Pushing certificates with Airwatch to authenticate on Exchange and corporate websites

69431S's picture
No votes yet

Hello,

We are using Airwatch for ours iPad.
Users register to Airwatch with their MS Active Directory account. Airwatch pushes a X509 Certificate (based on the user account and issued by our MS PKI) on the device.

We have two use cases :
- users access email via MS Exchange Activ Sync : authentication is done using MS Active Directory user/password
- users access extranet web applications : authentication is done by CA SiteMinder using the iPad X509 certificate

If the AD password expires, users don't have the possibility to change it with the iPad. They need to connect to corporate network on the LAN with their desktop.

I have several questions

1) Can we use the certificate to authenticate on Exchange?
What we need to do on Exchange, on Airwatch (if necessary) and on the iPad?

2) Can we use the fisrt certificate pushed by Airwatch or we need to issue another one for Exchange with specific caracteristics?

Thanks for your help
Regards
Laurent

What's the best MDM (in Germany)?

AKramer's picture
No votes yet

Hi,

we are a company with 150 blackberrys and 50 ipads. We are searching for a mdm for our global company. We have the solution airwatch and famoc but the support for airwatch is in germany very bad. The next hting is that famoc is good but the handling is very complex.

With famoc can we manage blackberrys and ipads.

What is the best solution currently?

MobileIron or an antohter MDM solution.

Thanks for your help

Kind regards
Andre

EDA annual mobile IT integration survey with Ryan Faas

No votes yet

Hello EnterpriseiOS.com Professionals,

The Enterprise Device Alliance is conducting its annual Fall survey of IT professionals at http://www.surveymonkey.com/s/B8HQV6D.

As always, we will share the results with the community.

This year, we're collaborating with Ryan Faas, a veteran consultant and journalist for Computerworld, to develop a survey that will discover how the pervasiveness of mobile devices and non-Windows systems has affected IT management in large organizations. Your experiences and opinions, collected in these survey results, can influence product development in solution providers and decision-making by enterprise IT management.

The survey is comprehensive and thorough. To thank you for your contribution we will raffle one $50 gift certificate for every 100 respondents. We will, of course, provide you a copy of the results. Please make a difference and give us your thoughts.

Please take the Survey here: http://www.surveymonkey.com/s/B8HQV6D

On December 12 at 2 pm ET/11 am PT. Ryan Faas will discuss the survey results with me, T. Reid Lewis, president of the Enterprise Device Alliance and co-founder of GroupLogic. This webcast will explore the results in detail, offering examples of how other companies are tackling the challenges presented by mobile device management.

Sign up for the Webcast here: https://centrify.webex.com/centrify/onstage/g.php?t=a&d=828848995

Questions? Write to us at info@enterprisedevicealliance.org For more information and past survey results, visit www.enterprisedevicealliance.org.

Thank you on behalf of the members of the Enterprise Device Alliance!

- Reid

T. Reid Lewis
Co-Founder
GroupLogic, Inc.
http://www.grouplogic.com/

Creators and publishers of:
activEcho: File Sharing and Syncing for Enterprise http://www.grouplogic.com/activecho
mobilEcho: Mobile File Management for iPhone & iPad http://www.grouplogic.com/mobilecho
ArchiveConnect: Macintosh integration for file archiving solutions http://www.grouplogic.com/archiveconnect
ExtremeZ-IP: Macintosh file & print server for Windows http://www.grouplogic.com/extremez-ip
MassTransit: automated file transfer solution for Windows & Macintosh http://www.grouplogic.com/masstransit

Pushing large files to many iPads at once

nfusee's picture
No votes yet

Hello,

I am new here but have a problem I am sure others have encountered or will encounter....so I wanted to see if anyone had any other suggestions.

We have the need to push a 500 MB video file to about 50 iPads as quick as possible. These iPads will be on a plane, traveling home. So, if it is a physical device using usb it must have a small footprint. We can create our own WiFi segment on the plane, however my testing below will show the issues there.

Testing the iPad2 and it's Wifi capabilites I have come to the conclusion that max transfer rate on the device itself is about 38 Mbps. I tested on a network that has 200 MB of bandwidth and tested with multiple iPads. So, if you have a 500 MB file you want to move to the iPad via WiFi it will take 105 seconds or one minute and 45 seconds. Here in lies the problem.....if you need to get 50 iPads that file..that download stream is not autonomous. Every iPad you join will denegrate that transfer speed and once you join 10 or so the transfer will take much too long.

If you had enough bandwidth for 10 iPads to join and all get thier own 38 mbps of bandwidth...why can you not tranfer to all 10 iPads in one minute and 45 seconds?

Thanks for any thoughts on this....

About the security content of Apple TV 5.1.1

No votes yet

See the details here: http://support.apple.com/kb/HT5598

Free AppStore and Enterprise App Push by SimpleMDM

No votes yet

Hey all!

We just wanted to let you know about a few new updates that we have made to SimpleMDM, a free iOS-only Mobile Device Management solution. SimpleMDM is designed to allow you to quickly and easily configure iOS devices with essential configurations such as WiFi and Email, and now, push Apps!

To learn about all of the capabilities of SimpleMDM, please visit http://www.simplemdm.com.

This update allows a SimpleMDM administrator to:

  • Select iTunes AppStore apps to be pushed to managed devices
  • Over-the-air deploy In-house Enterprise iOS apps, with automatic provisioning profile update handling
  • Effectively manage deployment of apps by groups of devices

Read more about how it works here: SimpleMDM App Deployment

The feature is free addition to SimpleMDM, and you can have an account set up and configured in minutes.

Note that paid AppStore apps (via VPP) are not yet supported, though the feature is road-mapped (let us know if this would be a valuable addition to your organization).

We hope you enjoy it, and please feel free to ask any questions in the comments below.

Best,
Matt Vlasach

Using iPhone on WiFi (only) to run SIP Voice Applications

jeff.childrens's picture
No votes yet

Hello all. Wondering if anyone else out there is trying to use the iPhone to host SIP-based voice clients. Specifically, to use the iPhone as a WiFi only SIP voice device.
We have been working on this idea for a while now at our hospital. We are replacing some antiquated DECT phones. We could just go with a newer VoIP phone set but there is a great interest in everything the iPhone can do on top of just voice. We are also looking at messaging (not SMS), reference apps, etc.

We are testing the unlocked (no SIM) iPhone 4S 16GB for hardware. We have tested the Avaya One-X SIP and CIsco Jabber clients with mixed results.
We will start testing the Vocera Connect app in a couple of weeks.
We have also talked to the folks at Voalte. It seems that they are laser focused on this solution (specifically for health care), but they are a little out of our price range.

We have also struggled to get out Cisco WLAN environment up to snuff to properly support voice. There is a big challenge making things right for the iPhone's WiFi since you will get zero help from Apple.

Would love to hear if anyone else is trying something similar and what experienced or advice you can provide.

Cheers!
Jeff

Sync files from server to multiple IPads?

gsmithgcs's picture
No votes yet

We have a server located at our facility that we store PDF, Excel, and WORD docs. We would like to automatically sync to multiple IPads. What is the best way to do this? Is it possible for designated folders on the server be "pushed" to each iPad anytime there is a change. We use the iPads for accessing service manuals and various documents. The files MUST reside on the iPad as cell service and WIFI are not always accessible from the field.

Apple working to make Bonjour compatible with enterprise networks

No votes yet

According to Network World, Apple is working to make Bonjour compatible with enterprise networks. Apple is proposing an IETF working group to propose improvements.

Bonjour, Apple's marketing name for Multicast DNS, was designed with home network in mind. In larger networks, certain problems become apparent, as detailed in the petition by university network administrators:

  • Airplay does not work when Apple TV's and Apple client devices are on different IP subnets. It is common for the enterprise wireless and wired networks in our institutions to utilize different IP subnets.
  • Bonjour technologies also do not work in a scalable, sustainable fashion between different IP subnets. Work arounds such as Wide-Area Bonjour (DNS-SD) and Dynamic DNS updates have major scalability and security issues in enterprise networks.
  • For performance and security reasons, many of our institutions do not enable IP multicast on their enterprise wireless networks. This limits the usefulness of current Bonjour technologies.
  • The majority of our institutions' enterprise wireless networks utilize WPA2-Enterprise authentication and encryption. Current Apple TV's cannot connect to these networks even though the majority of Apple's other devices can.
  • The security method used to connect Apple devices to Apple TVs (a single password per Apple TV) opens the devices to "hijacking" by unauthorized users.

To their credit, Apple has already addresses the last two issues with a recent Apple TV update.

(Via Ars Technica)

Setting WebDav Access

Alexanderre's picture
No votes yet

Hello again Smile
Anybody tried to pre-set-up a WebDav access somehow using any tools on iPads? Would be cool to set up that on new devices so that customers could later connect to corporate data using apps that support WebDav with no need to set connection manually (iWork for iOS). Couldn't find an option neither in Configurator nor in Profile Manager, but maybe some of you could?... Smile

iPad + Time Capsule (WebDav)

Alexanderre's picture
No votes yet

Hi there!
Here's what I'd like to ask you, guys, about:
Is there a way to access files on a Time Capsule from iPad using WebDav from an app like Pages/Numbers/Keynote for iOS?
Could I access those files from outside of company's office using just Time Capsule's abilities (no additional VPN servers and stuff...)?
Is it possible to set access rights for different users so they could only access their files and create, say, one additional file storage for everybody?

Thanks!

About the security content of iOS 6.0.1 Software Update

No votes yet

Detailed info here: http://support.apple.com/kb/HT5567

Enterprise iOS is Back!

No votes yet

As you probably guessed, the hurricane knocked out our multiply-redundant data center. (OK, not so redundant. We learned something, right?)

But the power is back on 23rd Street in NYC. Thanks to Con Edison for working so hard, and to all the Tekserve employees for working by candlelight for these last few days. The energy poured into perseverance has been very impressive, but it's good to have light!

MDM solution for small education institution.

stevepapp's picture
No votes yet

I am a principal in a small education institution in Sydney Australia. We currently have 30 iPads to support our programs.

I am after a MDM solution that will do all the typical Apple Configurator stuff but will also allow the distribution of iBook Author files as well as music and video to the iPads. This is essential for now we are using our iPads.

Our funding is limited so I am after a MDM solution that is not expensive and does not have subscription or renewal fees etc. If it was just a piece of software like Configurator it would-be great.

Alternatively is there another way of getting .ibook files/video/photos onto the ipads once they are supervised?

Profiles not being Applied on Locked Device

aircukjati's picture
No votes yet

We are using a MDM, one that is listed to the right, to manage our iOS devices and I have ran into an issue with pushing profiles while the iOS devices are locked. I am able to ping the iOS device but when I push the profile, either a new one like a webclip or a change to an existing profile the device does not get the payload.

If I unlock the iOS device the policy does show up, I can ask the iOS client to check home and it connects, but the policy still doesn't show up. I have to push the policy AGAIN and then the profile is successfully pushed down to the device. This has left me in a quandary about my MDM. All of our devices are on 5.1.1, we did a proof of concept last year on iOS 4.35 and this was not an issue.

My MDM provider states this is the effect of iOS 5 and that Apple has changed this policy and there is nothing they can do to modify this behavior.

Any MDM user out there experiencing the same thing? I can't believe all my iOS device have to be unlock to manage them.

About This Site

  • Enterprise iOS is a community for administrators of the iPad, iPhone, and related devices. All content is available to browse. We encourage you to create an account to submit stories, edit wiki pages, and post to our forum.

Comparison of MDM Providers

Recent Activity

Who's New