In order to deploy and manage public apps from Google Play inside the Knox Container, Android and the Google Play Store needs to be enabled through the Workspace ONE UEM console.

Play for Work applications are configured inside the Knox container after the device is enrolled, the Knox container is created, and Android is configured in the Console. Admin-approved public apps that are configured in the UEM console are pushed through Play for Work. In cases where the device is already enrolled, the Workspace ONE Intelligent Hub will check on-demand for an Android token, which will be used to configure Play for Work.

This process includes adding and approving applications for integration between Workspace ONE UEM and Samsung Knox from the Google Play Store which can be accessed from the Workspace ONE UEM console. After approval, assign the application to devices using smart groups, a Workspace ONE UEM system that allows you to group devices on criteria you set. The final step is to assign the Terms of Use.

Applications that you push through the integration of Workspace ONE UEM and Samsung Knox have the capability of both On Demand and Automatic app installs. Automatic installation requires fresh enrollments with Workspace ONE Intelligent Hub v8.2 for Android or higher. End users only have access to whitelisted applications inside the managed Play Store within the Knox Container.