What's changed: Created Associate Google Workspace Administrator Chapter 5 (Domain 5 "Browsers/endpoints": Chrome browser management = Chrome Browser Cloud Management/centralized policy/extension allow-block-force-install; endpoint management = basic/advanced, company-owned/BYOD, screen lock/encryption/remote wipe/account wipe, mobile app management).
5.1Chrome browser management
Understand centralized policy with Chrome Browser Cloud Management, allowing/blocking and force-installing extensions, browser security settings, and differentiating policy per OU.
Much work happens in the browser, making Chrome an important management target. With Chrome Browser Cloud Management, apply organizational policy centrally to many browsers.
5.1.1Centralized policy
Chrome Browser Cloud Management distributes Chrome policies centrally from the Admin console (startup pages, sync, Safe Browsing, enabling/disabling features). Many policies are differentiated per OU. By enrolling browsers into the org, you gain visibility into version/state and can govern them. Map "centrally distribute Chrome policy = Chrome Browser Cloud Management."
5.1.2Managing extensions
Because extensions can be risky, govern adoption via allow/block (allowlist/blocklist) and distribute required ones with force-install. Restricting high-permission extensions reduces data-exfiltration and malware risk. Map "push required extensions to everyone = force-install" and "prevent dangerous extensions = blocklist/allowlist."
Continue reading — free sign-up
You're reading the free preview. Sign up free to read this section in full, plus every chapter (including 4+) and all questions.

