Public-health wants Workspace ONE UEM and Workspace ONE Access to target the same Active Directory groups for enrollment and Hub access. What should the administrator do so Access policies do not drift from UEM?
Select an answer to reveal the explanation.
Short Explanation
UEM and Access are two filing cabinets that can hold the same folders—if you only fill one, the other still looks empty. Sync the same AD groups into Access so Hub policies see the same membership UEM already uses, instead of inventing local users that wander off over time.
Full Explanation
Group-based Workspace ONE Access policies evaluate directory objects that exist in Access, not groups that live only in UEM. Aligning both products on the same Active Directory groups keeps enrollment targeting and Hub access rules in step. Local shadow users in Access drift as soon as HR changes membership in AD. UEM smart groups are not inherited by Access, and NSX security groups are a different control plane.