Enrollment Configuration Management Certificate Management Application Management Monitoring Secure Access Enterprise Wi-Fi Virtual Private Networks Exchange Server Support EAS S/MIME Management lifecycle summary Server-initiated Mobile Control Converged Remote Device over lockapp collection Management device platform wipe of for enterprise business with Windows apps, appsdata Intune or and 3rdsettings Party tools with MDM Push Private Remote Manual and or Ring server-initiated secure distribution unenrollment to managed Simplified Configuration phones and policies flexible enrollment, using Password or Enterprise Wipe: PIN removal reset device of LOB apps, email, Web Authentication Broker and removal Email Remote policies, accounts installation, profiles, certificates update Office documents of Enhanced inventory business Certificateapps management Enterprise Wi-Fi VPN profiles Company portal Blog Pieter Wigleven: Part 3 - Protecting NDES with Web Application Proxy (WAP) in the DMZ - Windows Phone 8.1 MDM protocol documentation: http://technet.microsoft.com/en-us/library/dn499787.aspx Update Type Owner Contributors Contents OS Update (AK) MSFT MSFT Major OS functionality (Apollo, Blue, Cyan, Denim) Firmware Update (RFU) OEM OEM, QCOM, MSFT, MO Drivers, Custom settings, MO Apps, MS Optional Packages (Apollo, Blue, Cyan, Denim) MSFT Downloadable keyboard languagesUser initiated Downloadable User MSFT Content Final AK QFE1 QFE2 QFE3 GDR1 QFE1 QFE2 QFE3 GDR2 QFE1 QFE2 QFE3 GDR3 QFE1 QFE2 QFE3 Major OS Release Lifecycle • • • • Note: Nokia MO Updates release information: http://www.nokia.com/global/support/software-update/wp8-software-update/ 1. 2. a. 3. 4. Microsoft Update Server Look for update Download update payload Returnsapplicability (targeting) details Device Update Applicability Check: • • • • • OS Version OEM MO OEM Device Name Firmware Revision - Store App Submission Requirements > / > / • • SharedUserCertificates SharedUserCertificates • SCEP is a very simple certificate enrollment protocol developed 10 years ago for routers and switches. • SCEP enables network devices that do not run with domain credentials to enroll for x509 version 3 certificates from a Certification Authority (CA). • As an end result, the network device will have a private key and associated certificate that is issued by a CA • It has increasingly been used for management of mobile device certificates via Mobile Device Management (MDM). 2 Types of Remote Access 1 – App Triggered VPN VPN Plugin vSC Support 2 – WAP Cond. Access Kerb.DomJoined • • http://aka.ms/trywin10 microsoft.com/mdop microsoft.com/dv windows.com/itpro microsoft.com/windows/wtg windows.com/enterprise http://technet.microsoft.com/ie http://channel9.msdn.com/Events/TechEd www.microsoft.com/learning http://microsoft.com/technet http://developer.microsoft.com