- *BASICS*
- The Knox Ecosystem
- White Paper
- Samsung Knox Portal
- Knox Cloud Services
- General Knox Support
- Knox Licenses
- *FOR IT ADMINS*
- Knox Admin Portal
- Knox Suite
- Knox Platform for Enterprise
- Introduction
- How-to videos
- Before you begin
- Get started with UEMs
- Introduction
- Blackberry UEM
- Citrix Endpoint Management
- FAMOC
- IBM MaaS360
- Microsoft Intune
- MobileIron Cloud
- MobileIron Core
- Samsung Knox Manage
- SOTI MobiControl
- VMware Workspace ONE UEM
- Knox Service Plugin
- Release notes
- Migrate to Android 11
- FAQs
- Troubleshoot
- KBAs
- Knox Mobile Enrollment
- Introduction
- How-to videos
- Get started
- Features
- Register resellers
- Add an admin
- Create profiles
- Google device owner support
- MDM compatibility matrices
- Device users
- Activity log
- Enroll and unenroll devices
- Configure devices
- Provide KME feedback
- Use the Knox Deployment App (KDA)
- Recover Google FRP locked devices using KME
- Role-based access control (RBAC)
- Release notes
- FAQs
- Troubleshoot
- KBAs
- On-Premise
- Knox Configure
- Mobile
- Wearables
- Shared Device
- KBAs
- Knox Capture
- Introduction
- How it works
- How-to videos
- IT admins: Get started
- Getting started with Knox Capture
- Step 1: Launch Knox Capture
- Step 2: Create a scanning profile
- Step 3: Select apps and activities
- Step 4: Configure the scanner
- Step 5: Set keystroke output rules
- Step 6: Test apps in your configuration
- Step 7: Share your configuration
- Step 8: Deploy Knox Capture in Managed mode
- End users: Get started
- Features
- Release notes
- FAQs
- Troubleshoot
- Knox Asset Intelligence
- Knox Manage
- Introduction
- How-to videos
- Get started
- Video: Getting started with Knox Manage
- Integration with Managed Service Provider
- Access Knox Manage
- Configure basic environments
- Create user accounts
- Create groups
- Create organization
- Set up devices and profiles
- Set up Knox Manage deployment with a Knox Suite license
- Manage Chromebooks
- Manage Android devices with the Android Management API
- Manage Shared iPads
- Configure
- Licenses
- Organization
- Users
- Sync user information
- Groups
- Devices
- Content
- Applications
- View applications
- Add applications
- Introduction
- Add internal Android and iOS applications
- Add internal Windows applications
- Add public applications using Google Play Store
- Add public applications using iOS App Store
- Add public applications using Managed Google Play
- Add public applications using Managed Google Play Private
- Add public applications using Managed Google Play Store Private Web
- Add public applications using Microsoft Store
- Add Chrome OS applications
- Assign applications
- Introduction
- Assign internal Android and iOS apps
- Assign iOS App Store applications
- Assign Google Play applications
- Assign Managed Google Play applications
- Assign Managed Google Play Private applications
- Assign Managed Google Play public web apps
- Assign Windows applications
- Assign Chrome OS applications
- Manage applications
- Volume Purchase Program for iOS
- Profile
- Knox E-FOTA
- Certificates
- Advanced settings
- Monitor
- Kiosk devices
- Knox Remote Support
- Active Directory
- Microsoft Exchange
- Mobile Admin
- Appendix
- Release notes
- Features
- FAQs
- KBAs
- Knox E-FOTA
- Introduction
- How-to videos
- Get started
- Features
- EMM integration
- Appendix
- Release notes
- FAQs
- KBAs
- Troubleshoot
- Knox E-FOTA On-Premises
- Legacy Knox E-FOTA products
- Knox Guard
- Introduction
- How-to video
- Get started
- Using Knox Guard
- Dashboard
- Manage devices
- Introduction
- Accept or reject devices
- Upload devices
- Delete devices
- Complete payment
- Send payment overdue notification
- Enable or disable SIM control
- Download devices as CSV
- View device log
- View device deletion log
- Start and stop blinking reminder
- Lock and unlock devices
- Update lock message
- Send relock timestamp
- Turn on/off relock reminder
- Manage policies
- Manage licenses
- Manage resellers
- Manage admins and roles
- Activity log
- Knox Deployment App
- Release notes
- FAQs
- KBAs
- Support
- Samsung Care+ for Business
- *FOR RESELLERS*
- Knox Deployment Program
- *FOR MANAGED SERVICE PROVIDERS*
- Knox MSP Program
KC (KCS 1.27) release notes — December 4th 2019
1. Additional profile configuration settings
Continuing with this release, Knox Configure is providing admins additional schema-driven updates to remotely configure, change and manage device settings. These additional profile configuration settings are unique to Samsung device models, and are not provided by Android Enterprise. These additional profile configuration settings are available to Normal, Setup and ProKiosk profiles.
These additional profile configuration settings are only available to devices running Knox version 3.4 and above. Supported devices are exposed to these additional profile configuration settings within the existing Home & lock screen, Sound & display, Device connectivity, Device settings, and Security settings profile configuration categories.
2. Enhanced battery and power management settings
Admins have requested better Knox Configure battery life options to provide their device users an experience that avoid loops due to low remaining battery life.
With this release, an admin now can set a limit when the device battery stops charging once it reaches a maximum setting of 85% total power.
This new setting is available within the Device settings portion of the profile configuration screen flow and is available to tablets devices only running Knox version 3.4 and above. This enhancement helps admins better control battery thresholds while also providing a maximum charge setting of 85% to avoid issue associated with keeping the tablet on its charger too long.
3. EAP now available for wearable devices
Customers are currently unable to deploy wearable devices in areas where enterprise Wi-Fi is required for internal communication. Requesting customers want to connect to a staging profile, deploy a profile, exit Kiosk mode on the wearable, authenticate into an Enterprise Wi-Fi (EAP-PEAP), pull-down a certificate, then re-deploy a Kiosk supported profile. However, this is not practical for deployments supporting thousands of wearable devices.
To remedy this issue, an admin can now create a profile and set its Advanced Wi-Fi setting's security type to 802.1x EAP (using either PEAP or TTLS). Once the admin associates target devices to this profile, they configure the deployment area's AP resource with 802.1x EAP as a hidden state. The admin then verifies that the configured devices have Wi-Fi connectivity.
The implementation of this feature affords administrators the ability to provision large numbers of EAP Wi-Fi supported wearable devices at once time and save a substantial amount time and money in the process.
4. Download profile summary as a PDF
To date, admins have requested the ability to download profile settings in PDF to review profile settings. Such admins report that a PDF provides an easier means to both review settings and use the output to create profiles in other accounts.
With this release an authenticated user can now download profile summary settings in PDF. The PDF output closely resembles the KC profile summary page displayed once a profile is configured and saved. A profile PDF can be generated from either the Profile configuration dashboard or the bottom of the Profile summary once the profile configuration is configured. The PDF does not exceed 5 MB, and has a UTC timestamp of the time it was downloaded.
This enhancement affords admins an easier means to access profile configuration settings when creating profiles for other accounts, thus saving time and money.
5. Re-assign devices to current license after renewal
To date, when a Knox Configure license expires, a profile is unassigned from its assigned device. However, customers often want to renew their existing license used by deployed devices, but when the license is renewed, customers are unable to re-assign their devices. Additionally, when an unassigned device is assigned a profile using a renewed license, the devices are consuming new seats even though they have activated the license before.
To remedy this license utilization issue, devices no longer consume new license seats when re-assigned to profiles using the same license. However, devices need to be manually selected within the KC console and re-assigned the license.
This enhancement enables customers to re-assign their unassigned devices to a profile and reuse a renewed license without consuming additional license seats, saving both time and money.
6. WebKiosk mode default inactivity timeout
To date, there is no inactivity threshold to terminate a WebKiosk session and reduce exposure of sensitive user information when a Kiosk user does not properly end their session. To avoid the exposure of sensitive information, admins require a short inactivity value to close an open WebKiosk browser session and reduce the window sensitive financial information is exposed.
To reduce this exposure window, a WebKiosk browser session is now invalidated, closed, and reset to the home screen after 5 minutes of inactivity without an admin having to pre-define an inactivity timeout manually for the Kiosk supported profile.