Configure user policies
User settings apply when a managed enterprise user signs in. They are different from device settings, which apply to the device regardless of the signed-in user.
Apply a user setting
- Open Business+ → User Settings.
- Select the user's Organisational Unit.
- Search for the setting or browse its section.
- Check whether the value is inherited or locally applied.
- Change the required value.
- Review Updated setting entries.
- Click Save.
Common sections include:
- General, session length, terms of service, avatar, and wallpaper.
- Sign-in settings, sign-in and lock-screen behaviour.
- Enrollment controls, where newly enrolled devices are placed and who may enrol them.
- Apps and extensions, task manager and extension behaviour.
- Security, browser and web security controls.
Verify a user policy
- Use a pilot user in the target organisational unit.
- Sign out and sign in again on a managed device.
- Confirm the expected browser, app, or session behaviour.
- If the result is wrong, compare the user's organisational unit with the selected policy unit.
Avoid common mistakes
- Do not use user settings for a kiosk device with no signed-in user.
- Do not assume a device's organisational unit and a user's organisational unit are the same.
- Do not reset all settings to the parent level when you only need to remove one override.
- Do not deploy a restrictive sign-in or URL policy without a pilot account and recovery path.
What's next
- Manage users and invitations, control membership, roles, and organisational units.
- Admin roles and login security, protect Management Cloud access.