Installation G DATA Mobile Device Management Endpoint Android

Preliminary information

Please note the port overview and firewall allowances:

Minimum requirements for the G DATA Agent:

  • At least 2 GB RAM and 5 GB free disk space

  • Intel x64 compatible or ARM, SSE3 or later.

  • Windows / Windows Server:

    • Windows operating system versions covered by Microsoft Extended Support,

    • Windows LTSC versions are supported only as long as they are covered by Mainstream Support,

    • Windows 11 for an installation on ARM architecture.

  • Linux-based systems:

    • Ubuntu LTS versions covered by the respective vendor’s Standard Support,

    • all Debian versions covered by the respective vendor’s LTS Support,

    • all Red Hat Linux Enterprise versions covered by the respective vendor’s Maintenance Support,

    • Oracle Linux versions covered by the respective vendor’s Premier Support,

    • all SuSE Linux versions from version 15 that are covered by the respective vendor’s LTSS Support,

    • Rocky Linux from version 9.

  • Mac:

    • from and including macOS 13.4 Ventura (macOS 14 Sonoma, macOS 15 Sequoia, and macOS 26 Tahoe). == Reachability of the G DATA cloud To ensure reliable and timely alerting of events and Incidents, the G DATA Cloud must be reachable and must not be blocked by a firewall. The settings listed below are required for this. It must be ensured that *.gdatasecurity.de and *.gdatasoftware.com can be resolved via DNS and are reachable.

  • Port openings

    • The G DATA agents on the Endpoints must be able to reach the IPs of our backend servers via port TCP/443, IP range 194.156.84.0/22 (194.156.84.0 - 194.156.87.255).

  • Protocols

    • The systems must be able to communicate using the HTTPS:// and WSS:// protocols.

  • TLS

    • Deployed proxy servers must support at least TLS 1.2.

    • SSL Inspection or Deep Packet Inspection must not be enabled.

The installation

Adding devices in the G DATA Mobile Device Management

The installation of G DATA Endpoint Security Android can be performed in two scenarios.

In the first scenario, the IT administrator has physical/local access to the device to be installed. In the second scenario, the device is not accessible to the IT administrator.

In both cases, the IT administrator first specifies for which Profil (for [ Managed Service Provider] also for which Customer) the device to be installed is intended and creates a corresponding QR code. Multiple devices can also be added in a single step because the created QR code does not contain any device-specific information. The QR code contains license data, profile assignments, and, if applicable, Customer information. This means that all devices of a Customer with the same profile can be installed using the same QR code.

Installation scenario 1: The IT administrator has physical/local access to the device
Step Action

1

Click Add new device and select Android..

2

Select the desired Profile.

3

Click Install.

4

Select On-site installation.

5

You will now see 2 QR codes. Scan the first (left) code with the Android device. This will take you directly to our app G DATA Endpoint Security Android in the Google Play Store.

6

On your device, click Install in the Play Store.

7

After installation, open G DATA Endpoint Security Android.

8

Enter a user-defined device alias in the field provided. This alias name enables the administrator to uniquely identify and assign the device in the G DATA Mobile Device Management.

9

Use the camera icon to scan the second (right) QR code, or enter the activation code displayed under the QR code in the field provided.

10

Click Connect.

11

Make the necessary settings that are now requested. The requested settings are explained in detail within the app.

Here you can find the exact Permissions, that are required for the correct operation of G DATA Endpoint Security Android.

12

Your device is now protected and has already synchronized with the G DATA Mobile Device Management.

13

If you have multiple tenants with Android devices in your system, repeat the steps for each tenant.

Installation scenario 2: The IT administrator does not have physical/local access to the device
Step Action

1

Click Add new device and select Android.

2

Select the desired Profile.

3

Click Install.

4

Select Remote installation.

5

You will now see 2 QR codes. Scan the first (left) code with the Android device. This will take you directly to our app G DATA Endpoint Security Android in the Google Play Store.

6

As soon as a user has completed the instructions, you will see the device on the status page of your G DATA Mobile Device Management.