Device Event |
A Device Event is an alert triggered based on an assortment of device specific conditions.
Please note that device conditions are updated based on the device's update schedule. If you require a faster response, time, you can increase the device update schedule frequency with a cost to server and database resources.
Severity is set to Minor by default and can be altered.
| Log Event | Description |
|
|
|
|
|
|
|
|---|---|---|---|---|---|---|---|---|
| <Custom Alert> | Create custom alerts that can be sent from other applications. For example, an in house application that should alert you if a user opens the app or any other action from within the app. To do this, your application should call %MCAPP% -mm alert "User opened app". When this command fires, it notifies MobiControl of a custom alert. If an alert rule has been created for a custom alert it will trigger. |
X | X | |||||
| Action sent | X | |||||||
| Add new device | Triggers an alert based on when a new device is added | X | X | X | X | X | X | |
| Advanced settings configured | Triggers an alert based on when advanced settings are configured | X | X | |||||
| Agent upgrade Attempt failed | Triggers an alert based on when an agent upgrade attempt failed | X | X | |||||
| Begin processing jobs for device | X | |||||||
| Begin processing scheduled jobs | Triggers an alert based on when processing scheduled jobs begin. | X | X | |||||
| Blocked incoming phone call | Triggers an alert based on when an outgoing phone call is blocked | X | X | X | ||||
| Blocked outgoing phone call | An outgoing phone call has been blocked. | X | X | |||||
| Change password success | Triggers an alert based on when a password change was successful | X | X | |||||
| Content File(s) synchronized | X | |||||||
| Custom Attributes(s) applied to device | X | |||||||
| Custom Data configured | Triggers an alert based on when custom data is configured | X | X | |||||
| Custom log | Triggers an alert based on when custom logs are created | X | X | |||||
| Data Collected | Triggers an alert based on when data is collected | X | X | |||||
| Data Collection configured | Triggers an alert based on when data collection is configured | X | ||||||
| Dependent packages not installed | Triggers an alert based on when dependent packages are not installed | X | X | |||||
| Device Certificate renewal failed | X | |||||||
| Device Certificate renew requested | X | |||||||
| Device Certificate renewed | X | |||||||
| Device Certificate revocation failed | X | |||||||
| Device Certificate revoked | X | |||||||
| Device checked-in | A device has checked-in with MobiControl. | X | X | X | ||||
| Device Configuration failed | Triggers an alert if a device configuration failed. | X | X | |||||
| Device configuration pending | X | |||||||
| Device configuration removal failed | Triggers an alert if a device configuration removal failed. | X | X | |||||
| Device configuration removed | Triggers an alert if a device configuration has successfully been removed. | X | X | |||||
| Device configured | Triggers an alert if a device is configured. | X | X | |||||
| Device connected | Triggers an alert based on when a device is connected | X | X | X | X | |||
| Device disabled | Triggers an alert based on when a device is disabled | X | X | |||||
| Device disconnected | Triggers an alert based on when a device is disconnected | X | X | X | X | |||
| Device Enabled | Triggers an alert based on when a device is enabled | X | X | |||||
| Device Located Failure | X | |||||||
| Device has blacklisted application | Device has blacklisted application. | X | X | |||||
| Device has no blacklisted applications | X | |||||||
| Device has not been checked in for N (minutes/hours/days) | Device check-in is completed through the platform's MDM functionality without needing the device to connect to the deployment server. If desired, you can change the default alert message text (which uses %HOURS%). Click the Customized Alert Message field and change the default text to use %MINUTES% for minutes or %DAYS% for days. Enter a numerical value in the Value column for the duration (in minutes) desired. |
X | ||||||
| Device has not been connected for N (minutes/hours/days) | If desired, you can change the default alert message text (which uses %HOURS%). Click the Customized Alert Message field and change the default text to use %MINUTES% for minutes or %DAYS% for days. Enter an integer value in the Value column for the duration (in minutes) desired. Note: The value must be a multiple of 60, and the minimum allowed value is 60. |
X | X | X | X | X | X | X |
| Device is in roaming | Roaming state occurs when device is away from it's home zone. | X | X | X | X | |||
| Device is missing mandatory application | Device is missing mandatory application. | X | X | X | ||||
| Device Located | X | |||||||
| Device manually relocated | Triggers an alert based on when a device is manually relocated | X | X | |||||
| Device relocated | Triggers an alert based on when a device is automatically relocated | X | X | |||||
| Device rename | X | |||||||
| Device security configured | Triggers an alert based on when device security is configured | X | X | |||||
| Device security violated | Device has been jail broken. | X | X | X | ||||
| Device Status and Custom Data alert configured | X | |||||||
| Device un-enroll requested by user | X | |||||||
| Device unenrolled | X | |||||||
| Device's administrative access is disabled | The device agent's administrative access has been disabled. | X | X | |||||
| ELM license activation failure | X | |||||||
| Encryption Level | Click the blank cell to see 4 alert factors, with 3 possible states each:
Allow Internal memory encryption Allow external memory encryption Internal Memory Encrypted External Memory Encryption |
X | ||||||
| Error creating file on device | Triggers an alert based on when there was an error creating a file on a device | X | X | |||||
| Error message received from device | Triggers an alert based on when an error message was received from a device | X | X | |||||
| Error writing to file on device | Triggers an alert based on when there was an error writing to a file on a device | X | X | |||||
| Exchange ActiveSync configured | Triggers an alert based on when Exchange ActiveSync is configured | X | ||||||
| Feature is not supported | X | |||||||
| File synchronization failed | Triggers an alert based on when a file synchronization failed | X | X | |||||
| File synchronization was aborted by pre-sync script | Triggers an alert based on when file synchronization was aborted by pre-sync script | X | X | |||||
| File(s) synchronized | Triggers an alert based on when file(s) are synchronized | X | X | |||||
| Geofencing Configured | Triggers an alert based on when Geofencing is configured | X | X | |||||
| Inaccurate device date-time detected | Triggers an alert based on when there is inaccurate date-time detected on a device | X | X | |||||
| Incompatible platform, processor or os version | Triggers an alert based on when there is incompatible platform, processor or os version | X | X | |||||
| Installation aborted by user | Triggers an alert based on when installation is aborted by user | X | X | |||||
| Installation was aborted by install script | Triggers an alert based on when installation was aborted by install script | X | X | |||||
| Insufficient free storage on device | Triggers an alert based on when there is insufficient free space on device | X | X | |||||
| Invalid device software version | Triggers an alert based on when invalid device software version is detected | X | X | |||||
| Invalid message received from device | Triggers an alert based on when an invalid message is received from device | X | X | |||||
| iOS management profile removed by user | A user has removed the iOS management profile from the device. | X | ||||||
| Logon failure | Triggers an alert based on when logging onto a device fails This is only available when AD authentication is active. |
X | X | |||||
| Logon success | Triggers an alert based on when logging onto a device is successful This is only available when AD authentication is active. |
X | X | |||||
| Malware application detected | MobiControl found an application classified as malware. | X | X | |||||
| Malware application quarantined | MobiControl placed the application in the quarantine folder. | X | X | |||||
| Malware application quarantine reset | The malware application quarantine list has been reset. | X | X | |||||
| Malware file detected | MobiControl found a file classified as malware. | X | X | |||||
| Malware file quarantined | MobiControl placed the file in the quarantine folder. | X | X | |||||
| Malware file quarantine reset | The malware file quarantine list has been reset. | X | X | |||||
| Multiple packages with the same name in job list | Triggers an alert based on when there are multiple packages with the same name in job list | X | X | |||||
| No Package ID in installation report | Triggers an alert based on when there is no Package ID in installation report | X | X | |||||
| Package file is corrupted | Triggers an alert based on when a package file is corrupted | X | X | |||||
| Package file not found | Triggers an alert based on when a package file not found | X | ||||||
| Package uninstalled | Triggers an alert based on when a package is uninstalled | X | X | |||||
| Package with higher version number already installed on the device | Triggers an alert based on when a package with a higher version number is already installed on the device | X | X | |||||
| PAS Connected | X | |||||||
| PAS Created | X | |||||||
| PAS Disconnected | X | |||||||
| PAS Edited | X | |||||||
| Payload 'Force Device Scan' sent | X | |||||||
| Pending jobs cannot be processed until device user is authenticated | Triggers an alert based on when pending jobs cannot be processed until device user is authenticated | X | X | |||||
| Process Learned | Triggers an alert based on when processes are learned | X | ||||||
| Processed successfully | Triggers an alert based on when processed successfully | X | X | |||||
| Remote Control | Triggers an alert based on when a device is remote controlled | X | X | |||||
| Renewed certificate pushed to device | X | |||||||
| SIM Card Changed | X | |||||||
| SIM Card Inserted | X | |||||||
| SIM Card Removed | X | |||||||
| Script command is not supported by device | X | |||||||
| Stopped illegal process | Triggers an alert based on when an illegal process is stopped | X | X | |||||
| Terms and Conditions pushed to device | Triggers an alert if a new terms and conditions successfully pushed to the device. | X | X | X | X | X | ||
| Time Sync Configured | Triggers an alert based on when time sync is configured | X | X | |||||
| User accepted Terms and Conditions | Triggers an alert on whether a user accepts terms and conditions. | X | X | X | X | X | ||
| User rejected Terms and Conditions | Triggers an alert if a user rejects terms and conditions. | X | X | X | X | X | ||
| WiFi settings configured | X |