The Sign-in settings profile allows you to restrict access to the device for only a set of users.

To configure the sign-in settings profile:

  1. Navigate to Devices > Profiles & Resources > Profiles > Add > Add Profile > Chrome OS.
  2. Select Device to deploy to device policy profiles.

  3. Configure the profile's General settings.

    These settings determine how the profile deploys and who receives it. For more information on General settings, see Add General Profile Settings.

  4. Select the Sign-In Settings profile and select Configure.
  5. Configure the following settings as desired for your organization:

    Setting Description
    Restrictions
    Restrict Sign-In

    Enable to restrict access to the device for only a set of users.

    When enabled, a text box displays and you can enter a comma-separated list of user names that can sign in to the device. Wildcards(*) can be used, for example, *@example.com.

    Guest Mode Enable to allow guest access to the Chrome browser. A user is not required to sign in.
    User Experience
    Autocomplete Domain Set the domain name used for autocomplete on the sign-in page. The user can override this domain, if needed.
    Single Sign On
    SSO Idp Redirection Enable to redirect users to a SAML SSO IDP for login to the device.
    SAML SSO cookie transfer into user session Enable to transfer SAML SSO cookies to user session. This setting allows end users to use single sign-on with their apps by simply signing into the Chrome OS device.
  6. Select Save and Publish.