Enable Device Trust for Co-Administrators as Well
Under the current specification, device trust is not applied to administrators and co-administrators to prevent them from being accidentally locked out of the management console.
Because co-administrators have higher privileges than regular users, they can freely access the console from personal PCs and other unmanaged devices, which raises concerns about the risk of information leakage.
From a security perspective, we would like to request the implementation of a feature that allows administrators to choose whether to apply device trust to co-administrators (“enable” or “disable”).
件名:共同管理者に対してもデバイストラストを適用可能にする
内容:現状の仕様は、管理者・共同管理者は誤って管理コンソールからロックアウトされないために、デバイストラストが適用されません。
共同管理者は一般ユーザーより強い権限を持つため、私物PCなどから自由にアクセスできる状態となっており、情報漏えいリスクを懸念があります。
セキュリティの観点から、デバイストラストを共同管理者にも適用を"する" or "しない" の選択可能となる機能の実装を要望します。