Library Android tablets never form a work profile during Workspace ONE UEM enrollment. The gateway firewall already allows the UEM FQDNs. What should the security administrator check?
Select an answer to reveal the explanation.
Short Explanation
A work profile is a specific enrollment recipe, not a missing firewall hole. Check Android Enterprise mode and the DPC extras on the staging token.
Full Explanation
Android work-profile creation depends on Android Enterprise enrollment type and Device Policy Controller extras on the token or QR. If those are wrong, the profile never forms even when UEM FQDNs are reachable. Gateway-firewall logging, macOS Carbon Black profiles, and Identity Firewall directory bind are not the Android work-profile control.