Presentation is loading. Please wait.

Presentation is loading. Please wait.

Delivering a Standard Mobile Operating Environment Don Kerr : Business Solutions Marketing – Windows Mobile Rick Anderson : Mobility Solution Sales.

Similar presentations


Presentation on theme: "Delivering a Standard Mobile Operating Environment Don Kerr : Business Solutions Marketing – Windows Mobile Rick Anderson : Mobility Solution Sales."— Presentation transcript:

1

2 Delivering a Standard Mobile Operating Environment Don Kerr : Business Solutions Marketing – Windows Mobile Rick Anderson : Mobility Solution Sales

3 Agenda 1.The Mobile overview – industry, trends, market 2.Is Exchange Good Enough???? 3.A Standard Mobile Operating Environment 4.What is the business opportunity for Partners? 5.Resources

4 Market Shifting Beyond Messaging Fastest growth in rich mobile scenarios beyond e-mail –Corporate data access and mobile LOB grows 5.4x from 2006–2011 –Messaging-only grows 2.3x in the same time period –27% of global workforce mobile by 2009 *IDC Note: Sizing based on support for Microsoft solutions. Source: MED Finance analysis and industry reports Corporate data access and mobile LOB Mobile Messaging 6.3 MM 3.6 MM 0.9 MM 14.7 MM 19.8 MM 4.5 MM 2006 2011

5 Growth of the mobile client 18.6% Mobile PCs 5.8% Mobile Phones 3.9% Desktop PCs 34.1% Converged Mobile Phones Source: Gartner Dataquest, and IDC 2006 245 Million Converged Devices by 2010

6 Shift in “User Type” of Mobile Devices Segment Distribution Shifts : 2006 vs. 2008 2006 Segmentation 2008 Segmentation Power Users Practical Users Communicators Minimalists Note: Comparison only done among countries surveyed in both 2006 and 2008 – US, W. Europe, Japan & China.

7 IMPROVE USER PRODUCTIVITY AWAY FROM THE DESK THROUGH MOBILE ACCESS TO: - Messaging - Documents - Search DRIVE BUSINESS RESPONSIVENESS WHILE AWAY FROM THE DESK THROUGH MOBILE ACCESS TO: -Mobile Forms & Portals -Business Intelligence & Reporting -Custom Mobile Apps Mobile Solution ProgressFundamental Provides the fundamental solution that empowers mobile workers with adaptable infrastructure and departmental applications Enables mobile access to data Provides efficient data management and integrated search capabilities to mobile devicesComprehensive Extends mobile access to communication and collaboration tools Enhances process participation away from the desk Improves mobile access to data reporting and analysis toolsLeading Streamlines mobile access to corporate data Enables seamless communication and collaboration with external partners from mobile devices Enables mobile access to enterprise- wide reporting and analysis tools

8 Exchange is GOOD ENOUGH

9 Exchange ActiveSync Policies Exchange Server Standard CAL Sync Configure message formats (HTML or plain txt) Include past email items Email body truncation size HTML email body truncation size Include past calendar items (Duration) Require manual sync while roaming Allow attachment download Maximum attachment sizeAuthentication Minimum number of complex characters Enable password recovery Allow simple password Password Expiration (Days) Enforce password history Windows file share access Windows SharePoint access Minimum password length Timeout without user input Require password Require alphanumeric password Number of failed attempts Policy refresh interval Allow Non-provisionable devicesEncryption Require signed SMIME messages Require encrypted SMIME messages Require Signed SMIME algorithm Require encrypted SMIME algorithm Allow SMIME encrypted algorithm negotiation Allow SMIME SoftCerts Device encryption Encrypt storage cardSync Configure message formats (HTML or plain txt) Include past email items Email body truncation size HTML email body truncation size Include past calendar items (Duration) Require manual sync while roaming Allow attachment download Maximum attachment sizeAuthentication Minimum number of complex characters Enable password recovery Allow simple password Password Expiration (Days) Enforce password history Windows file share access Windows SharePoint access Minimum password length Timeout without user input Require password Require alphanumeric password Number of failed attempts Policy refresh interval Allow Non-provisionable devicesEncryption Require signed SMIME messages Require encrypted SMIME messages Require Signed SMIME algorithm Require encrypted SMIME algorithm Allow SMIME encrypted algorithm negotiation Allow SMIME SoftCerts Device encryption Encrypt storage card Color Key Exchange 2007 SP1 Exchange 2007 RTM Exchange 2003 SP2 Color Key Exchange 2007 SP1 Exchange 2007 RTM Exchange 2003 SP2

10 Exchange ActiveSync Policies Exchange Server Enterprise CAL Device Control Disable desktop ActiveSync Disable removable storage Disable camera Disable SMS and any MMS text messaging Network Control Disable Wi-Fi Disable Bluetooth Disable IrDA Allow internet sharing from device Allow desktop sharing from device Application Control Disable POP3/IMAP4 email Allow consumer email Allow browser Allow unsigned applications Allow unsigned CABs Application allow list Application block list Device Control Disable desktop ActiveSync Disable removable storage Disable camera Disable SMS and any MMS text messaging Network Control Disable Wi-Fi Disable Bluetooth Disable IrDA Allow internet sharing from device Allow desktop sharing from device Application Control Disable POP3/IMAP4 email Allow consumer email Allow browser Allow unsigned applications Allow unsigned CABs Application allow list Application block list Color Key Exchange 2007 SP1 Exchange 2007 RTM Exchange 2003 SP2 Color Key Exchange 2007 SP1 Exchange 2007 RTM Exchange 2003 SP2

11 Who is in control?? It seems that smart phones have too many security risks and could jeopardize our enterprise “Who will tell the CEO to give up their smart phone?” =

12 Common Criteria Evaluation for Windows Mobile Windows Mobile has been awarded the Common Criteria Evaluation Assurance Level 2+ (EAL2+) for: –Windows Mobile 5.0 with MSFP –Windows Mobile 6 Certification lab is Stratsec, Canberra, Australia http://www.dsd.gov.au/infosec/evaluation_services/epl/epl.html

13 Introducing: System Center Mobile Device Manager 2008

14 System Center Mobile Device Manager 2008 Security Management Active Directory Domain Join Policy enforcement using Active Directory/Group Policy targeting (125+ policies and settings) Communications and camera disablement File encryption Application allow and deny Remote wipe OMA-DM Compliant Device Management Single point of management for mobile devices in enterprise Full Over the air (OTA) provisioning and bootstrapping OTA Software distribution based on Windows Software Update Service (WSUS) 3.0 Inventory Microsoft SQL Server ™ 2005–based reporting capabilities Role based administration MMC snap-ins and Powershell cmndlets WMU On/Off control Mobile VPN Machine authentication and “double envelope security” Session Persistence Fast Reconnect Internetwork roaming Standards based (IKEv2, IPSEC tunnel mode)

15 End User Experience John Gateway/VPN Server Enrollment & Device Management Server Corporate Resources

16 Standard Mobile Operating Environment Integration with existing Microsoft Technologies –Active Directory, Group Policy, WSUS, Windows Server, SQL, CA –Exchange not mandatory No duplication of management effort No Single Point of Failure (NOC) Customer controls end to end security

17 Business Opportunity for Partners Revenue Driving alignment with Core IO progress Mobile Device Manager SI Certification

18 Secure Mobile Messaging Only Mobile messaging with high security due to regulatory compliance issues or internal security policies Key Messages Security management Integration with AD/GP Inventory and reporting Secure Mobile Messaging Only Mobile messaging with high security due to regulatory compliance issues or internal security policies Key Messages Security management Integration with AD/GP Inventory and reporting Standard Mobile Operating Environment “SWEET spot” is… Applications, Documents, Data Rich applications for task workers using ruggedized handhelds with no requirement for mobile messaging Key Messages Mobile VPN OTA software distribution Rich inventory and reporting App allow/deny Applications, Documents, Data Rich applications for task workers using ruggedized handhelds with no requirement for mobile messaging Key Messages Mobile VPN OTA software distribution Rich inventory and reporting App allow/deny Apps, Docs, Data & Messaging Rich or lightweight LOB applications. Could also include high security requirements mobile messaging Key Messages Mobile VPN Advanced DM features Security managemen t Apps, Docs, Data & Messaging Rich or lightweight LOB applications. Could also include high security requirements mobile messaging Key Messages Mobile VPN Advanced DM features Security managemen t Breadth Messaging Only Mobile messaging/PIM with lowest TCO and baseline security and manageability Key Message Exchange Standard CAL is “good enough” Exchange Ent. CAL for device management Breadth Messaging Only Mobile messaging/PIM with lowest TCO and baseline security and manageability Key Message Exchange Standard CAL is “good enough” Exchange Ent. CAL for device management

19 Product Offerings

20 BSR/ADFUNDAMENTAL Security & Networking Identity & Access Mgmt Desktop, Device & Server Mgmt Data Protection & Recovery IT & Security Process COMPREHENSIVE Security & Networking Identity & Access Mgmt Desktop, Device & Server Mgmt Data Protection & Recovery IT & Security Process LEADING Security & Networking Identity & Access Mgmt Desktop, Device & Server Mgmt Data Protection & Recovery IT & Security Process Secure, remote access, server isolation for directory and e-mail server. Secure wireless networking. Directory tools for central administration. Information protection infrastructure. Mobile device provisioning, security policy provisioning for mobile devices, remote wipe, and policy enforcement for mobile devices. Remotely manage devices and enforce corporate IT policy “over the air,” remote synchronization. CORE IO MAPPING Secure, remote access. Server isolation for directory and e-mail server. Secure wireless networking. Directory tools for central administration. Information protection infrastructure. Certificate provisioning and authorization for mobile devices and Web apps Remote synchronization. Backup and restore on servers. Quarantine for desktops and devices. SIP for secure communication through presence. Federated identity management across organizational and platform boundaries. Standard mobile OS, apps push, access to LOB apps, patch management for devices, bootstrapping, and asset management for mobile devices. Backup restore on all servers & mobile device data. Streamlined security management, all security processes and policies are in place.

21 The Business Opportunity for SIs Mobile device management should be an integral part of any enterprise IT infrastructure MDM is a complex product for businesses to deploy Microsoft can help SIs become MDM- certified

22 Mobile Device Manager SI Certification Requirements * If available Internal deployment of Mobile Device Manager Evidence of Mobility practice Creation of Mobile Device Manager Partner Solution Plan MDM 400-level training

23 Next Steps Deploy SCMDM inside your organisation MDM evaluation: 120 trial version –http://technet.microsoft.com/en-au/evalcenter/cc339027.aspxhttp://technet.microsoft.com/en-au/evalcenter/cc339027.aspx Brightpoint –Device offers @ APC –Device Customisation service Loan/Seed devices –Trial a Treo www.palm.com/au/trytreo www.palm.com/au/trytreo Mobility Competency –https://partner.microsoft.com/global/productssolutions/mobilityhttps://partner.microsoft.com/global/productssolutions/mobility Significant/strategic opp engagement with MS –Rick “Batman” Anderson –Peter “Robin” Brown

24 Partner Readiness SCMDM Tech Center http://technet.microsoft.com/en-us/scmdm/default.aspx MDM Resource Kit Tools http://technet.microsoft.com/en-au/scmdm/cc304591.aspx Partner Sales Resources –General: https://partner.microsoft.com/partnersaleresourceshttps://partner.microsoft.com/partnersaleresources –MDM Specific: https://partner.microsoft.com/Australia/40050861?PS=95000124https://partner.microsoft.com/Australia/40050861?PS=95000124

25 Architecture Guidance & Whitepapers Configuring External and Internal Firewalls in Mobile Device Manager http://technet.microsoft.com/en-us/library/cc645153(TechNet.10).aspx Integrating Mobile Device Manager with Existing Web Sites or SharePoint Server http://technet.microsoft.com/en-us/library/cc678152(TechNet.10).aspx Integrating Mobile Device Manager with Microsoft Exchange Server http://technet.microsoft.com/en-us/library/cc645161(TechNet.10).aspx Integrating Mobile Device Manager with Office Communications Server http://technet.microsoft.com/en-us/library/cc664624(TechNet.10).aspx


Download ppt "Delivering a Standard Mobile Operating Environment Don Kerr : Business Solutions Marketing – Windows Mobile Rick Anderson : Mobility Solution Sales."

Similar presentations


Ads by Google