Bring Your Own Device



Similar documents
Cisco s BYOD / Mobility

Stefan Dürnberger. Consulting Systems Engineer Cisco Deutschland. sduernbe@cisco.com. Co-Author Bitkom Leitfaden BYOD

Providing a work-your-way solution for diverse users with multiple devices, anytime, anywhere

Taking Charge with Apps, Policy, Security and More. October 16, 2012 Sheraton Denver Downtown Hotel Denver, CO

BYOD Strategy and Solutions

Cisco Unified Access Technology Overview: Converged Access

Cisco Secure BYOD Solution

Bring Your Own Device (BYOD) and 1:1 Initiatives: What Questions Do You Need to Answer Before Jumping In?

Cisco BYOD Smart Solution: Take a Comprehensive Approach to Secure Mobility

Cisco Wireless Portfolio

Empowering Students with Mobility and BYOD Technology

Cisco Virtualization Experience Infrastructure: Secure the Virtual Desktop

聚 碩 科 技 主 題 : 如 何 幫 企 業 行 動 商 務 建 立 安 全 機 制 職 稱 : 技 術 顧 問

Productive and Secure Enterprise Mobility with Cisco and Citrix

Secure Your Mobile Device Access with Cisco BYOD Solutions

Addressing BYOD Management Challenges with Cisco Prime

Readiness Assessments: Vital to Secure Mobility

MDM Integration with Cisco Identity Service Engine. Secure Access How -To Guides Series

Cisco Validated Design

Cisco Validated Design

Cisco TrustSec Solution Overview

XenMobile Integration with Cisco Identity Service Engine. Secure Access How -To Guides Series

Cisco Wireless Control System (WCS)

BYOD Networks for Kommuner

Solutions for admission control and data loss prevention in a modern corporate network

What Is Cisco Mobile Workspace Solution?

Cisco ASA and Cloud Web Security: Best-in-Class Network Security Combined with Best-in-Class Web Security

Secure Network Access for Personal Mobile Devices

Cisco Actualtests Exam Questions & Answers

Secure mobility with Citrix & Cisco

Meraki Wireless Solution Comparison

Meru MobileFLEX Architecture

Meru MobileFLEX Architecture

ARCHITECT S GUIDE: Comply to Connect Using TNC Technology

BYOD(evice) without BYOI(nsecurity)

Meru MobileFLEX. An Architecture Overview Design Wireless Networks for Control and Flexibility WHITEPAPER

Meraki 2015 Solution Brochure

Best practices for WiFi in K-12 schools

Cisco EXAM Enterprise Network Unified Access Essentials. Buy Full Product.

Cisco & Big Data Security

The BYOD Wave: Policy, Security, and Wireless Infrastructure

Advanced Security for Account Managers-ASAM

Passguide q

Cisco SecureX Product Brochure

Cisco IT Validates Rigorous Identity and Policy Enforcement in Its Own Wired and Wireless Networks

ARCHITECT S GUIDE: Mobile Security Using TNC Technology

Delivering Control with Context Across the Extended Network

Cisco Medical-Grade Network: Build a Secure Network for HIPAA Compliance

CISCO WIRELESS CONTROL SYSTEM (WCS)

Is Your Network Ready for the ipad?

ALCATEL-LUCENT ENTERPRISE CONVERGED NETWORK SOLUTION Deliver a consistent and quality user experience, streamline operations and reduce costs

The All-in-One, Intelligent WLAN Controller

SECURING ENTERPRISE NETWORK 3 LAYER APPROACH FOR BYOD

NX 9500 INTEGRATED SERVICES PLATFORM FOR THE PRIVATE CLOUD

Move beyond BYOD to Mobile Workspace with Cisco and Citrix

BYOD: BRING YOUR OWN DEVICE.

SOSPG2. Implementing Network Access Controls. Nate Isaacson Security Solution Architect

Why Migrate to the Cisco Unified Wireless Network?

Cisco Outdoor Wireless Mesh Enables Alternative Broadband Access

Best Practices for Configuring Cisco Wireless LAN Controllers

Deploying Cisco Basic Wireless LANs WDBWL v1.1; 3 days, Instructor-led

Securing the network for BYOD. Computacenter and Cisco in partnership

Cisco Outdoor Wireless Network Serves Up Automatic Meter Reading

Wi-Fi Security. More Control, Less Complexity. Private Pre-Shared Key

How To Make Your Phone A Mobile Device Safe And Secure

Bring Your Own Design: Implemen4ng BYOD Without Going Broke or Crazy. Eric Stresen- Reuter Technical Director Ruckus Wireless

The All-in-One, Intelligent WLAN Controller

Monitoring & Measuring: Wi-Fi as a Service

CCIE Security Written Exam ( ) version 4.0

Best Practices for Outdoor Wireless Security

Good MDM Integration with Cisco Identity Service Engine. Secure Access How -To Guides Series

Embracing BYOD with MDM and NAC. Chris Isbrecht, Fiberlink Gil Friedrich, ForeScout

Meraki: Introduction to Cloud Networking

Cisco 3300 Series Mobility Services Engine

How Cisco IT Built Virtual Desktop Infrastructure

Remote Management Services Portfolio Overview

Preparing your network for the mobile onslaught

Future Focus: What s Coming in Enterprise Mobility Management (EMM) FUTURE FOCUS. What s Coming in Enterprise Mobility Management.

Cisco and Citrix for Productive and Secure Enterprise Mobility citrix.com

QUALITY OF SERVICE FOR CLOUD-BASED MOBILE APPS: Aruba Networks AP-135 and Cisco AP3602i

Transcription:

Bring Your Own Device Cisco Values in BYOD Eric NG (bokng@cisco.com) Technical Solution Architect Enterprise Networking Group, Greater China 2011 Cisco and/or its affiliates. All rights reserved. Cisco Public 1

2011 Cisco and/or its affiliates. All rights reserved. Cisco Public Presentation_ID 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential 2

2011 Cisco and/or its affiliates. All rights reserved. Cisco Public Presentation_ID 2008 Cisco Systems, Inc. All rights reserved. Cisco Confidential 3

OLD WAY Enterprise provided and managed user devices Work is a place you go to limited off campus access IT visibility and control into user devices and applications Security lived on the IT managed endpoint EXECUTIVE EMPLOYEE NEW WAY Anywhere, anytime, any device usage Work is a function globally dispersed, mixed device ownership Change in IT control and management paradigm granularity beyond device Security lives in the network to allow for BYOD IT 2011 Cisco and/or its affiliates. All rights reserved. Cisco Public 4

Device Diversity is here to stay User Wants Consistent experience on multiple devices Seamless transitions between devices 89% 26% 75% Separation of work and personal data Keep up with tech and social trends 10% 36% IT Wants 1% 23% 22% Proactive adoption of consumer/mobile devices Embrace BYOD without sacrificing security, management, business standards Lower organizational costs Improved agility 2011 Cisco and/or its affiliates. All rights reserved. Cisco Public 5

Compliance Operations Network Team Security Operations Endpoint Team Application Team Human Resources 2011 Cisco and/or its affiliates. All rights reserved. Cisco Public 6

Denied or Restricted Allowe d Encouraged Bought in Environment requires tight controls Focus on basic services, easy access, almost anybody Enable differentiated services, on-boarding with security but no ownership Corp native apps, new services, full control Corp Only Device Mfg Environment Trading Floor Classified Gov Networks Traditional Enterprise Broader Device Types But Internet Only Edu Environments Public Institutions Simple Guest Multiple Device Types + Access Methods, VDI Healthcare Early BYOD Enterprise Adopters Contractor Enablement Multiple Device Types, Corp Issued, MDM Innovative Enterprises Retail on Demand Mobile Sales Services (Video, Collaboration, etc.) 2011 Cisco and/or its affiliates. All rights reserved. Cisco Public 7

Building blocks of Cisco BYOD Solution 2011 Cisco and/or its affiliates. All rights reserved. Cisco Public 8

Next Generation Workspace Policy Management Unified Access Security 2011 Cisco and/or its affiliates. All rights reserved. Cisco Public 9

Deny or Restrict Allow Encouraged Bought In Where to start with BYOD? FW Router Wireless Wired ISE Prime Infrastructure Connectivity Layer VPN External Wi- Fi Internal Wi-Fi Wired Smartphones Tablets Thin/VirtualClients Desktop/Notebooks Devices Layer 2011 Cisco and/or its affiliates. All rights reserved. Cisco Public 10

FW Router Wireless Wired Unified Access ISE Policy NCS Prime Management Best-of-Breed and Best-in-Class Mobility Predictability Best-of-Breed and Best-in-Class Policy and Network Management CleanAir ClientLink Chip level proactive and automatic interference mitigation Chip level proactive and automatic electronic beamforming ISE (Control) Who? What? When? Where? How? Radio Resource Management Simplified advanced RF management BandSelect Proactive and automatic band steering for 5GHz capable clients PI (Visibility) VideoStream Chip level wired multicast over a Wireless network AnyConnect Persistent context-aware VPN connectivity 2011 Cisco and/or its affiliates. All rights reserved. Cisco Public 11

ISE Policy Policy Centralized Policy Engine Profiling USER LOCATION HTTP DHCP NETFLOW TIME DEVICE Access Method DNS RADIUS SNMP VLAN 10 VLAN 20 Corporate Resources Corporate Employee Personal Single SSID Wireless LAN Controller Unified Access Management Restricted Internet Only Corporate Issued Device 1. User Authentication and Authorization 2. Profiling to identify device 3. Policy decision 4. Policy enforce to VLAN 10 on same SSID 5. Full access granted 6. Full device visibility PERSONAL Device 1. User Authentication and Authorization 2. Profiling to identify device 3. Policy decision 4. Policy enforce to VLAN 10 or 20 on same SSID 5. Full or Restricted access granted 6. Full device visibility 2011 Cisco and/or its affiliates. All rights reserved. Cisco Public 12

Deny or Restrict Allow Encouraged Bought In Taking BYOD outside the Enterprise? AnyConnect ScanSafe ESA/WSA ISE NCS Prime FW Router Wireless Wired ISE NCS Prime Connectivity Layer VPN External Wi- Fi Internal Wi-Fi Wired Smartphones Tablets Thin/VirtualClients Desktop/Notebooks Devices Layer 2011 Cisco and/or its affiliates. All rights reserved. Cisco Public 13

AnyConnect ScanSafe ASA/WSA Security Choice Diverse endpoint support for greater flexibility AnyConnect Client Security Rich, granular security integrated into the network Data Loss Prevention Threat Prevention WSA ASA Acceptable Use Access Control Experience Always-on intelligent connection for seamless experience and performance Access Granted Intranet Corporate File Sharing 2011 Cisco and/or its affiliates. All rights reserved. Cisco Public 14

Deny or Restrict Allow Encouraged Bought In Delivering Applications on BYOD Webex Jabber Quad VXI... ISE NCS Prime AnyConnect ScanSafe ASA/WSA ISE NCS Prime FW Router Wireless Wired ISE NCS Prime Connectivity Layer VPN External Wi- Fi Internal Wi-Fi Wired Smartphones Tablets Thin/VirtualClients Desktop/Notebooks Devices Layer 2011 Cisco and/or its affiliates. All rights reserved. Cisco Public 15

Only Cisco can tie all the pieces together! NCS Prime ISE IronPort WSA Cisco Catalyst Switches MDM Manager Cisco WLAN Controller 3 rd Party MDM Appliance Wired Network Devices CSM / ASDM AC NAM (Win Only) AC NAM (Win Only) AC VPN (All Mobile) AC Cloud Web Security (All PC s) 2011 Cisco and/or its affiliates. All rights reserved. Cisco Public 16

Control and Visibility for IT Predictability for Users Mobility Services Engine Physical or Virtual Indoor Access Points Teleworker 3310 and 3355 Wireless LAN Controllers 1600 600 Series Identity and Policy Data Integration 2500 Series WLC on SRE 2600 Outdoor NCS 1550 Series Physical or Virtual ISE 5500 Series WiSM2 3600 Density Distribution Switches 8500 vwlc 7500 3700 3500p Series Access Switches 6500 Series Compact 2960-S 3750-X/3850 4500E 2011 Cisco and/or its affiliates. All rights reserved. Cisco Public 17

Deny or Restrict Allow Encouraged Bought In Wired/Wireless/FW Infra ISE Prime Infrastructure Now Add AnyConnect IronPort ScanSafe Now Add MDM Apps (Webex, Jabber, Quad) Unified Access 2011 Cisco and/or its affiliates. All rights reserved. Cisco Public 18

Thank you.