Microsoft Enterprise Client Management Report. Windows Intune* and System Center Configuration Manager*

Size: px
Start display at page:

Download "Microsoft Enterprise Client Management Report. Windows Intune* and System Center Configuration Manager*"

Transcription

1 Executive Summary The bring your own device (BOD) workplace presents a number of challenges to IT management. Mobile devices come in a wider variety of devices and operating systems in the mobile realm than with productivity workstations and laptops. Policies that address the endless combinations of devices, operating systems, and capabilities can be hard to define and enforce. Moreover, the management framework for user-procured mobile devices is completely different from that for corporate-issued Windows* PCs. Microsoft Exchange ActiveSync* (EAS) has largely been the industry-default tool for managing mobile devices. And while many companies still rely on EAS for mobile device management (MDM), the release of Windows Intune* offers companies a Microsoft alternative that can help bridge the divide between PC management and MDM. Windows Intune is a web-based management console for both mobile devices and desktop computers. Microsoft touts the combination of Windows Intune coupled with the Microsoft System Center Configuration Manager* (SCCM) platform as a single-pane-ofglass solution for managing devices across the enterprise. Though these tools together largely succeed at merging MDM with wider device management, the fact remains that Microsoft is tackling a device landscape whose complexity resists radical simplification. For example, Microsoft s vision of a simple, universal MDM solution is currently left unrealized by the fact that any Microsoft solution must still rely upon EAS to manage Google Android* devices. Moreover, Microsoft might need to wait for the broader market itself to mature: particularly for smaller companies, the ability to remotely wipe data from a mobile device using EAS is the extent of their current mobile management planning. Windows Intune* and System Center Configuration Manager* Like Microsoft Office 365*, Microsoft s cloud-based, softwareas-a-service Office offering, Windows Intune is a web-based subscription service for managing computers and mobile devices. Rather than buy licenses on a per-device basis, companies pay based on the number of users to be managed, with whom multiple devices can then be associated. Microsoft positions it as a relatively simple way to manage many types of devices, but it cannot manage servers or computers based on Apple OS X*.

2 Windows Intune supports user self-service. Users can enroll their own devices to be managed without direct intervention from IT. Beyond managing mobile devices, Windows Intune also provides a web-based portal in which companies can host apps for user download (for example, custom corporate apps or links to apps in the Apple App Store* or on Google Play*). other devices.) This has two consequences. First, a company must configure EAS in addition to Windows Intune. Second, devices managed by EAS are inherently less secure than directly managed ones: EAS depends on the application on the managed device not to be compromised because EAS cannot directly communicate with the device s operating system. Coupling Windows Intune with SCCM fills some of the functionality gaps in Windows Intune. Windows Intune in turn serves as a connector to enable SCCM to manage mobile devices in addition to its usual fare of PCs, Apple Mac devices, and servers. SCCM also affords scalability missing with Windows Intune: managing more than 4,000 users or 7,000 devices grows prohibitively complex with Windows Intune alone, but SCCM can scale to 100,000 managed devices. Remote PCs and Office 365*: Both another Pane in the Glass Both Windows Intune and SCCM have some curious blind spots. For example, counter intuitively for also being a Microsoft cloud-based service, Windows Intune cannot manage Office 365 accounts, whereas SCCM can. On the other hand, SCCM cannot manage computers not joined to the network domain, and Windows Intune is the only option for managing nondomain-joined PCs. This, however, has to be done via the Windows Intune web console, even if other devices managed by Windows Intune are managed through the SCCM console. Common MDM use cases can grow unexpectedly complex with Windows Intune as well. For example, Windows Intune cannot directly manage Android devices, whether using Windows Intune alone or in conjunction with SCCM instead Windows Intune must rely upon EAS to manage Android devices. Agents to directly manage Windows* tablets, PCs, and Windows Phones either come built-in or can be installed. This is not an option on Android devices and is limitation of the Android operating system itself. (ios* devices can download configuration profiles created in Windows Intune to accomplish many of the same management tasks enabled by agents on Synchronizing a company s on-premises management with Windows Intune can also be complex. Companies must use the Active Directory* synchronization tool to propagate changes in the on-premises Active Directory (such as new employees or terminations) with the Windows Intune accounts. Moreover, if IT administrators do not want to manage two sets of employee passwords (network credentials and Windows Intune credentials, such as for user self-service), they must also configure and use Active Directory Federation Services (AD FS). Conclusion Despite the complexities that might arise for organizations coordinating Windows Intune with existing, on-premises systems management, Windows Intune supplies functionality for managing mobile devices and remote PCs that was previously missing from SCCM. Its simple web interface and subscription model can also increase its appeal to smaller companies that might have previously taken an unsystematic approach to device management (if any at all). Such companies might also avoid many of the device-management complexities inherited by larger organizations, particularly if they have no pre-existing infrastructure or are purely cloud based SCCM is a notoriously complex management application that grew to be the industry standard largely by Microsoft s inclusion of it in enterprise agreements for no extra cost. et despite holding some of the greatest promise for small and mid-sized companies, Microsoft might have to wait for the needs of such companies to catch up with the capabilities of Windows Intune (let alone SCCM). For many companies of this size, the relatively rudimentary management capabilities provided by EAS are as far as their mobile management planning extends.

3 Windows Intune Microsoft makes three principal claims about Windows Intune. It positions Windows Intune as a management tool that simplifies mobile device management and improve[s] remote PC management ; that enables IT departments to manage computer and mobile device security in a flexible manner; and that equips IT managers to let their end users work on virtually any device. As with the marketing claims made by any company, these statements are broadly true with a number of important caveats. Claim: Windows Intune simplifies mobile device management and improve[s] remote PC management 2 Windows Intune simplifies and improves mobile device and non-domain-joined PC management to the extent that, from the standpoint of management solutions centered on Microsoft technology, it enables these tasks for the first time. SCCM, the traditional Microsoft workhorse of PC management, was traditionally limited to computers joined to an organization s Active Directory Domain Services (AD DS) domain. While this has changed somewhat with the release of SCCM 2012 SP1, SCCM can nevertheless not manage mobile devices or nondomain-joined Windows client computers (see System Center Configuration Manager 2012 SP1 and Windows Intune below for details). Windows Intune is thus the only Microsoft management tool to tackle mobile devices and remote PCs (and it is beyond the scope of this report to evaluate whether or not Windows Intune manages these more simply or better than third-party solutions). As with other cloud-based Microsoft services (such as Office 365), the current version number of Windows Intune is not as explicit as with Microsoft stand-alone products and solution suites. When first released in 2010, the capabilities of Windows Intune were largely limited to patching managed computers (which led less charitable industry observers to liken it to paying to use Windows Update). The current version of Windows Intune released in 2013 Wave D or version 4.0 has matured significantly since then. It represents a management solution aimed squarely at IT generalists in the small and medium-business (SMB) segment. But while it is relatively straight forward for IT shops to take advantage of the Windows Intune features (getting Windows Intune to synchronize with an AD DS domain in the enterprise takes more work), Windows Intune is still far from being a mature MDM solution (it did not make the May 2013 Gartner Magic Quadrant* for MDM software, for example). Claim: Windows Intune lets you manage PC and mobile device security updates your way 2 This Microsoft claim for Windows Intune focuses largely on extending policy management and endpoint security management to computers that had previously defied such management (remote PCs) and extending compliance monitoring beyond EAS (for mobile devices). As with the previous claim, IT organizations can fairly easily take advantage of the Windows Intune capabilities if it is an organization s only management tool. However, integrating it with AD DS or SCCM in an enterprise environment takes more effort. Moreover, IT organizations need to realize that corporate assets that might be stored in the cloud (such as LOB apps provisioned through the Windows Intune company portal) are hosted by Microsoft in a multi-tenant environment and take precautions accordingly. Claim: Windows Intune empower[s] people to work on virtually any device 3 Windows Intune makes some important contributions to enabling IT management in a bring-your-own-device (BOD) IT environment. It enables direct management of devices running Windows 8.1, Windows RT, Windows Phone 8, and ios operating systems. However, Windows Intune does not support the same level of management for all types of devices. For example, Windows Intune cannot directly manage Android devices: it relies on the Windows Intune Exchange Connector in order to use EAS for managing Android devices. (For details about the differences in Windows Intune management by platform, see the Windows Intune Features and Appendices A and B.)

4 Windows Intune Features Table 1 provides a high-level overview of the availability of various capabilities of Windows Intune for specific platforms to be managed. Detailed discussion of the capabilities follows the table. Table 1. High-level overview of Windows Intune* capabilities Capability Windows 8* Windows 7, Windows RT Windows Phone 8 Apple ios* Google Android* Windows Vista*, Windows XP Application Management es es es es es es Endpoint Protection es es No No No No Hardware Inventory es es es es es es 1 Software Inventory es es es 2 es 2 es 2 es 2 Remote Assistance es es 3 es 3 No No No Reporting es es es es es es Software Updates es es No No No No Compliance Settings es 4 es 4 es 4 es 4 es 4 es 4 1. Basic information only through EAS 3. Through Microsoft Easy Assist* 2. Managed applications only 4. Compliance reporting but no remediation automation Application Management IT managers can deploy the following for Windows, Windows RT, Windows Phone 8, ios, and Android platforms: Managed software packages Links to a web-based applications Applications in the Windows Store For software based on Windows, IT can configure a required installation deployment to be automatically installed on targeted, managed computers without the need for end-user intervention. IT can also make a licensed software application available from the Windows Intune company portal for approved end users to link to, or download, and install on their linked computers or applicable mobile devices. Endpoint Protection Endpoint protection through Windows Intune is only available for computers with Windows that are managed by Windows Intune, but not for mobile devices. The security technology that Windows Intune uses to effect endpoint protection Windows Security Essentials and System Center Endpoint Protection are not available on mobile devices. Hardware Inventory Windows Intune gathers information for inventorying using a software agent based on an implementation of the Open Mobile Alliance Device Management (OMA-DM) protocol to manage computers and devices. This agent comes already built into the Windows 8.1 and Windows RT operating systems but must be installed on computers to be managed that are running Windows 8, Windows 7, Windows Vista*, and Windows XP. Windows Intune also interfaces with the management APIs built into mobile devices based on the following operating systems: Windows Phone 8 ios 5.0 or later Android or later (Note: Windows Intune requires EAS to inventory and manage Android devices.) Software Inventory Windows Intune lists the detected and managed software that is installed on all computers that are managed by Windows Intune. This feature pertains only to computers, not mobile devices.

5 Remote Assistance Remote control actions such as restarting managed computers are only possible through Microsoft Easy Assist with Windows Intune. This feature pertains only to computers running Windows 7 or earlier, not mobile devices (except devices based on Windows RT). Windows 8 has its own built-in remote assistance feature. Reporting Reporting in Windows Intune provides IT managers with information about the software, hardware, and licenses in their organization. These reports can help you confirm current needs and forecast future spending. IT managers can also save and load reports based on reporting criteria, export report data for analysis with other reporting tools, and print reports. Software Updates IT managers can approve and deploy both Microsoft updates and other updates through Windows Intune. To deploy updates other than Microsoft updates, IT creates update software packages and then uploads them to the Windows Intune cloud storage space for deployment to managed computers. This feature pertains only to computers, not mobile devices. Compliance Settings Windows Intune policies provide settings that control software updates, endpoint protection, Windows Firewall settings, and the end-user experience in the Windows Intune Center, which is installed on all computers managed by Windows Intune that run Windows 8, Windows 7, Windows Vista, or Windows XP. Windows Intune also provides settings to control the security of users mobile devices, including Windows RT, Windows Phone 8, and Apple ios devices. (Note: computers running Windows 8.1 can also be managed like mobile devices.) Policy templates include the option to deploy policies with recommended settings to simplify the creation and deployment of policies based on industry best practices. Windows Intune provides compliance reporting but no automatic remediation for non-compliant devices. This can be especially problematic for managed mobile devices, with which a mobile policy might require device encryption in order to connect to a Microsoft Exchange server even if a given mobile device does not support full-device encryption. To help address this, Windows Intune provides detailed information about mobile policy conflicts and recommended actions to take. Like all other MDM solutions on the market, Windows Intune provides a remote device wipe feature. IT managers can issue a remote device wipe command from the Windows Intune administrator console or users can issue their own remote device wipe commands from the Windows Intune company portal user interface. IT can also specify a maximum number of successive unsuccessful password attempts after which the mobile device performs a local device wipe (that is, the mobile device wiping itself without the request being initiated from Windows Intune). The results of a device-wipe depend on the device: those based on ios and Windows Phone 8 reset to factory defaults; only the mailbox managed by EAS is removed on Android devices (and Windows 8.1, Windows 8, and Windows RT managed by EAS). Windows RT devices and computers running Windows 8.1, Windows 8, Windows 7, Windows Vista, and Windows XP and managed by Windows Intune cannot be completely wiped. Windows Intune also permits managed devices to be retired. Retirement removes the record of the device from Windows Intune management. It also impacts application distribution and policies on the retired device. Table 2 details the effects of retirement by platform.

6 Table 2. Effects of retirement by platform Device record removed from Windows Intune* database and console Device record removed from Microsoft Exchange* (no ) Removal of sideloaded keys Already installed applications Installing new applications Policies Windows 8* Windows 8.1, Windows RT Windows Phone 8 Apple ios* Google Android* (EAS managed) es es es es es No No No No es No es es (Application enrollment token is removed) Side-loaded apps will not run Apps cannot be installed Existing Windows Intune policies are removed during uninstall of Windows Intune agent Side-loaded apps will not run Apps cannot be installed Windows Intune policies are retained on the device even after the uninstall of the agent Side-loaded apps are uninstalled Self-service portal is uninstalled (no apps available) Expected behavior is similar to Windows RT N/A Installed apps will still run Apps cannot be installed Expected that policy will be removed N/A Installed apps will still run Apps can be installed Windows Intune policy is removed from Exchange server and the device receives the default Exchange server policy Company Portal The Windows Intune company portal is an end-user focused portal in Windows Intune that provides the end user a means to: Enroll and manage their devices Search for and install licensed software applications Request support from their internal helpdesk The company portal is accessible by all users associated with a Windows Intune subscription and is available from any location with Internet access, including Windows RT and mobile devices. However, end users must use a Microsoft Online Services ID (that is, an ID generated for the end-user by the company account administrator using the Microsoft Online Office Subscription administration website) to connect to the company portal; they cannot connect to the company portal with a Microsoft ID (such as a Microsoft Live ID). The company portal is customized for that platform so that users will only see apps available for their device type. Table 3 lists what actions users can control on their devices by using the company portal. Table 3. Actions users can control on their devices by using the company portal Company portal actions available to users From Windows 8.1* Preview and Windows RT From Windows Phone 8 From Apple ios* From Google Android* Enroll a device es es es No Retire a local device es es No No Wipe a mobile devices es No No No remotely Install line-of-business apps es es es es Install apps from the store to which the device connects (Windows Store, Windows Phone Store, Apple App Store*, or Google Play) es es es es

7 App Delivery with Windows Intune Similar to traditional PC-management solutions, Windows Intune can push software to computers that it manages (required installations). However, this is not an option with mobile devices: IT managers can only post the software to the company portal as an available installation for mobile users. The user-initiated process of installing these software packages on devices without the packages being submitted to the Windows Store, Windows Phone Store, Apple App Store, or Google Play is called side-loading. Table 4 lists the types of applications that can be installed on different platforms. IT managers might also want to make software from the Windows Store, Windows Phone Store, Apple App Store, or Google Play readily available to users. One way of doing this is by creating an app in the company portal that is really just a link to the real app on the appropriate public store. Such wrapper apps on the company portal are called deep links. Table 4. Application types by platform Platform Desktop Modern App Types Applications Side-Loading Deep (.msi,.exe).appx.xap.ipa.apk Links Windows 7* Windows 8 Windows RT ** Windows Phone 8 Apple ios* Google Android* ** Windows 8 Self-Service Portal on Windows RT will show MSI/EXE applications that can remotely install to other computers linked to the user but are not installable on the local Window RT device Windows Intune Mobile Device Security Management Security management for mobile devices is fundamentally different than that for PCs. Whereas security for computers revolves largely around policy enforcement/remediation and endpoint security provided by the management solution, mobile device security management focuses more on integrating with the security infrastructure already put in place by mobile device OEMs. Certificate management is a perennial concern with managing mobile devices. Because mobile devices generally run in a far more locked-down paradigm than PCs, valid certificates can be fundamental to mobile devices being able to run apps. Security paradigms are highly heterogeneous, however: Android devices accept self-signed certificates (indeed, Google views this as a feature of its open architecture as opposed to a security vulnerability) while mobile devices based on Windows RT, Windows Phone, and ios operating systems will not run without a trusted certificate (one issued by a trusted certificate authority in the case of Windows and one issued by Apple in the case of ios). For Microsoft and Apple devices, apps stop running when the code-signing certificates in apps expire. Table 5 details the steps IT must take to resolve this for ios, Windows Phone 8, and Windows RT devices.

8 Table 5. Resolutions for expired certificates Platform Apple ios* Windows Phone 8* Windows RT Resolution for Expired Certificates Renew the Apple Push Notification (APN) certificate and locate the Windows Intune* subscription ios page to upload the new certificate. The new certificate must be created by using the same ID as the original certificate or devices have to be enrolled again. Renew the code-signing certificate and go to the Windows Intune subscription page to upload the certificate. All apps signed with the previous certificate and the new certificate will run. Renew the code-signing certificate and open the Windows Intune subscription wizard Windows RT page to upload the new certificate. Device encryption is another key component of mobile device security management. For a detailed listing of encryption setting by device, see Appendix A. System Center Configuration Manager 2012 SP1 and Windows Intune Microsoft positions SCCM 2012 SP1 coupled with Windows Intune as Unified Device Management, an enterprise management scenario extending from servers to mobile devices. Coupling Windows Intune with SCCM certainly provides greater management capabilities for computers than Windows Intune alone. SCCM also scales more readily than Windows Intune: managing more than 4,000 users or 7,000 devices grows prohibitively complex with Windows Intune alone, whereas SCCM can scale to manage 100,000 devices. For its part, Windows Intune provides a connector by which SCCM can manage devices based on the Windows RT, Windows Phone 8, or ios operating systems. (Both Windows Intune and SCCM rely on EAS to manage devices based on Android.) Claim: Using Windows Intune together with SCCM enables you to identify and manage all endpoint devices...through a single interface 4 This claim that SCCM and Windows Intune work together for a single-pane-of-glass management solution is currently somewhat exaggerated. SCCM cannot manage computers not joined to the network domain, and Windows Intune is the only option for managing non-domain-joined PCs. Management of such computers can only be done via the Windows Intune web console, even if other devices managed by Windows Intune are managed through the SCCM console. Feature Differences Table 6 illustrates the broader capabilities the combination of SCCM 2012 SP1 and Windows Intune has over just Windows Intune alone. The largest differences are the additional desktop and laptop computer platforms that SCCM enables for management. However, SCCM coupled with Windows Intune also introduces some new management functionality beyond that enabled by just Windows Intune, even for platforms that can be managed by Windows Intune alone, such as automated remediation of non-compliant Windows 8, Windows 7, Windows Vista, and Windows XP devices. The combination of Windows Intune with SCCM for managing mobile devices also enables IT managers to update software on Windows RT, Windows Phone 8, and ios devices (although ios users must accept the update).

9 Table 6. Capabilities of Windows Intune* and Microsoft System Center Configuration Manager 2012 SP1* (Emphases in table cells indicate functionality differences of Windows Intune and SCCM 2012 SP1 over Windows Intune by itself) Capability/ Platform Windows 8* Windows 7, Windows Vista*, Windows XP Windows Embedded Windows To Go Apple Mac* Windows RT Windows Phone 8 Apple ios* Application Management Endpoint N N N N Protection Hardware 1 Inventory Software Inventory Remote N 5 N N N Assistance Reporting Software N 4 Updates Compliance Settings OS N/A N N/A N/A N/A N/A Deployment Out-of-band N/A N/A N N/A N/A N/A N/A Management Power N N N N N Management Software N N N N N Metering 1. Basic information only through EAS 4. Device user has to accept the update 2. Managed applications only 3. Compliance reporting but no remediation automation 5. Through Microsoft Easy Assist Google Android* Application Catalog Users of Windows computers can connect to the System Center Application Catalog, where they can browse for, install, and request software. For users who have mobile devices that are enrolled by Windows Intune and Android devices that are managed by the Exchange Server connector, the company portal servers as the equivalent of the Application Catalog for these devices. Company portals enable device users to access a list of available software and also to perform a number of management tasks on their Windows Phone 8, Windows RT, ios, and Android devices. SCCM 2012 R2 introduces apps in the Apple App store and Google Play store to simplify the enrollment process for ios and Android devices, respectively. Exchange ActiveSync* For better or for worse, EAS is the industry-default tool for managing mobile devices. The broad deployment base of Exchange Server gives EAS near-ubiquity while also providing a ready interface with the most widely used feature of mobile devices in the enterprise: . However, reliance on EAS for MDM has significant drawbacks. Because EAS interfaces with mobile devices through the devices applications rather than directly through devices operating systems, EAS is vulnerable to permitting connection to the Exchange server on the basis of bogus information provided by devices with compromised applications. Moreover, EAS provides few remediation options for non-compliant mobile devices other than denying them connection with the Exchange server.

10 Finally, because EAS policies are only enforceable when a device syncs with the Exchange server, a device in the hands of a thief or a terminated employee might never be wiped if the possessor of the device is technologically savvy enough not to let the device connect to the Exchange server. information sent by the device, such as with ios devices. All users are enabled for EAS by default, though an Exchange Server administrator can globally disable EAS for all users in Exchange System Manager. (Administrators can also enable or disable individual users by using AD DS Users and Computers.) However, using EAS for MDM is not an either/or proposition with Windows Intune (and, by extension, with SCCM). Notably, Windows Intune can only manage Android devices through EAS (by way of the Windows Intune Exchange Connector). Beyond this example, IT organizations can concurrently manage mobile devices directly through Windows Intune and/or through EAS. Used on its own for MDM, EAS provides these capabilities: Deployment of password, encryption, and attachment policies (among others) to user groups Definition of dynamic mobile device access rules by device family and device model to set which mobile devices can access the Exchange server Enrollment, renaming, and un-enrollment of managed devices Retirement of mobile devices with the option to wipe mobile devices, such as for lost or stolen devices Exchange Server uses the Allow/Block/Quarantine (ABQ) list to determine which device families and device models can access the Exchange server. Some devices will send device information directly in the EAS protocol to the server (Windows Phone 7.5 or later, BlackBerry 10.0* or later, Android 4.0 or later), while EAS deduces the device type using other If an organization does manage mobile devices using policy settings from both Windows Intune and EAS, the more secure policy settings are applied to devices. For organizations using SCCM, Windows Intune, and EAS for managing devices such as tablets running Windows 8, the resolution of conflicting policies can be less clear, however. For example, if a Windows 8 tablet does not comply with an EAS policy, its Mail modern app (the part of Windows 8 that can be managed by EAS) will not be allowed to connect to the organization s Exchange server. et if this same device is joined to the organization s AD DS domain and there is no Group Policy Object that mirrors the EAS policy of which the device ran afoul, there is nothing to prevent Microsoft Outlook* (if installed on the tablet) from connecting to the Exchange server. For a complete listing of EAS policy settings and a comparison of how they overlap with Windows Intune policy settings, see Appendix A. Devices running Exchange can be managed by either onpremises Exchange servers or the cloud-based Exchange Online service.

11 Conclusion Windows Intune took a leap forward in relevance in 2013 with its direct interface with SCCM 2012 SP1. The Microsoft management solution-as-a-service went from being a tool only suitable to SMBs with no pre-existing management infrastructure to being a connector by which enterprises could use their existing System Center management infrastructure to manage mobile devices. Further quantum leaps do not appear to be just over the immediate horizon, however: Microsoft is not telegraphing big things ahead for Windows Intune as it was in the second half of Improvements to functionality stemming from the launch of SCCM 2012 R2 appear to be incremental at this point. That is a shame because there are some rough edges yet to be sanded off in the combination of SCCM and Windows Intune, most notably the fact that nondomain-joined PCs can only be managed from the Windows Intune web interface and not from SCCM (as mobile devices are in the unified solution). Microsoft must also walk an interesting tightrope with respect to positioning Windows Intune. While much good can be said of its role in the enterprise as the connector for MDM in SCCM, the simple web interface and subscription model of Windows Intune can also increase its appeal to smaller companies that might have previously taken an unsystematic approach to device management (if any at all). Such companies might also avoid many of the device-management complexities inherited by larger organizations, particularly if they have no pre-existing infrastructure or are purely cloud based SCCM is a notoriously complex management application that grew to be the industry standard largely by Microsoft s inclusion of it in enterprise agreements for no extra cost. et despite holding some of the greatest promise for SMBs, Microsoft might have to wait for the needs of such companies to catch up with the capabilities of Windows Intune (let alone SCCM). For many companies of this size, the relatively rudimentary management capabilities provided by EAS are as far as their mobile management planning extends.

12 Appendix A: Mobile Device Settings Table 7 details mobile device settings that IT managers can set through Windows Intune, either on its own or coupled with SCCM 2012 SP1. The settings are color-grouped by policies dealing with passwords, device restrictions, , and encryption, respectively. Table 7. Mobile device settings Setting name Google Android* Windows 8.1*, Windows RT, Apple ios* Windows Phone 8 Require a password to unlock mobile devices 1 Required password type 1 Minimum password length 1 Allow simple passwords 1 Number of repeated sign-in failures before device is wiped 1 Minutes of inactivity before device screen is locked 1 Password expiration (days) 1 Remember password history 1 Allow convenience logon (Windows RT only) 1 Allow camera 1 Allow web browser 1 Allow backup to Apple icloud* (ios only) 1 Allow document sync to icloud (ios only) 1 Allow photostream sync to icloud (ios only) 1 Maximum size of attachments 2 synchronization (days) 2 Allow mobile devices that do not fully support these settings to synchronize with Microsoft Exchange* 2 Require encryption on mobile device 1,3 Require encryption on storage cards 2 1. Policy setting supported by both EAS and Windows Intune. 4. This setting can only be set to es for Windows Phone Policy setting supported only by EAS. 3. The policy setting only applies to mobile devices. Neither EAS nor Windows Intune can detect if BitLocker Drive Encryption* is implemented on a device that supports it. 5. This setting can be set for ios, although device encryption is only instantiated by setting a password on ios devices.

13 Appendix B: Mobile Device Inventory Properties Table 8 details mobile device inventory properties that IT managers can gather through Windows Intune, either on its own or coupled with SCCM 2012 SP1. (Note that regardless of whether IT uses Windows Intune or SCCM and Windows Intune, inventory properties for devices based on Google Android* can only be gathered through Microsoft Exchange ActiveSync*.) Table 8. Mobile device inventory properties Property Windows 8.1*, Windows RT Windows Phone 8 Apple ios* Google Android* Device name Unique device ID Serial number address OS type OS version OS language Total storage space (GB) Free storage space (GB) System enclosure chassis System enclosure International Mobile Station Equipment Identity (IMEI) Manufacturer Model Phone number (masked except last 4 digits) Subscriber carrier Cellular technology used by the device (none, GSM, CDMA) Wi-Fi* MAC Enrolled date (local time) Last contact (local time) Last Exchange status Last policy update status Access state Access state reason Management state ActiveSync ID

14 1 Microsoft. PC and mobile device management in the cloud. 2 Microsoft. Manage PC and mobile device security updates your way. 3 Microsoft. Empower people on virtually any device. 4 Microsoft. Unify management infrastructure. The analysis in this document was done by Prowess Consulting and commissioned by Intel. Results have been simulated and are provided for informational purposes only. Any difference in system hardware or software design or configuration may affect actual performance. Prowess, the Prowess logo, and SmartDeploy are trademarks of Prowess Consulting, LLC. Intel and the Intel logo are trademarks of Intel Corporation in the U.S. and/or other countries. Copyright 2014 Prowess Consulting, LLC. All rights reserved. *Other names and brands may be claimed as the property of others.

Apps. Devices. Users. Data. Deploying and managing applications across platforms is difficult.

Apps. Devices. Users. Data. Deploying and managing applications across platforms is difficult. Users Devices Apps Data Users expect to be able to work in any location and have access to all their work resources. The explosion of devices is eroding the standards-based approach to corporate IT. Deploying

More information

Infrastructure Deployment for Mobile Device Management with Microsoft System Center Configuration Manager and Windows Intune

Infrastructure Deployment for Mobile Device Management with Microsoft System Center Configuration Manager and Windows Intune Infrastructure Deployment for Mobile Device Management with Microsoft System Center Configuration Manager and Windows Intune Enrollment and Management of Mobile Devices with Microsoft System Center Configuration

More information

How Microsoft IT manages mobile device management

How Microsoft IT manages mobile device management IT Insights A service of Microsoft IT Showcase How Microsoft IT manages mobile device management July 2015 Bring Your Own Device (BYOD) is no longer just a trend. It is arguably the dominant culture in

More information

Windows Phone 8.1 Mobile Device Management Overview

Windows Phone 8.1 Mobile Device Management Overview Windows Phone 8.1 Mobile Device Management Overview Published April 2014 Executive summary Most organizations are aware that they need to secure corporate data and minimize risks if mobile devices are

More information

Getting Started Guide: Getting the most out of your Windows Intune cloud

Getting Started Guide: Getting the most out of your Windows Intune cloud Getting Started Guide: Getting the most out of your Windows Intune cloud service Contents Overview... 3 Which Configuration is Right for You?... 3 To Sign up or Sign in?... 4 Getting Started with the Windows

More information

New Features: What s new in Windows Intune?

New Features: What s new in Windows Intune? New Features: What s new in Windows Intune? Contents Release Overview... 2 Unified Enterprise Management Solution... 2 User-based Licensing... 5 Extending Client Support... 5 Understanding Mobile Device

More information

Enterprise Mobility Management Migration Migrating from Legacy EMM to an epo Managed EMM Environment. Paul Luetje Enterprise Solutions Architect

Enterprise Mobility Management Migration Migrating from Legacy EMM to an epo Managed EMM Environment. Paul Luetje Enterprise Solutions Architect Enterprise Mobility Management Migration Migrating from Legacy EMM to an epo Managed EMM Environment Paul Luetje Enterprise Solutions Architect Table of Contents Welcome... 3 Purpose of this document...

More information

1. What are the System Requirements for using the MaaS360 for Exchange ActiveSync solution?

1. What are the System Requirements for using the MaaS360 for Exchange ActiveSync solution? MaaS360 FAQs This guide is meant to help answer some of the initial frequently asked questions businesses ask as they try to figure out the who, what, when, why and how of managing their smartphone devices,

More information

McAfee Enterprise Mobility Management Versus Microsoft Exchange ActiveSync

McAfee Enterprise Mobility Management Versus Microsoft Exchange ActiveSync McAfee Enterprise Mobility Management Versus Microsoft Secure, easy, and scalable mobile device management Table of Contents What Can Do? 3 The smartphone revolution is sweeping the enterprise 3 Can enterprises

More information

Advanced Configuration Steps

Advanced Configuration Steps Advanced Configuration Steps After you have downloaded a trial, you can perform the following from the Setup menu in the MaaS360 portal: Configure additional services Configure device enrollment settings

More information

APPENDIX B1 - FUNCTIONALITY AND INTEGRATION REQUIREMENTS RESPONSE FORM FOR A COUNTY HOSTED SOLUTION

APPENDIX B1 - FUNCTIONALITY AND INTEGRATION REQUIREMENTS RESPONSE FORM FOR A COUNTY HOSTED SOLUTION APPENDIX B1 - FUNCTIONALITY AND INTEGRATION REQUIREMENTS RESPONSE FORM FOR A COUNTY HOSTED SOLUTION Response Code: Offeror should place the appropriate letter designation in the Availability column according

More information

How To Configure A Windows 8.1 On A Windows 7.1.1 (Windows) With A Powerpoint (Windows 8) On A Blackberry) On An Ipad Or Ipad (Windows 7) On Your Blackberry Or Black

How To Configure A Windows 8.1 On A Windows 7.1.1 (Windows) With A Powerpoint (Windows 8) On A Blackberry) On An Ipad Or Ipad (Windows 7) On Your Blackberry Or Black Introduction to Cloud-Based Mobile Device Management with Intune Information in this document, including URLs and other Internet Web site references, is subject to change without notice. Unless otherwise

More information

New Choices in Windows * Device Management

New Choices in Windows * Device Management White Paper 4th Generation Intel Core Processors and Intel Atom Processors Intel and Windows 8.1* Mobility New Choices in Windows * Device Management Considerations in Deciding How to Manage Windows Devices

More information

Windows Phone 8 Device Management

Windows Phone 8 Device Management Windows Phone 8 Device Management with Windows Intune and System Center Configuration Manager SP1 This white paper is part of a series of technical papers designed to help IT professionals evaluate Windows

More information

Systems Manager Cloud Based Mobile Device Management

Systems Manager Cloud Based Mobile Device Management Datasheet Systems Manager Systems Manager Cloud Based Mobile Device Management Overview Meraki Systems Manager provides cloud-based over-the-air centralized management, diagnostics, and monitoring of the

More information

Mobile device and application management. Speaker Name Date

Mobile device and application management. Speaker Name Date Mobile device and application management Speaker Name Date 52% 90% >80% 52% of information workers across 17 countries report using three or more devices for work* 90% of enterprises will have two or more

More information

Symantec Mobile Management for Configuration Manager 7.2

Symantec Mobile Management for Configuration Manager 7.2 Symantec Mobile Management for Configuration Manager 7.2 Scalable, Secure, and Integrated Device Management Data Sheet: Endpoint Management and Mobility Overview The rapid proliferation of mobile devices

More information

IBM United States Software Announcement 215-078, dated February 3, 2015

IBM United States Software Announcement 215-078, dated February 3, 2015 IBM United States Software Announcement 215-078, dated February 3, 2015 solutions provide a comprehensive, secure, and cloud-based enterprise mobility management platform to protect your devices, apps,

More information

Symantec Mobile Management 7.2

Symantec Mobile Management 7.2 Scalable, secure, and integrated device management Data Sheet: Endpoint Management and Mobility Overview The rapid proliferation of mobile devices in the workplace is outpacing that of any previous technology

More information

Microsoft Windows Intune: Cloud-based solution

Microsoft Windows Intune: Cloud-based solution Microsoft Windows Intune: Cloud-based solution So what exactly is Windows Intune? Windows Intune simplifies and helps businesses manage and secure PCs using Windows cloud services and Windows 7. Windows

More information

Ondřej Výšek Sales Lead, Microsoft MVP. vysek@kpcs.cz

Ondřej Výšek Sales Lead, Microsoft MVP. vysek@kpcs.cz Ondřej Výšek Sales Lead, Microsoft MVP vysek@kpcs.cz Azure Active Directory Features Free edition Basic edition Premium edition Directory as a service User and group management using UI or Windows PowerShell

More information

Managing Enterprise Devices and Apps using System Center Configuration Manager

Managing Enterprise Devices and Apps using System Center Configuration Manager Course 20696B: Managing Enterprise Devices and Apps using System Center Configuration Manager Course Details Course Outline Module 1: Managing Desktops and Devices in the Enterprise This module explains

More information

Symantec Mobile Management 7.2

Symantec Mobile Management 7.2 Scalable, secure, and integrated device management Data Sheet: Endpoint Management and Mobility Overview The rapid proliferation of mobile devices in the workplace is outpacing that of any previous technology

More information

Dell World Software User Forum 2013

Dell World Software User Forum 2013 Dell World Software User Forum 2013 December 9-12 Austin, TX SaaS Mobile Management Overview of Cloud Client Manager and integration with KACE K1000 Introducing Dell Enterprise Mobility Management Your

More information

Mobility Manager 9.5. Users Guide

Mobility Manager 9.5. Users Guide Mobility Manager 9.5 Users Guide LANDESK MOBILITY MANAGER Copyright 2002-2013, LANDesk Software, Inc. and its affiliates. All rights reserved. LANDesk and its logos are registered trademarks or trademarks

More information

Microsoft Enterprise Mobility Suite

Microsoft Enterprise Mobility Suite Microsoft Enterprise Mobility Suite Standalone - overview Peter Daalmans http://configmgrblog.com, peter@daalmans.com IT-Concern John Marcum Enterprise Client Management Architect / johnmarcum@outlook.com

More information

How To Make Your Computer System More Secure And Secure

How To Make Your Computer System More Secure And Secure Unified Device Management with Windows Intune Andras Khan Microsoft Western Europe HQ Agenda What are the challenges we are seeing cross vertical Unified Device Management Strategy How Unified Device Management

More information

BES10 Cloud architecture and data flows

BES10 Cloud architecture and data flows BES10 Cloud architecture and data flows Architecture: BES10 Cloud solution Component APNs BlackBerry Cloud Connector BES10 Cloud BlackBerry Infrastructure Company directory Devices GCM Other third-party

More information

Symantec Mobile Management Suite

Symantec Mobile Management Suite Symantec Mobile Management Suite One Solution For All Enterprise Mobility Needs Data Sheet: Mobile Security and Management Introduction Most enterprises have multiple mobile initiatives spread across the

More information

Managing Enterprise Devices and Apps using System Center Configuration Manager 20696B; 5 Days, Instructor-led

Managing Enterprise Devices and Apps using System Center Configuration Manager 20696B; 5 Days, Instructor-led Managing Enterprise Devices and Apps using System Center Configuration Manager 20696B; 5 Days, Instructor-led Course Description Get expert instruction and hands-on practice configuring and managing clients

More information

BlackBerry Enterprise Service 10. Universal Device Service Version: 10.2. Administration Guide

BlackBerry Enterprise Service 10. Universal Device Service Version: 10.2. Administration Guide BlackBerry Enterprise Service 10 Universal Service Version: 10.2 Administration Guide Published: 2015-02-24 SWD-20150223125016631 Contents 1 Introduction...9 About this guide...10 What is BlackBerry

More information

Feature List for Kaspersky Security for Mobile

Feature List for Kaspersky Security for Mobile Feature List for Kaspersky Security for Mobile Contents Overview... 2 Simplified Centralized Deployment... 2 Mobile Anti-Malware... 3 Anti-Theft / Content Security... Error! Bookmark not defined. Compliance

More information

Configuration Guide. BES12 Cloud

Configuration Guide. BES12 Cloud Configuration Guide BES12 Cloud Published: 2016-04-08 SWD-20160408113328879 Contents About this guide... 6 Getting started... 7 Configuring BES12 for the first time...7 Administrator permissions you need

More information

Athena Mobile Device Management from Symantec

Athena Mobile Device Management from Symantec Athena Mobile Device Management from Symantec Scalable, Secure, and Integrated Device Management for ios and Android Data Sheet: Endpoint Management and Mobility Overview The rapid proliferation of mobile

More information

Kaseya IT Automation Framework

Kaseya IT Automation Framework Kaseya Kaseya IT Automation Framework An Integrated solution designed for reducing complexity while increasing productivity for IT Professionals and Managed Service Providers. The powerful, web-based automation

More information

Mobile Device Management and Security Glossary

Mobile Device Management and Security Glossary Mobile Device Management and Security Glossary February, 2011 MOBILE OS ActiveSync Exchange ActiveSync (EAS) is a Microsoft technology that allows mobile users to access their Microsoft Exchange mailboxes

More information

ForeScout MDM Enterprise

ForeScout MDM Enterprise Highlights Features Automated real-time detection of mobile Seamless enrollment & installation of MDM agents on unmanaged Policy-based blocking of unauthorized Identify corporate vs. personal Identify

More information

The ForeScout Difference

The ForeScout Difference The ForeScout Difference Mobile Device Management (MDM) can help IT security managers secure mobile and the sensitive corporate data that is frequently stored on such. However, ForeScout delivers a complete

More information

Managing and Securing the Mobile Device Invasion. 2012 IBM Corporation

Managing and Securing the Mobile Device Invasion. 2012 IBM Corporation Managing and Securing the Mobile Device Invasion 2012 IBM Corporation Please Note: IBM s statements regarding its plans, directions, and intent are subject to change or withdrawal without notice at IBM

More information

Network Access Protection (NAP)

Network Access Protection (NAP) Executive Summary Management and consistent availability of servers and endpoints in a business means higher productivity. Period. When employees no longer have to be concerned with the availability of

More information

Course Outline. Managing Enterprise Devices and Apps using System Center Configuration ManagerCourse 20696B: 5 days Instructor Led

Course Outline. Managing Enterprise Devices and Apps using System Center Configuration ManagerCourse 20696B: 5 days Instructor Led Managing Enterprise Devices and Apps using System Center Configuration ManagerCourse 20696B: 5 days Instructor Led About this Course Get expert instruction and hands-on practice configuring and managing

More information

Kaspersky Lab Mobile Device Management Deployment Guide

Kaspersky Lab Mobile Device Management Deployment Guide Kaspersky Lab Mobile Device Management Deployment Guide Introduction With the release of Kaspersky Security Center 10.0 a new functionality has been implemented which allows centralized management of mobile

More information

Secure, Centralized, Simple

Secure, Centralized, Simple Whitepaper Secure, Centralized, Simple Multi-platform Enterprise Mobility Management 2 Controlling it all from one place BlackBerry Enterprise Service 10 (BES10) is a unified, multi-platform, device, application,

More information

Sophos Mobile Control Technical guide

Sophos Mobile Control Technical guide Sophos Mobile Control Technical guide Product version: 2 Document date: December 2011 Contents 1. About Sophos Mobile Control... 3 2. Integration... 4 3. Architecture... 6 4. Workflow... 12 5. Directory

More information

TCS Hy5 Presidio Your Mobile Environment, Your Way Configure, Secure, Deploy. Mobility Solutions

TCS Hy5 Presidio Your Mobile Environment, Your Way Configure, Secure, Deploy. Mobility Solutions TCS Hy5 Presidio Your Mobile Environment, Your Way Configure, Secure, Deploy Mobility Solutions The growth of in-house and third-party enterprise mobile applications; device diversity across ios, Android,

More information

Why EMM Is the Future of Mac Management

Why EMM Is the Future of Mac Management Why EMM Is the Future of Mac Management In the keynote session at WWDC 2014, Apple s Senior Vice President of Software Engineering Craig Federighi called ios a huge hit in the enterprise, noting the breadth

More information

IBM Endpoint Manager for Mobile Devices

IBM Endpoint Manager for Mobile Devices IBM Endpoint Manager for Mobile Devices A unified platform for managing mobile devices together with your traditional endpoints Highlights Address business and technology issues of security, complexity

More information

Unified Device Management Allows Centralized Governance of Corporate Network Devices

Unified Device Management Allows Centralized Governance of Corporate Network Devices Unified Device Management Allows Centralized Governance of Corporate Network Devices Published July 2013 The recent bring your own device trend that allows employees to use devices they own for business

More information

ios Enterprise Deployment Overview

ios Enterprise Deployment Overview ios Enterprise Deployment Overview ios devices such as ipad and iphone can transform your business. They can significantly boost productivity and give your employees the freedom and flexibility to work

More information

AirWatch Solution Overview

AirWatch Solution Overview AirWatch Solution Overview Marenza Altieri-Douglas - AirWatch Massimiliano Moschini Brand Specialist Itway 2014 VMware Inc. All rights reserved. Cloud Computing 2 BYOD 3 Device aziendali? 4 From Client/Server

More information

Overview of Microsoft Enterprise Mobility Suite (EMS) Cloud University

Overview of Microsoft Enterprise Mobility Suite (EMS) Cloud University Overview of Microsoft Enterprise Mobility Suite (EMS) Cloud University www.infrontconsulting.com Global #1 on System Center Trusted for over a decade Microsoft Partner of the year 2012, 2013 & 2014 #1

More information

Integrating Cisco ISE with GO!Enterprise MDM Quick Start

Integrating Cisco ISE with GO!Enterprise MDM Quick Start Integrating Cisco ISE with GO!Enterprise MDM Quick Start GO!Enterprise MDM Version 3.x Overview 1 Table of Contents Overview 3 Getting GO!Enterprise MDM Ready for ISE 5 Grant ISE Access to the GO!Enterprise

More information

iphone in Business Mobile Device Management

iphone in Business Mobile Device Management 19 iphone in Business Mobile Device Management iphone supports Mobile Device Management, giving businesses the ability to manage scaled deployments of iphone across their organizations. These Mobile Device

More information

Kaspersky Security for Mobile

Kaspersky Security for Mobile Kaspersky Security for Mobile See. Control. Protect. MOVING TARGETS Mobile devices play a key role in connectivity and productivity. But they also introduce new risks to the business: in the past 12 months

More information

Client Operating System and Applications Scope

Client Operating System and Applications Scope Client Operating System and Applications Scope Workshop Purpose and Objectives Workshop Purpose Review client experience options for the user base Review requirements to enable the rich experience and

More information

20696B: Administering System Center Configuration Manager and Intune

20696B: Administering System Center Configuration Manager and Intune 20696B: Administering System Center Configuration Manager and Intune Course Details Course Code: Duration: Notes: 20696B 5 days This course syllabus should be used to determine whether the course is appropriate

More information

Cisco Mobile Collaboration Management Service

Cisco Mobile Collaboration Management Service Cisco Mobile Collaboration Management Service Cisco Collaboration Services Business is increasingly taking place on both personal and company-provided smartphones and tablets. As a result, IT leaders are

More information

Configuration Guide. BlackBerry Enterprise Service 12. Version 12.0

Configuration Guide. BlackBerry Enterprise Service 12. Version 12.0 Configuration Guide BlackBerry Enterprise Service 12 Version 12.0 Published: 2014-12-19 SWD-20141219132902639 Contents Introduction... 7 About this guide...7 What is BES12?...7 Key features of BES12...

More information

AVG Business SSO Partner Getting Started Guide

AVG Business SSO Partner Getting Started Guide AVG Business SSO Partner Getting Started Guide Table of Contents Overview... 2 Getting Started... 3 Web and OS requirements... 3 Supported web and device browsers... 3 Initial Login... 4 Navigation in

More information

Feature Matrix MOZO CLOUDBASED MOBILE DEVICE MANAGEMENT

Feature Matrix MOZO CLOUDBASED MOBILE DEVICE MANAGEMENT Feature Matrix MOZO CLOUDBASED MOBILE DEVICE MANAGEMENT Feature Mobile Mobile OS Platform Phone 8 Symbian Android ios General MDM settings: Send SMS *(1 MOZO client settings (Configure synchronization

More information

ipad in Business Mobile Device Management

ipad in Business Mobile Device Management ipad in Business Mobile Device Management ipad supports Mobile Device Management, giving businesses the ability to manage scaled deployments of ipad across their organizations. These Mobile Device Management

More information

What We Do: Simplify Enterprise Mobility

What We Do: Simplify Enterprise Mobility What We Do: Simplify Enterprise Mobility AirWatch by VMware is the global leader in enterprise-grade mobility solutions across every device, every operating system and every mobile deployment. Our scalable

More information

When enterprise mobility strategies are discussed, security is usually one of the first topics

When enterprise mobility strategies are discussed, security is usually one of the first topics Acronis 2002-2014 Introduction When enterprise mobility strategies are discussed, security is usually one of the first topics on the table. So it should come as no surprise that Acronis Access Advanced

More information

Copyright 2013, 3CX Ltd. http://www.3cx.com E-mail: info@3cx.com

Copyright 2013, 3CX Ltd. http://www.3cx.com E-mail: info@3cx.com Manual Copyright 2013, 3CX Ltd. http://www.3cx.com E-mail: info@3cx.com Information in this document is subject to change without notice. Companies names and data used in examples herein are fictitious

More information

Troubleshooting BlackBerry Enterprise Service 10 version 10.1.1 726-08745-123. Instructor Manual

Troubleshooting BlackBerry Enterprise Service 10 version 10.1.1 726-08745-123. Instructor Manual Troubleshooting BlackBerry Enterprise Service 10 version 10.1.1 726-08745-123 Instructor Manual Published: 2013-07-02 SWD-20130702091645092 Contents Advance preparation...7 Required materials...7 Topics

More information

Answers to these questions will determine which mobile device types and operating systems can be allowed to access enterprise data.

Answers to these questions will determine which mobile device types and operating systems can be allowed to access enterprise data. Mobility options and landscapes are evolving quickly for the corporate enterprise. Mobile platform providers such as Apple, Google and Microsoft, and leading device hardware vendors are constantly updating

More information

How To Protect The Agency From Hackers On A Cell Phone Or Tablet Device

How To Protect The Agency From Hackers On A Cell Phone Or Tablet Device PRODUCT DESCRIPTION Product Number: 0.0.0 MOBILE DEVICE MANAGEMENT (MDM) Effective Date: Month 00, 0000 Revision Date: Month 00, 0000 Version: 0.0.0 Product Owner: Product Owner s Name Product Manager:

More information

Mobile Device Management Version 8. Last updated: 17-10-14

Mobile Device Management Version 8. Last updated: 17-10-14 Mobile Device Management Version 8 Last updated: 17-10-14 Copyright 2013, 2X Ltd. http://www.2x.com E mail: info@2x.com Information in this document is subject to change without notice. Companies names

More information

Okta Mobility Management

Okta Mobility Management Okta Mobility Management A User Centric Approach to Integrated Identity and Mobility Management Okta Inc. I 301 Brannan Street, Suite 300 I San Francisco CA, 94107 info@okta.com I 1-888-722-7871 Contents

More information

Radia Cloud. User Guide. For the Windows operating systems Software Version: 9.10. Document Release Date: June 2014

Radia Cloud. User Guide. For the Windows operating systems Software Version: 9.10. Document Release Date: June 2014 Radia Cloud For the Windows operating systems Software Version: 9.10 User Guide Document Release Date: June 2014 Software Release Date: June 2014 Legal Notices Warranty The only warranties for products

More information

Administration Guide. BlackBerry Enterprise Service 12. Version 12.0

Administration Guide. BlackBerry Enterprise Service 12. Version 12.0 Administration Guide BlackBerry Enterprise Service 12 Version 12.0 Published: 2015-01-16 SWD-20150116150104141 Contents Introduction... 9 About this guide...10 What is BES12?...11 Key features of BES12...

More information

Symantec Mobile Management 7.1

Symantec Mobile Management 7.1 Scalable, secure, and integrated device management Data Sheet: Endpoint Management and Mobility Overview The rapid proliferation of mobile devices in the workplace is outpacing that of any previous technology,

More information

Configuration Guide BES12. Version 12.2

Configuration Guide BES12. Version 12.2 Configuration Guide BES12 Version 12.2 Published: 2015-07-07 SWD-20150630131852557 Contents About this guide... 8 Getting started... 9 Administrator permissions you need to configure BES12... 9 Obtaining

More information

Sophos Mobile Control Administrator guide. Product version: 3.6

Sophos Mobile Control Administrator guide. Product version: 3.6 Sophos Mobile Control Administrator guide Product version: 3.6 Document date: November 2013 Contents 1 About Sophos Mobile Control...4 2 About the Sophos Mobile Control web console...7 3 Key steps for

More information

Symantec Mobile Management 7.1

Symantec Mobile Management 7.1 Scalable, secure, and integrated device management for healthcare Data Sheet: Industry Perspectives Healthcare Overview The rapid proliferation of mobile devices in the workplace is outpacing that of any

More information

Guideline on Safe BYOD Management

Guideline on Safe BYOD Management CMSGu2014-01 Mauritian Computer Emergency Response Team CERT-MU SECURITY GUIDELINE 2011-02 Enhancing Cyber Security in Mauritius Guideline on Safe BYOD Management National Computer Board Mauritius Version

More information

Deploying iphone and ipad Mobile Device Management

Deploying iphone and ipad Mobile Device Management Deploying iphone and ipad Mobile Device Management ios supports Mobile Device Management (MDM), giving businesses the ability to manage scaled deployments of iphone and ipad across their organizations.

More information

Configuration Guide BES12. Version 12.1

Configuration Guide BES12. Version 12.1 Configuration Guide BES12 Version 12.1 Published: 2015-04-22 SWD-20150422113638568 Contents Introduction... 7 About this guide...7 What is BES12?...7 Key features of BES12... 8 Product documentation...

More information

Android support for Microsoft Exchange in pure Google devices

Android support for Microsoft Exchange in pure Google devices Android support for Microsoft Exchange in pure Google devices Note: The information presented here is intended for Microsoft Exchange administrators who are planning and implementing support for any of

More information

Sophos Mobile Control Technical Guide. Product version: 3

Sophos Mobile Control Technical Guide. Product version: 3 Sophos Mobile Control Technical Guide Product version: 3 Document date: January 2013 Contents 1 About Sophos Mobile Control...3 2 Integration...5 3 Architecture...7 4 Workflow...12 5 Directory Access...14

More information

Configuration Guide BES12. Version 12.3

Configuration Guide BES12. Version 12.3 Configuration Guide BES12 Version 12.3 Published: 2016-01-19 SWD-20160119132230232 Contents About this guide... 7 Getting started... 8 Configuring BES12 for the first time...8 Configuration tasks for managing

More information

SA Series SSL VPN Virtual Appliances

SA Series SSL VPN Virtual Appliances SA Series SSL VPN Virtual Appliances Data Sheet Published Date July 2015 Product Overview The world s mobile worker population passed the 1 billion mark in 2010 and will grow to more than 1.3 billion by

More information

Endpoint protection for physical and virtual desktops

Endpoint protection for physical and virtual desktops datasheet Trend Micro officescan Endpoint protection for physical and virtual desktops In the bring-your-own-device (BYOD) environment, protecting your endpoints against ever-evolving threats has become

More information

Company Facts. 1,800 employees. 150 countries. 12,000 customers and growing. 17 languages. 11 global offices

Company Facts. 1,800 employees. 150 countries. 12,000 customers and growing. 17 languages. 11 global offices Disclaimer This presentation may contain product features that are currently under development. This overview of new technology represents no commitment from VMware to deliver these features in any generally

More information

Course MS20696A Managing Enterprise Devices and Apps using System Center Configuration Manager

Course MS20696A Managing Enterprise Devices and Apps using System Center Configuration Manager 3 Riverchase Office Plaza Hoover, Alabama 35244 Phone: 205.989.4944 Fax: 855.317.2187 E-Mail: rwhitney@discoveritt.com Web: www.discoveritt.com Course MS20696A Managing Enterprise Devices and Apps using

More information

Mobile Iron User Guide

Mobile Iron User Guide 2015 Mobile Iron User Guide Information technology Sparrow Health System 9/1/2015 Contents...0 Introduction...2 Changes to your Mobile Device...2 Self Service Portal...3 Registering your new device...4

More information

Architecture and Data Flow Overview. BlackBerry Enterprise Service 10 721-08877-123 Version: 10.2. Quick Reference

Architecture and Data Flow Overview. BlackBerry Enterprise Service 10 721-08877-123 Version: 10.2. Quick Reference Architecture and Data Flow Overview BlackBerry Enterprise Service 10 721-08877-123 Version: Quick Reference Published: 2013-11-28 SWD-20131128130321045 Contents Key components of BlackBerry Enterprise

More information

Where are Organizations Today? The Cloud. The Current and Future State of IT When, Where, and How To Leverage the Cloud. The Cloud and the Players

Where are Organizations Today? The Cloud. The Current and Future State of IT When, Where, and How To Leverage the Cloud. The Cloud and the Players The Current and Future State of IT When, Where, and How To Leverage the The and the Players Software as a Service Citrix VMWare Google SalesForce.com Created and Presented by: Rand Morimoto, Ph.D., MCITP,

More information

Kaspersky Security for Mobile Administrator's Guide

Kaspersky Security for Mobile Administrator's Guide Kaspersky Security for Mobile Administrator's Guide APPLICATION VERSION: 10.0 SERVICE PACK 1 Dear User, Thank you for choosing our product. We hope that you will find this documentation useful and that

More information

An Overview of Samsung KNOX Active Directory and Group Policy Features

An Overview of Samsung KNOX Active Directory and Group Policy Features C E N T R I F Y W H I T E P A P E R. N O V E M B E R 2013 An Overview of Samsung KNOX Active Directory and Group Policy Features Abstract Samsung KNOX is a set of business-focused enhancements to the Android

More information

Xperia TM. Read about how Xperia TM devices can be administered in a corporate IT environment

Xperia TM. Read about how Xperia TM devices can be administered in a corporate IT environment Xperia TM in Business Mobile Device Management Read about how Xperia TM devices can be administered in a corporate IT environment Device management clients Xperia TM T3 Exchange ActiveSync The my Xperia

More information

Product Manual. MDM On Premise Installation Version 8.1. Last Updated: 06/07/15

Product Manual. MDM On Premise Installation Version 8.1. Last Updated: 06/07/15 Product Manual MDM On Premise Installation Version 8.1 Last Updated: 06/07/15 Parallels IP Holdings GmbH Vordergasse 59 8200 Schaffhausen Switzerland Tel: + 41 52 632 0411 Fax: + 41 52 672 2010 www.parallels.com

More information

Security Guide. BlackBerry Enterprise Service 12. for ios, Android, and Windows Phone. Version 12.0

Security Guide. BlackBerry Enterprise Service 12. for ios, Android, and Windows Phone. Version 12.0 Security Guide BlackBerry Enterprise Service 12 for ios, Android, and Windows Phone Version 12.0 Published: 2015-02-06 SWD-20150206130210406 Contents About this guide... 6 What is BES12?... 7 Key features

More information

Sophos Mobile Control SaaS startup guide. Product version: 6

Sophos Mobile Control SaaS startup guide. Product version: 6 Sophos Mobile Control SaaS startup guide Product version: 6 Document date: January 2016 Contents 1 About this guide...4 2 About Sophos Mobile Control...5 3 What are the key steps?...7 4 Change your password...8

More information

www.novell.com/documentation Server Installation ZENworks Mobile Management 2.7.x August 2013

www.novell.com/documentation Server Installation ZENworks Mobile Management 2.7.x August 2013 www.novell.com/documentation Server Installation ZENworks Mobile Management 2.7.x August 2013 Legal Notices Novell, Inc., makes no representations or warranties with respect to the contents or use of this

More information

MaaS360 Mobile Device Management (MDM) Administrators Guide

MaaS360 Mobile Device Management (MDM) Administrators Guide MaaS360 Mobile Device Management (MDM) Administrators Guide Copyright 2014 Fiberlink Corporation. All rights reserved. Information in this document is subject to change without notice. The software described

More information

Enterprise Mobility Services

Enterprise Mobility Services Learn. Connect. Explore. Enterprise Mobility Services MS Anand Technical Architect Evangelist Anirudh Singh Rautela Enterprise Mobility Business lead - India The challenges we face today in keeping users

More information

Jonas Vercruysse Technical Pre-sales February 2013. Endpoint Management. 2013 IBM Corporation

Jonas Vercruysse Technical Pre-sales February 2013. Endpoint Management. 2013 IBM Corporation Jonas Vercruysse Technical Pre-sales February 2013 Endpoint Management 2013 IBM Corporation Agenda 2 Intro IBM Endpoint Manager overview Key value adds Functionalities Use cases Wrap-up Agenda 3 Intro

More information

BlackBerry Enterprise Service 10. Secure Work Space for ios and Android Version: 10.1.1. Security Note

BlackBerry Enterprise Service 10. Secure Work Space for ios and Android Version: 10.1.1. Security Note BlackBerry Enterprise Service 10 Secure Work Space for ios and Android Version: 10.1.1 Security Note Published: 2013-06-21 SWD-20130621110651069 Contents 1 About this guide...4 2 What is BlackBerry Enterprise

More information

ManageEngine Desktop Central. Mobile Device Management User Guide

ManageEngine Desktop Central. Mobile Device Management User Guide ManageEngine Desktop Central Mobile Device Management User Guide Contents 1 Mobile Device Management... 2 1.1 Supported Devices... 2 1.2 What Management Operations you can Perform?... 2 2 Setting Up MDM...

More information