To take the advantage of the Workspace ONE experience, integrate Workspace ONE UEM and Workspace ONE Access. You can use it as a unified app catalog to distribute numerous types of applications.

Workspace ONE Catalog and Workspace ONE UEM-Only Mode

You can configure the Workspace ONE catalog to fetch resources to Workspace ONE UEM from Workspace ONE Access. Integrate Workspace ONE UEM and Workspace ONE Access and then set the Fetch option. You do not have to set up other features in Workspace ONE UEM such as activating a directory, setting up authentication, or setting up access policies.

For information about this feature, see the topic Using Workspace ONE UEM-Only Mode for Access to Workspace ONE Catalog on https://docs.vmware.com/en/VMware-Workspace-ONE/index.html.

Supported Platforms for Open and Managed Access

You can configure the access type, open or managed, for applications based on the platform.

Open and Managed Access Support - Internal Applications

Platform Managed Access Open Access
Android Supported Supported
iOS Supported Supported
Windows Desktop Supported Not Supported
Windows Phone Supported Not Supported
macOS Supported Not Supported

Open and Managed Access Support - Public Applications

Platform Managed Access Open Access
Android Supported Supported
iOS Supported Supported
Windows Desktop Not Supported Supported
Windows Phone Not Supported Supported

Integrate Workspace ONE UEM Applications with the Workspace ONE Access

To take the advantage of the Workspace ONE experience, integrate Workspace ONE UEM and Workspace ONE UEM. You can use it as a unified app catalog to distribute numerous types of applications.

For public and internal, you can configure to deploy the application depending on the device management status. Set an application for open access and any device can access the application. Set an application for managed access and a device must grant admins permissions to their device to access the application.

Access Type Suggested Uses
Managed Access Device users access resources by granting admins permissions on their devices (installs a management profile on the device).
The application is available to devices already managed by Workspace ONE UEM.
If Workspace ONE UEM does not manage the device, Workspace ONE prompts the device to enroll with Workspace ONE UEM. If it enrolls, it can access the application. If it does not enroll, it cannot access the application through Workspace ONE.
1. Remove sensitive corporate data from applications when device users leave the organization or lose their devices.

2. Require app tunneling when applications access the intranet.

3. Enable single sign-on for applications.

4. Track user adoption and installation statuses for applications.

5. Deploy the application automatically upon enrollment.
Open Access Device users access resources without granting admins permissions on their devices.
The application is available to devices no matter their managed status.
1. Provide application access to end-users immediately upon login, without elevated security permissions.

2. Suggest the use of the application without requiring its installation, and let device users install it when they want. These applications do not contain sensitive corporate data and they do not access protected corporate resources.

3. Distribute applications without the Workspace ONE UEM MDM profile to auxiliary personnel like contractors and consultants.

Workspace ONE enables access to applications located in the Web tab of the Workspace ONE UEM console. It pulls the URL, the application description, and the icon.

check-circle-line exclamation-circle-line close-line
Scroll to top icon