Back to top

Restrict device users from adding accounts

Last updated October 22nd, 2024

Categories:

Environment

  • Knox Manage
  • Android Enterprise
  • Fully managed device

Overview

There may be instances where you’re required to restrict device users from adding select account types to their managed device.

How to restrict addition of unmanaged accounts on the device?

  1. In the Knox Manage console, go to Profile.

  2. Modify your profile.

  3. Open the Android Enterprise > System policy drawer, and set the following policies:

    Policy Value
    Account Modification Allow
    Account Modification > Account Block/Allowlist Account Blocklist
    Account Modification > Account List Add your restricted account types
  4. Click Save & Assign to save your changes and assign the profile to your device group.

List of account names for common apps

The following table details a list of common account types:

Service Account type Description
Samsung Email com.samsung.android.exchange Microsoft Exchange account
com.samsung.android.email POP3/IMAP account
com.samsung.android.ldap LDAP account
Samsung com.sds.sso.agent Knox SSO Agent
com.osp.app.signin Samsung Account
com.samsung.android.coreapps Samsung Experience Service
Google com.google Google Mail account
com.google.android.gm.exchange Microsoft Exchange account by Google Mail
com.google.android.gm.pop3 Personal POP3 by Google Mail
com.google.android.gm.legacyimap IMAP by Google Mail
com.google.android.apps.tachyon Google Meet
com.google.work Managed Android Enterprise accounts
Microsoft com.microsoft.office.outlook.user_account Microsoft Outlook
com.microsoft.office Microsoft 365
com.microsoft.skydrive Microsoft OneDrive
com.microsoft.workaccount Microsoft Intune Company Portal Managed Account
com.microsoft.sharepoint Microsoft Sharepoint
com.microsoft.teams Microsoft Teams

Is this page helpful?