Security
Allow take screenshots
Policy defines if the user may take screenshots.
Allow Bluetooth tethering
Policy determines whether the device can share mobile data transfer with other devices using Bluetooth. If the policy is disabled, the user cannot change this setting. Policy requires Knox Standard SDK 2.0.0.
Allow USB tethering
Policy determines whether the device can share mobile data transfer with other devices using USB. If the policy is disabled, the user cannot change this setting. Policy requires Knox Standard SDK 2.0.0.
Allow Wi-Fi tethering
Policy determines whether the device can share mobile data transfer with other devices using Wi-Fi Hotspot. If the policy is disabled, the user cannot change this setting. Policy requires Knox Standard SDK 2.0.0.
Allow developer mode
Policy determines whether the user can enable Developer Mode. If the policy is disabled, Developer Mode returns to the default settings. Policy requires Knox Standard SDK 5.0.0.
Allow USB debugging mode
Policy defines the use of USB debugging mode. Policy requires Knox Standard SDK 2.0.0.
Require fast device encryption
Policy determines whether the user can use the device’s fast encryption option. Encryption will be accelerated, but only limited data will be encrypted. Policy requires a security password.
Allow SD card
The policy determines whether the user can use an external SD memory card. If the policy is disabled, the user and system administrator will receive information about the device’s incompatibility with the company’s policies.
Require SD card encryption
Policy forces the external SD memory card to be encrypted if supported by the device. Policy requires Knox Standard SDK 2.0.0.
Allow take screenshots
Policy defines if the user may take screenshots.
Allow Bluetooth tethering
Policy determines whether the device can share mobile data transfer with other devices using Bluetooth. If policy is disabled, the user cannot change this setting. Policy requires Knox Standard SDK 2.0.0.
Allow USB tethering
Policy determines whether the device can share mobile data transfer with other devices using USB. If policy is disabled, the user cannot change this setting. Policy requires Knox Standard SDK 2.0.0.
Allow Wi-Fi tethering
Policy determines whether the device can share mobile data transfer with other devices using Wi-Fi Hotspot. If policy is disabled, cannot change this setting. Policy requires Knox Standard SDK 2.0.0.
Allow developer mode
Policy determines whether the user can enable Developer Mode. If the policy is disabled, the Developer Mode returns to the default settings. Policy requires Knox Standard SDK 5.0.0.
Allow USB debugging mode
Policy defines the use of USB debugging mode. Policy requires Knox Standard SDK 2.0.0.
Require fast device encryption
Policy determines whether the user can use the device’s fast encryption option. Encryption of the device will be accelerated, but only limited data will be encrypted. Policy requires a security password.
Allow SD card
The policy determines whether the user can use an external SD memory card. If the policy is disabled, the user and system administrator will receive information about the device’s incompatibility with the company’s policies.
Require SD card encryption
Policy forces the external SD memory card to be encrypted if supported by the device. Policy requires Knox Standard SDK 2.0.0.
Allow the user to deactivate the MDM agent
The policy determines whether the user can deactivate the device from the MDM agent.
Allow operating system updates
Policy determines whether the user can perform an operating system update. Policy requires Knox Standard SDK 3.0.0.
Allow Factory Reset
The policy allows resetting the device to factory settings.
Allow firmware recovery
Policy determines whether the user can start recovery mode to restore the operating system. Policy requires Knox Standard SDK 5.0.0.
Allow installation of non-Google Play apps
Policy determines whether a user can install apps other than from the Google Play store. If the policy is disabled, the user cannot change this setting on the device. If enabled, the user can access the interface allowing installs of non-Google Play store apps. Policy requires Knox Standard SDK 2.0.0.
Allow clearing of application data
Policy allows clearing Proget app data. Clearing the data will disconnect the device from the system.
Allow the user to de-activate the device administrator for the Proget application
The policy determines whether the user can deactivate the device administrator for the Proget application in device settings. If disabled, the user cannot deactivate the necessary rights for the Proget application and then disconnect the device from the MDM server.
Allow using two SIM cards at the same time
Policy determines whether you can use two SIM cards at the same time if the device supports two SIM card slots. If turned off, the device will be blocked until the second SIM card is removed. Not supported since Android 10.0.
Force device periodically connection to the server
Policy determines whether the device must connect to the MDM server at a specific time interval. Enabling this policy forces the device to contact the server periodically. The date of the last connection will be saved on the server each time.
Maximum time to lock
Policy sets the maximum time for user activity until the device locks. This limits the length that the user can set in device settings.
Time to lock (in minutes)
Action after exceeding the inactivity time
Policy determines whether a defined action should be taken (Clear device data or Clear company data) after a specified period of inactivity. Action will be taken automatically if the last contact of the device with the server exceeds the defined inactivity time.
Inactivity time (in days)
Action
Block the SIM card with the PIN code for slot 1
Policy defines whether the device should save a permanent PIN code to unlock the SIM card for slot 1. Turning on a permanent PIN will block the company’s SIM card usage on another device.
PIN code for slot 1
Block the SIM card with the PIN code for slot 2 (if applicable)
Policy defines whether the device should save a permanent PIN code to unlock the SIM card for slot 2. Turning on a permanent PIN will block the company’s SIM card usage on another device.
PIN code for slot 2
Require device encryption
Policy forces the device to be encrypted if it is supported by the device.
Allow using Smart Lock
The policy defines the possibility of using Smart Lock on the device.
Bluetooth
The policy allows automatic unlocking of the phone when connected via Bluetooth to a trusted device.
NFC
The policy allows automatic unlocking of the phone using a trusted NFC tag.
Trusted places
The policy allows configuring Trusted places for automatic unlocking within a certain radius.
Face
The device will automatically unlock when it recognizes a trusted face.
On-body
The policy allows the device to remain unlocked when it is on the user’s body.
Voice
The policy allows unlocking the Google Assistant on the lock screen with a voice command.
Service password
The service password allows defining a password to unlock a blocked device, i.e., in lost mode.