Mobile Device Management with Microsoft Intune and Android Enterprise

Slide Note
Embed
Share

Explore the integration of Android devices into workplace environments through Android Enterprise, Microsoft Intune, and Android Management API. Learn about managing mobile devices and applications, securing corporate data, and enforcing management policies without device enrollment. Discover how Intune MAM separates company-managed apps from personal apps, ensuring data security within mobile environments.


Uploaded on Sep 13, 2024 | 0 Views


Download Presentation

Please find below an Image/Link to download the presentation.

The content on the website is provided AS IS for your information and personal use only. It may not be sold, licensed, or shared on other websites without obtaining consent from the author. Download presentation by click this link. If you encounter any issues during the download, it is possible that the publisher has removed the file from their server.

E N D

Presentation Transcript


  1. Android mobile Android mobile device management management with Microsoft Microsoft Intune Intune device with M sz ros Etele MCP, MCSA, MCSE, MCT TriSys IT Solutions Kft.

  2. Android Management: DA / AE Android Management: DA / AE Android Enterprise is a Google-led initiative to enable the use of Android devices and apps in the workplace. The program offers APIs and other tools for developers to integrate support for Android into their enterprise mobility management (EMM) solutions.

  3. Android Management API Android Management API Overview Overview The Android Management API supports mobile device management (MDM) and mobile application management (MAM). The API's partner app,Android Device Policy, receives management policy settings from the API and enforces them on devices.

  4. Android Management API Android Management API with with EMM EMM

  5. Microsoft EMM: Microsoft Microsoft EMM: Microsoft Intune Intune

  6. High High- -level architecture for Microsoft Intune level architecture for Microsoft Intune

  7. Managing mobile device Managing mobile devices: MAM s: MAM Mobile Application Management (MAM) Commonly used for personal devices or Bring Your Own Device scenario No Device Enrollment required Company manages the security of only those applications that are enrolled Key capabilities Secure corporate data within apps Report app inventory & usage Remove corporate data Administration App selective wipe App protection policies App configuration policies

  8. M Manage anage Apps Apps: : Commonly used scenarios Commonly used scenarios Intune MAM Intune MAM does two things without requiring Device Enrollment Ring fencing Apps Separates company managed apps from Separates company managed apps from personal apps personal apps, and set policies on how data is accessed from managed apps @contsoso.com Corp @hotmail.com Personal Ensures corporate data can t be copied Ensures corporate data can t be copied and pasted to personal apps within the device Email Attachment Copy Save Paste Can t Paste to Personal Apps Can t Save to Personal Storage

  9. Intune Intune- -enlightened apps enlightened apps provide the best control provide the best control Check back frequently

  10. Personally Personally owned owned devices devices: Management : Management scenarios scenarios Personally owned devices without enrollment (MAM-WE) Personally owned devices with a work profile (BYOD)

  11. Personally Personally owned owned devices devices: : Enrollment Enrollment methods methods Personal Enrollment Methods Reset Required User Affinity Locked Android Enterprise personally-owned with Work Profile User initiated via Company Portal No Yes No

  12. Managing mobile devices Managing mobile devices: MDM : MDM Mobile Device Management (MDM) Commonly used for total management of company-owned devices Device Enrollment Required Device Enrollment Required Company manages the security of the entire device Key capabilities Provision settings, certs, profiles Advanced policy controls Report & measure device compliance Administration Configuration profiles Enroll devices Compliance policies

  13. Manage devices Manage devices: : Commonly used scenarios Commonly used scenarios Retire View device inventory Remote lock Wipe Bulk device actions

  14. Company Company owned owned devices devices: Management : Management scenarios scenarios Corporate owned work profile (COPE) Corporate owned fully managed (COBO) Corporate owned dedicated devices (COSU)

  15. Company Company owned owned devices devices: : Enrollment Enrollment methods methods Corporate Enrollment Methods Reset Required User Affinity Locked Android Enterprise Dedicated NFC, Token, QR code, Zero Touch Configurable via policy Yes No Android Enterprise Fully Managed NFC, Token, QR code, Zero Touch Configurable via policy Yes Yes Android Enterprise corporate-owned with Work Profile NFC, Token, QR code, Zero Touch Configurable via policy Yes Yes

  16. Managed Managed Google Play Google Play Key features: - Public app search - Private app publishing - Web app publishing - App organization

  17. Additional Additional API: API: OEMConfig OEMConfig OEMConfig, a means for OEMs to provide additional APIs over and above Android Enterprise easily managed directly through an EMM. https://docs.microsoft.com/en-us/mem/intune/configuration/android-oem-configuration-overview

Related