System Centre Mobile Device Manager(SCMDM) enables Windows Mobile 6.1 (shortly to be released) devices to be managed much the same as a PC or laptop. They can join the domain and have GPO's enfoced and so on. This allows admins to do things like:
- Disable the camera
- Prevent writing to external storage
- Full device encryption
- OTA provisioning and boot strapping (yes even fresh from the box the end user can do this with no IT staff input giving them a fully compliant corporate IT build still, all via a customisable self service webpage)
- OTA software distribution (based on WSUS)
- Mobile VPN with session persistence (great for when you go through a tunnel on the train!)
- Application control and denial
- Remote wipe or block (i.e. someone knows where they left their device and can retrieve it but needs it to be temporarily blocked to stop misuse)
This is again configured via a System Centre snap-in and the service is provided by 3 server roles: Enrollment Server, Device Management Server and Mobile VPN Server (in DMZ).
There is a dependency on having Active Directory in the organisation.
There is a plan to do other device OS's in the future (such as RIM/Palm/Symbian but no timescales as yet as they are having some licensing discussions with those relevant rights holders.
All in all SCMDM looks to be aninteresting project and certainly an area we may want to investigate further should we be using SCCM in the organisation.
No comments:
Post a Comment