The Sign-in settings profile allows you to restrict access to the device for only a set of users.


  1. Navigate to Resources > Profiles & Baselines > Profiles > Add > Add Profile > Chrome OS.
  2. Select Device to deploy to device policy profiles.
  3. Configure the profile's General settings. These General profile settings determine how the profile deploys and who receives it.
  4. Select the Sign-In Settings profile and select Configure.
  5. Configure the following settings as desired for your organization:
    Setting Description
    Restrict Sign-In

    Enable to restrict access to the device for only a set of users.

    When enabled, a text box displays and you can enter a comma-separated list of user names that can sign in to the device. Wildcards(*) can be used, for example, *

    Guest Mode Enable to allow guest access to the Chrome browser. A user is not required to sign in.
    Autocomplete Domain Set the domain name used for autocomplete on the sign-in page. The user can override this domain, if needed.
    SSO Idp Redirection Enable to redirect users to a SAML SSO IDP for login to the device.
    SAML SSO cookie transfer into user session Enable to transfer SAML SSO cookies to user session. This setting allows end users to use single sign-on with their apps by simply signing into the Chrome OS device.
  6. Select Save and Publish