Generate your profile first: App → Settings → MDM → VMware Workspace ONE
downloads
inviolet-extension.ws1.xml with your org_id, enrollment_token,
and config_signature already substituted. See the
MDM overview for what the payload contains.Prerequisites
- Workspace ONE UEM administrator access
- The generated
inviolet-extension.ws1.xmlfrom Settings → MDM - A pilot smart group
Custom Settings profiles are platform-scoped — create one profile for
Windows and a separate one for macOS if you manage a mixed fleet.
Windows
Create a Custom Settings profile with two OMA-URI entries from the generated document:ExtensionInstallForcelist— force-installs the Inviolet extension (Edge).ExtensionSettings— the managed-config JSON carryingorg.inviolet.extension.
macOS
Create a Custom Settings profile and paste the embedded plist payload from the generated document (thecom.google.Chrome.extensions.<id> →
org.inviolet.extension dictionary).
Assign + verify
Assign to a pilot smart group, then broaden. On a target device openchrome://policy/ or edge://policy/ and confirm the force-install and
managed-config entries are present. The extension then enrolls into your tenant.
Read next
- MDM overview — the managed-config schema and identity modes
- Microsoft Intune · Jamf Pro · Kandji