[Q] Rooting and KNOX - AT&T Samsung Galaxy S 4 Q&A, Help & Troubleshootin

I hope I am not cluttering things up with a stupid question but I would like to find out if rooting and KNOX are mutually exclusive. My situation is that I will be moving from a personal to corporate liable account at work soon (taking my S4 with me) and their only requirement is securing the device on MobileIron with KNOX. I don't really mind the stock rom but there are two or three things I would like to be able to do on my device that require root access (mostly config toggles with a profile manager and using TiBu).
Thanks for any wisdom you can pass on.

drichter12 said:
I hope I am not cluttering things up with a stupid question but I would like to find out if rooting and KNOX are mutually exclusive. My situation is that I will be moving from a personal to corporate liable account at work soon (taking my S4 with me) and their only requirement is securing the device on MobileIron with KNOX. I don't really mind the stock rom but there are two or three things I would like to be able to do on my device that require root access (mostly config toggles with a profile manager and using TiBu).
Thanks for any wisdom you can pass on.
Click to expand...
Click to collapse
Same issue for me . . . any updates?

saintirish said:
Same issue for me . . . any updates?
Click to expand...
Click to collapse
Not yet.... I am moved over but they haven't set me up yet on MI. I reverted to un-rooted until then and will see what it looks like and maybe try rooting again after I am all set up.

I would not think that having administrator privileges on your device would prevent the Knox from working... I don't use Knox, though.

Related

What is rooting?

Sorry to be so dense, but I have no idea what this is.could some one explain please. Isit similar to jail breaking of an iphone?
Because I already have downloaded games on my phone that I should of paid for and the it works perfectly fine.
Sorry for the dumb question again
alpystar said:
Sorry to be so dense, but I have no idea what this is.could some one explain please. Isit similar to jail breaking of an iphone?
Because I already have downloaded games on my phone that I should of paid for and the it works perfectly fine.
Sorry for the dumb question again
Click to expand...
Click to collapse
Google banned you or what? O_O
http://android-dls.com/wiki/index.php?title=Why_Root#You_never_know
Well "rooting" can be considered like jailbreaking but their are a few key differences (I have rooted and jailbroke before). Since Android offers many of the features iPhone doesent offer without jaybreak, rooting and Android allows the user to access many of the hidden features like setting the speed of the CPU. Rooting also allows custom roms to be installed on your phone. Roms are basically a moded version of the software your phone runs. A popular type of Rom called "Cyanogen" is available for a wide variety of Android devices. Rooting also allows free wireless tethering to your phone. What that means is that your phone emits WiFi and and of your WiFi powered devices such as an ipod or laptop can connect to it. Since rooting allows full user access to the processes of the Android phone, you warentee is also voided. But if you know what you want and how to keep your phone running then give it a shot. If you are new to the field rooting I would read more about it and how to fix it in recovery mode if you want to unroot your phone. I hope this helps.
Sent from my ADR6300 using XDA App
Its a reference to the underlying linux system, and goes back to Unix. Root was the primary user or superuser, and so root level access was the key to full admin control.
Your phone by default presents you with a limited user access, generally for your own good, by protecting access to files and folders you shouldnt normally access. Rooting refers to achieving full unrestricted access to the phone, thus enabling you to go beyond the normal user and start mucking about under the hood.
Quick question, since i stumbled upon this thread:
- Have there been cases of attempts at rooting carrier locked phones that resulted in bricks? Or is it generally safe to root carrier locked devices (if any Frenchies see this, i'm talking about SFR, Orange... more specifically.)
Cheers

Someone jacked my Sprint account

Just a heads up, somehow someone compromised my account, and was able to deactivate my phone, and activate their own EVO on my account, change plans, and change all the security info, PIN security question, and security email. A bit of a wakeup call, running rooted phones, installing apps that give themselves unfettered access...
Yes, "its your own damn fault", but whatever, just keep your eyes constantly peeled, and make sure your sprint "myaccount" settings are secure...
What ROM where you using? Any idea what apps you had installed that might have been compromising your data?
Take some screenshots of all your installed apps. Couldn't hurt.
This is more of a Sprint thing. They have a problem with internal fraud
Was using CM6 at the time. According to the rep I spoke with (that actually helped me, the first guy was a turd), they had been calling in between the 28th and 30th, on the 30th they were able to remove my device and add theirs.
I don't think it was any of the apps I have installed. I'm thinking it was either an inside job, or someone else (ie, haxor) on Sprint's nodes during the last week sniffing packets. Reason I think that is that they seemed to have compromised the security by way of changing the e-mail address that security updates go to. I don't know, its just a crappy feeling overall. Kind of like when I was mugged many years ago...
hondoslack said:
Was using CM6 at the time. According to the rep I spoke with (that actually helped me, the first guy was a turd), they had been calling in between the 28th and 30th, on the 30th they were able to remove my device and add theirs.
I don't think it was any of the apps I have installed. I'm thinking it was either an inside job, or someone else (ie, haxor) on Sprint's nodes during the last week sniffing packets. Reason I think that is that they seemed to have compromised the security by way of changing the e-mail address that security updates go to. I don't know, its just a crappy feeling overall. Kind of like when I was mugged many years ago...
Click to expand...
Click to collapse
Sprint should should just clone that account, deactivate it, ban the new ESN.
I fail to see the benefit of account jacking (especially after account owner's phone gets deactivated)
jerryparid said:
Sprint should should just clone that account, deactivate it, ban the new ESN.
I fail to see the benefit of account jacking (especially after account owner's phone gets deactivated)
Click to expand...
Click to collapse
I like what happens (and it rarely happens,Ive heard stories of things that have happened way back,which are always good for a chuckle) where I work when someone does something illegal,or commits crimes using sensitive information at work. The US Marshals come,drag them out in handcuffs for everyone to see and then they get their room and board on the US Government for the next few years.
Every phone is legally required to have GPS that is available at all times and it sounds like they are committing identity theft. Have the police, or if they are in a different state possibly FBI, go get them.
This was an inside job and has nothing to do with your ROM or the fact that you rooted your phone. Threads like this could easily scare people away from rooting for no good reason.
I think you might have gave someone your info!!
dallashigh said:
This was an inside job and has nothing to do with your ROM or the fact that you rooted your phone. Threads like this could easily scare people away from rooting for no good reason.
Click to expand...
Click to collapse
This may not have had anything to do with his phone being rooted but it is possible that could have had something to do with it too. When you root your phone you are effectively bypassing just about every single security feature put on there.
You are lying to yourself if you think rooting your phone doesn't make your information much easier to steal.
jahnile said:
This is a strange story, def.ly a wake up call.
http://WWW.rootznculture.com
Click to expand...
Click to collapse
NVM wrong thread
xHausx said:
This may not have had anything to do with his phone being rooted but it is possible that could have had something to do with it too. When you root your phone you are effectively bypassing just about every single security feature put on there.
You are lying to yourself if you think rooting your phone doesn't make your information much easier to steal.
Click to expand...
Click to collapse
That is patently false. If you install a custom ROM then you are trusting the ROM developer not to put anything sneaky in there. Considering CM6 is open-source and used by thousands of people, it's unlikely to be the ROM's fault.
An app with root can do just about anything. That is why the Superuser app is there to make sure only apps that need it can get root access.
Installing apps from non-Market sources is much riskier than rooting your phone. Installing an SSH daemon would make it possible to access your system remotely. That would also be a security risk.
Enabling USB debugging will make it easier for someone with physical access to your device to access your information. That much is true.
There is absolutely nothing about the act of rooting that puts your information in jeopardy.
dallashigh said:
That is patently false. If you install a custom ROM then you are trusting the ROM developer not to put anything sneaky in there. Considering CM6 is open-source and used by thousands of people, it's unlikely to be the ROM's fault.
An app with root can do just about anything. That is why the Superuser app is there to make sure only apps that need it can get root access.
Installing apps from non-Market sources is much riskier than rooting your phone. Installing an SSH daemon would make it possible to access your system remotely. That would also be a security risk.
Enabling USB debugging will make it easier for someone with physical access to your device to access your information. That much is true.
There is absolutely nothing about the act of rooting that puts your information in jeopardy.
Click to expand...
Click to collapse
You say any app with root can do just about anything, you just confirmed what I said. If whatever terminal app you are using can give you root(superuser) access without a password than any app can do it.
A SSH shell is for communicating over a network, it has nothing to do with root access.
If you read recently at defcon someone showed a market app that could root your phone without your permission and take some private info. So without root your screwed to. So you can probably blame an app before root. Also all data is encrypted so I doubt it was a packet sniffer.
This is a Sprint issue. I've seen and heard of it happening way too many times for me to assume that it's Android related even in the slightest bit.
I don't really think it's fair to lump rooting and basic modification in with account theft. There are always multiple sides to any story.
dallashigh said:
That is patently false. If you install a custom ROM then you are trusting the ROM developer not to put anything sneaky in there. Considering CM6 is open-source and used by thousands of people, it's unlikely to be the ROM's fault.
An app with root can do just about anything. That is why the Superuser app is there to make sure only apps that need it can get root access.
Installing apps from non-Market sources is much riskier than rooting your phone. Installing an SSH daemon would make it possible to access your system remotely. That would also be a security risk.
Enabling USB debugging will make it easier for someone with physical access to your device to access your information. That much is true.
There is absolutely nothing about the act of rooting that puts your information in jeopardy.
Click to expand...
Click to collapse
Then what is this article referring to? http://phandroid.com/2010/07/31/hackers-release-data-stealing-program-to-push-google-to-plug-holes-at-security-conference/
xHausx said:
You say any app with root can do just about anything, you just confirmed what I said. If whatever terminal app you are using can give you root(superuser) access without a password than any app can do it.
Click to expand...
Click to collapse
Sure you don't have to enter a password, but the first time the app runs, you DO have to confirm that you want to give it root access. And again that would be the APP that is malicious and not the mere fact that your phone is rooted.
xHausx said:
A SSH shell is for communicating over a network, it has nothing to do with root access.
Click to expand...
Click to collapse
I know what SSH is. I'm not an idiot. An SSH server is something that would actually put your device at risk of being remotely accessed without your knowledge or permission.
redrazr7791 said:
Then what is this article referring to? http://phandroid.com/2010/07/31/hackers-release-data-stealing-program-to-push-google-to-plug-holes-at-security-conference/
Click to expand...
Click to collapse
They distributed a trojan that installed malware at the same time it rooted your phone.

[Q] KNOX and Rooted Device

I hope I am nut cluttering things up with a stupid question but I would like to find out if rooting and KNOX are mutually exclusive. My situation is that I will be moving from a personal to corporate liable account at work soon (taking my S4 with me) and their only requirement is securing the device on MobileIron with KNOX. I don't really mind the stock rom but there are two or three things I would like to be able to do on my device that require root access (mostly config toggles with a profile manager and using TiBu).
Thanks for any wisdom you can pass on.
drichter12 said:
I hope I am nut cluttering things up with a stupid question but I would like to find out if rooting and KNOX are mutually exclusive. My situation is that I will be moving from a personal to corporate liable account at work soon (taking my S4 with me) and their only requirement is securing the device on MobileIron with KNOX. I don't really mind the stock rom but there are two or three things I would like to be able to do on my device that require root access (mostly config toggles with a profile manager and using TiBu).
Thanks for any wisdom you can pass on.
Click to expand...
Click to collapse
This belongs in the Q&A forum. You know...since this is a Q.

Will "My Knox" work fr dual booting

I have to run Intune company portal which doesn't allow me to root my phone due to my companies policies. I found My knox, but does anyone know the best way to use it so that I can root my phone and run Intune with outlook, onedrive ,etc for my company email?
I've been searching but not really finding a good guide on how to use My knox,
thanks for any advise.
rdefino said:
I have to run Intune company portal which doesn't allow me to root my phone due to my companies policies. I found My knox, but does anyone know the best way to use it so that I can root my phone and run Intune with outlook, onedrive ,etc for my company email?
I've been searching but not really finding a good guide on how to use My knox,
thanks for any advise.
Click to expand...
Click to collapse
Have this moved to the questions and answers forum
As of right now, if your in the United States, then it is impossible to dual boot an S7. Dual boot requires an unlocked bootloader in most situations; and in the US they are locked down tight. If your not in the US then it is possible with the correct firmware but again it would be near impossible to find the right files needed to run a dual boot.
TLDR: No it is beyond impractical and nearly impossible. My advice would be if your company allows it just get another phone for personal use.

Samsung S8: completely remove Maas360 and KNOX?

Hi, I've been searching answers for this on Google for a while now but not found any sufficient answers.
I have a new phone that is completely locked down by company policies. I don't agree with these policies and they stop me from using my prefered launcher which needs root.
In short words, I want this crap off my phone!
Knox Enrollment Service is completely locked and cannot be disabled. Maas360 cannot be disabled and unlocked. I read that you cannot root a phone running Maas360 and KNOX the normal way.
Is there a ROM that would allow me to safely remove these services and turn my phone into a stock Samsung Galaxy S8 - or will that brick my phone?
Thanks for any advice
If its corporate policy, they will be notified if the phone is rooted or modified in any way and you could lose your job over it. They probably have strict policies in place to prevent access to company data. If you didnt agree then why did you add any company accounts to your phone?
whitedragon551 said:
If its corporate policy, they will be notified if the phone is rooted or modified in any way and you could lose your job over it. They probably have strict policies in place to prevent access to company data. If you didnt agree then why did you add any company accounts to your phone?
Click to expand...
Click to collapse
Thanks for your reply!
I don't know how these services work, but if I flash it with a custom rom that completely removes the old system and makes it into a "stock" Samsung phone. Then none of these services would be present to report any of these changes. I guess the receiving system would simply believe this phone is turned off and possibly after some weeks report that the phone hasn't reported in for X days. Thanks for worrying about me keeping my job, but that won't be a problem I assure you
mrkiwibanana said:
Thanks for your reply!
I don't know how these services work, but if I flash it with a custom rom that completely removes the old system and makes it into a "stock" Samsung phone. Then none of these services would be present to report any of these changes. I guess the receiving system would simply believe this phone is turned off and possibly after some weeks report that the phone hasn't reported in for X days. Thanks for worrying about me keeping my job, but that won't be a problem I assure you
Click to expand...
Click to collapse
It depends. I deploy MDM systems like this. Is this a corporate device or a personal device that is just enrolled?
whitedragon551 said:
It depends. I deploy MDM systems like this. Is this a corporate device or a personal device that is just enrolled?
Click to expand...
Click to collapse
Its a corporate device. When I first initialized the phone the KNOX or Maas360 started an enrollment service that was not optional.
mrkiwibanana said:
Its a corporate device. When I first initialized the phone the KNOX or Maas360 started an enrollment service that was not optional.
Click to expand...
Click to collapse
If its a corporate device there isnt anything you can do. It is enrolled at a physical hardware level in Android for Work. It will activate KNOX and call home every single time the device is wiped before you can proceed with any other functions. If it doesnt phone home to get the config, you cannot proceed with the setup. Its similar to DEP for Apple devices.
whitedragon551 said:
If its a corporate device there isnt anything you can do. It is enrolled at a physical hardware level in Android for Work. It will activate KNOX and call home every single time the device is wiped before you can proceed with any other functions. If it doesnt phone home to get the config, you cannot proceed with the setup. Its similar to DEP for Apple devices.
Click to expand...
Click to collapse
Thanks! Bad news for me, I guess I just have to bite into this sour lemon and accept. I will keep my hopes up that someone will find a way to blast past this in the future
Need help removing maas360
Hey, so my galaxy s8 had gone through the partial touch failure so as I was recommended I factory reset my phone and long story short I am stuck with maas360 and can't restore all my settings and such so I need to get it off preferably without a computer. (Also help with the touch screen would be nice but not crucial at this time)
Jok3Smok3 said:
Hey, so my galaxy s8 had gone through the partial touch failure so as I was recommended I factory reset my phone and long story short I am stuck with maas360 and can't restore all my settings and such so I need to get it off preferably without a computer. (Also help with the touch screen would be nice but not crucial at this time)
Click to expand...
Click to collapse
I love reading stories about MaaS360, I actually admin it for a company. If its a corporate device you may be sol, you may ask the admin to remove control, if it's a personal device to remove maas360.
Go into maas360- settings top right you should see 3 squares. hit remove MDM control after you remove control you can uninstall any part of MaaS360.
jmall84 said:
I love reading stories about MaaS360, I actually admin it for a company. If its a corporate device you may be sol, you may ask the admin to remove control, if it's a personal device to remove maas360.
Go into maas360- settings top right you should see 3 squares. hit remove MDM control after you remove control you can uninstall any part of MaaS360.
Click to expand...
Click to collapse
Hello . i installed an official software through odin to my s8 plus. Long story short, after factory resetting , i got this wierd app called "custom blocker" and in my device admin, i have knox customisation, knox enrollement and custom blocker restriction. this device is my own and not of any company. Why did these random apps appeared on my phone and how do i get rid of them? i am unable to update my phone or access the playstore.
Any help will be appreciated. Thanks.

Categories

Resources