Configure App Logout Methods at Device Check In
Mobile Access Management supports the logout from many commonly used apps. MAM also allows you to add your own custom integrations.
Apps Supporting Mobile Access Management
Imprivata maintains a list of apps supporting Mobile Access Management.
Add a New App Logout
To add a new app logout:
-
In the MAM console, go to Admin > Check In > App Logout.
Your organization's configured app logout schemes are displayed.
-
Click Add App to add a new app with a logout action.
-
Select either Android app or iOS app. Specify the following information:
-
App Name: This field is for your own purpose, but Imprivata recommends using both the app developer and app name to uniquely identify the app.
-
Logout Method: Set this according to the logout method supported by your app and your device OS (iOS or Android).
Logout Method Device OS Notes Force quit app iOS Enter the app identifier (package name) in the App Identifier (Package Name) box. Universal Link Callback iOS Enter a URL to the app’s associated domain in the Logout URI box.
The URL must begin with "https://" and should include the path to the app’s logout action.
IMPORTANT:Do not include "ulc-success" or "ulc-failure, because MAM will add these as needed.
x-callback-url -
iOS
-
Android
Enter the URI to the app’s logout callback in the Logout URI box.
The URI will not begin with
https://, but with a URI scheme specific to the app, such asyour-app://x-callback-url/….Do not include "x-success" or "x-failure" because MAM will add these as needed.
Interapp callback iOS Enter the app name and not
https://in the Logout URI box.The Interapp callback URI must include the string "[CALLBACK]" somewhere in your URI. MAM replaces that token with an appropriate callback URL.
Clear app data Android Enter the app identifier (package name) in the App Identifier (Package Name) box. Clear app cache Android Enter the app identifier (package name) in the App Identifier (Package Name) box. Force stop app Android Enter the app identifier (package name) in the App Identifier (Package Name) box. Clear cache and stop Android Enter the app identifier (package name) in the App Identifier (Package Name) box. -
-
-
After you add the new app logout, select the option in your Workflow's Check In actions.
Built-in apps can be removed from your Check In actions to keep the list short and applicable only to apps used in your environment. They can easily be re-added by selecting + from the Apps Removed from Check In workflows section.
Define the Check In Device Actions
The options available for Check In Device actions depend on the platform of your devices (iOS or Android) and the Workflow Model you select.
For iOS devices, the Check In Device workflow action launches the Imprivata Locker app, locks the device, and sets the device status to "Checked In".
To define the Check In device actions for iOS devices:
-
In the MAM console, go to Workflows and create or edit an iOS Workflow.
-
In the Add an action menu, select Check In Device.
-
Configure the following settings as needed:
-
Disable Local Keychain: This setting disables the local keychain to prevent users from inadvertently storing passwords on the device.
Requires MAM Launchpads running 7.0 or later.
This setting is enabled for all new and existing workflows.
-
Logout Actions: Select the apps to log out before MAM locks the device.
-
Launch a Blank Page Before Check In: This setting improves the reliability of the device locking process for some iOS versions. In newly created Workflows, this setting is not selected.
-
For devices running iOS 27.x, do not select Launch a blank page before Check In.
-
For devices running iOS 26.x, select Launch a blank page before Check In.
-
If you deploy an app allowlist from your MDM, add the 'com.apple.webapp' built-in iOS app.
-
-
For Android devices, the Check In Device workflow action launches the Imprivata Locker app, locks the device, and sets the device status to "Checked In".
-
In the MAM console, go to Workflows and create or edit an Android Workflow.
-
In the Add an action menu, select Check In Device.
-
Configure the following settings as needed:
-
Clear Web Browser Cache: Clears the device's browser cache and closes any open browser windows.
-
Logout Actions: Select one or more apps to log out.
Imprivata maintains a list of apps supporting Mobile Access Management for Android.
-


