Secure Your Android Device with Samsung KNOX for Ultimate Data Protection
Note: This post was first published on Dec 10, 2013.
As bring your own device (BYOD) policies become more popular among enterprises and their employees, issues related to data security and confidentiality are becoming increasingly important. Historically, Android has been perceived as a less secure platform than iOS or Blackberry. However, Samsung aims to change this with its new security service, KNOX.
Samsung KNOX is a high-level security system designed to make Samsung smartphones as enterprise-ready as competing offerings from Apple and Blackberry. KNOX creates a separate instance of Android on your phone that is protected by multiple security features.
This instance, the KNOX Container, is completely separate from your personal space, ensuring that the two never come into contact. Your business data and apps will thus be protected from leaks and remain secure in case of phone loss or theft.
Getting Started
KNOX isn’t available as an .APK or a download from the Play Store. If your device doesn’t come pre-installed with KNOX, you’ll need to download and install Samsung’s Android 4.3 Samsung Premium Suite, which adds KNOX support.
If you haven’t received this update yet, you can check for it by going to Settings > More > About Phone > System Update > Check for Updates.
Once you have downloaded and installed the Android 4.3 update, you will find a KNOX icon in your app tray. Tap on it and you’ll be prompted to download and install the KNOX app itself.
After downloading and installing KNOX from the app tray icon, you will be asked to set a password and PIN number for your container.
KNOX’s Security Features
The KNOX Container is a separate Android installation with its own homescreen, apps, widgets, and data. It also includes security-related limitations such as disabling screenshots within KNOX and supports mobile device management (MDM) suites like AirWatch and Fiberlink. This support allows device administrators to control the apps and functions available within the KNOX Container.
All data within the KNOX Container is encrypted using the Advanced Encryption System (AES) algorithm with a 256-bit key. Additionally, KNOX includes three key security features:
- Customizable Secure Boot â manages the apps that start on boot,
- Security Enhancements for Android â isolates data and apps,
- TrustZone-based Integrity Measurement Architecture (TIMA) â secures the device’s kernel.
Using KNOX
You can access the KNOX Container from your personal Android space in two ways: tap the KNOX icon in your app tray or swipe down the Notifications Bar and tap the notification bar icon labeled Tap to start.
The first time you log in, you’ll be prompted to enter the password you set during the installation. KNOX includes a password timeout feature (customizable in the Settings menu) that allows you to skip re-entering your password when switching quickly between KNOX and your personal space.
To log out, you can tap the Personal icon in the lower left corner of the KNOX homescreen, or swipe down the Notifications Bar and tap the KNOX icon labeled Tap to exit.
KNOX Apps
The KNOX Container comes with several pre-installed apps such as Camera, Email, Internet, and S-Planner. Samsung also offers a special KNOX-specific app store, “Samsung KNOX apps,” where you can find KNOX-compatible versions of popular apps like Dropbox, OfficeSuite Viewer 7, Evernote, Box, and more. See the full list of apps here.
All of these apps only function within the KNOX Container and remain separate from the apps in your personal space. This means any data entered into or captured by these apps will only be accessible within KNOX.
You can also add shortcuts for any of these KNOX apps to your personal homescreen for quick access without first switching to the KNOX Container.
Limitations
There are a few limitations to KNOX:
- KNOX is only available for Samsung devices that receive the Android 4.3 Samsung Premium Suite Upgrade.
- If you have rooted your Samsung device, it’s best to avoid using KNOX. It will detect if your phone has been rooted, and if it has, KNOX will void your warranty. This is by design to protect your sensitive business data.
- The applications available in the KNOX app store are somewhat limited.
Conclusion
Overall, Samsung’s KNOX is an intriguing and useful security solution that will appeal to enterprise owners and their employees, particularly those operating in a BYOD environment. Its KNOX Container ensures that work and personal data remain separate, and the various security features help keep data secure in any eventuality.
If the features and functionality of KNOX are anything to go by, it looks like there’s a new player in the enterprise-ready mobile device market.