Device Management and MDM
Your MDM manages the smartphone. The smart glasses are a wired accessory to that phone, so they are never enrolled and never need a policy of their own.
This page explains where the line sits, so your IT team knows exactly what falls inside their existing device management and what does not.
Why the glasses are not a managed device
Iristick smart glasses connect to the phone over a cable, either directly by USB-C (Iristick.G3) or through a pocket unit (Iristick.G2 PRO and Iristick.H1). They have no operating system of their own, no user account, no Wi-Fi or mobile connection, and no app store. There is nothing for an MDM agent to install onto and no independent network path to control.
That is not a gap in coverage. The app, the sign-in, the network connection and the captured data all live on the phone, so the policies you already enforce on the phone govern what the glasses can do. Lock the phone and the glasses do nothing. Wipe the phone and there is no Iristick data left on the pair.
| What your MDM covers | Why the glasses fall outside it |
|---|---|
| Installing and updating the Iristick app | Nothing installs on the glasses. They run as a camera and display peripheral of the phone. |
| Sign-in, tokens and credentials | Held by the app on the phone. The glasses hold no accounts and no credentials. |
| Photos, video and collected data | Handled by the app on the phone. The glasses pass data through, they are not a storage device. |
| Network access, VPN, conditional access | The glasses have no radio and no IP address. All traffic is the phone's traffic. |
| Passcode, encryption, remote lock and wipe | Applies to the device that holds the data. The glasses are inert without a phone running a licensed app. |
| App permissions such as camera and microphone | Granted on the phone to the Iristick app, which then drives the glasses hardware. |
| Software updates | Delivered as app updates on the phone. Glasses firmware ships inside those updates, so there is no separate update channel to manage. |
Glasses are tracked by serial number for licensing, not by enrollment. The app validates the serial at sign-in, which is a licensing check rather than a device management action.
Firmware follows the app
Glasses firmware ships as part of the Iristick app. When the app updates on the phone, whether from the store or pushed by your MDM, the firmware it needs comes with it. There is no separate firmware channel, no update server to reach and no maintenance window to schedule for the headsets. Controlling which app version is live on your phones is therefore the same thing as controlling which firmware your fleet runs.
Nothing is stored on the glasses
The glasses hold no captured data. Images, video and collected records are handled by the app on the phone and never persist on the headset, so a headset that leaves the site carries nothing with it. It is also why glasses can be shared between workers and shifts without a wipe step in between.
Do you need an MDM?
Never for the glasses. For the smartphone it depends on which deployment you run.
MDM is optional. The apps come from Google Play and the App Store and install like any other app. A phone with no management at all works exactly the same.
Most organizations still use an MDM here because it makes a fleet easier to run:
- Push the app to every phone instead of asking fieldworkers to install it
- Control which version is live and when it updates
- Run the phone in kiosk or dedicated device mode so only the Iristick app is reachable
- Apply your standard passcode, encryption and network policy to the phone
None of this changes how the glasses behave. It is ordinary phone management.
MDM is required, and it does more than deliver the app. Self-hosted uses the same public Iristick.Teams apps from the app stores. What makes the deployment self-hosted is a managed configuration that your MDM pushes to the app, supplying the parameters that point it at your own Azure environment. Without that configuration the app cannot sign in or place calls.
This requirement still applies to the smartphone only. The glasses are unaffected by it and remain outside your MDM in exactly the same way.
Details: Enterprise Setup and OOTB vs Self-Hosted.
Which MDM systems work
Any MDM that supports Android Enterprise managed configuration or iOS managed app configuration. Microsoft Intune, VMware Workspace ONE and SOTI MobiControl are all in use with Iristick deployments. There is no Iristick-specific connector, agent or enrollment profile to install, and no custom management platform to learn.
If you are unsure whether your setup can deliver a managed configuration to the Iristick.Teams app, contact us before you order the self-hosted package.
Related
- How It Works covers the smartphone-powered design behind this
- Phone Compatibility lists the device requirements your managed phones need to meet
- Permissions, Data & Security for the Iristick.Teams tenant detail