Last updated: August 14, 2026
This page explains how to configure Android e-mail profiles for managed Samsung devices running Android 4.3 to 9.0, enrolled as Fully Managed (COSU and COBO, or previously Device Owner) or Corporate devices. It details all configurable settings for incoming mail (IMAP/POP) and outgoing mail (SMTP), including server host names, ports, authentication credentials, and SSL/TLS security options. Admins can also control user-level settings such as HTML mail format, forwarding restrictions, and notifications, with a feature compatibility matrix showing support across Knox-enabled Samsung and non-Samsung enrollment modes.
You can configure the incoming and outgoing mail server settings for your managed devices. This is applicable only for Samsung devices running Android 4.3 to 9.0, either provisioned as Fully Managed (COSU and COBO, or previously Device Owner) or added as Corporate devices.
Only devices running Android 5.0 or above can be provisioned as Personally-Owned Work Profile (BYOD, or previously Profile Owner) or Fully Managed (COSU and COBO, or previously Device Owner).
| FEATURE | DESCRIPTION | KNOX-ENABLED SAMSUNG | NON-SAMSUNG | ||
|---|---|---|---|---|---|
| LEGACY | Personally-Owned Work Profile (BYOD, or previously Profile Owner) | Fully Managed (COSU and COBO, or previously Device Owner) | |||
| Account name | Specify the name of the mail account. | ![]() | ![]() | ![]() | ![]() |
| Configure e-mail for | You can choose to set up the e-mail account for a single user or for multiple users. | ![]() | ![]() | ![]() | ![]() |
| E-mail address (Can be configured only if Configure e-mail for is 'Single User') | Specify the e-mail address of the user. You can use the dynamic variable, %email% which automatically fetches the e-mail address associated with user, to whom the profile is associated. | ![]() | ![]() | ![]() | ![]() |
| Sender name (Can be configured only if Configure e-mail for is 'Single User') | Specify the sender name for each user individually or use the dynamic variable, %username% which automatically fetches the username mapped to the user, to whom the profile is to be associated. | ![]() | ![]() | ![]() | ![]() |
| Set as default account | Enabling this option sets this e-mail as the default e-mail account on the device. | ![]() | ![]() | ![]() | ![]() |
| INCOMING MAIL | |||||
| Incoming Protocol | Specify the incoming protocol as IMAP or POP. | ![]() | ![]() | ![]() | ![]() |
| Incoming server host name | Specify the name of the incoming server. | ![]() | ![]() | ![]() | ![]() |
| Port | Specify the port number to be used. The default port is set as 143. | ![]() | ![]() | ![]() | ![]() |
| Username | Specify the individual username or use the dynamic variable, %username% which automatically fetches the usernames mapped to the users, to whom the profile is to be associated. | ![]() | ![]() | ![]() | ![]() |
| Password | You can set a password for the user. | ![]() | ![]() | ![]() | ![]() |
| Secure mail communication | You can secure mail communication by using SSL, TLS and add certificates if required. | ![]() | ![]() | ![]() | ![]() |
| OUTGOING MAIL | |||||
| Outgoing protocol | Specify the outgoing protocol as SMTP or POP. | ![]() | ![]() | ![]() | ![]() |
| Outgoing server host name | Specify the name of the outgoing server. | ![]() | ![]() | ![]() | ![]() |
| Port | Specify the port number to be used. The default port is set as 587. | ![]() | ![]() | ![]() | ![]() |
| Username | Specify the individual username or use the dynamic variable, %username% which automatically fetches the usernames mapped to the users, to whom the profile is to be associated. | ![]() | ![]() | ![]() | ![]() |
| Password | You can set a password for the user. | ![]() | ![]() | ![]() | ![]() |
| Secure mail communication | You can secure mail communication by using SSL, TLS and add certificates if required. | ![]() | ![]() | ![]() | ![]() |
| SETTINGS | |||||
| Allow HTML format | Enabling this, lets users forward mails in HTML format. If disabled, the mails are converted to plain text. | ![]() | ![]() | ![]() | ![]() |
| Allow forwarding mails | If this is disabled, users are restricted from forwarding mails. | ![]() | ![]() | ![]() | ![]() |
| Allow notifications | Enabling this, allows users to configure notification settings for incoming mails. | ![]() | ![]() | ![]() | ![]() |
| Allow user to change settings | Enabling this, allows users to modify the mail settings. | ![]() | ![]() | ![]() | ![]() |
| Signature | Specify the default signature to be set for the outgoing mails. | ![]() | ![]() | ![]() | ![]() |
You can configure various email providers like Rackspace email, ProtonMail, servermx, Yandex.Mail, etc using this profile. Ensure that you specify the correct incoming and outgoing server settings in the payload.
NOTE:
For Samsung devices, the e-mail policy is applied to the native e-mail client which is Gmail for Android 8.0 or later versions and the Samsung Email app for versions below 8.0. If the policy has to be applied for the Samsung e-mail app on devices running Android 8.0 or later versions, then the app has to be installed, before the e-mail policy is associated with the devices. Also, in case of Samsung devices running Android 9.0 or later, e-mail cannot be added to the devices. Instead in such cases, it is recommended to use managed app configurations.
Dynamic Variables:
The below mentioned dynamic variables are retrieved from the data provided while enrolling the device.
%email% - Fetches the e-mail addresses mapped to users from the enrollment details.
%username% - Fetches the username mapped to users from the enrollment details.
All the e-mail profile settings mentioned above, are also applicable for Knox containers.
Frequently Asked Questions
- Which Samsung devices support the Android Email profile in ManageEngine MDM? The Android Email profile supports Samsung devices running Android 4.3 to 9.0, enrolled as Fully Managed (COSU and COBO, or previously Device Owner) or Corporate devices in ManageEngine MDM.
- What incoming and outgoing mail settings can be configured in the Android Email profile? Administrators can configure incoming mail settings (IMAP/POP) including server host name, port, and authentication, as well as outgoing mail (SMTP) settings including server address, port, and SSL encryption.
- Can dynamic variables be used to auto-populate email settings per user? Yes, ManageEngine MDM supports dynamic variables such as %email% and %username% that automatically map each enrolled user's details when the profile is applied, eliminating the need to create separate profiles per user.

