Blocking Managed Devices

2/9/2009

You can prevent a compromised managed Windows Mobile device from establishing a connection through Mobile Device Manager Gateway Server by blocking the device. You block a device when you add it to the blocked device list.

A blocked device cannot establish a virtual private network (VPN) connection with MDM Gateway Server until you remove the device from the block list, or you enroll it with a new certificate.

For security reasons, a device is automatically added to the blocked device list after it is wiped. In rare instances, for example a hardware failure, the device may not be fully wiped even though the wipe request completes successfully. If for any reason you decide you want to unblock a wiped device, you should confirm that the device has been fully wiped or the lost device has been recovered.

Note

You can use MDM Shell cmdlets and PowerShell scripts to automate Windows Mobile device management tasks. For more information on blocking managed devices with MDM Shell cmdlets, see Device Block Cmdlets.

See Also

Tasks

Blocking a Managed Device
Unblocking a Managed Device

Concepts

Managing MDM Devices