Overview of Device Enrollment

⌘K

Device enrollment is the first step in managing and monitoring endpoints through the Zecurit platform. Once enrolled, devices begin reporting inventory data, software details, usage metrics, and policy compliance to your Zecurit dashboard.

This guide provides a high-level overview of the enrollment methods available and helps you choose the one that best fits your environment.

Why Enroll Devices?

Enrolling devices enables:

  • Real-time inventory collection (hardware, software, OS, location)
  • Policy deployment (alerts, prohibited software, lifecycle rules)
  • License compliance tracking
  • Remote monitoring and geo-location
  • Security enforcement and reporting

Supported Device Platforms

Zecurit supports device enrollment for:

  • Windows 10 (v1809+) and Windows 11
  • macOS 10.15 (Catalina) and later
  • Popular Linux distributions (Ubuntu, Debian, RHEL, Fedora, etc.)

Enrollment Methods

Zecurit offers multiple enrollment methods to suit different organization sizes and IT setups:

Manual Enrollment

Best for small teams or testing environments.

  • Manual Download: Admin downloads and installs the agent manually on each device.
  • Self-Enrollment via Link: End users install the agent using a secure link shared by the admin. Ideal for BYOD or remote teams.

Silent & Bulk Enrollment

Recommended for larger organizations and domain environments.

  • Zecurit Connector (Domain-based): Automate enrollment of domain-joined devices using our lightweight on-prem connector.
  • Microsoft Azure AD: Integrate with Azure AD to auto-enroll cloud-managed devices.
  • Active Directory GPO: Deploy the agent to AD-managed Windows devices using Group Policy.
  • Microsoft Intune: Push Zecurit agent through your MDM/Intune configuration.
  • SCCM Deployment: Distribute the agent via Microsoft SCCM for large Windows fleets.

Choosing the Right Enrollment Method

ScenarioRecommended Method
Small business or remote teamManual Download or Self-Enrollment Link
Corporate domain networkZecurit Connector or AD GPO
Azure AD-managed environmentAzure AD Enrollment
MDM-enabled organizationMicrosoft Intune
SCCM in useSCCM Deployment

???? You can use multiple enrollment methods within the same organization depending on your team structure and device types.

Refer to the ‘Choosing Enrollment Method’ section for more detailed insights.

Enrollment Prerequisites

Before enrolling devices, ensure:

  • Devices meet the System Requirements
  • Internet or proxy access to Zecurit endpoints is allowed
  • Admin permissions are available on the device (for agent installation)

What Happens After Enrollment?

Once a device is successfully enrolled:

  • Zecurit agent is installed and runs silently in the background.
  • Hardware and software data syncs to your portal within minutes.
  • Device appears under the Devices section in your dashboard.
  • Policies and alerts (if configured) begin applying automatically.

Next Steps

Start enrolling your devices using one of the following guides:

How can we help?