Presentation is loading. Please wait.

Presentation is loading. Please wait.

Empowering people-centric IT Mobile Device Management Access and information protection Desktop Virtualization Hybrid Identity.

Similar presentations


Presentation on theme: "Empowering people-centric IT Mobile Device Management Access and information protection Desktop Virtualization Hybrid Identity."— Presentation transcript:

1

2

3 Empowering people-centric IT Mobile Device Management Access and information protection Desktop Virtualization Hybrid Identity

4

5

6 Apps Users Data Devices

7 Mobile Device Management Unify your environment On-premises and cloud-based management of devices within a single console. Simplified, user-centric application management across devices Comprehensive settings management across platforms, including certificates, VPNs, and wireless network profiles Enable users Access to company resources consistently across devices Simplified registration and enrollment of devices Synchronized corporate data Protect your data Protect corporate information by selectively wiping apps and data from retired/lost devices A common identity for accessing resources on-premises and in the cloud Identify which mobile devices have been compromised √

8 Devices & Platforms

9 MSIiOS App-V (MDOP) Appx App Store Links Start Android App (Example: PDF Reader) WP8 Web apps

10

11

12 App package (.appx) Can have more than one app packages and each can be architecture specific App resources (.appx) Allows you to separate the core app package from additional resources (e.g. language specific strings or images)

13 EditionOS Version Side-loading key required? Domain-joined Non Domain-joined Enterprise Windows 8, 8.1 & 8.1 Update NoYes Professional Windows 8.1 Update NoYes Windows 8 and 8.1 Yes RT Windows 8, 8.1 & 8.1 Update Yes Cannot be joined to a domain. A side-loading key is always required.

14 ConfigMgr or Intune Full ClientMDM Channel Sideloading Key Activation AllowAllTrustedApps Reg Key Code signing certificate Publish Deploy 1. Obtain a side-loading key from VLSCVLSC 2. Create and deploy script/software package to call slmgr.vbs to activate side-loading 2. Upload the side-loading key to the ConfigMgr/Intune admin console; automatically activated at enrollment time or next maintenance window after the key is uploaded to admin console 2. Upload the cert to ConfigMgr/Intune admin console. Automatically installs at enrollment time or next maintenance window after the cert is uploaded to admin console 2. Deploy the cert through DCM or software package to the ‘Trusted Root authority store’ on the target machines. 1. Obtain a code signing certificate Use script/software package, group policy or DCM to set ‘AllowAllTrustedApps’ reg key Automatically sets the reg key at enrollment time Create an app Specify requirement rules Create Deployment, Support both user and machine targeting Available or required install

15

16

17 Initialized 10 DownloadinProgress 20 DownloadFailed 30 DownloadCompleted 40 InstallInProgress 50 InstallFailed 60 InstallCompleted 70 UninstallInProgress 80 UninstallFailed 90 UninstallCompleted 100 HashMismatch 110 SideloadingNotEnable d 120

18

19

20

21

22

23

24

25 App-V 5.0ConfigMgr 2012 SP1R2 RTMYes SP1Yes SP2No*Yes** * Should Apply ConfigMgr SP1 CU4 before installing App-v 5 SP2 ** Apply ConfigMgr R2 CU1 for full support

26

27 App Origination ScenariosWindows 8 RT Windows 8.1 (RT, Pro, Ent) Windows Phone 8 Windows Phone 8.1 iOSAndroid Line of Business (Sideloading) Available Install deployed to users Required Install deployed to users and devices  User Consent required Explicit Uninstall deployed to users and devices  User Consent required In console monitoring Public StoreAvailable user targeted deep linked application

28

29

30

31

32

33

34 NamePlatformsPublic StoreSideloading Windows Intune Company PortalWindows 8, Windows RT, Windows 8.1 and Windows RT 8.1 Windows StoreMicrosoft Download Center System Center Configuration Manager Company Portal (“On-Prem”) Windows 8 and Windows 8.1 (x86/x64 only) N/AMicrosoft Download Center Windows Intune Company Portal for Windows Phone 8 Windows Phone 8N/AMicrosoft Download Center Windows Intune Company Portal for iOS iOS 6.0 or laterApp Store on iTunesN/A Windows Intune Company Portal for Android Android 4.0 or laterGoogle PlayN/A

35

36

37 Conditional Access Policy Deployment of certificates and Wi-Fi, Email, VPN profiles Configure email profiles across devices Provide access to email and documents only if device is managed Deny access if device falls out of compliance Managed Mobile Apps existing iOS, Android line-of-business apps Application provisioning iOS apps through Apple volume channel Convenient access to internal resources via per-app VPN configurations Required app install/uninstall Protected Data Protected web browser Managed PDF, audio, video viewers Selective wipe for managed apps and documents

38 Bulk Enrollment Support for Apple Device Enrollment Program and Apple Configurator Service account enrollment Configuration Policies Device lockdown through supervisor mode Policies and apps targeted to devices Application install allow/deny list URL allow/deny

39 Mobile Device Management Review Unify your environment On-premises and cloud-based management of devices within a single console. Simplified, user-centric application management across devices Comprehensive settings management across platforms, including certificates, VPNs, and wireless network profiles Enable users Access to company resources consistently across devices Simplified registration and enrollment of devices Synchronized corporate data Protect your data Protect corporate information by selectively wiping apps and data from retired/lost devices A common identity for accessing resources on-premises and in the cloud Identify which mobile devices have been compromised √

40 Hybrid Identity Management Mobile Device Management Data Protection Group management & Self Service Password Reset Security audit reports & MultiFactor Authentication Connection between AD / Azure AD Information protection Connection to on-premises assets Mobile device settings management Mobile app management Selective wipe Enterprise Mobility Suite Enterprise Agreement Prices starting at $4 per user per month* * Limited time EA Level A promo pricing. Requires 250 seat minimum purchase and underlying CAL Suite license (CoreCAL/ECAL/BridgeCAL) EMS will enable customers with:

41

42 SessionTitleTimeslot FDN02Enabling Enterprise Mobility with Windows Intune, Microsoft Azure, and Windows ServerMonday, May 12 11:00 AM - 12:00 PM PCIT-B212Design Considerations for BYODTuesday, May 13 10:15 AM - 11:30 AM PCIT-B213Access Control in BYOD and Directory Integration in a Hybrid Identity InfrastructureWednesday, May 14 3:15 PM - 4:30 PM PCIT-B310Empowering Your Users and Protecting Your Corporate DataMonday, May 12 1:15 PM - 2:30 PM PCIT-B313Hybrid Identity: Extending Active Directory to the CloudMonday, May 12 4:45 PM - 6:00 PM PCIT-B314Understanding Microsoft’s BYOD Strategy and an Introduction to New Capabilities in Windows Server 2012 R2 Tuesday, May 13 8:30 AM - 9:45 AM PCIT-B321Deploying the New RMS for Cloud-Friendly and Cloud-Reluctant CustomersTuesday, May 13 5:00 PM - 6:15 PM PCIT-B322Deploying and Managing Work FoldersWednesday, May 14 10:15 AM - 11:30 AM PCIT-B324How to Rapidly Design and Deploy an Active Directory Federation Services Farm: The Do's and the Don'ts Wednesday, May 14 8:30 AM - 9:45 AM PCIT-B326Providing SaaS Single Sign-on with Microsoft Azure Active DirectoryThursday, May 15 10:15 AM - 11:30 AM PCIT-B327Introducing Web Application Proxy in Windows Server 2012 R2: Enable Work from Anywhere Wednesday, May 14 3:15 PM - 4:30 PM PCIT-B328Microsoft Identity Manager vNext OverviewWednesday, May 14 5:00 PM - 6:15 PM PCIT-B330Active Directory + BYOD = Peace of MindThursday, May 15 8:30 AM - 9:45 AM

43 CodeTitleTime FDN02Enabling Enterprise Mobility with Windows Intune, Microsoft Azure, and Windows ServerMon, May 12 11:00 AM PCIT-B311What's New in Enterprise Management with Microsoft System Center Configuration Manager and Windows IntuneMon, May 12 1:15 PM PCIT-B215What's New in Microsoft System Center 2012 R2 Configuration Manager InfrastructureMon, May 12 3:00 PM PCIT-B410Microsoft System Center 2012 Configuration Manager: MVP Experts PanelMon, May 12 4:45 PM PCIT-B216Infrastructure Deployment for Mobile Device Management with Microsoft System Center Configuration Manager and Windows Intune Tue, May 13 8:30 AM PCIT-B317Enrollment and Management of Mobile Devices with Microsoft System Center Configuration Manager and Windows IntuneTue, May 13 1:30 PM PCIT-B320Microsoft System Center Configuration Manager Community JewelsTue, May 13 5:00 PM PCIT-B323Application Management with Microsoft System Center Configuration Manager and Windows IntuneWed, May 14 8:30 AM PCIT-B325Protecting Your Corporate Data with Microsoft System Center Configuration Manager and Windows IntuneWed, May 14 10:15 AM PCIT-B340What’s New with OS Deployment in Configuration Manager and the Microsoft Deployment ToolkitWed May 14 5:00 PM PCIT-B336Managing Mac OS X Clients and Linux Servers Using Microsoft System Center Configuration ManagerThu May 15 8:30 AM PCIT-B339How Microsoft IT Manages Their Microsoft System Center Configuration Manager Application Lifecycle with Zero TouchThu, May 15 10:15 AM PCIT-B333How Microsoft IT Solves BYOD Using Microsoft System Center 2012 R2 Configuration Manager and Windows IntuneThu, May 15 1:00 PM

44 CodeTitleTime PCIT-IL200Introduction to Microsoft System Center 2012 R2 Configuration ManagerMon, May 12 3:00 PM Wed, May 14 5:00 PM PCIT-IL201Upgrading from Configuration Manager 2012 SP1 to Microsoft System Center 2012 R2 Configuration ManagerThu, May 15 10:15 AM PCIT-IL300Deploying Windows 8.1 to Bare Metal ClientsWed, May 14 1:30 PM Thu, May 15 1:00 PM PCIT-IL305Basic Software Distribution with Microsoft System Center 2012 R2 Configuration ManagerTue, May 13 5:00 PM Wed, May 14 3:15 PM PCIT-IL306Implementing Endpoint Protection in Microsoft System Center 2012 R2 Configuration ManagerTue, May 13 10:15 AM Thu, May 15 8:30 AM PCIT-IL307Managing Microsoft Software Updates in Microsoft System Center 2012 R2 Configuration ManagerTue, May 13 1:30 PM Wed, May 14 8:30 AM PCIT-IL308Migrating from Configuration Manager 2007 to Microsoft System Center 2012 R2 Configuration ManagerWed, May 14 10:15 AM

45 CodeTitle PCIT-H302Deploying a Microsoft System Center 2012 R2 Configuration Manager Hierarchy PCIT-H303Deploying Microsoft System Center 2012 R2 Configuration Manager PCIT-H304Deploying Windows 8.1 to Bare Metal Clients PCIT-H309Implementing App-V 5.0 in Microsoft System Center 2012 R2 Configuration Manager PCIT-H310Implementing Endpoint Protection in Microsoft System Center 2012 R2 Configuration Manager PCIT-H311Implementing Linux Clients in Microsoft System Center 2012 R2 Configuration Manager PCIT-H312Implementing Role-Based Administration in Microsoft System Center 2012 R2 Configuration Manager PCIT-H314Managing Clients with Microsoft System Center 2012 R2 Configuration Manager PCIT-H315Managing Content in Microsoft System Center 2012 R2 Configuration Manager PCIT-H316Managing Software Updates in Microsoft System Center 2012 R2 Configuration Manager

46 www.microsoft.com/learning http://microsoft.com/msdn http://microsoft.com/technet http://channel9.msdn.com/Events/TechEd

47

48

49


Download ppt "Empowering people-centric IT Mobile Device Management Access and information protection Desktop Virtualization Hybrid Identity."

Similar presentations


Ads by Google