CloudSync Mobile Device Management Technical Overview



Similar documents
Preparing for GO!Enterprise MDM On-Demand Service

INUVIKA OPEN VIRTUAL DESKTOP FOUNDATION SERVER

BlackBerry Enterprise Service 10. Universal Device Service Version: Administration Guide

Server Software Installation Guide

Pearl Echo Installation Checklist

Ensim WEBppliance 3.0 for Windows (ServerXchange) Release Notes


Propalms TSE Deployment Guide

VPN Web Portal Usage Guide

SECURITY DOCUMENT. BetterTranslationTechnology


PMDP is simple to set up, start using, and maintain

Lepide Active Directory Self Service. Configuration Guide. Follow the simple steps given in this document to start working with

White Paper. Anywhere, Any Device File Access with IT in Control. Enterprise File Serving 2.0

Installation Guide for Pulse on Windows Server 2012

Priority Pro v17: Hardware and Supporting Systems

Technical White Paper BlackBerry Enterprise Server

1. What are the System Requirements for using the MaaS360 for Exchange ActiveSync solution?

Citrix EdgeSight Administrator s Guide. Citrix EdgeSight for Endpoints 5.3 Citrix EdgeSight for XenApp 5.3

CTERA Agent for Mac OS-X

DEPLOYMENT GUIDE DEPLOYING THE BIG-IP LTM SYSTEM WITH MICROSOFT WINDOWS SERVER 2008 TERMINAL SERVICES

Server Installation ZENworks Mobile Management 2.7.x August 2013

HP IMC Firewall Manager

Management Solution for VTO(VoIP Traffic Optimizer) Service. Smart VTO Overview. AddPac Technology. 2014, Sales and Marketing.

Table of Contents Introduction and System Requirements 9 Installing VMware Server 35

Systems Manager Cloud Based Mobile Device Management

DEPLOYMENT GUIDE. Deploying the BIG-IP LTM v9.x with Microsoft Windows Server 2008 Terminal Services

Avalanche Remote Control User Guide. Version 4.1.3

Vodafone Secure Device Manager Administration User Guide

EZblue BusinessServer The All - In - One Server For Your Home And Business

Copyright 2012 Trend Micro Incorporated. All rights reserved.

SysAidTM Product Description

ReadyNAS Remote. User Manual. June East Plumeria Drive San Jose, CA USA

Desktop Surveillance Help

Security. TestOut Modules

Virtzone Cloud Control User Guide

Installation Guide for Pulse on Windows Server 2008R2

Citrix Access on SonicWALL SSL VPN

EZblue BusinessServer The All - In - One Server For Your Home And Business

Introduction to the Secure Gateway (SEG)

When enterprise mobility strategies are discussed, security is usually one of the first topics

Gigabyte Management Console User s Guide (For ASPEED AST 2400 Chipset)

Acronis and Acronis Secure Zone are registered trademarks of Acronis International GmbH.

Administration Guide. BlackBerry Enterprise Service 12. Version 12.0

How To Connect To Bloomerg.Com With A Network Card From A Powerline To A Powerpoint Terminal On A Microsoft Powerbook (Powerline) On A Blackberry Or Ipnet (Powerbook) On An Ipnet Box On

Expertcity GoToMyPC and GraphOn GO-Global XP Enterprise Edition

Feature and Technical

Web-Based Data Backup Solutions

Why a Reverse Proxy with My Instant Communicator for mobiles??

Mediasite EX server deployment guide

Installation, Configuration and Administration Guide

Secure Access Using VPN

inforouter V8.0 Server & Client Requirements

How To Use The Cisco Ace Module For A Load Balancing System

Remote VPN: Remote access for personal devices

VMware vcenter Log Insight Getting Started Guide

Simulation Trading Table of Contents

DOE VPN Client Installation and Setup Guide March 2011

Bell Mobile Device Management (MDM)

owncloud Architecture Overview

Kaspersky Endpoint Security 10 for Windows. Deployment guide

Enterprise Solution for Remote Desktop Services System Administration Server Management Server Management (Continued)...

MAC Web Based VPN Connectivity Details and Instructions

SVN5800 Secure Access Gateway

Introduction to Endpoint Security

Troubleshooting BlackBerry Enterprise Service 10 version Instructor Manual

MEGA Web Application Architecture Overview MEGA 2009 SP4

Alcatel-Lucent OmniVista TM 4760 Network Management System

Windows Web Based VPN Connectivity Details & Instructions

HP A-IMC Firewall Manager

SonicWALL WAN Acceleration FAQ Document

Aqua Connect Load Balancer User Manual (Mac)

Magaya Software Installation Guide

KASPERSKY LAB. Kaspersky Administration Kit version 6.0. Administrator s manual

Configuration Guide. BlackBerry Enterprise Service 12. Version 12.0

Bitrix Site Manager. VMBitrix Virtual Machine. Quick Start And Usage Guide

Setting Up . on Your Sprint Power Vision SM Mogul by HTC

PC-Duo Web Console Installation Guide

NCP Secure Enterprise Management Next Generation Network Access Technology

v7.8.2 Release Notes for Websense Content Gateway

CONNECT-TO-CHOP USER GUIDE

Live Guide System Architecture and Security TECHNICAL ARTICLE

- 1 - SmartStor Cloud Web Admin Manual

Kaseya Server Instal ation User Guide June 6, 2008

Installing and Using the vnios Trial

EOP ASSIST: A Software Application for K 12 Schools and School Districts Installation Manual

Avalanche Enabler 5.3 User Guide

Administrators Help Manual

The SSL device also supports the 64-bit Internet Explorer with new ActiveX loaders for Assessment, Abolishment, and the Access Client.

AuditMatic Enterprise Edition Installation Specifications

Storage Sync for Hyper-V. Installation Guide for Microsoft Hyper-V

Rally Installation Guide

CBE system requirements

owncloud Architecture Overview

RSA Authentication Manager 8.1 Setup and Configuration Guide. Revision 2

Introduction to the EIS Guide

Overview and Deployment Guide. Sophos UTM on AWS

Steelcape Product Overview and Functional Description

VPN: Virtual Private Network Setup Instructions

Transcription:

CloudSync Mobile Device Management Technical Overview Version 1.0 CloudSync, Inc. 3103 Fife Court Denver, CO 80211 +1 (720) 221-4444 phone +1 (720) 221-2670 fax contact@cloudsync.com

Table of Contents Table of Contents... 1 CloudSync Mobile Device Management... 2 Overview... 2 Product Options... 2 CloudSync Modules... 2 Device Manager Module... 3 Device Manager Features... 3 Device Manager Screen Shot... 3 Device Manager Architecture... 4 Remote Help Desk Module... 5 Features... 5 Screen Shot of the Remote Help Desk Console... 5 Remote Help Desk Architecture... 6 Access Control Module... 7 Features... 7 Technical Requirements... 9 Device Console... 9 Mobile Device... 9 Software... 9 Hardware... 9 Network... 10 Security... 11 Communication Security... 11 Application Security... 11 Page 1

CloudSync Mobile Device Management Overview CloudSync's Mobile Device Management software (MDM) allows you to remotely deploy software, security policies, and configurations to mobile devices such as PDA s, smart phones, laptops, as well as to rugged, commercial data-collection devices manufactured by Symbol, Intermec, PSC, HHP and others. The ability to centralize the management of devices in multiple locations is essential to companies who understand the current high cost and inefficiency of end-user self-support and maintenance, an approach resulting in decreased productivity, increased security liability, and an exceptionally high cost of ownership. According to Gartner, the current total cost of ownership (TCO) for a single hand-held device is $2800 annually. Product Options The CloudSync server is software solution based on standard web server technology. CloudSync can be used as a Subscription service utilizing our servers within our data center, or installed on your servers through our Enterprise license. CloudSync Modules CloudSync offers 3 distinct modules to meet your device management needs. 1. The Device Manager is our based mobile device management product with all the features you will need to successfully manage your remote devices. 2. Remote Help Desk is dashboard solution designed to enable Help Desk organizations to quickly diagnosis and fix any issue that a user may have with their mobile device. 3. Access Control enables your to control what your users have access to on the mobile device. Device Manager Remote Help Desk Access Control Asset Management File/Application Provisioning Version Control Performance Reporting Time Synchronization Remote Control File Manager Process Management Messaging Remote Reset Policy Manager Application Controller Application Launcher Desktop Replacement Menu Bar Icons Page 2

Device Manager Module Device Manager Features The CloudSync Device Manager module is the core application for remotely managing your mobile devices. The Device Manager allows you to: View and filter your mobile devices, by location, health, groups and more Remotely provision applications and files to your mobile device Receive periodic performance information from your mobile device, such as: o Running Processes / Applications o Network configuration and status (SSID, IP s, MAC, Access points, etc.) o Hardware and OS configuration o Battery information o Memory usage Assign application packages, time zones and configurations to defined groups of devices Receive reports and alerts on the health and status of your mobile devices Device Manager Screen Shot Page 3

Device Manager Architecture With device manager, the mobile device initiates the interaction with the server utilizing standard Internet security protocols (Secure Socket Layer (SSL)) via standard Internet ports (port 443). The device in essence pulls required data, applications and configurations from the CloudSync server. Role Based Authentication Supports Multi-Tier Account Management Super Administrator Account Administrator Helpdesk Rep Account Manager All Device to Server communications are encrypted, and transported as XML Web Services (SOAP) over HTTPS Internet HTTPS (:443) Internet Internet Private Network HTTPS (:443) CloudSync Servers HTTPS (:443) Page 4

Remote Help Desk Module Features The Remote Help Desk Module allows you to directly connect with the mobile device from your web-browser to perform various types of Help Desk functions such as: Remote Control the Mobile Device Take a screen-shot of the mobile device Enlarge the screen for training-purposes Start/stop processes Install/Uninstall applications Reset the mobile device (soft/hard) File explorer to copy, delete, download and upload files Messaging tool to send a text message to that particular device Screen Shot of the Remote Help Desk Console Page 5

Remote Help Desk Architecture To remotely manage your mobile devices they require a reachable IP address from your web-browser. If you are providing Help Desk support within your network you will more than likely have the ability to remote control and remotely access those devices (Scenario 2). However if you are providing Help Desk support out side of your network you will be required to VPN into your network to access those devices running within your corporate network (Scenario 1). For smart phones over a cellular network, most carriers will provide a public IP address for that device, making remote access and control to that device not an issue. Note: Having a reachable IP address is not required for the Device Manager or Access Control modules. Scenario 1: Remote Management via Public Network (Internet) Internet Internet Requires VPN or Reverse Proxy Port 7777, 80 or 443 (configurabl Scenario 2: Remote Management via Private e) Network Private Network Internet Port 7777, 80 or 443 (configurable) Page 6

Access Control Module Features The Access Control module is an end-user administration application that provides two major services: (1) It will lock the user out of executing unauthorized applications on a Windows Mobile device as specified by an administrator and (2) It replaces the Desktop GUI of the mobile unit with a secure launch platform displaying approved applications in icon form. Any unauthorized application that attempts to start up (either automatically or by user control) will immediately be terminated. AppCenter can also be configured to disable the Start Menu, SIP (on screen keyboard) and Smart-Minimize from the user. Access Control Screen Shots [Fig. 1a Launch screen] [Fig. 1b With Smart Minimize hidden With Smart Minimize enabled] and Menu Bar configured] Page 7

[Administrator screen Tools Options Taskbar tab] [Administrator screen -Tools] Page 8

Technical Requirements Device Console The CloudSync application is a web-based console accessible through any modern browser, such as Internet Explorer (5.x), Safari, Netscape (6.x), Firefox (1.x), from any internet-connected computer anywhere in the world. Mobile Device The CloudSync device agent will run on all Windows mobile operating systems (OS) (PPC, Windows Mobile 2002, 2003, Windows Mobile 5.0, CE.NET, Smartphone, and Windows XP). All Symbol, Intermec, PSC, Hand Held Products, Motorola LXE, etc. devices running these OS s are supported. The agent technology requires very little device memory and takes a very small footprint on the mobile device: Device Manager/Remote Help Desk: approximately 1.5 MB Access Control: approximately 225 KB Server* (*Enterprise Edition only, no server requirements for Subscription Edition) Software The Enterprise Edition of the CloudSync server utilizes standards based web technology, which will run on either Linux or Windows servers. The application is build on the commonly referred to LAMP stack (for Linux) or WAMP stack (for Windows). We use the following technologies: Apache: web server MySQL: data-base server PHP: for the application/scripting server To install CloudSync it is required that Apache, MySQL and PHP be preinstalled. We recommend using the XAMPP package installer for server administrators not familiar with these technologies. Hardware You can install the CloudSync Enterprise Server on any flavor of server that you are partial to. The hardware configuration will vary based on your requirements for redundancy, the number of devices you are using and availability. At a minimum we recommend the following for a single server environment: 2GB RAM Pentium 4 (Dual Opteron/Xeon would be better) 60 GB of RAM (RAID 1 would be better) Remote backup capability Page 9

Storage requirements will vary depending on the number of devices you have, how often they communicate with the server, and the duration that you keep logs, which is configurable. Network The CloudSync solution will work in wither connected, or semi-connected environments over LAN, WAN and WWAN networks via Ethernet, Active-Sync and PPP communication. The amount of network traffic will vary based on the number of devices you have communicating across the network to the server. If the network throughput is limited the devices can be configured to communicate at off-times such as early in the morning to minimize traffic. In addition data transmissions from the server to the device can be compressed to reduce network load. Page 10

Security Communication Security All communications between the mobile device, the web console, and the server are encrypted using SSL certificates. In addition CloudSync is compatible with any customer-implemented security protocol, such as LEAP, PEAP, WEP, etc. and runs nicely within any such environment. Application Security The mobile device can be configured so that all interactions with the device require authentication, in addition you can apply IP restrictions so only access from certain IP addresses can have control capabilities over that device. The web console supports 3 levels of users, Account Manager, Account Administrator, and System Administrator. Each of these roles determines the level of access a user has to the systems. For Enterprise Edition customers who wish to have single sign on capability via LDAP or Active Directory, this capability is available upon request. Page 11