SlideShare a Scribd company logo
BYOD – Strategy,
Objectives and
and Tools
Aptera
Jan 2014
.
What's your BYOD Strategy? Objectives and tips from Microsoft & Aptera
What's your BYOD Strategy? Objectives and tips from Microsoft & Aptera
What's your BYOD Strategy? Objectives and tips from Microsoft & Aptera
What's your BYOD Strategy? Objectives and tips from Microsoft & Aptera
What's your BYOD Strategy? Objectives and tips from Microsoft & Aptera
What's your BYOD Strategy? Objectives and tips from Microsoft & Aptera
What's your BYOD Strategy? Objectives and tips from Microsoft & Aptera
What's your BYOD Strategy? Objectives and tips from Microsoft & Aptera
What's your BYOD Strategy? Objectives and tips from Microsoft & Aptera
What's your BYOD Strategy? Objectives and tips from Microsoft & Aptera
What's your BYOD Strategy? Objectives and tips from Microsoft & Aptera
What's your BYOD Strategy? Objectives and tips from Microsoft & Aptera
What's your BYOD Strategy? Objectives and tips from Microsoft & Aptera
http://imagesrv.gartner.com/reprints/249800/249820/249820_1.png
What's your BYOD Strategy? Objectives and tips from Microsoft & Aptera
What's your BYOD Strategy? Objectives and tips from Microsoft & Aptera
How Microsoft addresses today’s challenges

Users

Devices

Apps

Data

Users expect to be able to
work in any location and
have access to all their
work resources.

The explosion of devices is
eroding the standards-based
approach to corporate IT.

Deploying and managing
applications across
platforms is difficult.

Users need to be productive
while maintaining
compliance and reducing
risk.
Empowering People-centric IT
Enable users
Allow users to work on the
devices of their choice and
provide consistent access to
corporate resources.

Unify your environment
Users

Devices

Apps

Data

Deliver a unified application and
device management onpremises and in the cloud.

Protect your data

Management. Access. Protection.

Help protect corporate
information and manage risk.
Selecting the Management Platform

Unified Device Management – System Center
2012 R2 Configuration Manager with Windows
Intune

Cloud-based Management - Standalone
Windows Intune
No existing Configuration Manager deployment
Simplified policy control
Fewer than 7,000 devices and 4,000 users
Simple web-based administration console
Windows Intune – Standalone service

Windows PCs
(x86/64, Intel SoC)

Windows RT,
Windows Phone 8
iOS, Android

Manage up to 7,000 devices and 4,000 users
What's your BYOD Strategy? Objectives and tips from Microsoft & Aptera
Mobile Device Management with Windows Intune

Direct management (Windows RT,
Windows Phone 8, iOS)

EAS based management
Information Worker Self-service Experience
Connect every user ‘s device to the service
Enable them to discover applications

Let users manage their own devices and data

Provide a premium end user experience
End User Experience

Consistent self service experience for end user across mobile platforms
Windows RT
Company Portal

Windows Phone 8
Company Portal

iOS
Company Portal

Native Windows application

Native Windows Phone 8 app (.xap)

Native iOS application

Available in the Windows Store

Side-loaded during enrollment

Available in the Apple App store
End User Capabilities for each Platform
Windows 8 &
Windows 8.1

Windows RT &
Windows 8.1 RT

Windows
Phone 8

iOS

Android

Enroll (local device)

Yes

Yes

Yes

Yes

EAS

Rename devices

Yes

Yes

Yes

Yes

No

Retire (un-enroll local device)

Yes

Yes

Yes

Yes

No

Remotely wipe other devices

Yes

Yes

No

No

No

Install enterprise LOB applications

Yes

Yes

Yes

Yes

Yes

Install publicly available applications

Yes

Yes

Yes

Yes

yes

Browse to web links

Yes

Yes

Yes

Yes

Yes

Contact IT

Yes

Yes

Yes

Yes

Yes
Mobile Device Inventory

Hardware properties for mobile
devices are collected through the
Device Management Authority as
well as Exchange ActiveSync.

No software inventory for mobile
devices to respect the Information
Worker’s privacy on their own
device.

IT Pros can track storage on
mobile devices which help them
anticipate/troubleshoot issues.
Settings Management

Security policy on devices
(iOS, Windows RT and WP8)
Direct management and
Exchange ActiveSync.

Reporting available on
each setting whether it is
applicable, conformant or
has an error.

The same security policy
template is used for
both Direct
Management and EAS
to help Admins

Android and Windows
Phone 7 devices can be
managed through EAS
Application Management on Mobile Devices
Platforms

Windows
8/Windows RT

Windows Phone
8

iOS

Android

Sideload to
install

*.appx

*.xap

*.ipa

*.apk

Deep links to
store apps –
install from
store
Software Distribution Summary
Desktop Apps
(.msi, .exe)

Platform

Modern App Types
Side loading
.appx

.xap

.ipa

.apk

Deep
Links

web
apps

Windows 8 Pro/Ent

√

√

√

√

Windows RT

**

√

√

√

√

√

√

√

√

√

√

iOS

√

Android

√

WP8
Windows 7 and below

**

√

Windows 8 SSP on WinRT will show MSI/EXE apps that can remotely install to other
PCs linked to the user, but not installable on the local Window RT device

√
Protect your data

Help protect corporate information and manage risk

Lost or Stolen

Retired
Lost or
Enrollment Stolen

• Selective wipe removes corporate applications,
data, and policies based as supported by each
Users can access
corporate data regardless
of device or location with
Work Folders for data
sync and desktop
virtualization for
centralized applications.
IT can provide a secure and
familiar solution for users to
access sensitive corporate data
from anywhere with VDI and
RemoteApp technologies.

platform
Personal Apps
and Data

Personal
Apps and
Data

Company Apps
and Data

Company Apps
• Full wipe if supported by each platform
and Data

• Can be executed by IT or by user via Company

Portal

Retired

Remote App

Centralized
Data
Remote App

• Sensitive data or applications can be kept off
Policies

Policies
device and accessed via Remote Desktop Services
Recap: MDM Features per Platform
Management
Feature

Windows RT

Windows
Phone 8

iOS

Y

Y

Y

Y

Y

Y

Y

Settings
Management

Y

Y

Y

Y

Software
Distribution

Y

Y

Y

Y

Y

Y

Y

Over-the-air
Enrollment
Inventory

Remote Wipe

Android
Thank You!

Mark Gordon
markgo@apterainc.com

.
Appendix
Windows Intune integrated with System Center 2012 R2
Configuration Manager
Windows PCs
(x86/64, Intel SoC),
Windows to Go
Windows Embedded
Mac OS X

Windows RT,
Windows Phone 8
iOS, Android
Manage and Secure PCs and Devices Anywhere
Simple web-based Administration Console and a
richer experience for Information Workers

 Help protect PCs from malware
 Manage updates
 Distribute software
 Proactive monitoring and alerts
 Provide remote assistance
 Inventory hardware and software
 Monitor & track licenses
 Increase insight with reporting
 Set security policies
 Richer Mobile Device Management
Non-intrusive Management
Management tasks can work with the Windows 8 maintenance window

Management tasks do not interrupt if the end user immersed in a modern application
Mobile device wipe and retire
Category
Full Wipe

Windows 8.1
(MDM managed)
Not applicable

Windows 8 RT
Not applicable

Windows Phone


iOS

Android (EAS)




Retire (Selective wipe)
 (Email through EAS)

 (Email through EAS)

Company apps
and associated
data installed by
using
Configuration
Manager and
Windows Intune

Uninstalled and sideloading
keys are removed.
In addition any apps using
Windows Selective Wipe will
have the encryption key
revoked and data will no
longer be accessible

Sideloading keys
removed but remain
installed

Settings

Requirements removed

Management
Client

Not applicable. Management
agent is built-in

Email

 (Email through EAS)

Uninstalled and data
removed

Uninstalled and data
removed

Apps and data remain
installed

Requirements removed Requirements removed Requirements removed Requirements removed
Not applicable.
Management agent is
built-in

Not applicable.
Management agent is
built-in

Management profile is
removed

Not applicable.
Management agent is
built-in
Mobile Device
Settings

Setting name

EAS

WinRT/ WinPh8

iOS

(Activesync)

Require a password to unlock mobile devices

√

√

Required password type

√

√

√

Minimum password length

√

√

√

Allow simple passwords

√

√

√

Number of repeated sign-in failures before device is wiped

√

√

√

Minutes of inactivity before device screen is locked

√

√

√

Password expiration (days)

√

√

√

Remember password history

Password

√

√

√

√

√

Allow convenience logon (WindowsRT only)
Allow camera

√

Allow web browser

Device restrictions

√

√

√

Allow backup to iCloud (iOS only)

√

Allow documents sync to iCloud (iOS only)

√

Allow photostream sync to icloud (iOS only)

√

Maximum size of e-mail attachments

Encryption

E-mail synchronization for last (days)

√

Allow mobile devices that don’t fully support these settings to
synchronize with Exchange

Email

√
√

Require encryption on mobile device

√

Require encryption on storage cards

√
Mobile Device
Inventory

Property

Win RT

WP8

iOS

Android (EAS)

Device name

Y

Y

Y

Y

Unique device ID

Y

Y

Y

Serial number

Y

Email address

Y

Y

OS type

Y

Y

OS version

Y

Y

OS language

Y

Y
Y

Y

Y

Y
Y

Total storage space (GB)

Y

Y

Free Storage space (GB)

Y

Y

System enclosure Chassis

Y

System enclosure IMEI

Y

Manufacturer

Y

Y

Model

Y

Y

Y

Y

Phone number (masked except last 4 digits)

Y

Y

Subscriber carrier

Y

Cellular technology(none, GSM, CDMA)

Y

WiFI MAC

Y

Enrolled date (local time)

Y

Y

Y

Last contact (local time)

Y

Y

Y

Y

Y

Last Exchange status

Y

Last Policy update status

Y

Access State

Y

Access state reason

Y

Management state

Y

ActiveSync ID

Y
Flexible Licensing that Fits Your Needs
Don’t Have
Configuration
Manager

Windows Intune
(includes Configuration Manager license)
($6 per user per month)

Windows Intune & Windows Enterprise
(includes Configuration Manager license)
($11 per user per month)

Already have
Configuration
Manager

Windows Intune
(Add-On)
($4 per user per month)

• Single License: Windows Intune
and Configuration Manager
• Per User Licensing
• Up to 5 devices/user
For More Information
System Center 2012 Configuration Manager
http://technet.microsoft.com/enus/evalcenter/hh667640.aspx?wt.mc_id=TEC_105_1_33

Windows Intune
http://www.microsoft.com/en-us/windows/windowsintune/try-andbuy

Windows Server 2012

http://www.microsoft.com/en-us/server-cloud/windowsserver

More Resources:
http://www.microsoft.com/workstyle
http://www.microsoft.com/server-cloud/user-device-management

More Related Content

PDF
Enterprise Mobility (Admin)
PDF
Why Hexnode UEM
PDF
What Happens When You Press that Button?
PDF
Microsoft Cloud Device Management comparisions
PDF
Microsoft Intune - Global Azure Bootcamp 2018
PDF
Windows 10: Security Focus (part II)
PPTX
Wally Mead - Managing mobile devices with system center 2012 r2 configuration...
PPTX
Managing iOS with Microsoft Intune
Enterprise Mobility (Admin)
Why Hexnode UEM
What Happens When You Press that Button?
Microsoft Cloud Device Management comparisions
Microsoft Intune - Global Azure Bootcamp 2018
Windows 10: Security Focus (part II)
Wally Mead - Managing mobile devices with system center 2012 r2 configuration...
Managing iOS with Microsoft Intune

What's hot (20)

PDF
Hexnode UEM Remote Device Management
PDF
Roadmap to Healthcare HIPAA Compliance and Mobile Security for BYOD
PDF
SmartDevCon - Katowice - 2013
PDF
Mobile Device Management for Office 365 - Atidan
PDF
Remote Monitoring and Management FAQs
PPTX
Preparing for Mobile Device Management & Bring your Own Device
PDF
How a UEM solution can help the healthcare industry
PPTX
Office 365 Mobile Device Management: What Is It, and Why Should You Care - Pa...
PDF
Mobile Security for Banking and Finance
DOC
Mobile Device Security Policy
PDF
Control review for iOS
PPS
sym
PDF
Cut BYOD Costs Using Virtual Mobile Infrastructure - VMI
PPTX
Wally Mead - Deploying a system center 2012 r2 configuration manager environm...
PDF
Mobile Device Management for Dummies
PDF
Your Shortcut to BYOD Success
PDF
Hexnode Unified Endpoint Management
PDF
Mobile App Virtualization 101
PPTX
ppt ch13
PDF
SierraVMI Virtual Mobile Infrastructure (VMI). Android-based VDI.
Hexnode UEM Remote Device Management
Roadmap to Healthcare HIPAA Compliance and Mobile Security for BYOD
SmartDevCon - Katowice - 2013
Mobile Device Management for Office 365 - Atidan
Remote Monitoring and Management FAQs
Preparing for Mobile Device Management & Bring your Own Device
How a UEM solution can help the healthcare industry
Office 365 Mobile Device Management: What Is It, and Why Should You Care - Pa...
Mobile Security for Banking and Finance
Mobile Device Security Policy
Control review for iOS
sym
Cut BYOD Costs Using Virtual Mobile Infrastructure - VMI
Wally Mead - Deploying a system center 2012 r2 configuration manager environm...
Mobile Device Management for Dummies
Your Shortcut to BYOD Success
Hexnode Unified Endpoint Management
Mobile App Virtualization 101
ppt ch13
SierraVMI Virtual Mobile Infrastructure (VMI). Android-based VDI.
Ad

Viewers also liked (20)

PDF
Ensuring optimised design, successful migration and safety compliant systems
PPT
Mentors Facilitating The Success Of Disadvantaged Students
DOC
COMENTARIOS AL CODIGO CIVIL SOBRE DESALOJO INQUILINO MOROSO
PDF
NOTCH Magazine Issues its 9th Edition with Aamir Khan on its cover
PDF
Suplemento univ austral marzo 2013
PPTX
Presentacion qwds 2012 ii
PDF
Fortunewest Business Development
PDF
Weed
PPS
Domingo 6.Pascua.
PDF
Buena gobernanza en las políticas digitales. Cómo maximizar el potencial de l...
PDF
A criatividade com a literatura infanto juvenil - jose eduardo gallo
PPTX
El pez payaso
PDF
Λατινικά, ενότητα 20
PDF
Representantes y representados: ¿cómo interaccionan en salud laboral?
PDF
Calendario de actividades 21 de septiembre
PDF
4 manual identidad-corporativa_era7
PDF
The Digital Telecom. Security Services
PDF
Disrupting Aged Care: A Design Manifesto for Change
PDF
Arte cicládico 2010
PDF
Stage 5 - Australians at War - Suite of Lesson
Ensuring optimised design, successful migration and safety compliant systems
Mentors Facilitating The Success Of Disadvantaged Students
COMENTARIOS AL CODIGO CIVIL SOBRE DESALOJO INQUILINO MOROSO
NOTCH Magazine Issues its 9th Edition with Aamir Khan on its cover
Suplemento univ austral marzo 2013
Presentacion qwds 2012 ii
Fortunewest Business Development
Weed
Domingo 6.Pascua.
Buena gobernanza en las políticas digitales. Cómo maximizar el potencial de l...
A criatividade com a literatura infanto juvenil - jose eduardo gallo
El pez payaso
Λατινικά, ενότητα 20
Representantes y representados: ¿cómo interaccionan en salud laboral?
Calendario de actividades 21 de septiembre
4 manual identidad-corporativa_era7
The Digital Telecom. Security Services
Disrupting Aged Care: A Design Manifesto for Change
Arte cicládico 2010
Stage 5 - Australians at War - Suite of Lesson
Ad

Similar to What's your BYOD Strategy? Objectives and tips from Microsoft & Aptera (20)

PPTX
Gerenciamento de dispositivos móveis com Intune e SCCM
PPTX
System Center 2012 R2 Configuration Manager (SCCM) with Windows Intune
PPT
How to deploy Windows Mobile to 40,000 users
PDF
Hexnode Windows Management solution
PPTX
Understand_device_management_using_Microsoft_Intune_(1)[1].pptx
PDF
Sysctr Track: Unified Device Management: It’s all about the experience
PPTX
Managing Mobility - Microsoft Enterprise Mobility - Accelerate, Protec and M...
PPTX
TechEd NZ 2014: Enterprise Management with Microsoft System Center Configurat...
PDF
Moderne device management door middel van cloud
PDF
Entgra IoT Server 4.1 Webinar.pdf
PDF
New Features for Mobile Device Management (MDM) With Entgra
PPTX
EPC Group Intune Practice and Capabilities Overview
PDF
#EVRYWhatsNext EMS Slide Deck
PDF
Enterprise Mobility kan det gøres let for alle
PDF
Microsoft Intune - Empowering Enterprise Mobility - Presented by Atidan
PDF
Migrate from BigFix to Ivanti
PPTX
Intune_DSEP. traininf for mam and mbam a
PDF
WSO2Con USA 2015: Connected Device Management for Enterprise Mobility and Beyond
PPTX
Modern Management for Identiteter og Enheter – Azure AD, Intune og Windows 10
PPT
Mobile Device Management
Gerenciamento de dispositivos móveis com Intune e SCCM
System Center 2012 R2 Configuration Manager (SCCM) with Windows Intune
How to deploy Windows Mobile to 40,000 users
Hexnode Windows Management solution
Understand_device_management_using_Microsoft_Intune_(1)[1].pptx
Sysctr Track: Unified Device Management: It’s all about the experience
Managing Mobility - Microsoft Enterprise Mobility - Accelerate, Protec and M...
TechEd NZ 2014: Enterprise Management with Microsoft System Center Configurat...
Moderne device management door middel van cloud
Entgra IoT Server 4.1 Webinar.pdf
New Features for Mobile Device Management (MDM) With Entgra
EPC Group Intune Practice and Capabilities Overview
#EVRYWhatsNext EMS Slide Deck
Enterprise Mobility kan det gøres let for alle
Microsoft Intune - Empowering Enterprise Mobility - Presented by Atidan
Migrate from BigFix to Ivanti
Intune_DSEP. traininf for mam and mbam a
WSO2Con USA 2015: Connected Device Management for Enterprise Mobility and Beyond
Modern Management for Identiteter og Enheter – Azure AD, Intune og Windows 10
Mobile Device Management

More from Aptera Inc (20)

PDF
Gdd geoff daigle-june2016
PDF
Theres no quick fix to your seo
PPTX
Enterprise Mobile Apps. Cross-Platform that Works
PPTX
Designing your Website to Match Business Goals
PPTX
SharePoint Governance with Aptera
PPTX
How to Capitalize on the Growth of Data
PPTX
6 Mobile Strategy Priorities to Consider for 2015
PDF
Inbound Methodology: The Secret to Digital Marketing Success
PDF
How to Encourage SharePoint User Adoption
PDF
Better Decision-Making with Power BI
PDF
Testing Your Mobility in SharePoint 2013
PDF
Little Steps to BIG Data
PDF
OneDrive to Rule Them All
PDF
Learning about Security and Compliance in Office 365
PDF
The Layman's Guide to Microsoft Azure
PDF
What is Office 365? A Simple Answer
PDF
Aptera Cloud Event 2013 - Mobile Services using Azure - Matt Noggle
PDF
Aptera Cloud Event 2013 - Windows Intune - Eric Rupp
PDF
Aptera Cloud Event 2013 - Deploying Active Directory - Andy Miller
PDF
New Hosting Options for SharePoint 2013
Gdd geoff daigle-june2016
Theres no quick fix to your seo
Enterprise Mobile Apps. Cross-Platform that Works
Designing your Website to Match Business Goals
SharePoint Governance with Aptera
How to Capitalize on the Growth of Data
6 Mobile Strategy Priorities to Consider for 2015
Inbound Methodology: The Secret to Digital Marketing Success
How to Encourage SharePoint User Adoption
Better Decision-Making with Power BI
Testing Your Mobility in SharePoint 2013
Little Steps to BIG Data
OneDrive to Rule Them All
Learning about Security and Compliance in Office 365
The Layman's Guide to Microsoft Azure
What is Office 365? A Simple Answer
Aptera Cloud Event 2013 - Mobile Services using Azure - Matt Noggle
Aptera Cloud Event 2013 - Windows Intune - Eric Rupp
Aptera Cloud Event 2013 - Deploying Active Directory - Andy Miller
New Hosting Options for SharePoint 2013

Recently uploaded (20)

PDF
Electronic commerce courselecture one. Pdf
PPTX
Big Data Technologies - Introduction.pptx
PDF
Advanced methodologies resolving dimensionality complications for autism neur...
PDF
cuic standard and advanced reporting.pdf
PPTX
MYSQL Presentation for SQL database connectivity
PDF
Reach Out and Touch Someone: Haptics and Empathic Computing
PDF
Empathic Computing: Creating Shared Understanding
PPTX
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
PPTX
Cloud computing and distributed systems.
PDF
Encapsulation theory and applications.pdf
PDF
Machine learning based COVID-19 study performance prediction
PDF
Building Integrated photovoltaic BIPV_UPV.pdf
PDF
Chapter 3 Spatial Domain Image Processing.pdf
PDF
Review of recent advances in non-invasive hemoglobin estimation
PDF
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
DOCX
The AUB Centre for AI in Media Proposal.docx
PDF
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
PDF
Unlocking AI with Model Context Protocol (MCP)
PPTX
PA Analog/Digital System: The Backbone of Modern Surveillance and Communication
PDF
Diabetes mellitus diagnosis method based random forest with bat algorithm
Electronic commerce courselecture one. Pdf
Big Data Technologies - Introduction.pptx
Advanced methodologies resolving dimensionality complications for autism neur...
cuic standard and advanced reporting.pdf
MYSQL Presentation for SQL database connectivity
Reach Out and Touch Someone: Haptics and Empathic Computing
Empathic Computing: Creating Shared Understanding
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
Cloud computing and distributed systems.
Encapsulation theory and applications.pdf
Machine learning based COVID-19 study performance prediction
Building Integrated photovoltaic BIPV_UPV.pdf
Chapter 3 Spatial Domain Image Processing.pdf
Review of recent advances in non-invasive hemoglobin estimation
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
The AUB Centre for AI in Media Proposal.docx
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
Unlocking AI with Model Context Protocol (MCP)
PA Analog/Digital System: The Backbone of Modern Surveillance and Communication
Diabetes mellitus diagnosis method based random forest with bat algorithm

What's your BYOD Strategy? Objectives and tips from Microsoft & Aptera

  • 1. BYOD – Strategy, Objectives and and Tools Aptera Jan 2014 .
  • 18. How Microsoft addresses today’s challenges Users Devices Apps Data Users expect to be able to work in any location and have access to all their work resources. The explosion of devices is eroding the standards-based approach to corporate IT. Deploying and managing applications across platforms is difficult. Users need to be productive while maintaining compliance and reducing risk.
  • 19. Empowering People-centric IT Enable users Allow users to work on the devices of their choice and provide consistent access to corporate resources. Unify your environment Users Devices Apps Data Deliver a unified application and device management onpremises and in the cloud. Protect your data Management. Access. Protection. Help protect corporate information and manage risk.
  • 20. Selecting the Management Platform Unified Device Management – System Center 2012 R2 Configuration Manager with Windows Intune Cloud-based Management - Standalone Windows Intune No existing Configuration Manager deployment Simplified policy control Fewer than 7,000 devices and 4,000 users Simple web-based administration console
  • 21. Windows Intune – Standalone service Windows PCs (x86/64, Intel SoC) Windows RT, Windows Phone 8 iOS, Android Manage up to 7,000 devices and 4,000 users
  • 23. Mobile Device Management with Windows Intune Direct management (Windows RT, Windows Phone 8, iOS) EAS based management
  • 24. Information Worker Self-service Experience Connect every user ‘s device to the service Enable them to discover applications Let users manage their own devices and data Provide a premium end user experience
  • 25. End User Experience Consistent self service experience for end user across mobile platforms Windows RT Company Portal Windows Phone 8 Company Portal iOS Company Portal Native Windows application Native Windows Phone 8 app (.xap) Native iOS application Available in the Windows Store Side-loaded during enrollment Available in the Apple App store
  • 26. End User Capabilities for each Platform Windows 8 & Windows 8.1 Windows RT & Windows 8.1 RT Windows Phone 8 iOS Android Enroll (local device) Yes Yes Yes Yes EAS Rename devices Yes Yes Yes Yes No Retire (un-enroll local device) Yes Yes Yes Yes No Remotely wipe other devices Yes Yes No No No Install enterprise LOB applications Yes Yes Yes Yes Yes Install publicly available applications Yes Yes Yes Yes yes Browse to web links Yes Yes Yes Yes Yes Contact IT Yes Yes Yes Yes Yes
  • 27. Mobile Device Inventory Hardware properties for mobile devices are collected through the Device Management Authority as well as Exchange ActiveSync. No software inventory for mobile devices to respect the Information Worker’s privacy on their own device. IT Pros can track storage on mobile devices which help them anticipate/troubleshoot issues.
  • 28. Settings Management Security policy on devices (iOS, Windows RT and WP8) Direct management and Exchange ActiveSync. Reporting available on each setting whether it is applicable, conformant or has an error. The same security policy template is used for both Direct Management and EAS to help Admins Android and Windows Phone 7 devices can be managed through EAS
  • 29. Application Management on Mobile Devices Platforms Windows 8/Windows RT Windows Phone 8 iOS Android Sideload to install *.appx *.xap *.ipa *.apk Deep links to store apps – install from store
  • 30. Software Distribution Summary Desktop Apps (.msi, .exe) Platform Modern App Types Side loading .appx .xap .ipa .apk Deep Links web apps Windows 8 Pro/Ent √ √ √ √ Windows RT ** √ √ √ √ √ √ √ √ √ √ iOS √ Android √ WP8 Windows 7 and below ** √ Windows 8 SSP on WinRT will show MSI/EXE apps that can remotely install to other PCs linked to the user, but not installable on the local Window RT device √
  • 31. Protect your data Help protect corporate information and manage risk Lost or Stolen Retired Lost or Enrollment Stolen • Selective wipe removes corporate applications, data, and policies based as supported by each Users can access corporate data regardless of device or location with Work Folders for data sync and desktop virtualization for centralized applications. IT can provide a secure and familiar solution for users to access sensitive corporate data from anywhere with VDI and RemoteApp technologies. platform Personal Apps and Data Personal Apps and Data Company Apps and Data Company Apps • Full wipe if supported by each platform and Data • Can be executed by IT or by user via Company Portal Retired Remote App Centralized Data Remote App • Sensitive data or applications can be kept off Policies Policies device and accessed via Remote Desktop Services
  • 32. Recap: MDM Features per Platform Management Feature Windows RT Windows Phone 8 iOS Y Y Y Y Y Y Y Settings Management Y Y Y Y Software Distribution Y Y Y Y Y Y Y Over-the-air Enrollment Inventory Remote Wipe Android
  • 35. Windows Intune integrated with System Center 2012 R2 Configuration Manager Windows PCs (x86/64, Intel SoC), Windows to Go Windows Embedded Mac OS X Windows RT, Windows Phone 8 iOS, Android
  • 36. Manage and Secure PCs and Devices Anywhere Simple web-based Administration Console and a richer experience for Information Workers  Help protect PCs from malware  Manage updates  Distribute software  Proactive monitoring and alerts  Provide remote assistance  Inventory hardware and software  Monitor & track licenses  Increase insight with reporting  Set security policies  Richer Mobile Device Management
  • 37. Non-intrusive Management Management tasks can work with the Windows 8 maintenance window Management tasks do not interrupt if the end user immersed in a modern application
  • 38. Mobile device wipe and retire Category Full Wipe Windows 8.1 (MDM managed) Not applicable Windows 8 RT Not applicable Windows Phone  iOS Android (EAS)   Retire (Selective wipe)  (Email through EAS)  (Email through EAS) Company apps and associated data installed by using Configuration Manager and Windows Intune Uninstalled and sideloading keys are removed. In addition any apps using Windows Selective Wipe will have the encryption key revoked and data will no longer be accessible Sideloading keys removed but remain installed Settings Requirements removed Management Client Not applicable. Management agent is built-in Email  (Email through EAS) Uninstalled and data removed Uninstalled and data removed Apps and data remain installed Requirements removed Requirements removed Requirements removed Requirements removed Not applicable. Management agent is built-in Not applicable. Management agent is built-in Management profile is removed Not applicable. Management agent is built-in
  • 39. Mobile Device Settings Setting name EAS WinRT/ WinPh8 iOS (Activesync) Require a password to unlock mobile devices √ √ Required password type √ √ √ Minimum password length √ √ √ Allow simple passwords √ √ √ Number of repeated sign-in failures before device is wiped √ √ √ Minutes of inactivity before device screen is locked √ √ √ Password expiration (days) √ √ √ Remember password history Password √ √ √ √ √ Allow convenience logon (WindowsRT only) Allow camera √ Allow web browser Device restrictions √ √ √ Allow backup to iCloud (iOS only) √ Allow documents sync to iCloud (iOS only) √ Allow photostream sync to icloud (iOS only) √ Maximum size of e-mail attachments Encryption E-mail synchronization for last (days) √ Allow mobile devices that don’t fully support these settings to synchronize with Exchange Email √ √ Require encryption on mobile device √ Require encryption on storage cards √
  • 40. Mobile Device Inventory Property Win RT WP8 iOS Android (EAS) Device name Y Y Y Y Unique device ID Y Y Y Serial number Y Email address Y Y OS type Y Y OS version Y Y OS language Y Y Y Y Y Y Y Total storage space (GB) Y Y Free Storage space (GB) Y Y System enclosure Chassis Y System enclosure IMEI Y Manufacturer Y Y Model Y Y Y Y Phone number (masked except last 4 digits) Y Y Subscriber carrier Y Cellular technology(none, GSM, CDMA) Y WiFI MAC Y Enrolled date (local time) Y Y Y Last contact (local time) Y Y Y Y Y Last Exchange status Y Last Policy update status Y Access State Y Access state reason Y Management state Y ActiveSync ID Y
  • 41. Flexible Licensing that Fits Your Needs Don’t Have Configuration Manager Windows Intune (includes Configuration Manager license) ($6 per user per month) Windows Intune & Windows Enterprise (includes Configuration Manager license) ($11 per user per month) Already have Configuration Manager Windows Intune (Add-On) ($4 per user per month) • Single License: Windows Intune and Configuration Manager • Per User Licensing • Up to 5 devices/user
  • 42. For More Information System Center 2012 Configuration Manager http://technet.microsoft.com/enus/evalcenter/hh667640.aspx?wt.mc_id=TEC_105_1_33 Windows Intune http://www.microsoft.com/en-us/windows/windowsintune/try-andbuy Windows Server 2012 http://www.microsoft.com/en-us/server-cloud/windowsserver More Resources: http://www.microsoft.com/workstyle http://www.microsoft.com/server-cloud/user-device-management