{"id":8106,"date":"2014-02-26T10:09:31","date_gmt":"2014-02-26T09:09:31","guid":{"rendered":"http:\/\/www.itwriting.com\/blog\/?p=8106"},"modified":"2014-02-26T10:09:31","modified_gmt":"2014-02-26T09:09:31","slug":"samsung-evolving-knox-into-complete-mobile-device-management-solution","status":"publish","type":"post","link":"https:\/\/www.itwriting.com\/blog\/8106-samsung-evolving-knox-into-complete-mobile-device-management-solution.html","title":{"rendered":"Samsung evolving KNOX into complete mobile device management solution"},"content":{"rendered":"<p>Samsung introduced KNOX at the 2013 Mobile World Congress (MWC). It is a secure app and data container for Samsung mobiles, backed by hardware, enabling businesses to run apps that are isolated from a user\u2019s personal apps (which might include badly behaved or even malicious apps). Data is encrypted so that business secrets are safe if the device goes astray.<\/p>\n<p>The core of Knox is a hardware process called TIMA (Trustzone Integrity Measurement). This checks for tampering in the core operating system (trusted boot) and sets a tamper bit if it detects a problem. The tamper bit cannot be set in software alone. <\/p>\n<p><a href=\"http:\/\/www.itwriting.com\/blog\/wp-content\/uploads\/2014\/02\/image25.png\"><img loading=\"lazy\" decoding=\"async\" title=\"image\" style=\"border-top: 0px; border-right: 0px; background-image: none; border-bottom: 0px; padding-top: 0px; padding-left: 0px; border-left: 0px; display: inline; padding-right: 0px\" border=\"0\" alt=\"image\" src=\"http:\/\/www.itwriting.com\/blog\/wp-content\/uploads\/2014\/02\/image_thumb25.png\" width=\"404\" height=\"197\" \/><\/a><\/p>\n<p>A device with KNOX activated can be flipped between personal and business (KNOX) personalities. It is like having two smartphones in one. Whether this is a desirable approach is up for debate, but it does secure business apps and data.<\/p>\n<p><a href=\"http:\/\/www.itwriting.com\/blog\/wp-content\/uploads\/2014\/02\/image26.png\"><img loading=\"lazy\" decoding=\"async\" title=\"image\" style=\"border-top: 0px; border-right: 0px; background-image: none; border-bottom: 0px; padding-top: 0px; padding-left: 0px; margin: 0px; border-left: 0px; display: inline; padding-right: 0px\" border=\"0\" alt=\"image\" src=\"http:\/\/www.itwriting.com\/blog\/wp-content\/uploads\/2014\/02\/image_thumb26.png\" width=\"244\" height=\"215\" \/><\/a><\/p>\n<p>We did not hear much about KNOX after last year\u2019s MWC. It was released a few months later, but snags included limited device support (only the latest Samsung devices), the need to prepare apps with a special KNOX wrapper before they could be used, and the need to hire a Samsung partner like <a href=\"http:\/\/www.centrify.com\/\" target=\"_blank\">Centrify<\/a> to provide administration tools. <\/p>\n<p>All that has changed following last night\u2019s <a href=\"http:\/\/www.samsungmobilepress.com\/2014\/02\/25\/Samsung-KNOX-Keeps-Evolving-to-Meet-Changing-Enterprise-Needs-1\" target=\"_blank\">announcement<\/a> of the next generation of KNOX. Highlights:<\/p>\n<p>Most apps can now be installed in KNOX without any special wrapper<\/p>\n<p>You can use a third-party container such as Good, Fixmo Safezone, or MobileIron AppConnect in place of the KNOX container, but still using KNOX hardware protection.<\/p>\n<p>Two factor authentication (for example requiring a fingerprint swipe as well as a password to access a KNOX container)<\/p>\n<p>KNOX supports Microsoft\u2019s <a href=\"http:\/\/www.itwriting.com\/blog\/7710-getting-up-and-running-with-workplace-join.html\" target=\"_blank\">workplace join<\/a> (a kind of lightweight domain join) for secure access to Microsoft network resources.<\/p>\n<p>Samsung has introduced a cloud-based Mobile Device Management (MDM) tool called KNOX EMM (Enterprise Mobility Management). This runs on Microsoft\u2019s Azure platform and integrates with Azure Active Directory (which can itself link to on-premise Active Directory) so that small businesses on Office 365, or large businesses which prefer a cloud tool, can manage both Knox and other devices. EMM is primarily aimed at SMEs but apparently can scale up without limit.<\/p>\n<p>EMM will also support non-Samsung devices.<\/p>\n<p>EMM includes an app marketplace allowing businesses to purchase and deploy apps. The example we were shown was the Box cloud storage service.<\/p>\n<p><a href=\"http:\/\/www.itwriting.com\/blog\/wp-content\/uploads\/2014\/02\/image27.png\"><img loading=\"lazy\" decoding=\"async\" title=\"image\" style=\"border-top: 0px; border-right: 0px; background-image: none; border-bottom: 0px; padding-top: 0px; padding-left: 0px; margin: 0px; border-left: 0px; display: inline; padding-right: 0px\" border=\"0\" alt=\"image\" src=\"http:\/\/www.itwriting.com\/blog\/wp-content\/uploads\/2014\/02\/image_thumb27.png\" width=\"244\" height=\"136\" \/><\/a><\/p>\n<p>Availability is promised for the second quarter of 2014.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Samsung introduced KNOX at the 2013 Mobile World Congress (MWC). It is a secure app and data container for Samsung mobiles, backed by hardware, enabling businesses to run apps that are isolated from a user\u2019s personal apps (which might include badly behaved or even malicious apps). Data is encrypted so that business secrets are safe &hellip; <a href=\"https:\/\/www.itwriting.com\/blog\/8106-samsung-evolving-knox-into-complete-mobile-device-management-solution.html\" class=\"more-link\">Continue reading <span class=\"screen-reader-text\">Samsung evolving KNOX into complete mobile device management solution<\/span> <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[55,56,72],"tags":[185,531,586,599,798],"class_list":["post-8106","post","type-post","status-publish","format-standard","hentry","category-microsoft","category-mobile","category-samsung","tag-azure","tag-knox","tag-microsoft","tag-mobile","tag-samsung"],"_links":{"self":[{"href":"https:\/\/www.itwriting.com\/blog\/wp-json\/wp\/v2\/posts\/8106","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.itwriting.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.itwriting.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.itwriting.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.itwriting.com\/blog\/wp-json\/wp\/v2\/comments?post=8106"}],"version-history":[{"count":0,"href":"https:\/\/www.itwriting.com\/blog\/wp-json\/wp\/v2\/posts\/8106\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.itwriting.com\/blog\/wp-json\/wp\/v2\/media?parent=8106"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.itwriting.com\/blog\/wp-json\/wp\/v2\/categories?post=8106"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.itwriting.com\/blog\/wp-json\/wp\/v2\/tags?post=8106"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}