iOS enterprise

66
Presenter: René Winkelmeyer Company: midpoints | purify it iOS devices in the enterprise

description

 

Transcript of iOS enterprise

Page 1: iOS enterprise

Presenter: René Winkelmeyer Company: midpoints | purify it

iOS devices in the enterprise

Page 2: iOS enterprise

•  René Winkelmeyer

•  Senior Consultant at midpoints | purify it

•  IBM Design Partner for Notes/Domino NEXT

•  IBM Design Partner for Mobile

•  OpenNTF projects

•  File Navigator (http://filenavigator.openntf.org) •  Social Enabler (http://socialenabler.openntf.org)

•  Contact •  Skype/Twitter/LinkedIn/Facebook: muenzpraeger •  http://blog.winkelmeyer.com •  [email protected] / [email protected]

About the speaker

Page 3: iOS enterprise

•  midpoints | purify it (http://www.midpoints.de)

•  IBM Advanced Business Partner

•  Apple Enterprise Developer Partner

•  we mobilize notes

•  IBM Lotus Traveler administration add-ons

•  IBM Lotus Traveler deployments

•  E-Mail-Management consulting

•  Notes/Domino, RCP, XPages development

About the speaker

Page 4: iOS enterprise

•  Why do YOU need to be engaged about iOS devices?

•  Using iOS devices with IBM Lotus Traveler

•  iOS enterprise capabilities

•  Over-The-Air-Deployment & MDM

Agenda

let‘s see demos for that

Page 5: iOS enterprise

•  Why do YOU need to be engaged about iOS devices?

•  Using iOS devices with IBM Lotus Traveler

•  iOS enterprise capabilities

•  Over-The-Air-Deployment & MDM

Agenda

Page 6: iOS enterprise

Why do YOU need to be engaged?

Page 7: iOS enterprise

Why do YOU need to be engaged?

Page 8: iOS enterprise

Why do YOU need to be engaged?

Page 9: iOS enterprise

Why do YOU need to be engaged?

Page 10: iOS enterprise

Why do YOU need to be engaged?

Page 11: iOS enterprise

Why do YOU need to be engaged?

Page 12: iOS enterprise

Why do YOU need to be engaged?

Page 13: iOS enterprise

Why do YOU need to be engaged?

Page 14: iOS enterprise

Why do YOU need to be engaged?

Page 15: iOS enterprise

Why do YOU need to be engaged?

Page 16: iOS enterprise

Why do YOU need to be engaged?

Page 17: iOS enterprise

Why do YOU need to be engaged?

Page 18: iOS enterprise

Why do YOU need to be engaged?

You‘ve got iOS devices and your users want mail (and more)!

Be the king!

Page 19: iOS enterprise

Why do YOU need to be engaged?

Mobile devices mean: configure the device manually.

Everything: VPN, Mail, WiFi and so on.

And what about security?

And about „BYOD“?

Page 20: iOS enterprise

Why do YOU need to be engaged?

Step 1: Define standards

Step 2: Configure policies

Step 3: Device Enrollment

Step 4: Manage devices

Page 21: iOS enterprise

Why do YOU need to be engaged?

Step 1: Define standards

Step 2: Configure policies Configuration profiles Step 3: Device Enrollment OTA Enrollment Step 4: Manage devices Mobile Device Management

Page 22: iOS enterprise

•  Why do YOU need to be engaged about iOS devices?

•  Using iOS devices with IBM Lotus Traveler

•  iOS enterprise capabilities

•  Over-The-Air-Deployment & MDM

Agenda

Page 23: iOS enterprise

Using iOS devices with Lotus Traveler

Page 24: iOS enterprise

•  Till now you need to activate ANY iOS device via iTunes (activate mode)

•  see the “iPhone Enterprise Deployment Guide”, Chapter 4

•  BUT

•  there are serious rumors, that Apple will implement OTA-Activation with iOS 5 !!!

Using iOS devices with Lotus Traveler

Page 25: iOS enterprise

•  IBM is leveraging the ActiveSync protocol for syncing mail, calendar and contacts, which is implemented per default on any iOS device.

•  “Normally” your users need to use the Traveler server and their http username and password to authenticate – and to install the “configuration profile”.

Using iOS devices with Lotus Traveler

Page 26: iOS enterprise

Using iOS devices with Lotus Traveler

Page 27: iOS enterprise

Using iOS devices with Lotus Traveler

Page 28: iOS enterprise

•  IBM Lotus Traveler does NOT solve ALL of you’re administration and security requirements like

•  realtime black- and whitelisting on a device basis

•  distributed administration (allow local administrators or the 1st level suppurt access to the Traveler server)

Using iOS devices with Lotus Traveler

Page 29: iOS enterprise

•  Why do YOU need to be engaged about iOS devices?

•  Using iOS devices with IBM Lotus Traveler

•  iOS enterprise capabilities

•  Over-The-Air-Deployment & MDM

Agenda

Page 30: iOS enterprise

iOS enterprise capabilities

Page 31: iOS enterprise

•  Traveler does NOT serve YOUR requirements for a real enterprise deployment.

•  IMHO it’s not the job of IBM to deliver it.

•  The good news: Apple is (the only!) hardware provider which has currently real good configuration capabilities for their devices.

•  The bad news: They don’t have an enterprise-ready software for that.

iOS enterprise capabilities

Page 32: iOS enterprise

•  For small environments you may use the “iPCU” – the iPhone Configuration Utility (despite the name it’s although for any iOS device).

•  You can create profiles with it.

•  But you don’t get a real OTA deployment.

iOS enterprise capabilities

Page 33: iOS enterprise

•  A “profile” is a XML file, which follows the plist DTD. They file extension is “.mobileconfig”.

•  Those settings can be

•  Mail settings: Exchange Traveler, IMAP, POP3

•  Certificates

•  VPN

•  WiFi

•  Passcode

•  Restrictions

•  …

iOS enterprise capabilities

Page 34: iOS enterprise

iOS enterprise capabilities

Page 35: iOS enterprise

•  You can deploy those iPCU profiles via

•  USB

•  Mail

•  HTTP download

•  For a secure deployment they should be encrypted and signed!

iOS enterprise capabilities

Page 36: iOS enterprise

iOS enterprise capabilities

Page 37: iOS enterprise

iOS enterprise capabilities

Page 38: iOS enterprise

iOS enterprise capabilities

Page 39: iOS enterprise

iOS enterprise capabilities

Page 40: iOS enterprise

iOS enterprise capabilities

Page 41: iOS enterprise

iOS enterprise capabilities

Page 42: iOS enterprise

iOS enterprise capabilities

Page 43: iOS enterprise

iOS enterprise capabilities

Page 44: iOS enterprise

iOS enterprise capabilities

Page 45: iOS enterprise

iOS enterprise capabilities

Page 46: iOS enterprise

iOS enterprise capabilities

Page 47: iOS enterprise

iOS enterprise capabilities

Page 48: iOS enterprise

iOS enterprise capabilities

Page 49: iOS enterprise

iOS enterprise capabilities

Page 50: iOS enterprise

iOS enterprise capabilities

Page 51: iOS enterprise

iOS enterprise capabilities

Page 52: iOS enterprise

iOS enterprise capabilities

Page 53: iOS enterprise

iOS enterprise capabilities

Page 54: iOS enterprise

•  Why do YOU need to be engaged about iOS devices?

•  Using iOS devices with IBM Lotus Traveler

•  iOS enterprise capabilities

•  Over-The-Air-Deployment & MDM

Agenda

Page 55: iOS enterprise

Over-The-Air deployment & MDM

Page 56: iOS enterprise

Over-The-Air deployment & MDM

D E M O

Page 57: iOS enterprise

7. Confirm installation

6. Profile installation 6. Profile installation

5. Individual encrypted profile 5. Individual encrypted profile

3. Identify device 3. Identify device

2. Login 2. Login 1. Open URL 1. Open URL

Profile Service

4. Enroll Identity (SCEP)

Certificate Authority

4. Enroll Identity (SCEP)

Over-The-Air deployment & MDM

Page 58: iOS enterprise

•  Mobile Device Management allows you

•  transparent OTA management of your iOS devices (through HTTPS)

•  Remote commands

•  Install/remove profiles seamless

•  Lock / erase device

•  reset passcode

•  Queries

•  Network information

•  Device information

•  App information

Over-The-Air deployment & MDM

Page 59: iOS enterprise

4. Bind to MDM server 4. Bind to MDM server 3. Install MDM Profile 3. Install MDM Profile

2. Create MDM Profile 2. Create MDM Profile

1. OTA Enrollment 1. OTA Enrollment

Notification Service

MDM Server

Initial setup

Over-The-Air deployment & MDM

Page 60: iOS enterprise

Over-The-Air deployment & MDM

D E M O

Page 61: iOS enterprise

4. Queries + commands via Profile-Payload

Notification Service

4. Queries + commands via Profile-Payload

3. Connect to MDM 3. Connect to MDM 2. Device notification 2. Device notification 1. Send MDM Push 1. Send MDM Push

MDM Server

Active Management

Over-The-Air deployment & MDM

Page 62: iOS enterprise

•  iOS devices are enterprise ready.

•  YOU need device management to have a valuable and secure iOS experience.

•  Get the most out of you business with iOS devices, OTA and custom applications. It’s really worth!

Conclusion

Page 63: iOS enterprise

Conclusion

Page 64: iOS enterprise

Thank you!

If I’m not overdue: let’s switch to Q&A!

Page 65: iOS enterprise

•  René Winkelmeyer •  Skype/Twitter/LinkedIn/Facebook: muenzpraeger •  http://blog.winkelmeyer.com •  http://www.xing.de/Rene_Winkelmeyer •  [email protected] / [email protected]

•  midpoints | purify it •  http://www.midpoints.de •  [email protected]

Contact

Page 66: iOS enterprise

•  iTunes deployment •  http://images.apple.com/iphone/business/docs/iPhone_iTunes.pdf

•  Device Deployment •  http://images.apple.com/iphone/business/docs/iPhone_Business.pdf

•  Security •  http://images.apple.com/iphone/business/docs/iPhone_Security.pdf

•  Mobile Device Management •  http://images.apple.com/iphone/business/docs/iPhone_MDM.pdf

•  Certificates •  http://images.apple.com/ipad/business/docs/iPad_Certificates.pdf

Resources