About 8x8 Work Managed Devices for Android
Overview
8x8 Work for Managed Devices is a new version of the 8x8 Work for Mobile app explicitly built for organizations using Mobile Device Management (MDM) or Mobile Application Management (MAM) systems.
It supports secure, scalable deployments across shared Android devices, offering:
- Enterprise-grade login (including SSO)
- MDM-powered configuration and control
- Flexible setup for retail and enterprise environments
Note: This version is available exclusively for Android.
8x8 Work for Managed Devices is designed for IT administrators who deploy and secure apps through mobile device management (MDM) or mobile application management (MAM).
- MDM-based deployment: Configure and deploy the app using managed configurations directly in your MDM console.
- Compatible platforms: Works with Microsoft Intune, Manage Engine, Ivanti Neurons, Scoti Mobicontrol, and Hexnode.
- Centralized control: Manage user permissions and customize or lock app features in the 8x8 Admin Console under Work App Settings. To find more, see 8x8 Admin Console - Configure Work Apps Settings: Customize default values for 8x8 Work apps.
- Secure authentication: SAML-based SSO for password-less sign-in.
- Flexible licensing: Assign one device per license or share across rotating devices.
- Scalable deployments: Extend from small rollouts to enterprise-wide use.
- Optimized for shared devices: Ideal for retail, healthcare, and field operations.
- Enterprise login and security: Supports SSO and secure authentication flows.
- MDM/MAM integration: Simplifies deployment across BYOD and corporate-owned devices
- Admin controls: Enhanced flexibility for managing sessions, privacy, and deployment.
- All-in-one communication: Combines voice, video, and messaging in a single secure platform.
- Device flexibility: Works seamlessly across BYOD and company-managed Android devices.
- Scalable for any organization: From startups to global enterprises.
- Productivity anywhere: Keeps users connected whether on-site, off-duty, or offline.
IT administrators can use the MDM and 8x8 Admin Console settings to configure:
- Auto-login for users
- App-level configurations
- Role-based custom experiences
Session management
- Auto logout on charging: End user sessions when devices are docked
- Call queue logout sync: Log out of call queues when signing out of the app.
Privacy and security settings
- DID number visibility: Show/hide Direct Inward Dialing (DID) numbers by device role.
- Caller ID control: Manage Caller ID visibility on shared devices.
User Interface customization
- First tab selection: Choose default landing tab (Calls, Messages, Contacts) by role.
Simplified setup
- Authentication types: Supports both standard login and mixed-mode Single Sign-On (SSO).
- Landing screens: Role-based predefined screens.
Deployment
- Managed Play Store integration: Enterprise-ready distribution.
- Distinct package identity: Unique package name with “-managed” suffix and dedicated icon.
- Independent updates: Follows its own release cycle separate from the consumer app.
- Silent installation: Deploy without user prompts via MDM.
SSO and authentication
- Dedicated SSO Client ID: Enables multiple secure login options.
- Automatic app start: Launches automatically when the device powers on.
For existing deployments
- Uninstall the consumer version of the 8x8 Work for Mobile app.
- Deploy the 8x8 Work for Managed Devices version directly from the Google Play Store (connected to your MDM platform).
- Apply required MDM settings and configure Work App Settings in 8x8 Admin Console.
Important! Running both versions on the same device is not supported. Doing so may cause instability, degraded performance, or data loss.
For new deployments
- Deploy the 8x8 Work for Managed Devices version directly from the Google Play Store (connected to your MDM platform).
- Apply required MDM settings and configure Work App Settings in 8x8 Admin Console
8x8 Work for Managed Devices provides:
- Stronger privacy and session controls for shared devices
- Easier role-based configuration
- Enterprise-ready deployment flexibility with MDM/MAM integration
Mutual Transport Layer Security (mTLS) authentication for Android devices
8x8 provides Mutual Transport Layer Security (mTLS) authentication as a secure, certificate-based method for accessing services on managed Android devices. mTLS supports Multi-SSO environments and helps enforce strong access control. It is ideal for shared or managed devices.
What this means for you:
- Available for organizations using Multi-SSO integrations
- Ideal for frontline teams and high-turnover environments
- Requires setup in the 8x8 Admin Console (v1.57.2 or later)
- Stronger authentication: Only verified Android devices can access 8x8 services
- Improved compliance: Helps meet security and regulatory standards
- Secure mobile access: Uses certificates instead of passwords to authenticate users on managed devices
Traditional login methods on shared or managed Android devices create challenges:
- Security: Passwords can be reused or exposed on shared devices
- Productivity: Login prompts interrupt frontline workflows
- IT overhead: Managing credentials increases support demands
- Compliance: Shared logins complicate audit trails and access control
To solve these issues, 8x8 now supports passwordless, certificate-based authentication via mTLS for customers using Multi-SSO.
mTLS authentication is recommended if your organization:
- Uses shared or managed Android devices (for example, Zebra, Samsung, Honeywell)
- Relies on MDM platforms like VMware Workspace ONE, Microsoft Intune, or SOTI
- Supports frontline or deskless workers in retail, logistics, healthcare, or warehouse environments
- Requires strict credential management and access control
- Operates in high-turnover environments where password exposure is a risk
| Stakeholder | Benefit |
|---|---|
| End users | Frictionless access - devices are ready to use, no login required |
| It admins | Centralized control via MDM, fast revocation of compromised devices s |
| Security teams | Passwordless authentication, device binding, and compliance audit trail |
| Operations | Fewer support tickets and faster onboarding for new user |
Note: Compatible with all X Series licenses, including Retail Nationwide.
- IT provisions a device certificate using an MDM platform (for example, VMware Workspace ONE, Microsoft Intune, SOTI).
- The device uses its certificate to authenticate automatically - no manual login is required.
- The device receives secure tokens to access 8x8 services.
- If the device is lost or stolen, IT can revoke the certificate instantly.
Behind the scenes:
- mTLS maps each device certificate to a unique user ID
- The certificate is validated against your organization’s Certificate Authority (CA)
To use mTLS authentication, ensure the following:
- 8x8 Work for Managed Devices version 12.6.1 or later
- 8x8 Admin Console version 1.57.2 or later
- A customer account with Multi-SSO enabled
- A Mobile Device Management (MDM) platform that supports certificate deployment (for example., VMware, Intune, SOTI)
- An internal or third-party Certificate Authority (CA)
- IT capability to create and manage certificate profiles
- Log in to 8x8 Admin Console.
- Navigate to Home > Identity & Security.
-
Under Single Sign-On (SSO), click + Add SSO.
-
In the Add a new Single Sign-On (SSO) integration dialog:
- Select mTLS Authentication as the identity provider.
- Upload the root Certificate Authority (CA) file in .cert, .cer, or .crt format.
- Copy the Customer ID for MDM configuration (used to match device certificates).
- Click Add.
- Click Save in the Identity & Security page.
Note: Only one mTLS identity provider can be configured per 8x8 account.
For full setup instructions, see 8x8 Admin Console > Set up multiple Single Sign-On for 8x8 Admin Console.