Enable the Chrome Enterprise Device Trust Connector attestation flow for a list of URLs on Managed Profiles
Last updated October 8, 2024
Enable Chrome Enterprise Device Trust Connector for a list of URLs.
Setting this policy specifies for which URLs Google Chrome will offer to start the attestation flow for managed profiles. The latter allows those websites to get an attested set of context-aware signals from the device.
This policy can only be configured via the Chrome Enterprise Connectors page on the Google Admin console.
Leaving this policy unset or empty means that no website will be able to start a user-level attestation flow and get signals from the device. However if the corresponding
BrowserContextAwareAccessSignalsAllowlist policy is enabled then the attestation flow can be started for the managed browser and device signals can be collected.
For Google ChromeOS, this policy is related to remote attestation where a certificate is automatically generated and uploaded to the server. For usage of the attestation flow on the device's login screen, please use the DeviceLoginScreenContextAwareAccessSignalsAllowlist policy.
For detailed information on valid URL patterns, please see https://support.google.com/chrome/a?p=url_blocklist_filter_format.