home

Mobile Endpoint Security

Lookout Product Documentation

Find answers about using and optimizing Lookout products.

Creating an API Role and User in Workspace ONE

As a best practice, Lookout encourages customers to use an API administrator user that you create specifically for the integration between Lookout and Workspace ONE. This ensures transactions related to the integration are associated to a single user/password credential.

If you use a password for API user authentication, note that any password complexity and expiration policies apply as usual. For more information on passwords in VMware Workspace ONE, see Admin / Console Security / Passwords in the VMware documentation.

  1. Login to the Workspace ONE UEM Console using your administrator account.
  2. In the left pane, navigate to Accounts > Administrators > Roles.
  3. Click +Add Role.
    The Create Role page displays.
  4. Enter the role name Lookout_API_User and a description.
  5. Under Categories expand API and select Rest, then check the following:
    ReadEditCategoryNameDescription
    RESTAdminREST APIs for admin accounts
    RESTAppsREST APIs for applications
    RESTDevicesREST APIs for device management
    RESTGroupsREST APIs for group management
    RESTUsersREST APIs for enrollment user accounts
  6. Under Categories expand Device Management and click Bulk Management, then check the Edit column:


  7. Scroll down and expand Settings, then click Tags and check both Read and Edit columns:


  8. Click SAVE.
  9. In the left pane, navigate to Accounts > Administrators > List View.
  10. Click Add > Add Admin.
    The Add/Edit Admin page displays.
  11. On the Basic tab, enter the Username Lookout_API_User and values for all other required (*) fields for this Lookout admin user.

    Lookout sends all Workspace ONE Connector events to the Email Address you enter here.

  12. Click the Roles tab, then click Select Role and enter your new Lookout_API_User role:


  13. In the Select Organization Group field, enter your main Workspace ONE organization group.
  14. Click Save.