What's in this release:
The following are the new features and enhancements introduced with this KCS 1.17 release:
Knox Configure (KC)
1. Role-based access control (RBAC) improvements
This release introduces a new Role Based Access Control (RBAC) service allowing customer (tenant) admins that are responsible for account creation (Super Admin) to assign more refined role permissions to individual admins as their specific enterprise requirements dictate. Though KC utilizes admin roles unique to that service, a Super Admin cuts across all supported services.
With the new RBAC service, existing customers will have their administrators migrated automatically with the next Knox Cloud Service release in Q1 2019. Administrators with their own unique set of permissions (manage administrators, delete devices etc.) will be assigned new roles that map to their current permissions. If needed, new roles beyond what the migrated admins are currently assigned can be created based on a list of permissions unique for each service.
The only role that cannot be assigned is the Super Admin role, which applies across all supported services. Only one person can assume a Super Admin role per company. Upon migration, the Super Admin role is assigned to the person who originally created the customer account. The Super Admin role receives every permission option available.
2. Knox Cloud Services on same device - device deletion concept
This feature introduces a new device deletion concept when KC is utilized with other Knox Cloud Services. If a device is only used with KC, its removal is a typical hard deletion, and the device is removed from both KC and the Reseller Portal.
However, if a device is used with both KC and another Knox Cloud service, like Knox Mobile Enrollment (KME), it is deleted from KC only (soft deletion), and remains in KME.
3. Adaptive Wi-Fi setting optimizations
This feature addresses customer requests to allow devices to switch from WiFi to mobile data when necessary. These new options have been added to existing device profile WiFi Device Connectivity settings. These new Wi-Fi settings assist large enterprise deployments when it’s not scalable to manually make WiFi changes per device.
This feature is supported with both Setup and Dynamic edition Knox Configure profiles, and on devices running Knox version 2.7.1 and above.
4. Mock location disable mode
This enhancement addresses customer requests to disable a mobile device’s mock location capability that, when enabled, displays disguised data, as opposed a device’s actual location information. To support this requirement, a new Disable mock location option has been added to the Device connectivity field’s LOCATION area (formally GPS). Selecting this option disables mock location applications within the device Develop options.
This feature is supported on Dynamic edition Knox Configure profiles only (both normal and ProKiosk modes), and on devices running Knox version 2.7.1 and above.