Howard A. Carter III Senior Consultant Microsoft Consulting Services

Slides:



Advertisements
Similar presentations
Powerful and convenient management for Windows Mobile ® 6.1 devices in an enterprise environment. These features include: Centralized, over-the-air device.
Advertisements

Copyright © 2012 AirWatch, LLC. All rights reserved. Proprietary & Confidential. Mobile Content Strategies and Deployment Best Practices.
People Centric IT Unified Device Management with SCCM + Windows Intune
2 Agenda Introductions – Kathleen Wetherell Introduction of the Enterprise Mobility Suite– Kathleen Wetherell Overview of Microsoft’s Intune with Product.
Windows 8.1 Device Management With Windows Intune Mark O’Shea MVP Windows Expert – IT Pro 30 June 2014.
Managing and Securing Devices using Exchange, System Center, and Intune LAWRENCE NOVAK MICHAEL INDENCE DMVMUG Reston, VA
iOS & other Android devices KNOX EMM (Client) Cloud Service Active Directory integration (Optional) Mobile Device & App Management MDM IAM Samsung Device.
Meraki Mobile Device Management
For company-owned smartphones, only 55% of decision-makers say that their company has security policies and sufficient tools. The situation for employee-owned.
Building and Deploying Safe and Secure Android Apps for Enterprise Presented by Technology Consulting Group at Endeavour Software Technologies.
Script Kiddies; CybercrimeCyber-espionage; Cyber-warfare CybercriminalsState sponsored actions; Unlimited resources Attacks on fortune 500All sectors.
Management lifecycle summary Mobile Device Management with Windows Intune or 3 rd Party tools Simplified and flexible device enrollment, using.
Data Devices People 6.5B Wireless connections today >42% of global population owns smartphone by end of 2015 >50% User will go to tablet or smartphone.
Sessions about to start – Get your rig on!. Ash de Zylva.
Protect your data Enable your users Unify Your Environment DevicesAppsData Help organizations enable their users to be productive on the devices they.
4/17/2017 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
SYSTEM CENTER: ENDPOINT PROTECTION FUNDAMENTALS Howard A. Carter III Senior Consultant Microsoft Consulting Services September 21, 2013 TechGate 2013 –
Empower Enterprise Mobility Jasbir Gill Azure Mobility.
Exchange Exchange Connecter with Configuration Manager Configuration Manager with Intune Protect and Manage Devices and Infrastructure.
IT:Network:Microsoft Server 2 Chapter 27 WINDOWS SERVER UPDATE SERVICES.
©Kwan Sai Kit, All Rights Reserved Windows Small Business Server 2003 Features.
Tim Vander Kooi Systems
Nick Randolph: Built To Roam Dave Glover: Microsoft.
1 Thomas Lippert Senior Product Manager - Mobile What’s new in SMC 5.0.
20 21 Remote Wipe.
…. PrePlanPrepareMigratePost Pre- Deployment PlanPrepareMigrate Post- Deployment First Mailbox.
Deploy Windows Mobile 5 On Exchange 2003 SP2 Mark Mulvany MCT,MCSE,MCSE+I,CNA Microsoft Small Business Specialist SMS&P Breadth Partner Training Specialist.
Solution Benefits Of Adopting Unified Solution Goals Management support for Windows 8.x and heterogeneous devices Improve user productivity on.
Virtual techdays INDIA │ august 2010 virtual techdays INDIA │ august 2010 Moving/Co-existing your messaging platform to the cloud with Exchange.
Desktop and Device Management Andy Taylor – Susan Smith –
Microsoft NDA Confidential Enabling users to be productive, responsibly Finding the right balance Devices & Experiences Users Want Applications and.
Alessandro Cardoso Microsoft MVP | Readify National Manager |
Empowering people-centric IT Mobile Device Management Access and information protection Desktop Virtualization Hybrid Identity.
The explosion of devices is eroding the standards-based approach to corporate IT. Devices Deploying and managing applications across platforms is.
Enabling users to be productive, responsibly Finding the right balance Devices & Experiences Users Want Applications and data across devices, anywhere.
Empowering people-centric IT Patrick Rogers May 29, 2014.
Configuration Manager and InTune Gemeinsam oder einsam?
09:45-10:30 – Windows Mobile Update 10:30-11:30 – System Center Mobile Device Manager :30-11:45 - Break 11:45-12:30 -Deploying SCMDM and Customer.
Managing iOS Device Using ConfigMgr and Intune Hybrid MDM John Presenter #2 Twitter Handle Blog or address.
Microsoft Virtual Academy Preparing for the Windows 8.1 MCSA Module 5: Managing Devices & Resource Access.
User and Device Management
Windows Intune Cloud Based Management Speaker: Neil Phillips 13th August 2014.
Craig Pringle & Derek Moir
20 21 Remote Wipe.
The VERSO Product Returns Portal Incorporates Office 365 Outlook and Excel Add-Ins to Create Seamless Workflow for All Participating Users OFFICE 365 APP.
Why EMS? What benefit does EMS provide O365 customers Manage Mobile Productivity Increase IT ProductivitySimplify app delivery and deployment LOB Apps.
BE-com.eu Brussel, 26 april 2016 EXCHANGE 2010 HYBRID (IN THE EXCHANGE 2016 WORLD)
69% of employees say they are accessing business apps on personal devices Organizations say 34% of their employees are accessing business apps on.
Tomaž Čebul Principal Consultant Microsoft Bring Your Own Device, kaj pa je to?
Managing modern devices with System Center 2012 R2 Configuration Manager Niall Brady.
Managing Devices in the Enterprise: From EMS zero to Hero in only 60 minutes Ken Goossens Herman Arnedo Mahr.
Selecting the Management Platform Cloud-based Management Standalone Windows Intune No existing Configuration Manager deployment Simplified policy.
Office 365 Help Desk Troubleshooting Guide
MaaS360 MDM for iOS, Android & Windows Phone 7
What's New in System Center Configuration Manager, Current Branch and Intune INF324a Steven Hosking.
System Center 2012 Configuration Manager
Microsoft Virtual Academy
Exam Prep : Section 2: Design for Device Access and Protection
Mobile Device Management options in Office 365 and beyond
6/25/ :13 PM BRK1076 Make Windows devices more secure by taking them out of your existing infrastructure Chris Rhodes & Andrew Bettany MCTs & MVPs.
Microsoft Virtual Academy
SVTRAININGS. SVTRAININGS Features of SCCM  Application management  Provides a set of tools and resources that can help you create, manage, deploy, and.
Microsoft Ignite /20/2018 2:21 PM
TechEd /7/ :16 AM © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered.
Microsoft Virtual Academy
SCCM in hybrid world Predrag Jelesijević Microsoft 7/6/ :17 AM
Microsoft 365 Business Technical Fundamentals Series
Preparing for the Windows 8.1 MCSA
IT Management, Simplified
Microsoft Virtual Academy
Presentation transcript:

Howard A. Carter III Senior Consultant Microsoft Consulting Services Enabling Mobile Device Management with System Center 2012 & Windows InTune Howard A. Carter III Senior Consultant Microsoft Consulting Services TechGate 2013 – Reston, VA September 21, 2013

Agenda What is Windows Intune? Windows Intune Configurations Windows Intune Capabilities Across Devices Settings Up an Intune Account Integrating with Configuration Manager 2012 Publishing Applications Enrolling Devices

Windows Intune Configurations Cloud-Only Configuration Unified Configuration

Cloud Management Capabilities Capability / Platform Windows 8 Windows 7, Vista, XP Windows RT Windows Phone 8 iOS Android Application management ü Endpoint Protection O Hardware Inventory Software Inventory ü1 Remote control ü3 Reporting Software updates Compliance settings ü2 1 = Managed applications only 2 = Compliance reporting but no remediation automation 3 = Via Remote Assistance

Unified Management Capabilities Capability / Platform Windows 8 Windows 7, Vista, XP Windows Embedded Windows To Go Mac OS Windows RT Windows Phone 8 iOS Android Application management ü Endpoint Protection O Hardware Inventory ü1 Software Inventory ü2 Remote control ü5 Reporting Software updates ü4 Compliance settings ü3 OS deployment N/A Out of band management Power management Software metering 1 = Basic information only through Exchange ActiveSync 2 = Managed applications only 3 = Compliance reporting but no remediation automation 4 = Device User has to accept the update 5 = Via Remote Assistance

Windows Intune Cloud Architecture CorpNet Internet x86 / x64 Windows 8 Windows 7 Windows Vista Windows XP Windows Phone 8 Windows RT Direct Management & App Publishing iOS EAS Policy & Inventory DirSync Android App Publishing Android

Windows Intune Unified Architecture CorpNet Internet x86 / x64 Windows 8 Windows To Go Windows 7 Windows Embedded Windows Vista Windows XP Mac Service Pack 1 x86 / x64 Windows 8 Windows 7 Windows Vista Windows XP EAS Policy & Inventory Windows Phone 8 Windows RT Direct Management & App Distribution iOS DirSync ADFS ADFS Proxy Active Directory Android Android App Distribution

Selection Considerations Scale of Solution Approx. Max of 5000 Users? Approx. Max of 100,000 Users? Current Infrastructure On-premise ConfigMgr? Something else? Required Feature Set Capabilities Supported Platforms

Roadmap | Integrating Configuration Manager 2012 with Windows Intune Sign up for Windows Intune account Synchronize your AD with Windows Azure AD Configure Intune Subscription in ConfigMgr Add Windows Intune Connector Setup MDM Properties Import Apps

DEMO TG13Demo.onmicrosoft.com Sign up for Intune Account (already done) Sync AD with Azure AD (already done) Configure Intune Subscription in ConfigMgr Install Windows Intune Connector Setup MDM Properties Add/Deploy Company Portal App

Managing the Mobile Device Lifecycle Enabling the user Enrolling the device Inventorying the device Installing applications Managing the device Retiring the device

Configuration Item Settings Password Require password on mobile devices Min password length Max password length Number passwords remembered Number failed logons before wipe Idle time before lock Password complexity Send password recovery PIN to Exchange Server Email management POP and IMAP Max time to keep email Allowed message formats Max size for plain text email Max size for HTML email Max attachment size Calendar synchronization Security Unsigned file installation Unsigned applications SMS and MMS messaging Removable storage Camera Bluetooth Windows RT VPN profile Profile file Profile name Profile for all users Peak Synchronization Specify peak time Start End Days of week Peak synchronization frequency Off-peak synchronization frequency All options enable you to remediate noncompliant settings and some have a reporting option

Configuration Item Settings Roaming Mobile device management while roaming Software download while roaming Email download while roaming Encryption Storage card encryption File Encryption on mobile device Require email signing Require email encryption Encryption algorithm Wireless Communication Wireless network connection Network name Network connection Authentication Data encryption Key index 802.1x settings EAP type Certificates Import Certificate File Destination store Role All options have a Remediate noncompliant settings option

Inventoried Management Properties Inventory Class Windows Phone 8 Windows RT iOS EAS Name Device_ComputerSystem.DeviceName Yes Unique Device ID Device_ComputerSystem.DeviceClientID Device_ComputerSystem.UDID Serial Number Not applicable Device_ComputerSystem.SerialNumber No Email Address Device_Email.OwnerEmailAddress Operating System Type Device_OSInformation.Platform CCM_OperatingSystem .SystemType Operating System Version Device_ComputerSystem.SoftwareVersion Win32_OperatingSystem.Version Device_OSInformation.OSVersion Build Version Win32_OperatingSystem.BuildNumber Service Pack Major Version Win32_OperatingSystem.ServicePackMajorVersion Service Pack Minor Version Win32_OperatingSystem.ServicePackMinorVersion Operating System Language Device_OSInformation.Language Total Storage Space Win32_PhysicalMemory.Capacity Device_Memory.DeviceCapacity Free Storage Space Win32_OperatingSystem.FreePhysicalMemory Device_Memory.AvailableDeviceCapacity IMEI1 Device_ComputerSystem.IMEI MEID2 Device_ComputerSystem.MEID Manufacturer Device_ComputerSystem.DeviceManufacturer Win32_ComputerSystem.Manufacturer Model Device_ComputerSystem.DeviceModel Win32_ComputerSystem.Model ModelName Phone Number Device_ComputerSystem.PhoneNumber Subscriber Carrier Device_ComputerSystem.SubscriberCarrierNetwork Cellular Technology Device_ComputerSystem.CellularTechnology Wi-Fi MAC Win32_NetworkAdapter.MACAddress Device_WLAN.WiFiMAC 1 International Mobile Equipment Identity 2 Mobile Equipment Identifier

Demo Remember: Manage.Microsoft.com Creating a Mobile Configuration Baseline Enrolling a Device

Retiring Managed Mobile Devices Retire Block Delete Wipe Removes the device from Configuration Manager while leaving personal settings and data intact on the device. All data is deleted, sets device back to manufacturer's defaults Blocks the client from communicating with the hierarchy. You can also unblock clients. Deletes the mobile device permanently from the hierarchy so that it will not be further managed. No data from the device is removed. Once deleted, the user would need to unenroll and re-enroll again.

Listing Retirement Options by Device Function Windows Phone 8 Windows RT iOS Android (EAS) Retire Yes Line of business apps are uninstalled including the company portal app. User settings are retained Removes sideloaded keys and sideloaded apps no longer run. Installed apps will still run.   installed apps will still run User settings are removed. Block Not available Wipe Exchange ActiveSync mailbox removal only Delete

Demo Wiping a Device

Additional resources Windows Intune Trial http://www.microsoft.com/en-us/windows/windowsintune/try.aspx Support Tool for Intune Trial Management of Window Phone 8 http://www.microsoft.com/en- us/download/details.aspx?id=39079# Microsoft Virtual Academy – Windows Intune Jumpstart http://www.microsoftvirtualacademy.com/training- courses/windows-intune-for-it-professionals-jump-start Microsoft Windows Intune Blog http://blogs.technet.com/b/windowsintune/ Microsoft System Center ConfigMgr Team Blog http://blogs.technet.com/b/configmgrteam/

QUESTIONS

Thank You techgate@hotmail.com An email will be sent to all attendees on Monday, September 23 announcing location of slides received from presenters.