Mobile Device Management

CompTIA Security+ Certification (SY0-501) Chapter 7 - Beyond the Basic LAN
10 minutes
Share the link to this page
Copied
  Completed
You need to have access to the item to view this lesson.
One-time Fee
$99.99
List Price:  $139.99
You save:  $40
€91.73
List Price:  €128.43
You save:  €36.69
£78.50
List Price:  £109.90
You save:  £31.40
CA$135.42
List Price:  CA$189.60
You save:  CA$54.17
A$152.22
List Price:  A$213.12
You save:  A$60.89
S$133.77
List Price:  S$187.28
You save:  S$53.51
HK$781.89
List Price:  HK$1,094.68
You save:  HK$312.79
CHF 88.30
List Price:  CHF 123.63
You save:  CHF 35.32
NOK kr1,058
List Price:  NOK kr1,481.24
You save:  NOK kr423.24
DKK kr684.10
List Price:  DKK kr957.77
You save:  DKK kr273.66
NZ$164.15
List Price:  NZ$229.81
You save:  NZ$65.66
د.إ367.20
List Price:  د.إ514.09
You save:  د.إ146.89
৳10,978.23
List Price:  ৳15,369.96
You save:  ৳4,391.73
₹8,290.53
List Price:  ₹11,607.08
You save:  ₹3,316.54
RM471.80
List Price:  RM660.54
You save:  RM188.74
₦156,534.34
List Price:  ₦219,154.34
You save:  ₦62,620
₨27,950.66
List Price:  ₨39,132.05
You save:  ₨11,181.38
฿3,595.26
List Price:  ฿5,033.51
You save:  ฿1,438.25
₺3,229.78
List Price:  ₺4,521.83
You save:  ₺1,292.04
B$499.40
List Price:  B$699.18
You save:  B$199.78
R1,883.20
List Price:  R2,636.56
You save:  R753.35
Лв179.42
List Price:  Лв251.19
You save:  Лв71.77
₩133,286.20
List Price:  ₩186,606.01
You save:  ₩53,319.81
₪365.03
List Price:  ₪511.06
You save:  ₪146.02
₱5,561.09
List Price:  ₱7,785.75
You save:  ₱2,224.66
¥14,911.76
List Price:  ¥20,877.07
You save:  ¥5,965.30
MX$1,670.32
List Price:  MX$2,338.52
You save:  MX$668.19
QR364.82
List Price:  QR510.77
You save:  QR145.94
P1,359.04
List Price:  P1,902.71
You save:  P543.67
KSh13,398.66
List Price:  KSh18,758.66
You save:  KSh5,360
E£4,718.65
List Price:  E£6,606.31
You save:  E£1,887.65
ብር5,656.15
List Price:  ብር7,918.84
You save:  ብር2,262.68
Kz83,512.74
List Price:  Kz116,921.18
You save:  Kz33,408.44
CLP$93,810.03
List Price:  CLP$131,337.80
You save:  CLP$37,527.76
CN¥710.61
List Price:  CN¥994.89
You save:  CN¥284.27
RD$5,917.87
List Price:  RD$8,285.25
You save:  RD$2,367.38
DA13,435.55
List Price:  DA18,810.31
You save:  DA5,374.76
FJ$226.69
List Price:  FJ$317.37
You save:  FJ$90.68
Q780.94
List Price:  Q1,093.35
You save:  Q312.40
GY$20,949.18
List Price:  GY$29,329.69
You save:  GY$8,380.51
ISK kr13,659.63
List Price:  ISK kr19,124.03
You save:  ISK kr5,464.40
DH1,002.67
List Price:  DH1,403.78
You save:  DH401.11
L1,768.33
List Price:  L2,475.73
You save:  L707.40
ден5,652.42
List Price:  ден7,913.61
You save:  ден2,261.19
MOP$805.88
List Price:  MOP$1,128.27
You save:  MOP$322.38
N$1,866.55
List Price:  N$2,613.25
You save:  N$746.69
C$3,681.10
List Price:  C$5,153.70
You save:  C$1,472.59
रु13,266.49
List Price:  रु18,573.62
You save:  रु5,307.13
S/368.83
List Price:  S/516.39
You save:  S/147.55
K382.06
List Price:  K534.91
You save:  K152.84
SAR375
List Price:  SAR525.02
You save:  SAR150.01
ZK2,508.19
List Price:  ZK3,511.57
You save:  ZK1,003.37
L456.04
List Price:  L638.48
You save:  L182.43
Kč2,310.02
List Price:  Kč3,234.13
You save:  Kč924.10
Ft36,211.46
List Price:  Ft50,697.50
You save:  Ft14,486.03
SEK kr1,038.11
List Price:  SEK kr1,453.39
You save:  SEK kr415.28
ARS$85,066.49
List Price:  ARS$119,096.49
You save:  ARS$34,030
Bs691.23
List Price:  Bs967.75
You save:  Bs276.52
COP$389,029.38
List Price:  COP$544,656.70
You save:  COP$155,627.31
₡50,979.09
List Price:  ₡71,372.77
You save:  ₡20,393.67
L2,470.17
List Price:  L3,458.33
You save:  L988.16
₲730,160.41
List Price:  ₲1,022,253.79
You save:  ₲292,093.37
$U3,841.23
List Price:  $U5,377.88
You save:  $U1,536.64
zł395.31
List Price:  zł553.46
You save:  zł158.14
Already have an account? Log In

Transcript

If I as an organization have 10s, hundreds, thousands of mobile devices under my control, I can use something known as mobile device management. Every mobile operating system has built into its core the ability to listen to a single control source to be able to do just about anything you want to a mobile device. So for example, I can define what applications you can install. I can even decide what kind of backgrounds you have and what type of wallpapers you use. And I can even set it up so that you can't take pictures unless I want you to Now, if this sounds a little bit big brother it is. But there's wonderful granularity to mobile device management.

Now, as you could imagine, there are thousands of things we can cover. But for the exam, there's a very specific list and I just want to run through these really quick. First is content management. Now that's certainly our applications, but it goes a lot deeper than that. For example, our applications now databases are nurses are going to need databases that are up to date for the different types of patients on the floor. Our salespeople are going to have to have databases that shows the current sales that are taking place for the customer.

He's right in front of right now. also things like documents. If I've got an engineer out in the field, and he's referencing some type of documentation, I want to make sure that my content management keeps all of this up to date. Next is geolocation, pretty common stuff, letting us know where somebody is, at this very moment. But as a corollary to that is geo fencing. geo fencing is geo location, but with a trigger, the moment that truck comes into the yard, I want the loader guys to know that it's coming and they need to be ready for it.

Also push notification services. It's very convenient for us to have our applications put push notifications up on the screen, but we don't want a casual push notification to come up. When our charge nurse is working on a critical patient. Next are passwords and pins. Not only do we require passwords and pins, but more importantly, if someone forgets one, or if there's an issue, we have the ability from remote management to be able to take care of those types of problems. On top of that are biometrics, fingerprint, facial recognition, even voice are common on most mobile devices these days.

What's interesting is not only can we use this to lock or unlock a device, but we can actually configure applications today, you may be on the device. But if you want to use a particular application, you're going to have to use one of these biometrics just to get to that. Next, our screen locks. We want to make sure that people have their screens locked when they're not used. And these are one things that mobile device management can easily enforce. And last, unfortunately, we do have users who lose devices and the convenience of horrible remote wipe from a central location is a powerful MDM tool.

Now, there's a lot of situations in mobile device management where we're really kind of transcending the device itself. And instead, we're concentrating on the applications on this device. Now, this is particularly true when we get into the BYOD kind of scenario, because what we're talking about now is that we have a person's personal device. But we're going to apply applications to this device. So we have to be sensitive to the fact that it's their device, and they need access to their stuff. Yet, on the same token, we need to provide strong control and security for our stuff.

So let's go through different aspects of mobile application management. First is application management. Now I know just a moment ago, I said that content management was a part of MDM. But when we're talking about Application Management here, we're talking about versioning updates patches Things that are specific to the application that you're managing. Next is context aware authentication. Instead of just counting on things like passwords or fingerprints, we can add context.

Where are they right now? What operating system are they using? what time of day? Are they trying to authenticate these context aware authentication tools can be incredibly powerful. Next is storage segmentation. Now, when I talk about storage segmentation, I'm talking about dedicating a separate piece of the storage of the mobile device just for our application, keeping it totally separate from the user's personal stuff.

Another big one is full device encryption, where we literally encrypt the entire storage of the mobile device to make sure that if it falls in the wrong hands, they're not going to get any information. Last is something interesting and we call this containerization. Let's see Talk about that for a minute. Containers are really, really popular. We see people, for example, who do web apps here, total seminars, we live in the world of Docker for our web app development. However, it's also great when it comes to mobile devices, both iOS, and Android works great with containers.

And it's a super way, if you have a particular application, or more than that an application with all its support DLLs and all the other documents and everything with one container, you can do all kinds of amazing updates. Okay, so, MDM, and mam sound great, and I can throw some pretty words up on the screen, but you really need to see it in action to see how this works. Now there are literally hundreds of different companies that provide MDM type solutions out there. So I chose one in particular that actually comes directly from Google. Google does MDM, through a very, very powerful system. In this particular case, they provide a wonderful little demo.

And it's great for a course like this. So let's take a look what's up on my screen. So what I've got is an MDM solution. This is a demo. So it's not a complete product from Google. So I want to go through and just give you some idea of some of the management stuff we'd want to see.

First of all, we'd have to decide on our users. So here's me and one device. And it's the Android I've actually got sitting right in front of me right here. So it is a managed device. So we can also define things like for example, apps. Now right now, I have three apps that my users are going to use.

Now if you're looking at this, you're gonna go, Well, what if I already have Chrome browser? What if I already have Dropbox? Hang on a second, I'll show you it's really cool. So what we can say is we can auto install. So basically, the moment this person logs in, they're going to get these programs but I I can even add more stuff. For example, if I want to, I can add this painting program, I'm going to go ahead and prove that.

And what I've done is I've added this particular program, I'm going to show you where this comes into play in just a second. Next, we can apply some policies. For example, here, I can disable screen capture. In this case, I've got it turned off, so my individual computers can still go ahead and do screen captures, disable, copy and paste, what an interesting thing to disable. As a policy. You don't want people copying and pasting from some important application and putting it in their Notepad.

I can require a screen lock with a pin if I want. I can have runtime permissions. Basically, when they come up to run a particular app. I can require them to do a username and password if I want. I can even in this one little simple demo, force them to use a particular Wi Fi configuration. Okay, now understand right now folks, this is a demo tool.

So it is extremely Limited, but it's designed to show you I think Google does a good job of giving you an idea of what MDM could really do. Now, the interesting part is over here on my screen. So what I want you to look at, you'll see there I've context and then this is just my personal contacts. And you can see it says Mike at play. Now what I'm going to do right now is I'm going to go this new folder, you'll see it has a little icon on there. This is the work folder that's been put in through this management tool.

You can see I've got contacts here. Now watch what happens when I click on this. Now you'll see it says Mike at work. So really what's happening is I have two completely separate sets of contacts here. One for work and one for play. The other interesting part is right up here.

So you'll see that I have installed programs. I've got Dropbox, Chrome and the Chopin, which were the three that were in there, but I want to install that paint program. So what I can do now is go into Google Store. However, this is not the Google Store that you and I know notice it only has four applications for me to choose from. So I could if I want to go ahead and install that one particular application, the cool part to this little demo tool is that it really makes to have everything. So if you have to have everything in many of these MDM solutions, what you'll see is that they take your system, and they segregate your storage, so that some of the storage is for your stuff.

And some is dedicated to the applications that you need to get your job done. In fact, not only does it segregate it, but it will actually go through an encryption process to really, really lock that stuff down. Mobile Device Management is absolutely amazing. And it is becoming more and more accomplished and powerful as the years progress. I think it'll be interesting to see in the not too distant future. what some of the amazing opportunities coming take place within the world of mobile device management.

Sign Up

Share

Share with friends, get 20% off
Invite your friends to LearnDesk learning marketplace. For each purchase they make, you get 20% off (upto $10) on your next purchase.