Hi,

We are a small MSP. We need a solution that can manage both IOS and Android devices. Currently we are using Jamf for the management as we only had Apple Devices. But now few of our clients are getting android devices for their employees. So now we are in a situation we need a solution that can manage both.

Currently I am evaluating VM Ware Workspace One, Soti, Sophos, ManageEngine and Scalefusion one by one. Which one do you use? What is the best solution for us. Thanks in Advance :slight_smile:

4 Spice ups

We use Meraki for our MDM, it supports iOS, Windows, and Android. To be honest the real reason we are using it is that it had a free version 8 years ago and we are still grandfathered in as free. For basic MDM the free version works fine, it handles many of the functions you outlined but not all. The biggest limitation is that you can’t use the free version for remote / touch free setup, we have to perform the initial phone config (including creating AppleIDs), then install the Meraki client, and only then can we start managing the device.

If we had the paid version that touch free setup would be available. There are some other finer controls that we miss out on as well, but since I’ve never had them I’ve never looked into them. We just can’t justify the cost of the paid version with labor savings, so we stay on the free one.

I’ve looked at a few other solutions over the years, but most of them don’t do Android, or if they do Android they don’t also do Windows. So here we are on the old free version.

@root08

1 Spice up

I have no experience of mdm/uem for MSP/multi-tenant only single tenant.

But just to offer some additional considerations for your requirements:
ios update management - the capability 9oin this area varies wildly between different platforms with some not able to even set the device to automatic updates. If clients require up to date patched devices (and who wouldn’t) I would check carefully the functionality of the mdm in this area.
containerization - do you not require this on corporate owned assets also?
automated/enforced enrollment - i.e. support for apple business/dep and Android Enterprise/zero-touch. If not you have to manually enroll and folks can just not enroll and use the phone personally/steal it etc.

1 Spice up

Hey OP - I’m a little late to the conversation, but thanks for considering Sophos! In case you need it, I just wanted to pass along a link our Sophos Mobile solution in case you need more information: https://www.sophos.com/en-us/products/mobile-control

And, for more documentation on features, feel free to take a look, here: Sophos Mobile

Also late to the party, but WorkspaceONE / AirWatch is also a fairly complete solution. Their main selling point is the “single pane of glass” for all mobile devices - even workstations if you want to go that route as well.

Good integration with Samsung KNOX and Google Enterprise on the Android side. Ability to organize by “customer” or similar hierarchical group structure. Google Enterprise features require EMM domain registration, but this can be done on a per-customer level. Containerized apps are another selling point. Only thing that I am not 100% sure about on your list is the lock-screen and homescreen customizations. Their launcher replacement would solve the homescreen one. The lock screen may be OEM dependent. Otherwise, it does everything on your list and more.

@VMware