkNotifications[]

string

Optional. Personal apps that can read work profile notifications using a NotificationListenerService . By default, no personal apps (aside from system apps) can read work notifications. Each value in the list must be a package name.

mtePolicy

enum ( MtePolicy )

Optional. Controls Memory Tagging Extension (MTE) on the device. The device needs to be rebooted to apply changes to the MTE policy. On Android 15 and above, a NonComplianceDetail with PENDING is reported if the policy change is pending a device reboot.

contentProtectionPolicy

enum ( ContentProtectionPolicy )

Optional. Controls whether content protection, which scans for deceptive apps, is enabled. This is supported on Android 15 and above.

অবিশ্বস্ত অ্যাপ নীতি

The policy for untrusted apps (apps from unknown sources) enforced on the device. Replaces installUnknownSourcesAllowed (deprecated).

এনাম
UNTRUSTED_APPS_POLICY_UNSPECIFIED Unspecified. Defaults to DISALLOW_INSTALL.
DISALLOW_INSTALL Default. Disallow untrusted app installs on entire device.
ALLOW_INSTALL_IN_PERSONAL_PROFILE_ONLY For devices with work profiles, allow untrusted app installs in the device's personal profile only.
ALLOW_INSTALL_DEVICE_WIDE Allow untrusted app installs on entire device.

GooglePlayProtectVerifyApps

Whether Google Play Protect verification is enforced. Replaces ensureVerifyAppsEnabled (deprecated).

এনাম
GOOGLE_PLAY_PROTECT_VERIFY_APPS_UNSPECIFIED Unspecified. Defaults to VERIFY_APPS_ENFORCED.
VERIFY_APPS_ENFORCED Default. Force-enables app verification.
VERIFY_APPS_USER_CHOICE Allows the user to choose whether to enable app verification.

ডেভেলপার সেটিংস

Controls access to developer settings: developer options and safe boot. Replaces safeBootDisabled (deprecated) and debuggingFeaturesAllowed (deprecated).

এনাম
DEVELOPER_SETTINGS_UNSPECIFIED Unspecified. Defaults to DEVELOPER_SETTINGS_DISABLED.
DEVELOPER_SETTINGS_DISABLED Default. Disables all developer settings and prevents the user from accessing them.
DEVELOPER_SETTINGS_ALLOWED Allows all developer settings. The user can access and optionally configure the settings.

কমন ক্রাইটেরিয়া মোড

Controls Common Criteria Mode—security standards defined in the Common Criteria for Information Technology Security Evaluation (CC). Enabling Common Criteria Mode increases certain security components on a device, including:

  1. AES-GCM encryption of Bluetooth Long Term Keys
  2. Wi-Fi configuration stores
  3. Additional network certificates validation requiring the use of TLSv1.2 to connect to AM API destination hosts
  4. Cryptographic policy integrity check. It is recommended to set statusReportingSettings.commonCriteriaModeEnabled to true to obtain the status of policy integrity check. If the policy signature verification fails, then the policy is not applied on the device and commonCriteriaModeInfo.policy_signature_verification_status is set to POLICY_SIGNATURE_VERIFICATION_FAILED .

Common Criteria Mode is only supported on company-owned devices running Android 11 or above.

Warning: Common Criteria Mode enforces a strict security model typically only required for IT products used in national security systems and other highly sensitive organizations. Standard device use may be affected. Only enabled if required. If Common Criteria Mode is turned off after being enabled previously, all user-configured Wi-Fi networks may be lost and any enterprise-configured Wi-Fi networks that require user input may need to be reconfigured.

এনাম
COMMON_CRITERIA_MODE_UNSPECIFIED Unspecified. Defaults to COMMON_CRITERIA_MODE_DISABLED.
COMMON_CRITERIA_MODE_DISABLED Default. Disables Common Criteria Mode.
COMMON_CRITERIA_MODE_ENABLED Enables Common Criteria Mode.

এমটিইপলিসি

Controls Memory Tagging Extension (MTE) on the device.

এনাম
MTE_POLICY_UNSPECIFIED Unspecified. Defaults to MTE_USER_CHOICE .
MTE_USER_CHOICE The user can choose to enable or disable MTE on the device if the device supports this.
MTE_ENFORCED

MTE is enabled on the device and the user is not allowed to change this setting. This can be set on fully managed devices and work profiles on company-owned devices. A NonComplianceDetail with MANAGEMENT_MODE is reported for other management modes. A NonComplianceDetail with DEVICE_INCOMPATIBLE is reported if the device does not support MTE.

Supported on Android 14 and above. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 14.

MTE_DISABLED

MTE is disabled on the device and the user is not allowed to change this setting. This applies only on fully managed devices. In other cases, a NonComplianceDetail with MANAGEMENT_MODE is reported. A NonComplianceDetail with DEVICE_INCOMPATIBLE is reported if the device does not support MTE.

Supported on Android 14 and above. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 14.

বিষয়বস্তু সুরক্ষা নীতি

Controls whether content protection, which scans for deceptive apps, is enabled. This is supported on Android 15 and above.

এনাম
CONTENT_PROTECTION_POLICY_UNSPECIFIED Unspecified. Defaults to CONTENT_PROTECTION_DISABLED .
CONTENT_PROTECTION_DISABLED Content protection is disabled and the user cannot change this.
CONTENT_PROTECTION_ENFORCED

Content protection is enabled and the user cannot change this.

Supported on Android 15 and above. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 15.

CONTENT_PROTECTION_USER_CHOICE

Content protection is not controlled by the policy. The user is allowed to choose the behavior of content protection.

Supported on Android 15 and above. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 15.

ব্যক্তিগত ব্যবহারের নীতিমালা

Policies controlling personal usage on a company-owned device with a work profile.

JSON উপস্থাপনা
{
  "cameraDisabled": boolean,
  "screenCaptureDisabled": boolean,
  "accountTypesWithManagementDisabled": [
    string
  ],
  "maxDaysWithWorkOff": integer,
  "personalPlayStoreMode": enum (PlayStoreMode),
  "personalApplications": [
    {
      object (PersonalApplicationPolicy)
    }
  ],
  "privateSpacePolicy": enum (PrivateSpacePolicy),
  "bluetoothSharing": enum (BluetoothSharing),
  "crossDevicePolicies": {
    object (PersonalCrossDevicePolicies)
  }
}
ক্ষেত্র
cameraDisabled

boolean

If true, the camera is disabled on the personal profile.

screenCaptureDisabled

boolean

If true , screen capture is disabled for all users. This also blocks Circle to Search .

accountTypesWithManagementDisabled[]

string

যেসব অ্যাকাউন্টের ধরন ব্যবহারকারী দ্বারা পরিচালিত হয় না।

maxDaysWithWorkOff

integer

Controls how long the work profile can stay off. The minimum duration must be at least 3 days. Other details are as follows:

  • If the duration is set to 0, the feature is turned off.
  • If the duration is set to a value smaller than the minimum duration, the feature returns an error.
Note: If you want to avoid personal profiles being suspended during long periods of off-time, you can temporarily set a large value for this parameter.

personalPlayStoreMode

enum ( PlayStoreMode )

Used together with personalApplications to control how apps in the personal profile are allowed or blocked.

personalApplications[]

object ( PersonalApplicationPolicy )

Policy applied to applications in the personal profile.

privateSpacePolicy

enum ( PrivateSpacePolicy )

Optional. Controls whether a private space is allowed on the device.

bluetoothSharing

enum ( BluetoothSharing )

Optional. Whether bluetooth sharing is allowed.

crossDevicePolicies

object ( PersonalCrossDevicePolicies )

Optional. Policies controlling cross-device communication in the personal profile.

প্লেস্টোরমোড

Used together with personalApplications to control how apps in the personal profile are allowed or blocked.

এনাম
PLAY_STORE_MODE_UNSPECIFIED Unspecified. Defaults to BLOCKLIST .
BLACKLIST

All Play Store apps are available for installation in the personal profile, except those whose installType is BLOCKED in personalApplications .

BLOCKLIST All Play Store apps are available for installation in the personal profile, except those whose installType is BLOCKED in personalApplications .
ALLOWLIST Only apps explicitly specified in personalApplications with installType set to AVAILABLE are allowed to be installed in the personal profile.

ব্যক্তিগত আবেদন নীতি

Policies for apps in the personal profile of a company-owned device with a work profile.

JSON উপস্থাপনা
{
  "packageName": string,
  "installType": enum (InstallType)
}
ক্ষেত্র
packageName

string

The package name of the application.

installType

enum ( InstallType )

যে ধরনের ইনস্টলেশন করতে হবে।

ইনস্টল টাইপ

Types of installation behaviors a personal profile application can have.

এনাম
INSTALL_TYPE_UNSPECIFIED Unspecified. Defaults to AVAILABLE .
BLOCKED The app is blocked and can't be installed in the personal profile. If the app was previously installed in the device, it will be uninstalled.
AVAILABLE The app is available to install in the personal profile.

ব্যক্তিগত স্থান নীতি

Controls whether a private space is allowed on the device.

এনাম
PRIVATE_SPACE_POLICY_UNSPECIFIED Unspecified. Defaults to PRIVATE_SPACE_ALLOWED .
PRIVATE_SPACE_ALLOWED Users can create a private space profile.
PRIVATE_SPACE_DISALLOWED Users cannot create a private space profile. Supported only for company-owned devices with a work profile. Caution: Any existing private space will be removed.

ব্লুটুথ শেয়ারিং

Whether bluetooth sharing is allowed in the personal profile of a company-owned device with a work profile.

এনাম
BLUETOOTH_SHARING_UNSPECIFIED Unspecified. Defaults to BLUETOOTH_SHARING_ALLOWED .
BLUETOOTH_SHARING_ALLOWED

Bluetooth sharing is allowed on personal profile.

Supported on Android 8 and above. A NonComplianceDetail with MANAGEMENT_MODE is reported if this is set for a personal device.

BLUETOOTH_SHARING_DISALLOWED

Bluetooth sharing is disallowed on personal profile.

Supported on Android 8 and above. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 8. A NonComplianceDetail with MANAGEMENT_MODE is reported if this is set for a personal device.

ব্যক্তিগত ক্রস ডিভাইস নীতিমালা

Policies controlling cross-device communication in the personal profile.

JSON উপস্থাপনা
{
  "taskContinuityHandoff": enum (TaskContinuityHandoff)
}
ক্ষেত্র
taskContinuityHandoff

enum ( TaskContinuityHandoff )

Optional. Controls the task continuity handoff feature for the personal profile on company-owned devices with a work profile. To disable Handoff device-wide on a company-owned device, both crossDevicePolicies.taskContinuityHandoff and this policy should be set to TASK_CONTINUITY_HANDOFF_DISALLOWED . Requires Android 17 QPR1 or higher.

টাস্ককন্টিনিউটিহ্যান্ডঅফ

Controls the policy setting for the task continuity handoff feature, including both sending and receiving task data between devices.

এনাম
TASK_CONTINUITY_HANDOFF_UNSPECIFIED Defaults to TASK_CONTINUITY_HANDOFF_ALLOWED .
TASK_CONTINUITY_HANDOFF_ALLOWED Allows the user to enable or disable the task continuity handoff feature in settings. A NonComplianceDetail with API_LEVEL is reported if the Android version is lower than Android 17 QPR1.
TASK_CONTINUITY_HANDOFF_DISALLOWED The task continuity handoff feature is disallowed. A NonComplianceDetail with API_LEVEL is reported if the Android version is lower than Android 17 QPR1.

স্বয়ংক্রিয় তারিখ এবং সময় অঞ্চল

Whether auto date, time, and time zone is enabled on a company-owned device.

এনাম
AUTO_DATE_AND_TIME_ZONE_UNSPECIFIED Unspecified. Defaults to AUTO_DATE_AND_TIME_ZONE_USER_CHOICE .
AUTO_DATE_AND_TIME_ZONE_USER_CHOICE Auto date, time, and time zone are left to user's choice.
AUTO_DATE_AND_TIME_ZONE_ENFORCED Enforce auto date, time, and time zone on the device.

OncCertificateProvider

এই বৈশিষ্ট্যটি সাধারণত উপলব্ধ নয়।

JSON উপস্থাপনা
{
  "certificateReferences": [
    string
  ],

  // The following is a list of mutually exclusive fields. At most one of the
  // fields will be set in a response:
  "contentProviderEndpoint": {
    object (ContentProviderEndpoint)
  }
  // End of mutually exclusive fields.
}
ক্ষেত্র
certificateReferences[]

string

এই বৈশিষ্ট্যটি সাধারণত উপলব্ধ নয়।

This feature is not generally available. The following is a list of mutually exclusive fields. At most one of the fields will be set in a response:
contentProviderEndpoint

object ( ContentProviderEndpoint )

এই বৈশিষ্ট্যটি সাধারণত উপলব্ধ নয়।

পারস্পরিকভাবে বর্জনশীল ক্ষেত্রসমূহের সমাপ্তি।

কন্টেন্টপ্রোভাইডারএন্ডপয়েন্ট

এই বৈশিষ্ট্যটি সাধারণত উপলব্ধ নয়।

JSON উপস্থাপনা
{
  "uri": string,
  "packageName": string,
  "signingCertsSha256": [
    string
  ]
}
ক্ষেত্র
uri

string

এই বৈশিষ্ট্যটি সাধারণত উপলব্ধ নয়।

packageName

string

এই বৈশিষ্ট্যটি সাধারণত উপলব্ধ নয়।

signingCertsSha256[]

string

Required. This feature is not generally available.

ক্রসপ্রোফাইল নীতিমালা

Controls the data from the work profile that can be accessed from the personal profile and vice versa. A NonComplianceDetail with MANAGEMENT_MODE is reported if the device does not have a work profile.

JSON উপস্থাপনা
{
  "showWorkContactsInPersonalProfile": enum (ShowWorkContactsInPersonalProfile),
  "crossProfileCopyPaste": enum (CrossProfileCopyPaste),
  "crossProfileDataSharing": enum (CrossProfileDataSharing),
  "workProfileWidgetsDefault": enum (WorkProfileWidgetsDefault),
  "crossProfileAppFunctions": enum (CrossProfileAppFunctions),
  "exemptionsToShowWorkContactsInPersonalProfile": {
    object (PackageNameList)
  }
}
ক্ষেত্র
showWorkContactsInPersonalProfile

enum ( ShowWorkContactsInPersonalProfile )

Optional. Whether personal apps can access contacts stored in the work profile.

See also exemptionsToShowWorkContactsInPersonalProfile .

crossProfileCopyPaste

enum ( CrossProfileCopyPaste )

Optional. Whether text copied from one profile (personal or work) can be pasted in the other profile.

crossProfileDataSharing

enum ( CrossProfileDataSharing )

Optional. Whether data from one profile (personal or work) can be shared with apps in the other profile. Specifically controls simple data sharing via intents. Management of other cross-profile communication channels, such as contact search, copy/paste, or connected work & personal apps, are configured separately.

workProfileWidgetsDefault

enum ( WorkProfileWidgetsDefault )

Optional. Specifies the default behaviour for work profile widgets. If the policy does not specify workProfileWidgets for a specific application, it will behave according to the value specified here.

crossProfileAppFunctions

enum ( CrossProfileAppFunctions )

Optional. Controls whether personal profile apps can invoke app functions exposed by apps in the work profile.

exemptionsToShowWorkContactsInPersonalProfile

object ( PackageNameList )

Optional. List of apps which are excluded from the ShowWorkContactsInPersonalProfile setting. For this to be set, ShowWorkContactsInPersonalProfile must be set to one of the following values:

Supported on Android 14 and above. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 14.

ব্যক্তিগত প্রোফাইলে কাজের যোগাযোগের তথ্য দেখান

Whether personal apps can access work profile contacts including contact searches and incoming calls

Note : Once a work contact is accessed by any personal app, it cannot be guaranteed to stay with the same app, as the contact could be shared or transferred to any other app, depending on the allowed app's behaviour.

এনাম
SHOW_WORK_CONTACTS_IN_PERSONAL_PROFILE_UNSPECIFIED

Unspecified. Defaults to SHOW_WORK_CONTACTS_IN_PERSONAL_PROFILE_ALLOWED .

When this is set, exemptionsToShowWorkContactsInPersonalProfile must not be set.

SHOW_WORK_CONTACTS_IN_PERSONAL_PROFILE_DISALLOWED

Prevents personal apps from accessing work profile contacts and looking up work contacts.

When this is set, personal apps specified in exemptionsToShowWorkContactsInPersonalProfile are allowlisted and can access work profile contacts directly.

Supported on Android 7.0 and above. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 7.0.

SHOW_WORK_CONTACTS_IN_PERSONAL_PROFILE_ALLOWED

Default. Allows apps in the personal profile to access work profile contacts including contact searches and incoming calls.

When this is set, personal apps specified in exemptionsToShowWorkContactsInPersonalProfile are blocklisted and can not access work profile contacts directly.

Supported on Android 7.0 and above. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 7.0.

SHOW_WORK_CONTACTS_IN_PERSONAL_PROFILE_DISALLOWED_EXCEPT_SYSTEM

Prevents most personal apps from accessing work profile contacts including contact searches and incoming calls, except for the OEM default Dialer, Messages, and Contacts apps. Neither user-configured Dialer, Messages, and Contacts apps, nor any other system or play installed apps, will be able to query work contacts directly.

When this is set, personal apps specified in exemptionsToShowWorkContactsInPersonalProfile are allowlisted and can access work profile contacts.

Supported on Android 14 and above. If this is set on a device with Android version less than 14, the behaviour falls back to SHOW_WORK_CONTACTS_IN_PERSONAL_PROFILE_DISALLOWED and a NonComplianceDetail with API_LEVEL is reported.

ক্রসপ্রোফাইলকপিপেস্ট

Whether text copied from one profile (personal or work) can be pasted in the other profile.

এনাম
CROSS_PROFILE_COPY_PASTE_UNSPECIFIED Unspecified. Defaults to COPY_FROM_WORK_TO_PERSONAL_DISALLOWED
COPY_FROM_WORK_TO_PERSONAL_DISALLOWED Default. Prevents users from pasting into the personal profile text copied from the work profile. Text copied from the personal profile can be pasted into the work profile, and text copied from the work profile can be pasted into the work profile.
CROSS_PROFILE_COPY_PASTE_ALLOWED Text copied in either profile can be pasted in the other profile.

ক্রসপ্রোফাইল ডেটা শেয়ারিং

Whether data from one profile (personal or work) can be shared with apps in the other profile. Specifically controls simple data sharing via intents. This includes actions like opening a web browser, opening a map, sharing content, opening a document, etc. Management of other cross-profile communication channels, such as contact search, copy/paste, or connected work & personal apps, are configured separately.

এনাম
CROSS_PROFILE_DATA_SHARING_UNSPECIFIED Unspecified. Defaults to DATA_SHARING_FROM_WORK_TO_PERSONAL_DISALLOWED.
CROSS_PROFILE_DATA_SHARING_DISALLOWED Prevents data from being shared from both the personal profile to the work profile and the work profile to the personal profile.
DATA_SHARING_FROM_WORK_TO_PERSONAL_DISALLOWED Default. Prevents users from sharing data from the work profile to apps in the personal profile. Personal data can be shared with work apps.
CROSS_PROFILE_DATA_SHARING_ALLOWED Data from either profile can be shared with the other profile.

ওয়ার্কপ্রোফাইলউইজেটসডিফল্ট

Controls if work profile applications are allowed to add widgets to the home screen, where no app-specific policy is defined. Otherwise, the app-specific policy will have priority over this.

এনাম
WORK_PROFILE_WIDGETS_DEFAULT_UNSPECIFIED Unspecified. Defaults to WORK_PROFILE_WIDGETS_DEFAULT_DISALLOWED.
WORK_PROFILE_WIDGETS_DEFAULT_ALLOWED Work profile widgets are allowed by default. This means that if the policy does not specify workProfileWidgets as WORK_PROFILE_WIDGETS_DISALLOWED for the application, it will be able to add widgets to the home screen.
WORK_PROFILE_WIDGETS_DEFAULT_DISALLOWED Work profile widgets are disallowed by default. This means that if the policy does not specify workProfileWidgets as WORK_PROFILE_WIDGETS_ALLOWED for the application, it will be unable to add widgets to the home screen.

ক্রসপ্রোফাইলঅ্যাপফাংশন

Controls whether personal profile apps are allowed to invoke app functions exposed by apps in the work profile.

এনাম
CROSS_PROFILE_APP_FUNCTIONS_UNSPECIFIED Unspecified. If appFunctions is set to APP_FUNCTIONS_ALLOWED , defaults to CROSS_PROFILE_APP_FUNCTIONS_ALLOWED . If appFunctions is set to APP_FUNCTIONS_DISALLOWED , defaults to CROSS_PROFILE_APP_FUNCTIONS_DISALLOWED .
CROSS_PROFILE_APP_FUNCTIONS_DISALLOWED Personal profile apps are not allowed to invoke app functions exposed by apps in the work profile.
CROSS_PROFILE_APP_FUNCTIONS_ALLOWED Personal profile apps can invoke app functions exposed by apps in the work profile. If this is set, appFunctions must not be set to APP_FUNCTIONS_DISALLOWED , otherwise the policy will be rejected.

অগ্রাধিকারমূলক নেটওয়ার্ক পরিষেবা

Controls whether preferential network service is enabled on the work profile or on fully managed devices. See preferentialNetworkService for details.

এনাম
PREFERENTIAL_NETWORK_SERVICE_UNSPECIFIED Unspecified. Defaults to PREFERENTIAL_NETWORK_SERVICES_DISABLED .
PREFERENTIAL_NETWORK_SERVICE_DISABLED Preferential network service is disabled on the work profile.
PREFERENTIAL_NETWORK_SERVICE_ENABLED Preferential network service is enabled on the work profile. This setting is only supported on work profiles on devices running Android 12 or above. Starting with Android 13, fully managed devices are also supported.

ব্যবহারের লগ

Controls types of device activity logs collected from the device and reported via Pub/Sub notification .

JSON উপস্থাপনা
{
  "enabledLogTypes": [
    enum (LogType)
  ],
  "uploadOnCellularAllowed": [
    enum (LogType)
  ]
}
ক্ষেত্র
enabledLogTypes[]

enum ( LogType )

Optional. Specifies which log types are enabled. Note that users will receive on-device messaging when usage logging is enabled.

uploadOnCellularAllowed[]

enum ( LogType )

Optional. Specifies which of the enabled log types can be uploaded over mobile data. By default logs are queued for upload when the device connects to WiFi.

লগটাইপ

The types of device activity logs that are reported from the device.

এনাম
LOG_TYPE_UNSPECIFIED This value is not used.
SECURITY_LOGS Enable logging of on-device security events, such as when the device password is incorrectly entered or removable storage is mounted. See UsageLogEvent for a complete description of the logged security events. Supported for fully managed devices on Android 7 and above. Supported for company-owned devices with a work profile on Android 12 and above, on which only security events from the work profile are logged. Can be overridden by the application delegated scope SECURITY_LOGS
NETWORK_ACTIVITY_LOGS Enable logging of on-device network events, such as DNS lookups and TCP connections. See UsageLogEvent for a complete description of the logged network events. Supported for fully managed devices on Android 8 and above. Supported for company-owned devices with a work profile on Android 12 and above, on which only network events from the work profile are logged. Can be overridden by the application delegated scope NETWORK_ACTIVITY_LOGS

ক্যামেরা অ্যাক্সেস

Controls the use of the camera and whether the user has access to the camera access toggle. The camera access toggle exists on Android 12 and above. As a general principle, the possibility of disabling the camera applies device-wide on fully managed devices and only within the work profile on devices with a work profile. The possibility of disabling the camera access toggle applies only on fully managed devices, in which case it applies device-wide. For specifics, see the enum values.

এনাম
CAMERA_ACCESS_UNSPECIFIED If cameraDisabled is true, this is equivalent to CAMERA_ACCESS_DISABLED . Otherwise, this is equivalent to CAMERA_ACCESS_USER_CHOICE .
CAMERA_ACCESS_USER_CHOICE The field cameraDisabled is ignored. This is the default device behaviour: all cameras on the device are available. On Android 12 and above, the user can use the camera access toggle.
CAMERA_ACCESS_DISABLED

The field cameraDisabled is ignored. All cameras on the device are disabled (for fully managed devices, this applies device-wide and for work profiles this applies only to the work profile).

There are no explicit restrictions placed on the camera access toggle on Android 12 and above: on fully managed devices, the camera access toggle has no effect as all cameras are disabled. On devices with a work profile, this toggle has no effect on apps in the work profile, but it affects apps outside the work profile.

CAMERA_ACCESS_ENFORCED The field cameraDisabled is ignored. All cameras on the device are available. On fully managed devices running Android 12 and above, the user is unable to use the camera access toggle. On devices which are not fully managed or which run Android 11 or below, this is equivalent to CAMERA_ACCESS_USER_CHOICE .

মাইক্রোফোন অ্যাক্সেস

On fully managed devices, controls the use of the microphone and whether the user has access to the microphone access toggle. This setting has no effect on devices which are not fully managed. The microphone access toggle exists on Android 12 and above.

এনাম
MICROPHONE_ACCESS_UNSPECIFIED If unmuteMicrophoneDisabled is true, this is equivalent to MICROPHONE_ACCESS_DISABLED . Otherwise, this is equivalent to MICROPHONE_ACCESS_USER_CHOICE .
MICROPHONE_ACCESS_USER_CHOICE The field unmuteMicrophoneDisabled is ignored. This is the default device behaviour: the microphone on the device is available. On Android 12 and above, the user can use the microphone access toggle.
MICROPHONE_ACCESS_DISABLED

The field unmuteMicrophoneDisabled is ignored. The microphone on the device is disabled (for fully managed devices, this applies device-wide).

The microphone access toggle has no effect as the microphone is disabled.

MICROPHONE_ACCESS_ENFORCED The field unmuteMicrophoneDisabled is ignored. The microphone on the device is available. On devices running Android 12 and above, the user is unable to use the microphone access toggle. On devices which run Android 11 or below, this is equivalent to MICROPHONE_ACCESS_USER_CHOICE .

ডিভাইস সংযোগ ব্যবস্থাপনা

এর মধ্যে রয়েছে ওয়াই-ফাই, ইউএসবি ডেটা অ্যাক্সেস, কিবোর্ড/মাউস সংযোগ এবং আরও অনেক কিছুর মতো ডিভাইস সংযোগের নিয়ন্ত্রণ।

JSON উপস্থাপনা
{
  "usbDataAccess": enum (UsbDataAccess),
  "configureWifi": enum (ConfigureWifi),
  "wifiDirectSettings": enum (WifiDirectSettings),
  "tetheringSettings": enum (TetheringSettings),
  "wifiSsidPolicy": {
    object (WifiSsidPolicy)
  },
  "wifiRoamingPolicy": {
    object (WifiRoamingPolicy)
  },
  "bluetoothSharing": enum (BluetoothSharing),
  "preferentialNetworkServiceSettings": {
    object (PreferentialNetworkServiceSettings)
  },
  "apnPolicy": {
    object (ApnPolicy)
  },
  "privateDnsSettings": {
    object (PrivateDnsSettings)
  }
}
ক্ষেত্র
usbDataAccess

enum ( UsbDataAccess )

Controls what files and/or data can be transferred via USB. Supported only on company-owned devices.

configureWifi

enum ( ConfigureWifi )

Controls Wi-Fi configuring privileges. Based on the option set, user will have either full or limited or no control in configuring Wi-Fi networks.

wifiDirectSettings

enum ( WifiDirectSettings )

Controls configuring and using Wi-Fi direct settings. Supported on company-owned devices running Android 13 and above.

tetheringSettings

enum ( TetheringSettings )

Controls tethering settings. Based on the value set, the user is partially or fully disallowed from using different forms of tethering.

wifiSsidPolicy

object ( WifiSsidPolicy )

Restrictions on which Wi-Fi SSIDs the device can connect to. Note that this does not affect which networks can be configured on the device. Supported on company-owned devices running Android 13 and above.

wifiRoamingPolicy

object ( WifiRoamingPolicy )

Optional. Wi-Fi roaming policy.

bluetoothSharing

enum ( BluetoothSharing )

Optional. Controls whether Bluetooth sharing is allowed.

preferentialNetworkServiceSettings

object ( PreferentialNetworkServiceSettings )

Optional. Preferential network service configuration. Setting this field will override preferentialNetworkService . This can be set on both work profiles and fully managed devices on Android 13 and above. See 5G network slicing guide for more details.

apnPolicy

object ( ApnPolicy )

Optional. Access Point Name (APN) policy. Configuration for Access Point Names (APNs) which may override any other APNs on the device. See OVERRIDE_APNS_ENABLED and overrideApns for details.

privateDnsSettings

object ( PrivateDnsSettings )

Optional. The global private DNS settings.

ইউএসবি ডেটা অ্যাক্সেস

Controls what files and/or data can be transferred via USB. Does not impact charging functions. Supported only on company-owned devices.

এনাম
USB_DATA_ACCESS_UNSPECIFIED Unspecified. Defaults to DISALLOW_USB_FILE_TRANSFER .
ALLOW_USB_DATA_TRANSFER All types of USB data transfers are allowed. usbFileTransferDisabled is ignored.
DISALLOW_USB_FILE_TRANSFER Transferring files over USB is disallowed. Other types of USB data connections, such as mouse and keyboard connection, are allowed. usbFileTransferDisabled is ignored.
DISALLOW_USB_DATA_TRANSFER When set, all types of USB data transfers are prohibited. Supported for devices running Android 12 or above with USB HAL 1.3 or above. If the setting is not supported, DISALLOW_USB_FILE_TRANSFER will be set. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 12. A NonComplianceDetail with DEVICE_INCOMPATIBLE is reported if the device does not have USB HAL 1.3 or above. usbFileTransferDisabled is ignored.

কনফিগারওয়াইফাই

Controls Wi-Fi configuring privileges. Based on the option set, the user will have either full or limited or no control in configuring Wi-Fi networks.

এনাম
CONFIGURE_WIFI_UNSPECIFIED Unspecified. Defaults to ALLOW_CONFIGURING_WIFI unless wifiConfigDisabled is set to true. If wifiConfigDisabled is set to true, this is equivalent to DISALLOW_CONFIGURING_WIFI .
ALLOW_CONFIGURING_WIFI The user is allowed to configure Wi-Fi. wifiConfigDisabled is ignored.
DISALLOW_ADD_WIFI_CONFIG Adding new Wi-Fi configurations is disallowed. The user is only able to switch between already configured networks. Supported on Android 13 and above, on fully managed devices and work profiles on company-owned devices. If the setting is not supported, ALLOW_CONFIGURING_WIFI is set. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 13. wifiConfigDisabled is ignored.
DISALLOW_CONFIGURING_WIFI Disallows configuring Wi-Fi networks. The setting wifiConfigDisabled is ignored when this value is set. Supported on fully managed devices and work profile on company-owned devices, on all supported API levels. For fully managed devices, setting this removes all configured networks and retains only the networks configured using openNetworkConfiguration policy. For work profiles on company-owned devices, existing configured networks are not affected and the user is not allowed to add, remove, or modify Wi-Fi networks. Note: If a network connection can't be made at boot time and configuring Wi-Fi is disabled then network escape hatch will be shown in order to refresh the device policy (see networkEscapeHatchEnabled ).

ওয়াইফাইডাইরেক্টসেটিংস

Controls Wi-Fi direct settings. Supported on company-owned devices running Android 13 and above.

এনাম
WIFI_DIRECT_SETTINGS_UNSPECIFIED Unspecified. Defaults to ALLOW_WIFI_DIRECT
ALLOW_WIFI_DIRECT The user is allowed to use Wi-Fi direct.
DISALLOW_WIFI_DIRECT The user is not allowed to use Wi-Fi direct. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 13.

টিথারিং সেটিংস

Controls the extent to which the user is allowed to use different forms of tethering like Wi-Fi tethering, bluetooth tethering, etc.

এনাম
TETHERING_SETTINGS_UNSPECIFIED Unspecified. Defaults to ALLOW_ALL_TETHERING unless tetheringConfigDisabled is set to true. If tetheringConfigDisabled is set to true, this is equivalent to DISALLOW_ALL_TETHERING .
ALLOW_ALL_TETHERING Allows configuration and use of all forms of tethering. tetheringConfigDisabled is ignored.
DISALLOW_WIFI_TETHERING Disallows the user from using Wi-Fi tethering. Supported on company owned devices running Android 13 and above. If the setting is not supported, ALLOW_ALL_TETHERING will be set. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 13. tetheringConfigDisabled is ignored.
DISALLOW_ALL_TETHERING Disallows all forms of tethering. Supported on fully managed devices and work profile on company-owned devices, on all supported android versions. The setting tetheringConfigDisabled is ignored.

ওয়াইফাইএসএসআইডি নীতি

Restrictions on which Wi-Fi SSIDs the device can connect to. Note that this does not affect which networks can be configured on the device. Supported on company-owned devices running Android 13 and above.

JSON উপস্থাপনা
{
  "wifiSsidPolicyType": enum (WifiSsidPolicyType),
  "wifiSsids": [
    {
      object (WifiSsid)
    }
  ]
}
ক্ষেত্র
wifiSsidPolicyType

enum ( WifiSsidPolicyType )

Type of the Wi-Fi SSID policy to be applied.

wifiSsids[]

object ( WifiSsid )

Optional. List of Wi-Fi SSIDs that should be applied in the policy. This field must be non-empty when WifiSsidPolicyType is set to WIFI_SSID_ALLOWLIST . If this is set to a non-empty list, then a NonComplianceDetail detail with API_LEVEL is reported if the Android version is less than 13 and a NonComplianceDetail with MANAGEMENT_MODE is reported for non-company-owned devices.

WifiSsidPolicyType

The types of Wi-Fi SSID policy that can be applied on the device.

এনাম
WIFI_SSID_POLICY_TYPE_UNSPECIFIED Defaults to WIFI_SSID_DENYLIST . wifiSsids must not be set. There are no restrictions on which SSID the device can connect to.
WIFI_SSID_DENYLIST The device cannot connect to any Wi-Fi network whose SSID is in wifiSsids , but can connect to other networks.
WIFI_SSID_ALLOWLIST The device can make Wi-Fi connections only to the SSIDs in wifiSsids . wifiSsids must not be empty. The device will not be able to connect to any other Wi-Fi network.

WifiSsid

Represents a Wi-Fi SSID.

JSON উপস্থাপনা
{
  "wifiSsid": string
}
ক্ষেত্র
wifiSsid

string

Required. Wi-Fi SSID represented as a string.

ওয়াইফাই রোমিং নীতি

Wi-Fi roaming policy.

JSON উপস্থাপনা
{
  "wifiRoamingSettings": [
    {
      object (WifiRoamingSetting)
    }
  ]
}
ক্ষেত্র
wifiRoamingSettings[]

object ( WifiRoamingSetting )

Optional. Wi-Fi roaming settings. SSIDs provided in this list must be unique, the policy will be rejected otherwise.

ওয়াইফাই রোমিং সেটিং

Wi-Fi roaming setting.

JSON উপস্থাপনা
{
  "wifiSsid": string,
  "wifiRoamingMode": enum (WifiRoamingMode)
}
ক্ষেত্র
wifiSsid

string

Required. SSID of the Wi-Fi network.

wifiRoamingMode

enum ( WifiRoamingMode )

Required. Wi-Fi roaming mode for the specified SSID.

ওয়াইফাই রোমিং মোড

Wi-Fi roaming mode.

এনাম
WIFI_ROAMING_MODE_UNSPECIFIED Unspecified. Defaults to WIFI_ROAMING_DEFAULT .
WIFI_ROAMING_DISABLED Wi-Fi roaming is disabled. Supported on Android 15 and above on fully managed devices and work profiles on company-owned devices. A NonComplianceDetail with MANAGEMENT_MODE is reported for other management modes. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 15.
WIFI_ROAMING_DEFAULT Default Wi-Fi roaming mode of the device.
WIFI_ROAMING_AGGRESSIVE Aggressive roaming mode which allows quicker Wi-Fi roaming. Supported on Android 15 and above on fully managed devices and work profiles on company-owned devices. A NonComplianceDetail with MANAGEMENT_MODE is reported for other management modes. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 15. A NonComplianceDetail with DEVICE_INCOMPATIBLE is reported if the device does not support aggressive roaming mode.

ব্লুটুথ শেয়ারিং

Controls whether Bluetooth sharing is allowed.

এনাম
BLUETOOTH_SHARING_UNSPECIFIED Unspecified. Defaults to BLUETOOTH_SHARING_DISALLOWED on work profiles and BLUETOOTH_SHARING_ALLOWED on fully managed devices.
BLUETOOTH_SHARING_ALLOWED

Bluetooth sharing is allowed.

Supported on Android 8 and above. A NonComplianceDetail with API_LEVEL is reported on work profiles if the Android version is less than 8.

BLUETOOTH_SHARING_DISALLOWED

Bluetooth sharing is disallowed.

Supported on Android 8 and above. A NonComplianceDetail with API_LEVEL is reported on fully managed devices if the Android version is less than 8.

অগ্রাধিকারমূলক নেটওয়ার্ক পরিষেবা সেটিংস

Preferential network service settings.

JSON উপস্থাপনা
{
  "preferentialNetworkServiceConfigs": [
    {
      object (PreferentialNetworkServiceConfig)
    }
  ],
  "defaultPreferentialNetworkId": enum (PreferentialNetworkId)
}
ক্ষেত্র
preferentialNetworkServiceConfigs[]

object ( PreferentialNetworkServiceConfig )

Required. Preferential network service configurations which enables having multiple enterprise slices. There must not be multiple configurations with the same preferentialNetworkId . If a configuration is not referenced by any application by setting ApplicationPolicy.preferentialNetworkId or by setting defaultPreferentialNetworkId , it will be ignored. For devices on 4G networks, enterprise APN needs to be configured additionally to set up data call for preferential network service. These APNs can be added using apnPolicy .

defaultPreferentialNetworkId

enum ( PreferentialNetworkId )

Required. Default preferential network ID for the applications that are not in applications or if ApplicationPolicy.preferentialNetworkId is set to PREFERENTIAL_NETWORK_ID_UNSPECIFIED . There must be a configuration for the specified network ID in preferentialNetworkServiceConfigs , unless this is set to NO_PREFERENTIAL_NETWORK . If set to PREFERENTIAL_NETWORK_ID_UNSPECIFIED or unset, this defaults to NO_PREFERENTIAL_NETWORK . Note: If the default preferential network is misconfigured, applications with no ApplicationPolicy.preferentialNetworkId set are not able to access the internet. This setting does not apply to the following critical apps:

  • com.google.android.apps.work.clouddpc
  • com.google.android.gms

ApplicationPolicy.preferentialNetworkId can still be used to configure the preferential network for them.

PreferentialNetworkServiceConfig

Individual preferential network service configuration.

JSON উপস্থাপনা
{
  "preferentialNetworkId": enum (PreferentialNetworkId),
  "fallbackToDefaultConnection": enum (FallbackToDefaultConnection),
  "nonMatchingNetworks": enum (NonMatchingNetworks)
}
ক্ষেত্র
preferentialNetworkId

enum ( PreferentialNetworkId )

Required. Preferential network identifier. This must not be set to NO_PREFERENTIAL_NETWORK or PREFERENTIAL_NETWORK_ID_UNSPECIFIED , the policy will be rejected otherwise.

fallbackToDefaultConnection

enum ( FallbackToDefaultConnection )

Optional. Whether fallback to the device-wide default network is allowed. If this is set to FALLBACK_TO_DEFAULT_CONNECTION_ALLOWED , then nonMatchingNetworks must not be set to NON_MATCHING_NETWORKS_DISALLOWED , the policy will be rejected otherwise. Note: If this is set to FALLBACK_TO_DEFAULT_CONNECTION_DISALLOWED , applications are not able to access the internet if the 5G slice is not available.

nonMatchingNetworks

enum ( NonMatchingNetworks )

Optional. Whether apps this configuration applies to are blocked from using networks other than the preferential service. If this is set to NON_MATCHING_NETWORKS_DISALLOWED , then fallbackToDefaultConnection must be set to FALLBACK_TO_DEFAULT_CONNECTION_DISALLOWED .

FallbackToDefaultConnection

Whether fallback to the device-wide default network is allowed. Note that while this setting determines whether the apps subject to this configuration have a default network in the absence of a preferential service, apps can still explicitly decide to use another network than their default network by requesting them from the system. This setting does not determine whether the apps are blocked from using such other networks. See nonMatchingNetworks for this setting.

এনাম
FALLBACK_TO_DEFAULT_CONNECTION_UNSPECIFIED Unspecified. Defaults to FALLBACK_TO_DEFAULT_CONNECTION_ALLOWED .
FALLBACK_TO_DEFAULT_CONNECTION_ALLOWED Fallback to default connection is allowed. If this is set, nonMatchingNetworks must not be set to NON_MATCHING_NETWORKS_DISALLOWED , the policy will be rejected otherwise.
FALLBACK_TO_DEFAULT_CONNECTION_DISALLOWED Fallback to default connection is not allowed.

অমিল নেটওয়ার্ক

Whether apps this configuration applies to are allowed to use networks other than the preferential service. Apps can inspect the list of available networks on the device and choose to use multiple networks concurrently for performance, privacy or other reasons.

এনাম
NON_MATCHING_NETWORKS_UNSPECIFIED Unspecified. Defaults to NON_MATCHING_NETWORKS_ALLOWED .
NON_MATCHING_NETWORKS_ALLOWED Apps this configuration applies to are allowed to use networks other than the preferential service.
NON_MATCHING_NETWORKS_DISALLOWED Apps this configuration applies to are disallowed from using other networks than the preferential service. This can be set on Android 14 and above. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 14. If this is set, fallbackToDefaultConnection must be set to FALLBACK_TO_DEFAULT_CONNECTION_DISALLOWED , the policy will be rejected otherwise.

এপিএনপলিসি

Access Point Name (APN) policy. Configuration for Access Point Names (APNs) which may override any other APNs on the device. See OVERRIDE_APNS_ENABLED and overrideApns for details.

JSON উপস্থাপনা
{
  "overrideApns": enum (OverrideApns),
  "apnSettings": [
    {
      object (ApnSetting)
    }
  ]
}
ক্ষেত্র
overrideApns

enum ( OverrideApns )

Optional. Whether override APNs are disabled or enabled. See DevicePolicyManager.setOverrideApnsEnabled for more details.

apnSettings[]

object ( ApnSetting )

Optional. APN settings for override APNs. There must not be any conflict between any of APN settings provided, otherwise the policy will be rejected. Two ApnSetting s are considered to conflict when all of the following fields match on both: numericOperatorId , apn , proxyAddress , proxyPort , mmsProxyAddress , mmsProxyPort , mmsc , mvnoType , protocol , roamingProtocol . If some of the APN settings result in non-compliance of INVALID_VALUE , they will be ignored. This can be set on fully managed devices on Android 10 and above. This can also be set on work profiles on Android 13 and above and only with ApnSetting 's with ENTERPRISE APN type. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 10. A NonComplianceDetail with MANAGEMENT_MODE is reported for work profiles on Android versions less than 13.

OverrideApns

Whether override APNs are disabled or enabled. See DevicePolicyManager.setOverrideApnsEnabled for more details.

এনাম
OVERRIDE_APNS_UNSPECIFIED Unspecified. Defaults to OVERRIDE_APNS_DISABLED .
OVERRIDE_APNS_DISABLED Override APNs disabled. Any configured apnSettings are saved on the device, but are disabled and have no effect. Any other APNs on the device remain in use.
OVERRIDE_APNS_ENABLED Override APNs enabled. Only override APNs are in use, any other APNs are ignored. This can only be set on fully managed devices on Android 10 and above. For work profiles override APNs are enabled via preferentialNetworkServiceSettings and this value cannot be set. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 10. A NonComplianceDetail with MANAGEMENT_MODE is reported for work profiles.

ApnSetting

An Access Point Name (APN) configuration for a carrier data connection. The APN provides configuration to connect a cellular network device to an IP data network. A carrier uses this setting to decide which IP address to assign, any security methods to apply, and how the device might be connected to private networks.

JSON উপস্থাপনা
{
  "apnTypes": [
    enum (ApnType)
  ],
  "apn": string,
  "displayName": string,
  "alwaysOnSetting": enum (AlwaysOnSetting),
  "authType": enum (AuthType),
  "carrierId": integer,
  "mmsProxyAddress": string,
  "mmsProxyPort": integer,
  "mmsc": string,
  "mtuV4": integer,
  "mtuV6": integer,
  "mvnoType": enum (MvnoType),
  "networkTypes": [
    enum (NetworkType)
  ],
  "username": string,
  "password": string,
  "numericOperatorId": string,
  "protocol": enum (Protocol),
  "roamingProtocol": enum (Protocol),
  "proxyAddress": string,
  "proxyPort": integer
}
ক্ষেত্র
apnTypes[]

enum ( ApnType )

Required. Usage categories for the APN. Policy will be rejected if this field is empty or contains APN_TYPE_UNSPECIFIED or duplicates. Multiple APN types can be set on fully managed devices. ENTERPRISE is the only allowed APN type on work profiles. A NonComplianceDetail with MANAGEMENT_MODE is reported for any other value on work profiles. APN types that are not supported on the device or management mode will be ignored. If this results in the empty list, the APN setting will be ignored, because apnTypes is a required field. A NonComplianceDetail with INVALID_VALUE is reported if none of the APN types are supported on the device or management mode.

apn

string

Required. Name of the APN. Policy will be rejected if this field is empty.

displayName

string

Required. Human-readable name that describes the APN. Policy will be rejected if this field is empty.

alwaysOnSetting

enum ( AlwaysOnSetting )

Optional. Whether User Plane resources have to be activated during every transition from CM-IDLE mode to CM-CONNECTED state for this APN. See 3GPP TS 23.501 section 5.6.13.

authType

enum ( AuthType )

Optional. Authentication type of the APN.

carrierId

integer

Optional. Carrier ID for the APN. A value of 0 (default) means not set and negative values are rejected.

mmsProxyAddress

string

Optional. MMS (Multimedia Messaging Service) proxy address of the APN which can be an IP address or hostname (not a URL).

mmsProxyPort

integer

Optional. MMS (Multimedia Messaging Service) proxy port of the APN. A value of 0 (default) means not set and negative values are rejected.

mmsc

string

Optional. MMSC (Multimedia Messaging Service Center) URI of the APN.

mtuV4

integer

Optional. The default MTU (Maximum Transmission Unit) size in bytes of the IPv4 routes brought up by this APN setting. A value of 0 (default) means not set and negative values are rejected. Supported on Android 13 and above. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 13.

mtuV6

integer

Optional. The MTU (Maximum Transmission Unit) size of the IPv6 mobile interface to which the APN connected. A value of 0 (default) means not set and negative values are rejected. Supported on Android 13 and above. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 13.

mvnoType

enum ( MvnoType )

Optional. MVNO match type for the APN.

networkTypes[]

enum ( NetworkType )

Optional. Radio technologies (network types) the APN may use. Policy will be rejected if this field contains NETWORK_TYPE_UNSPECIFIED or duplicates.

username

string

Optional. APN username of the APN.

password

string

Optional. APN password of the APN.

numericOperatorId

string

Optional. The numeric operator ID of the APN. Numeric operator ID is defined as MCC (Mobile Country Code) + MNC (Mobile Network Code).

protocol

enum ( Protocol )

Optional. The protocol to use to connect to this APN.

roamingProtocol

enum ( Protocol )

Optional. The protocol to use to connect to this APN while the device is roaming.

proxyAddress

string

Optional. The proxy address of the APN.

proxyPort

integer

Optional. The proxy port of the APN. A value of 0 (default) means not set and negative values are rejected.

ApnType

Usage category for the APN.

এনাম
APN_TYPE_UNSPECIFIED Unspecified. This value is not used.
ENTERPRISE APN type for enterprise traffic. Supported on Android 13 and above. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 13.
BIP APN type for BIP (Bearer Independent Protocol). This can only be set on fully managed devices on Android 12 and above. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 12. A NonComplianceDetail with MANAGEMENT_MODE is reported for work profiles.
CBS APN type for CBS (Carrier Branded Services). This can only be set on fully managed devices. A NonComplianceDetail with MANAGEMENT_MODE is reported for work profiles.
DEFAULT APN type for default data traffic. This can only be set on fully managed devices. A NonComplianceDetail with MANAGEMENT_MODE is reported for work profiles.
DUN APN type for DUN (Dial-up networking) traffic. This can only be set on fully managed devices. A NonComplianceDetail with MANAGEMENT_MODE is reported for work profiles.
EMERGENCY APN type for Emergency PDN. This is not an IA apn, but is used for access to carrier services in an emergency call situation. This can only be set on fully managed devices. A NonComplianceDetail with MANAGEMENT_MODE is reported for work profiles.
FOTA APN type for accessing the carrier's FOTA (Firmware Over-the-Air) portal, used for over the air updates. This can only be set on fully managed devices. A NonComplianceDetail with MANAGEMENT_MODE is reported for work profiles.
HIPRI APN type for HiPri (high-priority) traffic. This can only be set on fully managed devices. A NonComplianceDetail with MANAGEMENT_MODE is reported for work profiles.
IA APN type for IA (Initial Attach) APN. This can only be set on fully managed devices. A NonComplianceDetail with MANAGEMENT_MODE is reported for work profiles.
IMS APN type for IMS (IP Multimedia Subsystem) traffic. This can only be set on fully managed devices. A NonComplianceDetail with MANAGEMENT_MODE is reported for work profiles.
MCX APN type for MCX (Mission Critical Service) where X can be PTT/Video/Data. This can only be set on fully managed devices. A NonComplianceDetail with MANAGEMENT_MODE is reported for work profiles.
MMS APN type for MMS (Multimedia Messaging Service) traffic. This can only be set on fully managed devices. A NonComplianceDetail with MANAGEMENT_MODE is reported for work profiles.
RCS APN type for RCS (Rich Communication Services). This can only be set on fully managed devices on Android 15 and above. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 15. A NonComplianceDetail with MANAGEMENT_MODE is reported for work profiles.
SUPL APN type for SUPL (Secure User Plane Location) assisted GPS. This can only be set on fully managed devices. A NonComplianceDetail with MANAGEMENT_MODE is reported for work profiles.
VSIM APN type for VSIM (Virtual SIM) service. This can only be set on fully managed devices on Android 12 and above. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 12. A NonComplianceDetail with MANAGEMENT_MODE is reported for work profiles.
XCAP APN type for XCAP (XML Configuration Access Protocol) traffic. This can only be set on fully managed devices on Android 11 and above. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 11. A NonComplianceDetail with MANAGEMENT_MODE is reported for work profiles.

সর্বদা চালু সেটিং

Whether User Plane resources have to be activated during every transition from CM-IDLE mode to CM-CONNECTED state for this APN. See 3GPP TS 23.501 section 5.6.13.

এনাম
ALWAYS_ON_SETTING_UNSPECIFIED Unspecified. Defaults to NOT_ALWAYS_ON .
NOT_ALWAYS_ON The PDU session brought up by this APN should not be always on.
ALWAYS_ON The PDU session brought up by this APN should always be on. Supported on Android 15 and above. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 15.

প্রমাণীকরণ প্রকার

Authentication type of the APN.

এনাম
AUTH_TYPE_UNSPECIFIED Unspecified. If username is empty, defaults to NONE . Otherwise, defaults to PAP_OR_CHAP .
NONE Authentication is not required.
PAP Authentication type for PAP.
CHAP Authentication type for CHAP.
PAP_OR_CHAP Authentication type for PAP or CHAP.

MvnoType

MVNO match type for the APN.

এনাম
MVNO_TYPE_UNSPECIFIED The MVNO type is not specified.
GID MVNO type for group identifier level 1.
ICCID MVNO type for ICCID.
IMSI MVNO type for IMSI.
SPN MVNO type for SPN (service provider name).

নেটওয়ার্কের ধরন

Radio technology (network type) the APN may use.

এনাম
NETWORK_TYPE_UNSPECIFIED Unspecified. This value must not be used.
EDGE Radio technology EDGE.
GPRS Radio technology GPRS.
GSM Radio technology GSM.
HSDPA Radio technology HSDPA.
HSPA Radio technology HSPA.
HSPAP Radio technology HSPAP.
HSUPA Radio technology HSUPA.
IWLAN Radio technology IWLAN.
LTE Radio technology LTE.
NR Radio technology NR (New Radio) 5G.
TD_SCDMA Radio technology TD_SCDMA.
UMTS Radio technology UMTS.

প্রোটোকল

The protocol to use to connect to the APN.

এনাম
PROTOCOL_UNSPECIFIED The protocol is not specified.
IP Internet protocol.
IPV4V6 Virtual PDP type introduced to handle dual IP stack UE capability.
IPV6 Internet protocol, version 6.
NON_IP Transfer of Non-IP data to external packet data network.
PPP Point to point protocol.
UNSTRUCTURED Transfer of Unstructured data to the Data Network via N6.

ব্যক্তিগত ডিএনএস সেটিংস

Controls the device's private DNS settings.

JSON উপস্থাপনা
{
  "privateDnsMode": enum (PrivateDnsMode),
  "privateDnsHost": string
}
ক্ষেত্র
privateDnsMode

enum ( PrivateDnsMode )

Optional. The configuration mode for device's global private DNS settings. If this is set to PRIVATE_DNS_SPECIFIED_HOST , then privateDnsHost must be set.

privateDnsHost

string

Optional. The hostname of the DNS server. This must be set if and only if privateDnsMode is set to PRIVATE_DNS_SPECIFIED_HOST . Supported on Android 10 and above on fully managed devices. A NonComplianceDetail with MANAGEMENT_MODE is reported on other management modes. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 10. A NonComplianceDetail with PENDING is reported if the device is not connected to a network. A NonComplianceDetail with nonComplianceReason INVALID_VALUE and specificNonComplianceReason PRIVATE_DNS_HOST_NOT_SERVING is reported if the specified host is not a DNS server or not supported on Android. A NonComplianceDetail with INVALID_VALUE is reported if applying this setting fails for any other reason.

প্রাইভেটডিএনএসমোড

The different modes of private DNS.

এনাম
PRIVATE_DNS_MODE_UNSPECIFIED Unspecified. Defaults to PRIVATE_DNS_USER_CHOICE .
PRIVATE_DNS_USER_CHOICE The user is allowed to configure private DNS.
PRIVATE_DNS_AUTOMATIC

Automatic private DNS mode. The device tries to use the network-provided DNS server over an encrypted connection before resorting to cleartext. The user is not allowed to modify this setting. Supported on Android 10 and above on fully managed devices and work profiles on company-owned devices. A NonComplianceDetail with MANAGEMENT_MODE is reported on other management modes. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 10. A NonComplianceDetail with INVALID_VALUE is reported if setting this fails for any other reason.

Note: For work profiles on company-owned devices, setting this mode prevents the user from changing the setting, but the active private DNS setting is not modified. A NonComplianceDetail with MANAGEMENT_MODE is reported in this case.

PRIVATE_DNS_SPECIFIED_HOST The device only uses the DNS server specified in privateDnsHost . The user is not allowed to modify this setting. If this is set, then privateDnsHost must be set. Supported on Android 10 and above on fully managed devices. A NonComplianceDetail with MANAGEMENT_MODE is reported on other management modes. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 10.

ডিভাইসরেডিওস্টেট

Controls for device radio settings.

JSON উপস্থাপনা
{
  "wifiState": enum (WifiState),
  "airplaneModeState": enum (AirplaneModeState),
  "ultraWidebandState": enum (UltraWidebandState),
  "cellularTwoGState": enum (CellularTwoGState),
  "minimumWifiSecurityLevel": enum (MinimumWifiSecurityLevel),
  "userInitiatedAddEsimSettings": enum (UserInitiatedAddEsimSettings)
}
ক্ষেত্র
wifiState

enum ( WifiState )

Optional. Controls current state of Wi-Fi and if user can change its state.

airplaneModeState

enum ( AirplaneModeState )

Optional. Controls whether airplane mode can be toggled by the user or not.

ultraWidebandState

enum ( UltraWidebandState )

Optional. Controls the state of the ultra wideband setting and whether the user can toggle it on or off.

cellularTwoGState

enum ( CellularTwoGState )

Optional. Controls whether cellular 2G setting can be toggled by the user or not.

minimumWifiSecurityLevel

enum ( MinimumWifiSecurityLevel )

Optional. The minimum required security level of Wi-Fi networks that the device can connect to.

userInitiatedAddEsimSettings

enum ( UserInitiatedAddEsimSettings )

Optional. Controls whether the user is allowed to add eSIM profiles.

ওয়াইফাইস্টেট

Controls whether the Wi-Fi is on or off as a state and if the user can change said state. Supported on company-owned devices running Android 13 and above.

এনাম
WIFI_STATE_UNSPECIFIED Unspecified. Defaults to WIFI_STATE_USER_CHOICE
WIFI_STATE_USER_CHOICE User is allowed to enable/disable Wi-Fi.
WIFI_ENABLED Wi-Fi is on and the user is not allowed to turn it off. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 13.
WIFI_DISABLED Wi-Fi is off and the user is not allowed to turn it on. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 13.

বিমান মোড অবস্থা

Controls the state of airplane mode and whether the user can toggle it on or off. Supported on Android 9 and above. Supported on fully managed devices and work profiles on company-owned devices.

এনাম
AIRPLANE_MODE_STATE_UNSPECIFIED Unspecified. Defaults to AIRPLANE_MODE_USER_CHOICE .
AIRPLANE_MODE_USER_CHOICE The user is allowed to toggle airplane mode on or off.
AIRPLANE_MODE_DISABLED Airplane mode is disabled. The user is not allowed to toggle airplane mode on. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 9.

আল্ট্রাওয়াইডব্যান্ডস্টেট

Controls the state of the ultra wideband setting and whether the user can toggle it on or off. Supported on Android 14 and above. Supported on fully managed devices and work profiles on company-owned devices.

এনাম
ULTRA_WIDEBAND_STATE_UNSPECIFIED Unspecified. Defaults to ULTRA_WIDEBAND_USER_CHOICE .
ULTRA_WIDEBAND_USER_CHOICE The user is allowed to toggle ultra wideband on or off.
ULTRA_WIDEBAND_DISABLED Ultra wideband is disabled. The user is not allowed to toggle ultra wideband on via settings. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 14.

সেলুলারটুজিস্টেট

Controls the state of cellular 2G setting and whether the user can toggle it on or off. Supported on Android 14 and above. Supported on fully managed devices and work profiles on company-owned devices.

এনাম
CELLULAR_TWO_G_STATE_UNSPECIFIED Unspecified. Defaults to CELLULAR_TWO_G_USER_CHOICE .
CELLULAR_TWO_G_USER_CHOICE The user is allowed to toggle cellular 2G on or off.
CELLULAR_TWO_G_DISABLED Cellular 2G is disabled. The user is not allowed to toggle cellular 2G on via settings. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 14.

ন্যূনতম ওয়াইফাই নিরাপত্তা স্তর

Defines the different minimum Wi-Fi security levels required to connect to Wi-Fi networks. Supported on Android 13 and above. Supported on fully managed devices and work profiles on company-owned devices.

এনাম
MINIMUM_WIFI_SECURITY_LEVEL_UNSPECIFIED Defaults to OPEN_NETWORK_SECURITY , which means the device will be able to connect to all types of Wi-Fi networks.
OPEN_NETWORK_SECURITY The device will be able to connect to all types of Wi-Fi networks.
PERSONAL_NETWORK_SECURITY A personal network such as WEP, WPA2-PSK is the minimum required security. The device will not be able to connect to open wifi networks. This is stricter than OPEN_NETWORK_SECURITY . A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 13.
ENTERPRISE_NETWORK_SECURITY An enterprise EAP network is the minimum required security level. The device will not be able to connect to Wi-Fi network below this security level. This is stricter than PERSONAL_NETWORK_SECURITY . A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 13.
ENTERPRISE_BIT192_NETWORK_SECURITY A 192-bit enterprise network is the minimum required security level. The device will not be able to connect to Wi-Fi network below this security level. This is stricter than ENTERPRISE_NETWORK_SECURITY . A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 13.

ব্যবহারকারী দ্বারা শুরু করা ই-সিম সেটিংস যোগ করুন

Controls whether the user is allowed to add eSIM profiles.

এনাম
USER_INITIATED_ADD_ESIM_SETTINGS_UNSPECIFIED Unspecified. Defaults to USER_INITIATED_ADD_ESIM_ALLOWED .
USER_INITIATED_ADD_ESIM_ALLOWED The user is allowed to add eSIM profiles.
USER_INITIATED_ADD_ESIM_DISALLOWED Supported only on company-owned devices. A NonComplianceDetail with MANAGEMENT_MODE is reported for personally-owned devices.

ক্রেডেনশিয়ালপ্রোভাইডারপলিসিডিফল্ট

Controls which apps are allowed to act as credential providers on Android 14 and above. These apps store credentials, see this and this for details. See also credentialProviderPolicy .

এনাম
CREDENTIAL_PROVIDER_POLICY_DEFAULT_UNSPECIFIED Unspecified. Defaults to CREDENTIAL_PROVIDER_DEFAULT_DISALLOWED.
CREDENTIAL_PROVIDER_DEFAULT_DISALLOWED Apps with credentialProviderPolicy unspecified are not allowed to act as a credential provider.
CREDENTIAL_PROVIDER_DEFAULT_DISALLOWED_EXCEPT_SYSTEM Apps with credentialProviderPolicy unspecified are not allowed to act as a credential provider except for the OEM default credential providers. OEM default credential providers are always allowed to act as credential providers.
CREDENTIAL_PROVIDER_DEFAULT_ALLOWED Apps with credentialProviderPolicy unspecified are allowed to act as a credential provider.

মুদ্রণ নীতি

Controls whether printing is allowed. This is supported on devices running Android 9 and above.

এনাম
PRINTING_POLICY_UNSPECIFIED Unspecified. Defaults to PRINTING_ALLOWED .
PRINTING_DISALLOWED Printing is disallowed. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 9.
PRINTING_ALLOWED Printing is allowed.

ডিসপ্লে সেটিংস

Controls for the display settings.

JSON উপস্থাপনা
{
  "screenBrightnessSettings": {
    object (ScreenBrightnessSettings)
  },
  "screenTimeoutSettings": {
    object (ScreenTimeoutSettings)
  }
}
ক্ষেত্র
screenBrightnessSettings

object ( ScreenBrightnessSettings )

Optional. Controls the screen brightness settings.

screenTimeoutSettings

object ( ScreenTimeoutSettings )

Optional. Controls the screen timeout settings.

স্ক্রিন ব্রাইটনেস সেটিংস

Controls for the screen brightness settings.

JSON উপস্থাপনা
{
  "screenBrightnessMode": enum (ScreenBrightnessMode),
  "screenBrightness": integer
}
ক্ষেত্র
screenBrightnessMode

enum ( ScreenBrightnessMode )

Optional. Controls the screen brightness mode.

screenBrightness

integer

Optional. The screen brightness between 1 and 255 where 1 is the lowest and 255 is the highest brightness. A value of 0 (default) means no screen brightness set. Any other value is rejected. screenBrightnessMode must be either BRIGHTNESS_AUTOMATIC or BRIGHTNESS_FIXED to set this. Supported on Android 9 and above on fully managed devices. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 9. Supported on work profiles on company-owned devices on Android 15 and above.

স্ক্রিন ব্রাইটনেস মোড

Controls the screen brightness mode.

এনাম
SCREEN_BRIGHTNESS_MODE_UNSPECIFIED Unspecified. Defaults to BRIGHTNESS_USER_CHOICE .
BRIGHTNESS_USER_CHOICE The user is allowed to configure the screen brightness. screenBrightness must not be set.
BRIGHTNESS_AUTOMATIC The screen brightness mode is automatic in which the brightness is automatically adjusted and the user is not allowed to configure the screen brightness. screenBrightness can still be set and it is taken into account while the brightness is automatically adjusted. Supported on Android 9 and above on fully managed devices. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 9. Supported on work profiles on company-owned devices on Android 15 and above.
BRIGHTNESS_FIXED The screen brightness mode is fixed in which the brightness is set to screenBrightness and the user is not allowed to configure the screen brightness. screenBrightness must be set. Supported on Android 9 and above on fully managed devices. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 9. Supported on work profiles on company-owned devices on Android 15 and above.

স্ক্রিনটাইমআউটসেটিংস

Controls the screen timeout settings.

JSON উপস্থাপনা
{
  "screenTimeoutMode": enum (ScreenTimeoutMode),
  "screenTimeout": string
}
ক্ষেত্র
screenTimeoutMode

enum ( ScreenTimeoutMode )

Optional. Controls whether the user is allowed to configure the screen timeout.

screenTimeout

string ( Duration format)

Optional. Controls the screen timeout duration. The screen timeout duration must be greater than 0, otherwise it is rejected. Additionally, it should not be greater than maximumTimeToLock , otherwise the screen timeout is set to maximumTimeToLock and a NonComplianceDetail with INVALID_VALUE reason and SCREEN_TIMEOUT_GREATER_THAN_MAXIMUM_TIME_TO_LOCK specific reason is reported. If the screen timeout is less than a certain lower bound, it is set to the lower bound. The lower bound may vary across devices. If this is set, screenTimeoutMode must be SCREEN_TIMEOUT_ENFORCED . Supported on Android 9 and above on fully managed devices. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 9. Supported on work profiles on company-owned devices on Android 15 and above.

A duration in seconds with up to nine fractional digits, ending with ' s '. Example: "3.5s" .

স্ক্রিনটাইমআউটমোড

Controls whether the user is allowed to configure the screen timeout.

এনাম
SCREEN_TIMEOUT_MODE_UNSPECIFIED Unspecified. Defaults to SCREEN_TIMEOUT_USER_CHOICE .
SCREEN_TIMEOUT_USER_CHOICE The user is allowed to configure the screen timeout. screenTimeout must not be set.
SCREEN_TIMEOUT_ENFORCED The screen timeout is set to screenTimeout and the user is not allowed to configure the timeout. screenTimeout must be set. Supported on Android 9 and above on fully managed devices. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 9. Supported on work profiles on company-owned devices on Android 15 and above.

AssistContentPolicy

Controls whether AssistContent is allowed to be sent to a privileged app such as an assistant app. AssistContent includes screenshots and information about an app, such as package name. This is supported on Android 15 and above.

এনাম
ASSIST_CONTENT_POLICY_UNSPECIFIED Unspecified. Defaults to ASSIST_CONTENT_ALLOWED .
ASSIST_CONTENT_DISALLOWED

Assist content is blocked from being sent to a privileged app.

Supported on Android 15 and above. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 15.

ASSIST_CONTENT_ALLOWED

Assist content is allowed to be sent to a privileged app.

Supported on Android 15 and above.

WorkAccountSetupConfig

Controls the work account setup configuration, such as details of whether a Google authenticated account is required.

JSON উপস্থাপনা
{
  "authenticationType": enum (AuthenticationType),
  "requiredAccountEmail": string
}
ক্ষেত্র
authenticationType

enum ( AuthenticationType )

Optional. The authentication type of the user on the device.

requiredAccountEmail

string

Optional. The specific google work account email address to be added. This field is only relevant if authenticationType is GOOGLE_AUTHENTICATED . This must be an enterprise account and not a consumer account. Once set and a Google authenticated account is added to the device, changing this field will have no effect, and thus recommended to be set only once. The email address must be all lowercase.

প্রমাণীকরণের ধরণ

The authentication type of the user on the device.

এনাম
AUTHENTICATION_TYPE_UNSPECIFIED Unspecified. Defaults to AUTHENTICATION_TYPE_NOT_ENFORCED .
AUTHENTICATION_TYPE_NOT_ENFORCED Authentication status of user on device is not enforced.
GOOGLE_AUTHENTICATED Requires device to be managed with a Google authenticated account.

ওয়াইপডেটাফ্ল্যাগ

Wipe flags to indicate what data is wiped when a device or profile wipe is triggered due to any reason. (For example, when the device is non-compliant). This does not apply to the enterprises.devices.delete method.

এনাম
WIPE_DATA_FLAG_UNSPECIFIED This value must not be used.
WIPE_ESIMS For company-owned devices, setting this in wipeDataFlags will remove all eSIMs on the device when wipe is triggered due to any reason. On personally-owned devices, this will remove only managed eSIMs on the device (eSIMs which are added via the ADD_ESIM command). This is supported on devices running Android 15 and above. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 15. For devices running on Android 16 or higher, managed eSIMs are always wiped when work profile is removed for personally-owned devices, whether this flag is provided or not.

এন্টারপ্রাইজ ডিসপ্লে নেম ভিজিবিলিটি

Controls whether the enterpriseDisplayName is visible on the device (eg lock screen message on company-owned devices).

এনাম
ENTERPRISE_DISPLAY_NAME_VISIBILITY_UNSPECIFIED Unspecified. Defaults to ENTERPRISE_DISPLAY_NAME_VISIBLE .
ENTERPRISE_DISPLAY_NAME_VISIBLE The enterprise display name is visible on the device. Supported on work profiles on Android 7 and above. Supported on fully managed devices on Android 8 and above. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 7. A NonComplianceDetail with MANAGEMENT_MODE is reported on fully managed devices on Android 7.
ENTERPRISE_DISPLAY_NAME_HIDDEN The enterprise display name is hidden on the device.

অ্যাপফাংশন

Controls whether apps on the device for fully managed devices or in the work profile for devices with work profiles are allowed to expose app functions.

এনাম
APP_FUNCTIONS_UNSPECIFIED Unspecified. Defaults to APP_FUNCTIONS_ALLOWED .
APP_FUNCTIONS_DISALLOWED Apps on the device for fully managed devices or in the work profile for devices with work profiles are not allowed to expose app functions. If this is set, crossProfileAppFunctions must not be set to CROSS_PROFILE_APP_FUNCTIONS_ALLOWED , otherwise the policy will be rejected.
APP_FUNCTIONS_ALLOWED Apps on the device for fully managed devices or in the work profile for devices with work profiles are allowed to expose app functions.

ডিফল্ট অ্যাপ্লিকেশন সেটিং

The default application setting for a DefaultApplicationType .

JSON উপস্থাপনা
{
  "defaultApplicationType": enum (DefaultApplicationType),
  "defaultApplications": [
    {
      object (DefaultApplication)
    }
  ],
  "defaultApplicationScopes": [
    enum (DefaultApplicationScope)
  ]
}
ক্ষেত্র
defaultApplicationType

enum ( DefaultApplicationType )

Required. The app type to set the default application.

defaultApplications[]

object ( DefaultApplication )

Required. The list of applications that can be set as the default app for a given type. This list must not be empty or contain duplicates. The first app in the list that is installed and qualified for the defaultApplicationType (eg SMS app for DEFAULT_SMS ) is set as the default app. The signing key certificate fingerprint of the app on the device must also match one of the signing key certificate fingerprints obtained from Play Store or one of the entries in ApplicationPolicy.signingKeyCerts in order to be set as the default.

If the defaultApplicationScopes contains SCOPE_FULLY_MANAGED or SCOPE_WORK_PROFILE , the app must have an entry in applications with installType set to a value other than BLOCKED .

A NonComplianceDetail with APP_NOT_INSTALLED reason and DEFAULT_APPLICATION_SETTING_FAILED_FOR_SCOPE specific reason is reported if none of the apps in the list are installed. A NonComplianceDetail with INVALID_VALUE reason and DEFAULT_APPLICATION_SETTING_FAILED_FOR_SCOPE specific reason is reported if at least one app is installed but the policy fails to apply due to other reasons (eg the app is not of the right type).

When applying to SCOPE_PERSONAL_PROFILE on a company-owned device with a work profile, only pre-installed system apps can be set as the default. A NonComplianceDetail with INVALID_VALUE reason and DEFAULT_APPLICATION_SETTING_FAILED_FOR_SCOPE specific reason is reported if the policy fails to apply to the personal profile.

defaultApplicationScopes[]

enum ( DefaultApplicationScope )

Required. The scopes to which the policy should be applied. This list must not be empty or contain duplicates.

A NonComplianceDetail with MANAGEMENT_MODE reason and DEFAULT_APPLICATION_SETTING_UNSUPPORTED_SCOPES specific reason is reported if none of the specified scopes can be applied to the management mode (eg a fully managed device receives a policy with only SCOPE_PERSONAL_PROFILE in the list).

ডিফল্ট অ্যাপ্লিকেশন

Information about the application to be set as the default.

JSON উপস্থাপনা
{
  "packageName": string
}
ক্ষেত্র
packageName

string

Required. The package name that should be set as the default application. The policy is rejected if the package name is invalid.

স্বয়ংক্রিয় পূরণ নীতি

The policy for the autofill service.

Allows administrators to manage the system's Autofill service (introduced in Android 8), which is responsible for automatically filling forms in apps and websites that use the traditional Android Autofill Framework.

This policy complements credentialProviderPolicyDefault and credentialProviderPolicy in restricting credential storage and retrieval. While AutofillPolicy restricts the Android system autofill service, the credential provider policies govern the Android Credential Manager (introduced in Android 14). For a comprehensive disablement of system-integrated credentials management, administrators should configure both policies.

Note: This policy does not affect applications that implement their own independent, built-in credential management systems (for example, certain browsers).

এনাম
AUTOFILL_POLICY_UNSPECIFIED Defaults to AUTOFILL_USER_CHOICE .
AUTOFILL_USER_CHOICE The user can choose and use an autofill service.
AUTOFILL_DISABLED Autofill is disabled and the user is not allowed to change this setting. This is supported only on Android 8 and above.

ক্রসডিভাইস নীতিমালা

Policies controlling cross-device communication.

JSON উপস্থাপনা
{
  "nearbyNotificationStreaming": enum (NearbyNotificationStreaming),
  "nearbyAppStreaming": enum (NearbyAppStreaming),
  "taskContinuityHandoff": enum (TaskContinuityHandoff)
}
ক্ষেত্র
nearbyNotificationStreaming

enum ( NearbyNotificationStreaming )

Optional. Manages streaming of notifications from apps on the device for fully managed devices or in the work profile for devices with work profiles to nearby devices. This is supported on Android 13 and above.

nearbyAppStreaming

enum ( NearbyAppStreaming )

Optional. Manages video streaming of apps on the device for fully managed devices or in the work profile for devices with work profiles to nearby devices. This is supported on Android 13 and above.

taskContinuityHandoff

enum ( TaskContinuityHandoff )

Optional. Controls the task continuity handoff feature. This policy applies to the entire device for fully managed devices, and to the work profile for devices with a work profile. Requires Android 17 QPR1 or higher.

কাছাকাছি বিজ্ঞপ্তি স্ট্রিমিং

Controls the policy for notification streaming to nearby devices.

এনাম
NEARBY_NOTIFICATION_STREAMING_UNSPECIFIED Unspecified. Defaults to NEARBY_NOTIFICATION_STREAMING_USER_CHOICE_SAME_MANAGED_ACCOUNT.
NEARBY_NOTIFICATION_STREAMING_USER_CHOICE The user is allowed to choose whether to stream notifications to nearby devices.
NEARBY_NOTIFICATION_STREAMING_DISABLED Disables notification streaming to nearby devices.
NEARBY_NOTIFICATION_STREAMING_USER_CHOICE_SAME_MANAGED_ACCOUNT The user is allowed to choose whether to stream notifications to other nearby devices which are signed in with the same authenticated managed account.

NearbyAppStreaming

Controls the policy for app streaming to nearby devices.

এনাম
NEARBY_APP_STREAMING_UNSPECIFIED Unspecified. Defaults to NEARBY_APP_STREAMING_USER_CHOICE_SAME_MANAGED_ACCOUNT.
NEARBY_APP_STREAMING_USER_CHOICE The user is allowed to choose whether to stream apps to nearby devices.
NEARBY_APP_STREAMING_DISABLED Disables app streaming to nearby devices.
NEARBY_APP_STREAMING_USER_CHOICE_SAME_MANAGED_ACCOUNT The user is allowed to choose whether to stream apps to other nearby devices which are signed in with the same authenticated managed account.

ব্যাকআপসার্ভিস

Controls whether the backup service is disabled.

এনাম
BACKUP_SERVICE_UNSPECIFIED Unspecified. Defaults to BACKUP_SERVICE_DISABLED .
BACKUP_SERVICE_DISABLED Backup service is disabled. The user is not allowed to change this setting. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 8 on a fully managed device.
BACKUP_SERVICE_USER_CHOICE The user can enable or disable the backup service. A NonComplianceDetail with API_LEVEL is reported if the Android version is less than 8 on a fully managed device.

পদ্ধতি

delete

Deletes a policy.

get

Gets a policy.

list

Lists policies for a given enterprise.

modifyPolicyApplications

Updates or creates applications in a policy.

patch

Updates or creates a policy.

removePolicyApplications

Removes applications in a policy.