Skip to content

Unenroll devices

You can unenroll devices that are no longer in use, for example when a user gets a new device.

Warning

When you delete a device from Sophos Mobile that’s still enrolled, Sophos Mobile will unenroll it. However, this doesn’t apply to Windows computers. For information on the consequences of unenrollment, see Unenrollment consequences.

Android Enterprise fully managed devices

To unenroll an Android Enterprise fully managed device, you must reset it to its factory settings. See Wipe device.

Android Enterprise work profile devices

To unenroll an Android Enterprise work profile device, remove the work profile:

  1. On the menu sidebar, click Devices.
  2. Select the Android Enterprise work profile devices you want to unenroll.
  3. Click Actions > Wipe Android work profile.
  4. Click Yes in the confirmation dialog.

For information on deleting the work profile from a device that can’t access the Sophos Mobile server, see Google’s help on work profiles. Do this, for example, if you enrolled the device in a trial that’s now expired.

Other devices

To unenroll a non-Android device or an Android device in device administrator management mode, do as follows:

  1. On the menu sidebar, click Devices.
  2. Select the devices you want to unenroll.
  3. Click Actions > Unenroll.
  4. Click Yes in the confirmation dialog.

Unenrollment consequences

Android Enterprise fully managed devices

  • The device is reset to its factory settings.

Android Enterprise work profile devices

  • All apps and data inside the work profile are deleted.
  • The work profile is removed from the device.

Note

If you registered your organization with Android Enterprise in Managed Google Play Account mode, users can only enroll a limited number of devices. In some situations, the Google account might remain on the device after unenrollment, and the device still counts as enrolled. If this happens, manually remove the Google account from the device.

Android devices enrolled in device administrator management mode

  • The Sophos Mobile Control device administrator is disabled.
  • The server login data and all other data received are removed.
  • Sophos Intercept X for Mobile is reset.

iPhones and iPads

  • All policies are removed.
  • All managed apps are uninstalled.
  • All certificates received through Mobile Device Management are removed.
  • Sophos Intercept X for Mobile is reset.

Macs

  • All policies are removed.
  • All certificates received through Mobile Device Management are removed.