Enabling or disabling restricted access on unmanaged devices
Restricted access on unmanaged devices lets Zoom Phone admins control whether users can access Zoom Phone and sensitive content when signing in from devices that aren't enrolled in Zoom Device Management (ZDM). When this setting is enabled, admins can restrict Zoom Phone on desktop and mobile for users on unmanaged devices, and automatically block access to sensitive content for those users. This is useful for organizations that need to allow users to sign in from personal or unmanaged devices while still protecting sensitive phone data from being accessed outside approved, managed devices.
Note: When users sign in from an unmanaged device, access to the following data is automatically restricted, regardless of whether the Zoom Phone on desktop or mobile checkboxes are selected:
- Call summaries
- Call recordings
- Voicemails/videomails
- SMS attachments
Requirements for enabling or disabling restricted access on unmanaged devices
- Either a Zoom Workplace license (with Zoom Phone included) or a standalone Zoom Phone calling plan
- Account owner or admin privileges
- Contact Zoom Support to enable content restrictions for ZDM devices
How to enable or disable restricted access on unmanaged devices
Account
To enable or disable restricted access for all users in the account:
- Sign in to the Zoom web portal as an admin with the privilege to edit account settings.
- In the top-right corner, click your profile picture or initials, then click Admin Center.
- In the side menu, click Settings
. - Click Zoom Phone.
- Under General, click the Restricted access on unmanaged devices toggle to enable or disable it.
If a verification dialog appears, click Enable or Disable to verify the change. - When enabled, configure the following options as needed:
- Zoom Phone on desktop: Select this checkbox to restrict access to Zoom Phone on desktop (Windows, macOS, Linux, and VDI) when users sign in from unmanaged devices.
- Zoom Phone on mobile: Select this checkbox to restrict access to Zoom Phone on mobile (iOS, iPadOS, and Android) when users sign in from unmanaged devices.
- (Optional) To prevent all users in your account from changing this setting, click the lock icon
, then click Lock to confirm.
Group
To enable or disable restricted access for a group of users:
- Sign in to the Zoom web portal as an admin with the privilege to edit groups.
- In the top-right corner, click your profile picture or initials, then click Admin Center.
- In the side menu, click Users then Groups.
- Click the applicable group name from the list.
- Click the Zoom Phone tab.
- Under General, click the Restricted access on unmanaged devices toggle to enable or disable it.
If a verification dialog appears, click Enable or Disable to verify the change. - When enabled, configure the following options as needed:
- Zoom Phone on desktop: Select this checkbox to restrict access to Zoom Phone on desktop when users in this group sign in from unmanaged devices.
- Zoom Phone on mobile: Select this checkbox to restrict access to Zoom Phone on mobile when users in this group sign in from unmanaged devices.
- (Optional) To prevent users in this group from changing this setting, click the lock icon
, then click Lock to confirm.
Note: If the option is grayed out, it has been locked at the account level and must be changed at that level.
Site
To enable or disable restricted access for a site:
- Sign in to the Zoom web portal as an admin with the privilege to edit sites.
- In the top-right corner, click your profile picture or initials, then click Admin Center.
- In the side menu, click Product configuration, then click Phone system, followed by Company Info.
- Click the applicable site name from the list.
- Click the Policy tab.
- Under General, click the Restricted access on unmanaged devices toggle to enable or disable it.
If a verification dialog appears, click Enable or Disable to verify the change. - When enabled, configure the following options as needed:
- Zoom Phone on desktop: Select this checkbox to restrict access to Zoom Phone on desktop when users at this site sign in from unmanaged devices.
- Zoom Phone on mobile: Select this checkbox to restrict access to Zoom Phone on mobile when users at this site sign in from unmanaged devices.
- (Optional) To prevent users at this site from changing this setting, click the lock icon
, then click Lock to confirm.
Note: If the option is grayed out, it has been locked at either the account or group level and must be changed at that level.
User
To enable or disable restricted access for a specific user extension:
- Sign in to the Zoom web portal as an admin with the privilege to edit phone users.
- In the top-right corner, click your profile picture or initials, then click Admin Center.
- In the side menu, click Product configuration, then click Phone system, followed by Users & Rooms.
- Click the Users tab.
- Click the applicable phone username from the list.
- Click the User Settings tab.
- Under General, click the Restricted access on unmanaged devices toggle to enable or disable it.
If a verification dialog appears, click Enable or Disable to verify the change. - When enabled, configure the following options as needed:
- Zoom Phone on desktop: Select this checkbox to restrict access to Zoom Phone on desktop when this user signs in from an unmanaged device.
- Zoom Phone on mobile: Select this checkbox to restrict access to Zoom Phone on mobile when this user signs in from an unmanaged device.
Note: If the option is grayed out, it has been locked at either the account, group, or site level and must be changed at that level.