Introduction
Device Lock is a secure, passwordless authentication app for Android devices that allows users to access their devices using Facial Recognition, Badge ID, QR Code, NFC ID, or PIN. It enhances security, streamlines user experience, and supports multi-factor authentication in enterprise environments.
Prerequisite
User must have a Tenant Admin account.
Steps to create and configure DeviceLock Application
Log in to the Oloid Tenant Admin Portal. For more details refer How to log in to Tenant Admin Portal.
On the Applications page, click Create Application in the top right corner.
The Create New Application pop-up box is displayed.
Do the following:
Configure the following:
Note: These are one-time settings, and all the default settings are recommended.
Configure Details tab
Go to Details tab and do the following:
Update Application Name (if required).
Add Description. (Optional)
Select Factor Sequence from the drop-down list.
To create and configure Factor Sequence refer to How to create and configure Factor Sequence.
Set Time Zone from the drop-down list. (Optional)
Click Save.
The Details tab is successfully configured.
Configure Authenticator tab
Go to Authenticator tab and do the following:
Face
Turn on Face toggle, to use face as credential.
Select the preferred mode for facial recognition from FR Mode dropdown list.
The Advanced Settings page is displayed.
Configure the Face Match Parameters and Liveness Check Parameters on the Advanced Settings page.
Note: The parameters are pre-configured. This is done by Oloid admin.
Turn on Strict Error Handing toggle to ignore the face match error and perform one-to-one face match.
Note: If a Face Match error occurs, it will be ignored, and a one-to-one facial comparison will still be performed.
Turn on Additional face Match toggle to perform a one-to-one face match in addition to the regular Face Match.
Adjust the slider or enter a value directly into the input box to set the Face Match Threshold value. (for Oloid internal use)
Note: It defines the required level of similarity between two facial images within the same connection. A higher threshold ensures stricter matching accuracy.
Adjust the slider or enter a value directly into the input box to set the Min. Liveness Probability. (for Oloid internal use)
Note: This is the factor to decide if the image is live or spoofed. The threshold for the image to be considered live is 0.5.
Adjust the slider or enter a value directly into the input box to set the Min. Liveness Quality. (for Oloid internal use)
Note: It defines how "appropriate" the image is for the liveness check. The threshold for good image 0.1.
Click Save.
The Face credential is successfully configured.
Badge ID
Turn on Badge ID toggle, to use Badge ID as credential.
Select a Badge Type from the dropdown list.
Note: To enable multi-factor authentication, first activate Badge ID, then enable PIN as an additional authentication factor.
Click Save.
The Badge ID credential is successfully configured.
QR Code
Turn on QR Code toggle, to use QR Code as credential.
Note: Enable QR Code and then enable PIN for multi-factor authentication.
Turn on Show Camera Flip Button toggle.
Note: Enabling this toggle will show a camera flip button on the QR code screen, allowing users to switch between the front and rear cameras.
Select the Default camera selection from dropdown list.
Click Save.
The QR Code credential is successfully configured.
PIN
Turn on PIN toggle, to use PIN as credential.
The PIN credential is successfully enabled.
NFC/ID
Turn on NFC/ID toggle, to use NFC/ID as credential.
Note: Enable NFC/ID, and then enable PIN for multi-factor authentication.
The NFC/ID credential is successfully enabled.
Note: You can enable one or more credential options based on your requirements.
Configure Theme tab
The Theme tab allows you to customize the appearance of the Device Lock application by following the onscreen instructions. For more details, see How to configure theme in Device Lock App
Setup Configure tab
Go to Configure tab and do the following:
Configure Settings tab
Turn on Enable Offline Mode toggle to allow endpoint transactions to be processed even when there is no network connectivity.
Turn on Use Group Authorization toggle to restrict endpoint access to users within the same group associated with the endpoint connected to the application. This ensures that only users in the specified group can authenticate, both online and offline.
Turn on Enable Auto Authentication of Webkey using Local Transaction toggle to allow user to auto-authenticate the user into Webkey after device login.
Turn on Enable Screen Timeout toggle to turn off the screen after inactivity.
Set Server Response Ping Timeout to define how long the Endpoint should wait for a reply from the server before switching to Offline Mode if no response is received.
Set Authentication Timeout to define how long the system will wait for the user to begin the authentication process before redirecting them back to the first screen.
Note: The default authentication timeout is 10 seconds.
Set the Master Admin Override Passcode to exit the Device Lock app when the device is in Kiosk mode and/or no internet connection is available.
Select Endpoint Template from dropdown list to apply during the endpoint pairing process.
Turn on Show Clock on Intent/Auth Screens toggle to display clock on all the Intent, Authentication selection and Identity screens.
Click Save.
The Setting menu is successfully configured.
Customize Messages
Turn on Enable Action Status Messages toggle to display the action status of the user's face authentication. You can customize the messages your user sees on the Device Lock app.
Select Show default messages from the integration to display the integration's predefined messages. (Optional)
Select Auto-dismiss the error prompt after and set the preferred time (in seconds)
Note: The default auto-dismiss time is 5 seconds.
Enter the Action Initialization Message in the text field.
Enter Action Success Message in the text field.
Enter Action Failure Message in the text field.
Edit Authentication Failure Error Message field (Optional).
Click Save.
The Customize Message menu is successfully configured.
Configure Passwordless
Turn on Enable Passwordless Config toggle to switch the endpoint's functionality to Device Lock Mode or Passwordless Login.
Note: Once enabled, the endpoint will no longer support features like time clocking or reviewing punch data.
Do one of the following:
Device Lock Mode: Enabling this toggle switches the endpoint to Device Lock mode. The device screen unlocks after successful authentication.
Passwordless Login: Select this option to enable the endpoint for Passwordless login and redirect the user to the configured URL after successful authentication.
Do one of the following:
Passwordless SSO URL:
Turn on Passwordless SSO URL toggle.
Enter all the URLs in the Logout URL field that should be logged out automatically before a new user logs in.
Workday Punch Integration:
Turn on Workday Punch Integration toggle.
Enter the URL to which the Login is enabled for the linked Endpoint.
Set the desired Timeout duration (in minutes and seconds) after which the screen automatically times out.
Click Save.
The Configure Passwordless menu is successfully configured.
Customize Buttons tab
Edit the Button Label in the text field.
Note: The default is 'Verify with <Credential Name>'.
Select Enable Face Enrollment option to add it on the login page of the Device Lock app.
Edit the Button Label. (Optional)
Do any one of the following:
Select URL for Web-HR picture verification.
OR
Select URL for User Portal.
OR
Select Custom Redirect URL > enter URL in the text field.
Select Enable Custom Button option to add a button with customized button label and add redirect URL on the login page of Device Lock application.
Enter Button Label. (Optional)
Enter Enroll URL. (Optional)
Click Save.
Application configuration is updated successfully.
Configure Health Setup tab
Go to Health Setup tab and do the following:
Enter Server Name in the text field.
Enter URL in Add URL that needs to be monitored in the text field.
Click Add.
Configure Connections tab
Connection is a collection of multiple users. Go to Connection tab and do the following:
Click + Add Connections to add a connection to the application.
The Add Connections pop-up box is displayed.
Select connection(s) from the Select Connection dropdown list
Click Add.
Note: An application can have a maximum of 5 connections.
The Connection is successfully added to the application.
Configure Integrations tab
Go to integration tab and turn on Enable Integrations to perform cloud based actions toggle.
Note: Click Save after each action to save your configuration.
The Integration tab is successfully configured.
The Device Lock application is configured and listed on the Application page.
Keywords
| Configure Device Lock App | Create DeviceLock Application |












































