Device details view

The device details page provides information and control options for individual devices that are enrolled in the IBM® MaaS360® Portal.

Use the View option on the Device Inventory page to view the individual devices to monitor their statuses, and to take necessary actions for device management and security.

Device details tabs

IBM MaaS360 displays basic device information in the following sections.
Table 1. Device details tabs
Tab Description
Summary
  • General device information
    This option displays basic details about the device, such as device name, model, serial number, operating system version, and unique identifiers.
  • Enrollment information
    This option displays enrollment information such as enrollment method, container type, and ownership type.
  • Device status
    This option displays the managed status of the device, policies applied, passcode status, and compliance status.
  • Network information
    This option displays the phone number of the device, roaming information, and network type.
    Note: The system automatically displays SIM2 (Secondary SIM) details on the Summary page when SIM1 (Primary SIM) details are unavailable. The Home Carrier field displays eSIM (SIM2) information when a physical SIM (SIM1) card is not inserted into the device.
Hardware & OS
  • Hardware Inventory
    This option displays information about the device's hardware and operating system such as device model, manufacturer, processor, storage, screen dimensions, and battery.
  • Operating system
    This option displays details about the OS such as the OS running on the device, OS version, kernel version, build number, security patch level, and OS update status.

    The OS update status displays the new OS version that is pushed to the device and provides real-time status updates like initiating, downloading, and installing.

Security & Compliance
  • Device Security & Restrictions
    This option provides information about security posture of the device such as encryption level and status, passcode status, and jailbreak or root status. It shows whether auto-sync, automatic backup to Google, and installation of non-market apps are allowed. It also displays restrictions that are applied to the device such as camera, GPS, NFC, and Bluetooth.
    IBM MaaS360 also detects and reports the biometric authentication configuration on devices. The system supports multiple biometric combinations and provides real-time updates without requiring device re-enrollment.
    The attribute is displayed as Biometric Auth Type for both Android and iOS devices on the device Summary page. Biometric Auth Type is supported on the following platforms.
    • Android version 11 and later
    • iOS version 11 and later.
    The following Biometric Auth Types are supported for Android.
    Note: For Profile-Owner (PO)-enrolled devices, the value is fetched from the biometric type that is applied on the Work Profile, not on the Android device itself.
    • Fingerprint
    • Face ID
    • Iris (Android devices only)
    The following Biometric Auth Types are supported for iOS.
    • Face ID (facial recognition-based authentication)
    • Touch ID (fingerprint-based authentication)
    The administrators can configure the following combinations as values.
    • Single type: Fingerprint, Face ID, Touch ID, or Iris.
    • Dual combinations: Fingerprint or Face ID, Fingerprint or Iris, and Iris or Face ID.
    • Triple combination: Fingerprint, Face ID or Iris.
    • None: No biometrics enrolled.
    • Not applicable: Devices running OS versions earlier than 11.
    The administrators can search for the Biometric Auth Types that are applied on the devices fromDevices > Advanced Search on the IBM MaaS360 Portal.
    1. On the IBM MaaS360 Portal home page, click Devices > Advanced Search.
    2. In Condition 1, select Security & Compliance under Select Category.
    3. Enter Biometric Auth Type under Select Attribute.
    4. Select Contains under Select Criteria.
    5. Enter a value from the list such as Fingerprint, Face ID, or Iris and click Search.
    6. Click Customize Columns.
    7. Select Biometric Auth Type and click Save.
    In the Search Results, the biometric type for each device is displayed in the column Biometric Auth Type.
  • Policy & Compliance
    This option displays information that is related to policy and compliance status of the device such as policy compliance status, list of policies applied to the device, compliance rule status, list of compliance rules applied to the device, selective wipe status, configured settings, and out of compliance reasons.
  • Passcode settings
    This option shows whether a passcode or pin is set on the device and if it meets the specified complexity requirements.
Network Information
  • Cellular network information
    This option displays details about the device's network connectivity such as phone number, ICCID, roaming status, home country, current country, and network type.
  • Wi-Fi network information
    This option displays details such as Wi-Fi network, Wi-Fi MAC address, SSID, and IP address.
Note: Field labels throughout the Network Information section use standardized SIM1 and SIM2 terminology to improve clarity across platforms. Primary SIM Details is now SIM1 Details, and Secondary SIM Details is now SIM2 Details.
Location Information If the location history is enabled, MaaS360 displays the current location or last known location of the device. You can use this data to track the movement and whereabouts of the device. MaaS360 provides the following location information.
  • Current location
    The current geographical location of the device that is based on location tracking methods.
  • Last Location Update
    The date and time of the last recorded location update for the device.
  • Location History
    A record of previous location updates or movements of the device over a specific period. It includes a timeline or list of location data points with corresponding timestamps.
  • Map View
    A visual representation of the device's current location on a map interface. It can help administrators quickly visualize the device's position.

For more information, see Tracking location history in MaaS360.

Apps Installed This option displays the list of apps that are installed on the device.
Note: This list does not include the system apps.
The app information such as Application Name, App ID, Installed Version, Application Size (MB), Data Size (MB), Managed, App Type, Install Location, Malware Found, and Action are displayed in columns.
Note: The column Version available on portal is displayed only for Android apps.
App Distributions This option displays the list of apps that are distributed from the IBM MaaS360 App Catalog, and more details about the distributed app such as app version, status, app configuration, and app distribution details.
Docs Downloaded This option displays the list of documents that are downloaded on the device through the IBM MaaS360 Portal. It provides information about the documents, such as the document name, file type, whether the file is opened.
Certificates This option displays the list of certificates that are installed on the device. It provides information about the certificates, such as the certificate name, issuer, and expiration date. Administrators can use this tab to monitor the certificates requested by the device.
Mobile Data Usage This option displays information that is related to the mobile data usage of the device. It provides details about the amount of mobile data that is consumed by the device over a specific period. It includes information such as the data usage plan, aggregate, and daily mobile data usage. Administrators can gain insights into how devices are using cellular data networks and identify any excessive or abnormal data usage patterns.
Browser History (Visited) This option displays a list of websites or URLs that are visited on the IBM MaaS360 Browser app. IBM MaaS360 displays details such as the domain, URL category, number of visits, username, first visit, and last visit. It enables administrators to track and monitor the browsing behavior of the device user, which can be helpful for compliance purposes, identifying potential security risks, or investigating inappropriate or unauthorized website access.
Note: A user must be assigned to the device for tracking websites.
Browser History (Blocked) This option displays a list of URLs that the user attempted to access through the MaaS360 Browser app but were blocked due to configured restrictions or security policies. IBM MaaS360 displays details such as the blocked URL, the date and time of the attempted access, and the policy that is violated. Administrators to review the blocked URLs and take appropriate actions if necessary, such as adjusting the browsing policies or investigating policy violations.
Note: A user must be assigned to the device for tracking websites.
Groups This option displays the list of groups that the device is part of, used for assignment and distribution purposes.
Custom Attributes This option displays the list of custom device attributes.
History This option displays a chronological record of events and actions that are related to the device. It provides a log of activities such as app installations, policy changes, remote commands, and other device management actions. The history tab helps administrators track the device's usage, configuration changes, and management activities over time.
Peripheral Devices This option displays information about the peripheral devices that are connected to the device. It provides details such as the type of peripheral device (For example, a printer), the connection status, and other relevant information.
Note: On Android version 12 and later devices, the Connect Bluetooth permission must be granted to the IBM MaaS360 Android app to collect data on peripheral devices.
Installed Services This option displays detailed information about the IBM MaaS360 core app such as app name, agent version, installed date, device ID, and OEM helper app version. IBM MaaS360 also displays the list of services that are enabled for the device.
Device logs The list of device logs uploaded by device users upon request from administrators.

Remote actions

Remote actions are commands that you can run on managed devices. These actions allow administrators to remotely control and manage devices from the IBM MaaS360 Portal. While specific remote actions vary depending on the operating system of the managed devices, IBM MaaS360 supports some common remote actions that are available across multiple platforms.

Table 2. Common remote actions
Remote action Description
Locate Displays the last known location of the device. For the IBM MaaS360 agent app to report location details to the IBM MaaS360 Portal, it requires the necessary permissions on the managed device.
Message Sends a message to the device.
Buzz This option causes the device to vibrate or emit a brief sound to locate a misplaced device or alert the device user.
Lock This option stops all activities and locks the device's screen to prevent unauthorized access. To unlock the device, the user needs to enter the passcode or pin that is configured on the device.
Reset Passcode This option clears the existing pin or passcode, removing the requirement to enter a passcode or pin to unlock the device. It does not impact user passwords on Macs and Windows.
Set Device Name This option changes the name of the device as it appears on the IBM MaaS360 Portal and the device.
Note: Supported for Android and iOS supervised devices only

On iOS 13 or earlier, if Allow Device Name Change is turned off, this action cannot be completed. For more information, see Assigning custom device name in MaaS360.

Wipe This option wipes the device to a factory reset state. IBM MaaS360 provides options to clear the Activation lock on iOS devices and clear Factory Reset Protection on Android devices.
CAUTION:
Applicable to Samsung devices only:

Ensure that the device does not have Block Factory Reset enabled in OEM Config. Initiating a device wipe with this setting enabled can result in the device being rendered inoperable. If this occurs, the device must be taken to an authorized Samsung repair center for resolution.

Change Policy This option changes the security policy on the device. Factors such as group membership and policy precedence may override this action.
Change Rule Set This option changes the compliance rule on the device. Factors such as group membership and policy precedence may override this action.
Distribute App This option distributes an app to the device from the App Catalog.
Selective Wipe This option removes data that is configured by IBM MaaS360 while preserving personal data and applications. Wipes corporate data that is configured by IBM MaaS360 such as apps, docs, email, and network configurations. Deletes the wifi profile, Exchange ActiveSync profiles, and web shortcuts configured on the device through the security policies. However, the restrictions that are imposed by policies remain on the device. This option does not apply to Windows DTM devices.
Remove Control This option removes the management and control capabilities of IBM MaaS360 from the device. When this action is issued, IBM MaaS360 removes configurations, policy restrictions, and apps that are marked for removal, and also hides the device record.
Enable Debug Mode This option activates the debug mode in the IBM MaaS360 agent to gather advanced logs. The debug mode increases the amount of information that is collected, which can occupy storage space on the device. To optimize storage usage, it is advisable to enable debug mode only for the necessary duration to capture the relevant data, and promptly disable it afterward.
Disable Debug Mode This option disables debug mode.
Upload Logs This option uploads diagnostic logs from the device to IBM.
Hide Mark the device as Inactive and hides the record. This action should be used to hide old devices that are no longer online.
Request Data Refresh This option requests a device refresh to force a check-in and update policy configurations, app distributions, doc distributions, and location.
Update Device Cert This option updates the device certificate. MaaS360 provides options to generate a new device certificate from the certificate authority or republish the existing device certificate to the device.
Remote Sign-in When the device ownership is set to corporate-shared, the administrators can sign in users from the IBM MaaS360 Portal.
Note: This feature is not supported for GSuite users.
Remote Sign-out When the device ownership is set to corporate-shared, the administrators can sign out users from the IBM MaaS360 Portal.
The list of device actions that are specific to the operating system are as follows.