100 likes | 261 Views
Sophos Mobile Control Technical Information. Name: Thomas Lippert – Product Management DPG Date: 13-Jan-2011. Agenda . Over the Air – Installation Installation via Self-Service Portal Over the Air – Operation Over the Air – Installation (Apple) Over the Air – Operation (Apple)
E N D
Sophos Mobile ControlTechnical Information Name: Thomas Lippert – Product Management DPG Date: 13-Jan-2011
Agenda • Over the Air – Installation • Installation via Self-Service Portal • Over the Air – Operation • Over the Air – Installation (Apple) • Over the Air – Operation (Apple) • System setup • EAS Proxy – E-Mail for trusted devices
Over the Air - Installation • Phone is defined in Admin GUI • Installation package is assigned • Install SMS send out • Client download on smartphone • Config data taken from SMS • Access SMC server 1 2 3 4 5 6
Installation via Self-Service Portal (SSP) • Smartphone user gets a mail to register • User accesses SSP and registers phone • Install SMS send out • Client download on smartphone • Config data taken from SMS • Access SMC server 1 2 3 4 5 6
Over the Air - Operation • Create config package in Admin GUI • Assign package to phone or phone group • Command SMS send out • Smartphone client calls home for configuration • Configuration will be applied 1 2 3 5 4
Over the Air – Installation (Apple) • iPhone connects to APNS • APNS assigned a unique token to the device (no IMEI or phone number) • This token is used by the management app • iPhone calls home for to publish the token 1 2 3 4
Over the Air – Operation (Apple) • SMC sends notification to APNS • APNS forwards the notification to the iPhone • Management app gets notified • iPhone calls home for configuration • Configuration will be downloaded and applied 1 2 3 5 4
System Setup JBOSS SSP Admin Active Directory SMC Service SMS DC SMS Exchange Server EAS
EAS Proxy – E-Mail for trusted devices • Smartphone has internet connection • Smartphone retrieves mails • Validation of smartphone access • E-Mail access granted LAN DMZ 2 Internet HTTP HTTPS 2 4 Microsoft Exchange EAS Proxy 1 3 Permitted? SQL DB