Skip to content

Available compliance rules

This page lists the compliance rules that you can select for the individual platforms.

Rule Description
Managed required Select actions that will be executed when a device is no longer managed.
Tamper protection turned off

Select actions that will be executed when the Chrome Security policy has been tampered with.

Applies to:

  • Chromebooks
Minimum Sophos Chrome Security version

The earliest allowed version of the Sophos Chrome Security extension.

Applies to:

  • Chromebooks
Root access allowed

Select whether devices with root rights are allowed.

Applies to:

  • Android devices
Apps from unknown sources allowed

Select whether apps and extensions from outside the Chrome Web Store are allowed.

Applies to:

  • Chromebooks
Minimum OS version The earliest allowed version of the operating system.
Maximum OS version The latest allowed version of the operating system.
Maximum interval between Intercept X for Mobile synchronizations

The maximum allowed interval at which Sophos Intercept X for Mobile must synchronize with Sophos Central.

Applies to:

  • Android devices
  • iPhones and iPads
Maximum interval between Intercept X for Mobile scans

The maximum allowed interval at which Sophos Intercept X for Mobile must perform malware scans.

Applies to:

  • Android devices
Intercept X for Mobile permissions can be denied

Select whether the device becomes non-compliant if the user denies the app permissions for Sophos Intercept X for Mobile.

We recommend that you set this rule to No when using Web Filtering. With this setting, the device becomes non-compliant when Web Filtering stops working because the user turned off the Sophos Accessibility Service.

Applies to:

  • Android devices
Malware apps allowed

Select whether malware apps detected by Sophos Intercept X for Mobile are allowed.

Applies to:

  • Android devices
Suspicious apps allowed

Select whether suspicious apps detected by Sophos Intercept X for Mobile are allowed.

Applies to:

  • Android devices
PUAs allowed

Select whether Potentially Unwanted Apps (PUAs) detected by Sophos Intercept X for Mobile are allowed.

Applies to:

  • Android devices
Installed apps

Select either Allowed apps or Forbidden apps and then select the app group containing the apps or extensions you want to allow or forbid.

Applies to:

  • Chromebooks
Mandatory apps

Specify apps that must be installed. Select the app group containing the mandatory apps or extensions from the list.

Applies to:

  • Chromebooks
Web Filtering turned on

The Web Filtering feature of Intercept X for Mobile must be turned on.

Applies to:

  • iPhones and iPads