barscaret-downcaret-leftcaret-rightcaret-upcheckchevron-leftchevron-rightfile-pdfinfoinfo-circlesign-in-altsignin text-widthtimesyoutube

Android > App Management

Disable Wi-Fi on Samsung devices using Knox Service Plugin

Updated on June 8th, 2026

Learn how to disable Wi-Fi on Samsung devices using managed configurations for the Knox Service Plugin app.

Requirements

  • You must have a Miradore Premium or Premium+ subscription, or an active trial.
  • Managed Google Play Enterprise must be configured for your Miradore site.

Disable Wi-Fi using the Knox Service Plugin

Miradore allows you to disable Wi-Fi connections on Samsung devices and prevent users from connecting to Wi-Fi networks via the Knox Service Plugin application.

Important: If the device requires internet access, ensure an alternative connection (such as mobile data) is available before disabling Wi-Fi.

  1. Navigate to Management > Applications and select Add > Android application.
  2. Select Managed Google Play store, then select Next.
  3. Search for Knox Service Plugin and select its tile from the results.
  4. Click Select.
    Result: The application's page opens. The same page can be opened by navigating to Management > Applications and double-clicking the application's row in the table.
  5. On the Configurations tab, click Select configuration > Add configuration.
  6. Enter a name for your configuration in the text box and press Enter.
    Note: You can make the configuration default for the application by ticking the Default checkbox.
    Result: The newly created configuration is open on the Configurations tab.
  7. Optional: Add the Debug Mode setting to the configuration by selecting the Plus sign icon on the right.
    Tip: Debug Mode shows policy results and errors on the device; use it only during testing and disable it before final deployment.
    Configuration settings list showing options including Add applications for accessing the Knox SDK, Advanced Wi-Fi Configurations (Premium), Allowed apps for reading private keys Configurations (Premium), Allowed USB devices for Applications Configurations, APN configurations, Certificate provisioning configurations, and Certificates (Premium), with the 'Debug Mode' row set to False and highlighted by a red border.

    1. In the Add managed property to application configuration wizard, select the Value checkbox.
    2. Select Add, then Close to exit the wizard.
  8. Add the Device-wide policies (Selectively applicable to Fully Manage Device (DO) or Work Profile-on company owned devices (WP-C) mode as noted) setting to the configuration by selecting the Miradore - plus icon config table icon on the right.
    Configuration settings list showing various options including Add applications for accessing the Knox SDK, Advanced Wi-Fi Configurations (Premium), APN configurations, Certificate provisioning configurations, Debug Mode (False), Device Account Policy Configurations, Device and Settings customization profile (Premium), and Device Key Mapping to Launch application Configurations, with the 'Device-wide policies (Selectively applicable to Fully Manage Device (DO) or Work Profile on company owned devices (WP-C) mode as noted)' row highlighted by a red border.

    1. Select Add in the Add managed property to application configuration wizard.
    2. Select Close to exit the wizard.
  9. Expand the Device-wide policies (Selectively applicable to Fully Manage Device (DO) or Work Profile-on company owned devices (WP-C) mode as noted) setting and add the Enable device policy controls setting to the configuration by selecting the Miradore - plus icon config table icon on the right.
    Configuration settings list under 'Device-wide policies (Selectively applicable to Fully Manage Device (DO) or Work Profile on company owned devices (WP-C) mode as noted)' showing various options including Advanced Restriction policies (Premium), Application management policies, Audit Log (Premium), Call and Messaging control, Device Controls, Device customization controls (Premium), Device Restrictions, DeX policy, and Dual Data-at-rest (DAR) Encryption, with the 'Enable device policy controls' row set to False and highlighted by a red border.

    1. In the Add managed property to application configuration wizard, select the Value checkbox.
    2. Select Add, then Close to exit the wizard.
  10. Expand the Device-wide policies (Selectively applicable to Fully Manage Device (DO) or Work Profile-on company owned devices (WP-C) mode as noted) setting and add the Device Restrictions setting to the configuration by selecting the Miradore - plus icon config table icon on the right.
    Configuration settings list under 'Device-wide policies (Selectively applicable to Fully Manage Device (DO) or Work Profile on company owned devices (WP-C) mode as noted)' showing options including Advanced Restriction policies (Premium), Application management policies, Audit Log (Premium), Call and Messaging control, Certificate management policies (Premium), Date Time Change, Device Account Policy, Device Admin allowlisting, Device Controls, Device customization controls (Premium), and Device Key Mapping, with the 'Device Restrictions' row highlighted by a red border.

    1. Select Add in the Add managed property to application configuration wizard.
    2. Select Close to exit the wizard.
  11. Expand the Device Restrictions setting and add the Allow Wi-Fi setting to the configuration by selecting the Miradore - plus icon config table icon on the right.
    Configuration settings list under 'Device-wide policies' with 'Device Restrictions' expanded, showing a long list of device restriction toggles all set to False, including Allow Android Beam on device, Allow Bluetooth, Allow Camera, Allow cellular data, Allow Clipboard, Allow Factory Reset, Allow microphone, Allow SD card access, Allow Smart Switch, Allow USB debugging, Allow VPN connections, and more, with the 'Allow Wi-Fi' row highlighted by a red border.

    1. In the Add managed property to application configuration wizard, leave the Value checkbox empty to deny connecting to Wi-Fi networks.
    2. Select Add, then Close to exit the wizard.
  12. Optional: Add the Profile name(version) setting to the configuration by selecting the Plus sign icon on the right.
    Tip: The Profile name(version) setting can help with tracking and debugging during the testing of the configuration.

    1. In the Add managed property to application configuration wizard, enter a unique profile name and version in the text box, then select Add.
  13. Deploy the configured application to the managed devices.
    Tip: It is recommended to deploy the configuration to a test device first. If the test is successful, remove the Debug Mode setting from the configuration before deploying it to your managed devices.

Results: Wi-Fi is disabled on the managed devices and device users cannot connect to Wi-Fi networks.

Previous Article:
«

Next Article:
»