Provides information about Workspace ONE UEM System settings. The System settings are categorized into the following: What to read next Getting Started SettingsAs an admin, you can configure the settings related to the Getting Started feature of the Workspace ONE UEM console. Branding SettingsAs an admin, you can customize the look of the Workspace ONE UEM console by adding the colors, logos, and URLs that define your organization's brand. Certificate Authorities SettingsAs an admin, you can use the Certificate Authorities (CA) settings to integrate your certificate authority with Workspace ONE UEM for increased stability, security, and authentication. Certificates help protect your infrastructure from brute force attacks, dictionary attacks, and employee error. Content Gateway SettingsAs an admin, you can configure the VMware Content Gateway settings required to deploy Content Gateway as a service on the Unified Access Gateway (UAG) appliance. The pre-configured settings are bundled into the Content Gateway configuration file eliminating the need to configure the settings manually post-installation on the server. Cloud Connector SettingsAs an admin, you can use the VMware AirWatch Cloud Connector (ACC) to integrate Workspace ONE UEM with an organizations back-end enterprise systems. The VMware AirWatch Cloud Connector runs in the internal network, acting as a proxy that securely transmits requests from Workspace ONE UEM to the organization's critical enterprise infrastructure components. Directory Services SettingsAs an admin, you can configure your directory service integration with Workspace ONE UEM. Integrating with directory services eliminates the need to create basic user accounts in your organization. Such integration can also help simplify the enrollment process for end users by applying information they already know. Email (SMTP) SettingsAs an admin, you can configure the settings on the Email (SMTP) settings page for sending emails from the Workspace ONE UEM console to the enrolled device users. VMware Tunnel Configuration SettingsAs an admin, you can configure VMware Tunnel to secure access for connecting to corporate resources. VMware Tunnel Proxy SettingsAs an admin, you can configure VMware Tunnel Proxy deployment to secure the network traffic between an end user device and a website through the VMware Browser mobile application from Workspace ONE UEM. Peer Distribution Adaptiva SettingsAs an admin, you can configure the settings on the Peer Distribution Adaptiva settings page to help set up your peer distribution system and to avoid configuration issues, review the network behaviors, the types of communication, the communication channels between components, and license management. CDN Akamai SettingsThe CDN system settings pages lets on-premises customers enter account information for the available CDN providers. This feature is automatically configured for SaaS customers. Pull Service Installer SettingsAs an admin, you can configure the Pull Service Installers for in product provisioning. The Pull Service Installers setting page contains links to the pull service installers that you can download and run to monitor new products, profiles, files, actions, and applications provisioned to devices under the pull relay servers purview. SMS SettingsAs an admin, you must enter the mandatory fields in the SMS settings page to enable Workspace ONE UEM to communicate using SMS with mobile devices for purposes like user or device activation messages. System Log SettingsAs an admin, you can configure integration with a SIEM tool that leverages the syslog protocol to record system events. Workspace ONE Access SettingsAs an admin, you can configure the Workspace ONE Access settings to provide users with a single sign-on experience and secure access to applications. Restricted Actions Settings Using the Restricted Actions settings page, you can configure the security-minded settings related to the actions that Workspace ONE UEM administrators can perform in the Workspace ONE UEM console. Data Security SettingsAs a Workspace ONE UEM admin, you can encrypt user information to further secure your user data, which includes an end user's first name, last name, email, and phone number. SSL Pinning SettingsAs a Workspace ONE UEM console admin, you can add domains of Workspace ONE UEM Device Services and auxiliary components on the SSL Pinning settings page. These Device Services and auxiliary components can help prevent man-in-the-middle (MITM) attacks by enabling an additional layer of trust between the listed hosts and devices. Trust Service SettingsAs a Workspace ONE UEM console on-prem administrator, you can use the Trust Service page and configure the settings only at the Global level. Key Management SettingsUsing the Key Management settings page, the on-premises customers can rotate the primary key used to encrypt sensitive data in the Workspace ONE UEM database. Help SettingsAs an admin, you can configure the help feature on the Workspace ONE UEM console. When enabled, the help feature provides you access to the UEM console documentation. It also offers a quick view of the console's new features, thereby helping you get more clarity or answers to the questions you might have when using the UEM console. Language Activation SettingsAs a Workspace ONE UEM admin, you can offer localized interaction with the Workspace ONE UEM console through the use of globalized message templates, EULAs and more. It allows you to offer a tailored, global experience to all of your users, regardless of language preference or location. Localization Editor SettingsAs a Workspace ONE UEM, using the Localization Editor settings page, you can personalize the UI text in the system to match internal word choice or regional preferences for all users. System / Report Subscriptions Terms of Use SettingsAs an admin, you can configure the terms of use (TOU) that the users must accept before proceeding with installing apps or accessing the UEM console. S/MIME SettingsAs an admin, you can configure the settings to enable S/MIME and deploy it on devices through profiles. S/MIME (Secure Multi-Purpose Internet Mail Extensions) is a secure method of sending email. This protocol allows to encrypt emails and digitally sign them, thus allowing the receiver to be certain that the message received is exact and has been sent by a specific sender. Hub URLs Advanced System SettingsThis page is used to specify your Workspace ONE Intelligent Hub schema and default URLs referenced during the enrollment process to obtain the Workspace ONE Intelligent Hub. These settings typically do not need to be modified. Event Notifications System SettingsYou can send notifications to a URL of your choosing when a specific event in Workspace ONE UEM occurs. Use the Event Notifications page to assign notifications to device-related events captured in real time. Rest API for Workspace ONE UEMRest APIs require authentication to integrate with Workspace ONE UEM. Prior to authentication, API access must be enabled in the Workspace ONE UEM console. This page is used to configure the settings required for REST APIs. SOAP APIs for Workspace ONE UEMThis page is used to configure the settings required for SOAP APIs. Device Root Certificate for Workspace ONE UEMThe Device Root Certificate settings page is used to authenticate SDK-enabled applications that requires certificate based authentication, including authentication for the VMware Tunnel Proxy. Secure Channel Certificate Settings for Workspace ONE UEMThe Secure Channel Certificate settings page lets you configure options related to the certificate of the same name. Service URLs for Workspace ONE UEMThe Service URLs settings page is the place you define your Identity Management Provider (IdM) to Workspace ONE UEM. The IdM describes the management of individual identities, their authentication, authorization, roles and privileges within or across system and enterprise boundaries with the goal of increasing security and productivity while decreasing cost, downtime, and repetitive tasks. Site URLs for Workspace ONEThe Site URLs settings page lists the endpoint of the various components that comprise the Workspace ONE UEM solution. Query String Authentication for Workspace ONE UEMA query string authentication provider is a non-SAML service that allows users to log in to a web portal, select a web service or application, and automatically be authenticated and signed in without having to re-enter credentials. Legacy Settings for Workspace ONE UEMThe Advanced / Other settings page contains a number of legacy settings for earlier versions of Workspace ONE UEM that have been omitted. With the exception of the two settings below, do not alter these settings unless you know what they do and are instructed to do so by Workspace ONE UEM support.