The Qoria Filter app for Android provides real-time filtering that seamlessly integrates with Smoothwall Cloud Filter, ensuring your policies are consistently applied.
Before you begin
You must have managed Android devices.
Your devices must meet the minimum device requirements for the Qoria Filter app for Android.
Step 1: Generate a Root Certificate
You must fill in every field to generate the certificate.
In Smoothwall Cloud Filter, go to Admin Panel > Self-Service Certificates.
Select a Country from the dropdown.
-
Enter your information for each of these fields:
State/Province: For example, UK.
Locality: For example, Leeds.
Organisation: Your organisation’s name.
Common Name: Your organisation’s domain name.
(Optional) If you need to change the key size, select a Key size.
Select how many days you want the certificate to be valid for (we recommend rotating certificates every two years).
Select Generate. The Root Certificate automatically downloads to your device.
The SigningCertificate and SigningCertificateKey will appear. Copy both values for the next step.
Step 2: Add the Qoria Filter app for Android
In Google Workspace Admin Console, go to Apps > Web and Mobile Apps.
Select the Add app dropdown, then select Search for apps.
-
Search for Qoria Filter, then choose Select.
Tip
If you can’t see the app, search for com.qoria.fc.android.edu instead.
For User access, select All users in your organisation, then select Continue.
-
For Access method, select Force install and select these checkboxes:
Prevent users from uninstalling the app.
Use for Always on VPN.
Select Finish and wait until the webpage takes you to the App settings page.
In the Managed configurations section, select Add managed configuration. The Add managed configuration window will appear.
Enter "Qoria Filter app for Android" as the Configuration name.
-
Complete these fields:
Serial Id: Select Configure and add your UNCL.
-
Tenant Id:
If you have a multi-tenant setup, select Configure to enter the Tenant Id.
If you don’t have a multi-tenant setup or want to use the Default Tenant, skip this step.
Hardware Id: Select Configure and enter a string, such as your Serial number. This identifier appears in reporting. Variables are not supported.
-
User Id: Select Configure and enter a specific username or email address of a valid user.
Important
Google Workspace doesn't support Variables. Devices will have to share a username if they exist in the same OU. If devices are 1-to-1, you must set up a separate OU for each one in Google Workspace and assign the managed configuration to them.
Signing Certificate: Enter the SigningCertificate value from the certificate you generated in Step 1.
Signing Certificate Private Key: Enter the SigningCertificateKey value from the certificate you generated in Step 1.
Select Save.
If the Managed configuration section doesn't show the new configuration profile, hard refresh your webpage.
Step 3: Upload Trusted Certificate
In Google Workspace Admin Console, go to Devices > Networks.
Select which Organisational Unit you want to upload the certificate for. By default, the top-level OU (all users) is selected.
In Certificates, select Upload Certificate.
Enter a name for the Certificate, then select Upload.
Select the certificate file that was generated in step 1.
-
Under Certificate Authority, select Enabled for Android.
Note
If this setting is greyed out:
Go to Devices > Mobile and endpoints > Settings > Universal.
Select General.
Select the edit icon next to Mobile Management.
Select Custom, then select Advanced from the Android dropdown menu next to Android.
Select Save.
Select Add.
Step 4: Verify the app deployment
On your device:
Open the app and check that you see an authenticated user and your organisation name with a green tick.
Check that other non-browser apps still work correctly.
Check the last Secret Knock, or review the user’s Directory Groups or Group Mappings on the Diagnostics page.