Presentation is loading. Please wait.

Presentation is loading. Please wait.

For company-owned smartphones, only 55% of decision-makers say that their company has security policies and sufficient tools. The situation for employee-owned.

Similar presentations


Presentation on theme: "For company-owned smartphones, only 55% of decision-makers say that their company has security policies and sufficient tools. The situation for employee-owned."— Presentation transcript:

1

2 For company-owned smartphones, only 55% of decision-makers say that their company has security policies and sufficient tools. The situation for employee-owned smartphones— only 30% of firms have policies and sufficient tools, and 15% lack policy entirely 1 61% of global enterprises provide IT support for company-owned smartphones and tablets, up from only 27% in 2011. This contrasts with 17% supporting employee-owned smartphones and tablets. 1 Worldwide total unit shipments for smart connected devices will reach 1.2B in 2012, and grow 14% CAGR to over 2B units in 2016 No longer One User = One Desktop

3 Finding the right balance Devices & Experiences Users Want Applications and data across devices, anywhere Controlled access to data with seamless authentication

4

5 A world class cloud-based device management service. Monthly Uptime PercentageService Credit < 99.9%25% < 99%50% < 95%100%

6 Devices & Platforms Single admin console Windows Intune Standalone Service: Manage up to 5000 users

7 Devices & Platforms Single admin console

8 Latest Release

9

10

11

12

13

14 PlatformsWindows 8/Windows RTWindows Phone 8iOSAndroid Sideload to install*.appx*.xap*.ipa*.apk Deep links to store apps – install from store

15 Platform Desktop Apps (.msi,.exe) Modern App Types Side loading Deep Links web apps.appx.xap.ipa.apk Windows 8 Pro/Ent √ √√√ Windows RT ** iOS √ √√ Android √ WP8 √√√ Windows 7 and below √ √ Not a supported app type on that specific platform √ Available since last release √ Added in latest release **Windows 8 SSP on WinRT will show MSI/EXE apps that can remotely install to other PCs linked to the user, but not installable on the local Window RT device

16

17 Setting name EAS (Activesync) WinRT/ WinPh8iOS Require a password to unlock mobile devices √√√ Required password type √√√ Minimum password length √√√ Allow simple passwords √√√ Number of repeated sign-in failures before device is wiped √√√ Minutes of inactivity before device screen is locked √√√ Password expiration (days) √√√ Remember password history √√√ Allow convenience logon (WindowsRT only) X√X Allow camera √X√ Allow web browser √X√ Allow backup to iCloud (iOS only) XX√ Allow documents sync to iCloud (iOS only) XX√ Allow photostream sync to icloud (iOS only) XX√ Maximum size of e-mail attachments √XX E-mail synchronization for last (days) √XX Allow mobile devices that don’t fully support these settings to synchronize with Exchange √XX Require encryption on mobile device √XX Require encryption on storage cards √XX Mobile Device Settings

18

19 Mobile Device Inventory PropertyWin RTWP8iOSAndroid (EAS) Device name YYYY Unique device ID YYY Serial number Y Email address YYYY OS type YYY OS version YYYY OS language YY Total storage space (GB) YY Free Storage space (GB) YY System enclosure Chassis Y System enclosure IMEI Y Manufacturer YY Model YYYY Phone number (masked except last 4 digits) YY Subscriber carrier Y Cellular technology(none, GSM, CDMA) Y WiFI MAC YY Enrolled date (local time) YYY Last contact (local time) YYYY Last Exchange status Y Last Policy update status Y Access State Y Access state reason Y Management state Y ActiveSync ID Y

20

21

22 Management Feature Windows RTWindows Phone 8 iOSAndroid Over-the-air Enrollment YYYN Inventory YYYY Settings Management YYYY Software Distribution YYYY Remote Wipe NYYY

23 Users in control of configuring their devices Productive on their own device Choose their applications on their devices

24

25  Native Windows app package (.appx)  Available in the Windows Store Windows Phone 8 Company Portal iOS/Android Company Portal  Native Windows Phone 8 app (.xap)  Needs to be sideloaded  Web based portal  Hosted in Windows Intune Windows RT Company Portal

26 Windows 8 Ent/Pro Windows RTWindows Phone 8 iOSAndroid Enroll (local device)Yes EAS Rename devicesYes No Retire (un-enroll local device)Yes No Wipe (remotely other devices)Yes No Install enterprise LOB applicationsYes Install publicly available applications Yes yes Browse to web linksYes Install apps (remotely on other devices) Yes (only msi/exe) No Contact ITYes NoYes

27

28

29 Windows 8 Ent/ProWindows RTWindows Phone 8iOSAndroid (EAS managed) Device record removed from Intune DB and UI Yes Device record removed from Exchange (no email) No (see note below) No Yes Removal of Side-loaded keysNoYesYes (Application Enrollment Token is removed) -- Already installed applicationsSide-loaded apps wont run (?) Side-loaded apps wont run Side loaded apps are uninstalled Installed apps will still run Installing new applicationsApps cannot be installed SSP is uninstalled so no apps are available Apps cannot be installed Apps can be installed from the MIWP PoliciesExisting Intune policies are removed during uninstall of Windows Intune agent Intune policies are retained on the device even after the uninstall of the agent Expected behavior is similar to Windows RT Expected that policy will be removed Intune Policy is removed from Exchange server and the device receives the default Exchange server policy

30 Windows 7 and below Windows 8 Ent/Pro Windows RTWindows Phone 8iOSAndroid (EAS managed) Management agent removed Yes -- Data removedNo Yes No Mailbox removed NoYes (EAS mailbox only) Yes

31 Flexible Licensing that Fits Your Needs Already have Configuration Manager Windows Intune (Add-On) ($4 per user per month) Don’t Have Configuration Manager Windows Intune (includes Configuration Manager license) ($6 per user per month) Windows Enterprise Windows Intune (includes Configuration Manager license) ($11 per user per month) OR Single License: Windows Intune and Configuration Manager Per User Licensing Up to 5 devices/user +

32

33

34

35

36 http://onlinehelp.microsoft.com/en-us/windowsintune.latest/hh850800.aspx

37 Windows 8 Configure AllowAllTrustedApps registry key *** Sign.appx file with trusted enterprise code signing certificate Is side loading key required? Non Domain joined Domain joined Windows 8 Enterprise YesYes**YesNo Windows 8 Professional YesYes**Yes Windows RTYesYes** Yes Cannot be joined to a domain. A side loading key is always required. Windows Server 2012 YesYes** Does not support sideloading key Yes ** Signed using trusted code signing CA on Windows 8 clients *** HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\Appx\AllowAllTrustedApps = 1.

38

39

40

41


Download ppt "For company-owned smartphones, only 55% of decision-makers say that their company has security policies and sufficient tools. The situation for employee-owned."

Similar presentations


Ads by Google