Overview
After creating and publishing a Configuration Profile, the next step is to associate (distribute) it to the devices or groups where it should be enforced. Zecurit supports two association methods:
- Device-level association : Apply a profile to one or more specific devices.
- Group-level association : Apply a profile to an entire device group, automatically covering all current and future devices added to that group.
Association triggers Zecurit’s agent on the target endpoints to download and enforce the profile settings. You can monitor the execution status in real time for each device.
Step-by-Step: Associating a Profile from the Devices View
Step 1 : Navigate to Groups and Devices
- In the left sidebar, click Manage.
- Click Groups and Devices at the top of the sidebar.
- The Devices tab will be selected by default, showing all enrolled endpoints.
Step 2 : Select Target Devices
- Use the checkboxes to select one or more devices you want to associate the profile with.
- For single devices, you can also click the device name to open its detail view.
Step 3 : Open the Actions Menu and Choose Distribute
- With devices selected, click the Actions button in the top-right corner of the Devices list.
- In the dropdown menu that appears, hover over Distribute.
- A sub-menu will appear with two options:
- Configuration Profile : To associate a configuration policy profile.
- Deployment Policy : To associate a software or script deployment policy.
- Click Configuration Profile.
Step 4 : Select a Profile from the Associate Configuration Profile Dialog
The Associate Configuration Profile dialog will open, showing all Published profiles available in your account.
- Browse or search for the profile you want to associate.
- Use the checkbox next to the profile name to select it. You may select multiple profiles to associate them simultaneously.
- Review the profile details : Platform, Version, Devices already associated, and Profile Status, to confirm you are selecting the correct profile.
- Click Associate to confirm.
Note: The dialog displays only Published profiles. Draft profiles are not available for association. If you do not see a profile, ensure it has been published first.
Step 5 : Monitor Association Status
After clicking Associate:
- Navigate to the devices by clicking profile count in the Devices list.
- The device detail view (e.g., “alexanderdaniel”) shows:
- Profiles Associated : Total count of profiles linked to this device.
- Execution Status : Per-profile status including: Executed, In Progress, or Failed.
- Distributed Version vs Latest Version : Confirms whether the device has the latest version of each profile.
Step-by-Step: Associating a Profile from the Groups View
Associating profiles at the group level is the most efficient approach for managing large fleets, as any new device added to the group automatically inherits all associated profiles.
Step 1 : Navigate to Groups
- Go to Manage → Groups and Devices.
- Click the Groups tab.
- Locate the group you want to manage (e.g., “Finance Team,” “Remote Workers,” “New Devices”).
Step 2 : Select and Distribute to the Group
- Select the group using the checkbox or click the group name.
- Click Actions → Distribute → Configuration Profile.
- In the Associate Configuration Profile dialog, select the desired profile(s).
- Click Associate.
All devices currently in the group and any devices added to the group in the future, will receive the profile.
Understanding the Device Profile Detail View
When you click on an individual device name (e.g., “alexanderdaniel”), the device detail view provides a full breakdown of all associated profiles under the Profiles tab:
| Column | Description |
|---|---|
| Profile Name | The name of the associated profile |
| Profile Type | Category (e.g., Monitoring, Configuration) |
| Associated By | The admin who associated the profile |
| Associated Time | When the profile was first linked to this device |
| Execution Status | Current state: Executed, In Progress, or Failed |
| Distributed Version | The version of the profile currently applied on the device |
| Latest Version | The most recent version available in Zecurit |
If Distributed Version is lower than Latest Version, the device has not yet received the updated profile. You may need to re-associate or check agent connectivity.
Execution Status Explained
| Status | Meaning |
|---|---|
| Executed | The profile was successfully applied on the device. |
| In Progress | The profile has been sent to the device and is being applied. |
| Failed | The device received the profile but encountered an error during application. |
For Failed profiles, click the profile name in the device detail view to see error details and take corrective action.
Use Case Examples
Use Case 1 : Enforcing Firewall Policy on All Remote Workers
Scenario: The IT team needs to enforce a strict firewall policy on all laptops used by remote employees.
Steps:
- Confirm the “Corp-Firewall-Policy” profile is published.
- Navigate to Groups and Devices → Groups.
- Select the “Remote Workers” group.
- Click Actions → Distribute → Configuration Profile.
- Select “Corp-Firewall-Policy” and click Associate.
- Monitor execution status for all devices in the group.
Use Case 2 : Pushing a Profile to a Single Non-Compliant Device
Scenario: A specific endpoint has drifted from the standard configuration and needs to have the baseline profile re-applied.
Steps:
- Navigate to Devices and locate the non-compliant device.
- Select the device checkbox.
- Click Actions → Distribute → Configuration Profile.
- Select the applicable baseline profile and click Associate.
- Monitor the Execution Status on the device detail page until it shows “Executed.”