Knox Manage frequently asked questions
Last updated July 21st, 2026
General
Yes. You can try Knox Manage for free as part of Knox Suite - Enterprise Plan trial license. During the trial you can set up your Knox Manage tenant, organize devices into groups or organizations, and configure devices with policies and apps. The trial license is valid for 90 days and supports up to 30 devices.
Yes. Settings and data are bound to the tenant that you created during your free trial, and will carry over to your new tenant when you upgrade to a paid subscription.
Knox Manage is intended for IT admins of companies of any size in diverse business settings across industries and sectors. It helps you ensure that all device users in your company, can work efficiently, whether they’re in the office or in the field.
Yes. Your MSP can operate the Knox MSP Portal to act as your proxy for Knox Manage. A MSP can also migrate existing standalone Knox Manage tenants to the Knox MSP Portal.
With a wide range of supported operating systems, device types, and enrollment methods, Knox Manage allows you to quickly set up devices. IT admins can monitor devices before and after the transition to Knox Manage with real-time dashboards and reporting tools. Additionally, to maintain your device security configurations, Knox Manage provides hundreds of policies.
If you encounter a technical issue when using Knox Manage, first check the support resources in the documentation. See Client side errors to learn about issues you might encounter on devices, or browse knowledge base articles (KBAs) for up-to-date resolutions to known issues.
If you can’t find a resolution to your issue in the support resources, you may send the Samsung Knox team an inquiry or create a support ticket.
Enterprise customers have on-demand access to Samsung’s premium support through a paid technical support service. To learn more, visit the Samsung Enterprise Technical Support page.
Consoles
Knox Manage has two consoles: the new console and the original console. The new console has an improved interface that is easy to use and lets you quickly complete successive tasks between multiple services from a single location, the Knox Admin Portal. The original console is the original interface for Knox Manage. It’s a separate web console from the Knox Admin Portal, and does not offer the same unified experience as the new console.
The original console supports Android, iOS, iPadOS, Windows, and ChromeOS.
The new console supports Android devices.
As of 26.06, the new console is now the default console for new customers. It’s continuously being enhanced and will eventually achieve feature parity with the original console. Currently, the original console supports a broader range of settings, so if you have configured settings that are only available in the original console, those settings may be viewable but not manageable in the new console. For example, as of now, the new console only supports Android devices. If you configure non-Android devices in the original console, these devices are greyed out in the new console.
While information is synchronized when you switch between consoles, the following settings are not compatible across consoles and must be configured separately in each:
- Profiles: Profiles created in one console can’t be managed in the other.
- Kiosks: Kiosks created in one console can’t be managed in the other.
- Event profiles: Event profiles, profiles that apply settings to devices only when specific conditions are met, are functional in the original console only.
- Rules: Rules, configurations that trigger set actions on devices when specific conditions are met, are functional in the new console only.
- Dashboards: While both consoles allow admins to customize their dashboards, customizations created in one console can’t be seen or managed in the other.
Device management
For contingencies where a device is reported lost or stolen or if a device user leaves the company, Knox Manage provides the ability to remotely wipe the device.
Knox Manage provides several offline device management capabilities, including remote locking, unlocking an offline device with a code, lock screen policy enforcement, and audit and diagnostics logging.
IT admins can access some information about device users. The extent of accessible data depends on your company’s management requirements, but generally includes user contact information (such as name, email address, and phone number) and device identifiers (such as the IMEI and firmware version).
The device data accessible to IT admins also varies by each device’s management type. A fully managed device gives the IT admin full control over the entire device, while a work profile on a personally-owned device restricts the IT admin’s access to only the work profile, preserving the user’s personal data.
On this page
Is this page helpful?