The Wipe Protection settings page in Workspace ONE UEM lets you configure options that let you exert more control over how and when managed devices can be wiped to avoid mass wiping of devices.
Wipe protection covers three actions: Device Wipe, Enterprise Wipe, and Delete Device. When the wipe threshold is exceeded, future wipes and deletes are placed on hold automatically until after you validate the commands.
Configure the Wipe Protection settings by navigating to Groups & Settings > All Settings > Devices & Users > Advanced > Managed Device Wipe Protection.
What can you do with the Workspace ONE UEM Managed Device Wipe Protection settings page?
The Wipe Protection settings page allows you to:
- Configure wipe protection settings by defining a wipe threshold, which is a minimum number of devices wiped within a certain amount of time. For example, if more than 10 devices are wiped within 20 minutes, you can automatically place future wipes on hold until you validate the wipe commands.
- Review wipe logs to see when devices were wiped or deleted and for what reason. After reviewing the information, you can accept or reject the on-hold wipe commands and unlock the system to reset the wipe threshold counter.
- Set a wipe threshold for managed devices and notify administrators through email when the threshold is met. You can only configure these settings at the Global or Customer level organization group.
Managed Device Wipe Protection
| Setting | Description |
|---|---|
| Wiped Devices | Enter the number of Wiped Devices that acts as your threshold for triggering wipe protection. |
| Within (minutes) | Enter the value for Within (minutes), which is the amount of time the wipes must occur to trigger wipe protection. |
Select a message template to email to administrators.
Create a message template for wipe protection by navigating to Groups & Settings > All Settings > Devices & Users > General > Message Templates and select Add, Next, select Device Lifecycle as the Category and Wipe Protection Notification as the Type. You can use the following lookup values as part of your message template.
| |
| To | Enter the email addresses of administrators who must be notified. These administrators must have access to the Wipe Log page. |
For a detailed explanation of Lookup Fields, including a full listing of available fields, see Lookup Fields.
Was this page helpful?