SlideShare a Scribd company logo
1 of 27
29.09.2016.
Zagreb
Hotel Antunović
Zagreb, 29.09.2016.
XenMobile: Enterprise
mobile management
solution
Tomica Kaniški
tomica@kaniski.eu | http://blog.kaniski.eu/
POKROVITELJI
AKADEMSKI PARTNERI DIGITALNI PARTNER PRIJATELJI KONFERENCIJE
GENERALNI SPONZOR GENERALNI MEDIJSKI SPONZOR GLAVNI SPONZORI
MEDIJSKI PARTNERI
SPONZORI
Agenda
 XenMobile
 editions
 scenarios
 features
 WorxApps
 NetScaler
 integration
 deployment
 tips
 resources
XenMobile provides...
 unified management of devices & applications
 corporate app store
 mobile device and app management
 unified access getaway & SSO
 workflow-driven productivity apps
 military-grade (FIPS) security
 mobile content management
 broad platform support
Editions...
 XenMobile MDM
 mobile device management (MDM)
 allow IT Administrators to enroll and enforce restriction
policies to corporate-owned or BYO devices
 XenMobile Advanced
 mobile device and application management (MDM + MAM)
 adds support for IT Admins to create enterprise app store for
mobile, web/SaaS and Windows apps with MDX capabilities
(securing data and network resources)
 XenMobile Enterprise
 enterprise mobile management (EMM) solution
 adds ShareFile capability for data mobility management
Scenarios: XenMobile MDM
 mobile device management
 jailbreak detection
 selective or full wipe
 geolocation tracking
 passcode enforcement
 pushing applications
 native mail client access control
 Wi-Fi & VPN access control
 access to local documents/files for editing
Scenarios: XenMobile Advanced
 all MDM edition use scenarios
 federated single sign-on (SSO)
 secure email
 secure browsing
 automated account provisioning
 workflows
 policy-based interapp security
 app specific microVPN tunnels
 unified corporate app store
 access to local documents/files for editing
Scenarios: XenMobile Enterprise
 all XenMobile Advanced edition use scenarios
 secure document sharing,
syncing & editing (ShareFile
Enterprise)
Features
 single administrative experience with RBAC
 unified XenMobile server (Linux appliance)
 simplified deployment and configuration
 designed for 100,000 user environments (with 150,000+
devices)
 integrated enterprise store with ratings, screenshots and
app reviews
 cross-platform app & policy definitions
 single sign-on for MDX apps
 FIPS 140-2 support
 connectivity checks & support bundle
 integrated Worx productivity apps
The „big picture”
Worx apps (1)
 WorxHome
 authenticates users (AD with certificates, tokens and other
second factors)
 permits lock/wipe of corporate data/apps on selected devices
 SSO for all managed apps (hosted (HDX) apps and desktops,
web/SaaS apps, MDX managed mobile apps)
 access to the MDX apps (determines policies and app
entitlements and controls data exchange)
 provides gateway tickets for microVPN access, certificates for
protected websites, SAML tokens for ShareFile access, ...
Worx apps (2)
 WorxWeb
 HTML5-compatible browser
 whitelist/blacklist URLs, set bookmarks and home page
 leverages microVPN (full tunnel) or SecureBrowse (client-side
rewrite)
 https://bramwolfs.com/2012/08/24/cloud-gateway-a-wrap-up-so-far-
part-2/
 WorxMail
 ActiveSync mail/calendar/contacts client
 microVPN or STA to sync email from Exchange or Office 365
Worx apps (3)
 WorxEdit
 open, view, create or edit Microsoft Office documents
 view PDF files
 track changes from multiple reviewers
 local storage for offline copy editing
 WorxNotes
 create, sync and share notes
 create notes from WorxMail messages
 ShareFile integration for storage and sync
 integrated with Exchange server (email and calendar)
Worx apps (4)
 WorxTasks
 securely manage tasks
 integration with Outlook tasks and WorxMail
 WorxDesktop
 secure „VDI like” access to physical desktop
 access work files and apps
 ShareFile
 secure enterprise file share and sync
 mobile content editing
 SharePoint & network files integration
Zagreb, 29.09.2016.
DEMO
Worx apps
NetScaler
 hardware (MPX, SDX) or software appliance (VPX)
 provides content switching and load balancing for
MDM, MAM or EMM
 manages the complete lifecycle of the
request/response transaction
 supports connection reuse (reduces TCP overhead on
web servers)
 communicates with XenMobile (better together)
 built-in monitor for XenMobile
 built-in diagnostic tools for XenMobile
 supports microVPN (MDX) technology in XenMobile
NetScaler addresses
 NSIP
 NetScaler IP (IP of the appliance)
 management IP
 SNIP
 subnet IP
 communication to backend services like XenMobile, AD,
database, ... („points of presence” in different subnets)
 VIP
 virtual IP
 IP address of a virtual server (client-side access)
The „big picture”
Deployment of EMM (1)
 prerequisites:
 firewall ports
 http://docs.citrix.com/en-us/xenmobile/10-3/xmob-system-
requirements/xmob-deploy-component-port-reqs-con.html
 hypervisor of choice
 SQL Server 2012+
 XenMobile license
 service accounts (DB creator, AD reader)
 4 free IP Addresses in the DMZ
 2 free public IP addresses
 2 SSL certificates (or a wildcard certificate)
 Apple Push Notification Services certificate (APNS)
 for managing Apple devices
 NetScaler Gateway
 NetScaler Standard or higher supports Load Balancing
 SMTP server (optional)
Deployment of EMM (2)
 steps:
 XenMobile
 import the XenMobile appliance(s)
 initial configuration from CLI (IP, database, NTP, ...)
 additional configuration from console (SSL, NSGW, LDAP, ...)
 create additional appliance(s)/enable clustering
 update the environment (for WM10)
 integration with NetScaler
 import the NetScaler appliance(s)
 initial configuration from CLI (NSIP)
 additional configuration from console (license, SSL, ...)
 XenMobile integration wizard
 create additional appliance(s)/enable HA mode
Zagreb, 29.09.2016.
DEMO
XenMobile Enterprise deployment and NetScaler integration
Tips...
 XenMobile
 don’t install and upgrade the first node and later try to add another
one (hint: database schema upgrades... sometimes )
 use VM cloning for multiplication of nodes
 RBAC – can’t add a group to Support role
 create another role, tailored to your wishes
 restart appliances to pick up certificates & updates
 NetScaler
 4K certificates limitation on VPX
 only hardware appliances support 4K certificates
 vCPU limitation on Hyper-V (intentional!)
 limited to two vCPUs (use VMware instead )
 bug with AD authentication in GUI
 if you password contains special characters, beware... 
Conclusion
 complete enterprise mobility management solution
 three „flavours” – MDM, MDM+MAM, EMM
 end-to-end security, easy deployment and great user
experience
 integration with NetScaler appliance is easy and
preferred
 nice built-in productivity apps
 fast deployment
Resources
 https://www.citrix.com/products/xenmobile/
 http://docs.citrix.com/en-us/xenmobile/10/xmob-about.html
 https://www.citrix.com/downloads/xenmobile.html
 https://www.citrix.com/content/dam/citrix/en_us/documents/pr
oducts-solutions/xenmobile-security-understanding-the-
technology-used-by-xenmobile.pdf
 http://www.robinhobo.com/how-to-setup-citrix-xenmobile-10-
including-configuring-netscaler/
 http://www.carlstalhood.com/netscaler-gateway-11-ldap-
authentication/
 http://www.ingmarverheij.com/one-content-switch-to-rule-
them-all/
Ankete
Popunite ankete i osvojite vrijedne
nagrade!
Ankete su dostupne na:
a) Mobilnim uređajima (Android, Apple, Windows)
b) Web-u http://www.mobilityday.com
PIN za pristup se nalazi na poleđini akreditacije i u vašem
on-line profilu.
Zagreb, 29.09.2016.
HVALA!

More Related Content

What's hot

E tech vmware presentation
E tech vmware presentationE tech vmware presentation
E tech vmware presentation
jpenney
 
HotLink DR Express
HotLink DR ExpressHotLink DR Express
HotLink DR Express
dean1609
 
VMware Performance for Gurus - A Tutorial
VMware Performance for Gurus - A TutorialVMware Performance for Gurus - A Tutorial
VMware Performance for Gurus - A Tutorial
Richard McDougall
 
Virtualization 101 - DeepDive
Virtualization 101 - DeepDiveVirtualization 101 - DeepDive
Virtualization 101 - DeepDive
Amit Agarwal
 

What's hot (20)

How to Optimize Microsoft Hyper-V Failover Cluster and Double Performance
How to Optimize Microsoft Hyper-V Failover Cluster and Double PerformanceHow to Optimize Microsoft Hyper-V Failover Cluster and Double Performance
How to Optimize Microsoft Hyper-V Failover Cluster and Double Performance
 
VMware vSphere Version Comparison 4.0 to 6.5
VMware  vSphere Version Comparison 4.0 to 6.5VMware  vSphere Version Comparison 4.0 to 6.5
VMware vSphere Version Comparison 4.0 to 6.5
 
VMware vSphere 5.1 Overview
VMware vSphere 5.1 OverviewVMware vSphere 5.1 Overview
VMware vSphere 5.1 Overview
 
Nashville VMUG Keynote April 8 2015 - vSphere 6
Nashville VMUG Keynote April 8 2015 - vSphere 6Nashville VMUG Keynote April 8 2015 - vSphere 6
Nashville VMUG Keynote April 8 2015 - vSphere 6
 
VMware Vsphere Graduation Project Presentation
VMware Vsphere Graduation Project PresentationVMware Vsphere Graduation Project Presentation
VMware Vsphere Graduation Project Presentation
 
VMware vSphere 5 seminar
VMware vSphere 5 seminarVMware vSphere 5 seminar
VMware vSphere 5 seminar
 
VMware vSphere 6.0 - Troubleshooting Training - Day 1
VMware vSphere 6.0 - Troubleshooting Training - Day 1VMware vSphere 6.0 - Troubleshooting Training - Day 1
VMware vSphere 6.0 - Troubleshooting Training - Day 1
 
Introducing Xen Server
Introducing Xen ServerIntroducing Xen Server
Introducing Xen Server
 
E tech vmware presentation
E tech vmware presentationE tech vmware presentation
E tech vmware presentation
 
VMware vSphere vMotion: 5.4 times faster than Hyper-V Live Migration
VMware vSphere vMotion: 5.4 times faster than Hyper-V Live MigrationVMware vSphere vMotion: 5.4 times faster than Hyper-V Live Migration
VMware vSphere vMotion: 5.4 times faster than Hyper-V Live Migration
 
Virtualization and cloud Computing
Virtualization and cloud ComputingVirtualization and cloud Computing
Virtualization and cloud Computing
 
Private Cloud Academy: Backup and DPM 2010
Private Cloud Academy: Backup and DPM 2010Private Cloud Academy: Backup and DPM 2010
Private Cloud Academy: Backup and DPM 2010
 
ebk EVO-RAIL v104
ebk EVO-RAIL v104ebk EVO-RAIL v104
ebk EVO-RAIL v104
 
HotLink DR Express
HotLink DR ExpressHotLink DR Express
HotLink DR Express
 
Što danas zamjenjuje Small Business Server?
Što danas zamjenjuje Small Business Server?Što danas zamjenjuje Small Business Server?
Što danas zamjenjuje Small Business Server?
 
Microsoft Windows Server 2012 R2 Hyper V server overview
Microsoft Windows Server 2012 R2 Hyper V server overviewMicrosoft Windows Server 2012 R2 Hyper V server overview
Microsoft Windows Server 2012 R2 Hyper V server overview
 
VMware Performance for Gurus - A Tutorial
VMware Performance for Gurus - A TutorialVMware Performance for Gurus - A Tutorial
VMware Performance for Gurus - A Tutorial
 
Veeam Backup & Replication v8 for VMware — General Overview
Veeam Backup & Replication v8 for VMware — General OverviewVeeam Backup & Replication v8 for VMware — General Overview
Veeam Backup & Replication v8 for VMware — General Overview
 
Open source hypervisors in cloud
Open source hypervisors in cloudOpen source hypervisors in cloud
Open source hypervisors in cloud
 
Virtualization 101 - DeepDive
Virtualization 101 - DeepDiveVirtualization 101 - DeepDive
Virtualization 101 - DeepDive
 

Viewers also liked

Airtel company profile final
Airtel company profile finalAirtel company profile final
Airtel company profile final
Mathivanan Mba
 
Dantes inferno
Dantes infernoDantes inferno
Dantes inferno
Tori East
 
Subject matter
Subject matterSubject matter
Subject matter
ellamw
 
зфф открытый урок днк
зфф открытый урок днкзфф открытый урок днк
зфф открытый урок днк
faliabio
 
Jackson spencer 2.3_ignite_slides
Jackson spencer 2.3_ignite_slidesJackson spencer 2.3_ignite_slides
Jackson spencer 2.3_ignite_slides
spenceclassics
 
живинка в деле
живинка в дележивинка в деле
живинка в деле
frlvanika
 
Administrative and technology services outsourcing
Administrative and technology services outsourcingAdministrative and technology services outsourcing
Administrative and technology services outsourcing
aliwaqas144
 

Viewers also liked (19)

Five Senses (4to EB)
Five Senses (4to EB)Five Senses (4to EB)
Five Senses (4to EB)
 
Lezione bocconi 09 12 13 su crisis mae
Lezione bocconi 09 12 13 su crisis maeLezione bocconi 09 12 13 su crisis mae
Lezione bocconi 09 12 13 su crisis mae
 
Curriculum investment presentation 051013
Curriculum investment presentation   051013Curriculum investment presentation   051013
Curriculum investment presentation 051013
 
Angloamericano
AngloamericanoAngloamericano
Angloamericano
 
Airtel company profile final
Airtel company profile finalAirtel company profile final
Airtel company profile final
 
Osi reference
Osi referenceOsi reference
Osi reference
 
Reinventing Home Telecare Services: Learning Lessons for Japan and Beyond
Reinventing Home Telecare Services: Learning Lessons for Japan and BeyondReinventing Home Telecare Services: Learning Lessons for Japan and Beyond
Reinventing Home Telecare Services: Learning Lessons for Japan and Beyond
 
shine nom
shine nomshine nom
shine nom
 
Making social media work for you
Making social media work for youMaking social media work for you
Making social media work for you
 
Dantes inferno
Dantes infernoDantes inferno
Dantes inferno
 
Subject matter
Subject matterSubject matter
Subject matter
 
TP5 Nicolas URIEN
TP5 Nicolas URIENTP5 Nicolas URIEN
TP5 Nicolas URIEN
 
Art of war by suntzu upload by mathivann
Art of war by suntzu  upload by mathivannArt of war by suntzu  upload by mathivann
Art of war by suntzu upload by mathivann
 
Money tube
Money tubeMoney tube
Money tube
 
зфф открытый урок днк
зфф открытый урок днкзфф открытый урок днк
зфф открытый урок днк
 
13 din 15 teste auto
13 din 15 teste auto13 din 15 teste auto
13 din 15 teste auto
 
Jackson spencer 2.3_ignite_slides
Jackson spencer 2.3_ignite_slidesJackson spencer 2.3_ignite_slides
Jackson spencer 2.3_ignite_slides
 
живинка в деле
живинка в дележивинка в деле
живинка в деле
 
Administrative and technology services outsourcing
Administrative and technology services outsourcingAdministrative and technology services outsourcing
Administrative and technology services outsourcing
 

Similar to XenMobile: Enterprise mobility management solution

KSDG 4th event: Windows Azure Session
KSDG 4th event: Windows Azure SessionKSDG 4th event: Windows Azure Session
KSDG 4th event: Windows Azure Session
Jeff Chu
 
Virtualisation with v mware
Virtualisation with v mwareVirtualisation with v mware
Virtualisation with v mware
sagaroceanic11
 
System Administrator_Sivaiah
System Administrator_SivaiahSystem Administrator_Sivaiah
System Administrator_Sivaiah
Sivaiah Yakkanti
 
Nikhil Goel-Resume
Nikhil Goel-ResumeNikhil Goel-Resume
Nikhil Goel-Resume
Nikhil Goel
 
CTU June 2011 - Hybrid Cloud Management with Microsoft System Center - Concero
CTU June 2011 - Hybrid Cloud Management with Microsoft System Center - ConceroCTU June 2011 - Hybrid Cloud Management with Microsoft System Center - Concero
CTU June 2011 - Hybrid Cloud Management with Microsoft System Center - Concero
Spiffy
 
Mid term report
Mid term reportMid term report
Mid term report
lokesh039
 
Introduction into Windows Azure Pack and Service Management Automation
Introduction into Windows Azure Pack and Service Management AutomationIntroduction into Windows Azure Pack and Service Management Automation
Introduction into Windows Azure Pack and Service Management Automation
Michael Rüefli
 
Qinnova Cloud Computing Session
Qinnova Cloud Computing Session Qinnova Cloud Computing Session
Qinnova Cloud Computing Session
aleyeldean
 

Similar to XenMobile: Enterprise mobility management solution (20)

Virtualization VMWare technology
Virtualization VMWare technologyVirtualization VMWare technology
Virtualization VMWare technology
 
Cloud enable your Windows Store Apps with Mobile Services
Cloud enable your Windows Store Apps with Mobile ServicesCloud enable your Windows Store Apps with Mobile Services
Cloud enable your Windows Store Apps with Mobile Services
 
What's New in InTouch Machine Edition (ITME)
What's New in InTouch Machine Edition (ITME)What's New in InTouch Machine Edition (ITME)
What's New in InTouch Machine Edition (ITME)
 
KSDG 4th event: Windows Azure Session
KSDG 4th event: Windows Azure SessionKSDG 4th event: Windows Azure Session
KSDG 4th event: Windows Azure Session
 
Microsoft Azure Overview Infographic
Microsoft Azure Overview InfographicMicrosoft Azure Overview Infographic
Microsoft Azure Overview Infographic
 
What's New In InduSoft Web Studio 8.0 +SP1
What's New In InduSoft Web Studio 8.0 +SP1What's New In InduSoft Web Studio 8.0 +SP1
What's New In InduSoft Web Studio 8.0 +SP1
 
Virtualisation with v mware
Virtualisation with v mwareVirtualisation with v mware
Virtualisation with v mware
 
System Administrator_Sivaiah
System Administrator_SivaiahSystem Administrator_Sivaiah
System Administrator_Sivaiah
 
M meijer paas - tech-days 2015
M meijer   paas - tech-days 2015M meijer   paas - tech-days 2015
M meijer paas - tech-days 2015
 
Nikhil Goel-Resume
Nikhil Goel-ResumeNikhil Goel-Resume
Nikhil Goel-Resume
 
CTU June 2011 - Hybrid Cloud Management with Microsoft System Center - Concero
CTU June 2011 - Hybrid Cloud Management with Microsoft System Center - ConceroCTU June 2011 - Hybrid Cloud Management with Microsoft System Center - Concero
CTU June 2011 - Hybrid Cloud Management with Microsoft System Center - Concero
 
Implementing Private Clouds
Implementing Private CloudsImplementing Private Clouds
Implementing Private Clouds
 
Mid term report
Mid term reportMid term report
Mid term report
 
E2EVC SCVMM / Windows Azure Pack
E2EVC SCVMM / Windows Azure PackE2EVC SCVMM / Windows Azure Pack
E2EVC SCVMM / Windows Azure Pack
 
Introduction into Windows Azure Pack and Service Management Automation
Introduction into Windows Azure Pack and Service Management AutomationIntroduction into Windows Azure Pack and Service Management Automation
Introduction into Windows Azure Pack and Service Management Automation
 
Qinnova Cloud Computing Session
Qinnova Cloud Computing Session Qinnova Cloud Computing Session
Qinnova Cloud Computing Session
 
A Special Introduction to the Upcoming InduSoft Web Studio 8.0
A Special Introduction to the Upcoming InduSoft Web Studio 8.0A Special Introduction to the Upcoming InduSoft Web Studio 8.0
A Special Introduction to the Upcoming InduSoft Web Studio 8.0
 
IBM DataPower Gateways - What's new in 2016 v7.5.2
IBM DataPower Gateways - What's new in 2016 v7.5.2IBM DataPower Gateways - What's new in 2016 v7.5.2
IBM DataPower Gateways - What's new in 2016 v7.5.2
 
GigaSpaces CCF 4 Xap
GigaSpaces CCF 4 XapGigaSpaces CCF 4 Xap
GigaSpaces CCF 4 Xap
 
Cl207
Cl207Cl207
Cl207
 

Recently uploaded

Recently uploaded (20)

Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organization
 
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
 
Real Time Object Detection Using Open CV
Real Time Object Detection Using Open CVReal Time Object Detection Using Open CV
Real Time Object Detection Using Open CV
 
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024
 
A Call to Action for Generative AI in 2024
A Call to Action for Generative AI in 2024A Call to Action for Generative AI in 2024
A Call to Action for Generative AI in 2024
 
Handwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsHandwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed texts
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
 
A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
 
Factors to Consider When Choosing Accounts Payable Services Providers.pptx
Factors to Consider When Choosing Accounts Payable Services Providers.pptxFactors to Consider When Choosing Accounts Payable Services Providers.pptx
Factors to Consider When Choosing Accounts Payable Services Providers.pptx
 
What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?
 
Data Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonData Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt Robison
 
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
 
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
 
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
 
How to convert PDF to text with Nanonets
How to convert PDF to text with NanonetsHow to convert PDF to text with Nanonets
How to convert PDF to text with Nanonets
 
Presentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreterPresentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreter
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivity
 
🐬 The future of MySQL is Postgres 🐘
🐬  The future of MySQL is Postgres   🐘🐬  The future of MySQL is Postgres   🐘
🐬 The future of MySQL is Postgres 🐘
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men
 

XenMobile: Enterprise mobility management solution

  • 2. Zagreb, 29.09.2016. XenMobile: Enterprise mobile management solution Tomica Kaniški tomica@kaniski.eu | http://blog.kaniski.eu/
  • 3. POKROVITELJI AKADEMSKI PARTNERI DIGITALNI PARTNER PRIJATELJI KONFERENCIJE GENERALNI SPONZOR GENERALNI MEDIJSKI SPONZOR GLAVNI SPONZORI MEDIJSKI PARTNERI SPONZORI
  • 4. Agenda  XenMobile  editions  scenarios  features  WorxApps  NetScaler  integration  deployment  tips  resources
  • 5. XenMobile provides...  unified management of devices & applications  corporate app store  mobile device and app management  unified access getaway & SSO  workflow-driven productivity apps  military-grade (FIPS) security  mobile content management  broad platform support
  • 6. Editions...  XenMobile MDM  mobile device management (MDM)  allow IT Administrators to enroll and enforce restriction policies to corporate-owned or BYO devices  XenMobile Advanced  mobile device and application management (MDM + MAM)  adds support for IT Admins to create enterprise app store for mobile, web/SaaS and Windows apps with MDX capabilities (securing data and network resources)  XenMobile Enterprise  enterprise mobile management (EMM) solution  adds ShareFile capability for data mobility management
  • 7. Scenarios: XenMobile MDM  mobile device management  jailbreak detection  selective or full wipe  geolocation tracking  passcode enforcement  pushing applications  native mail client access control  Wi-Fi & VPN access control  access to local documents/files for editing
  • 8. Scenarios: XenMobile Advanced  all MDM edition use scenarios  federated single sign-on (SSO)  secure email  secure browsing  automated account provisioning  workflows  policy-based interapp security  app specific microVPN tunnels  unified corporate app store  access to local documents/files for editing
  • 9. Scenarios: XenMobile Enterprise  all XenMobile Advanced edition use scenarios  secure document sharing, syncing & editing (ShareFile Enterprise)
  • 10. Features  single administrative experience with RBAC  unified XenMobile server (Linux appliance)  simplified deployment and configuration  designed for 100,000 user environments (with 150,000+ devices)  integrated enterprise store with ratings, screenshots and app reviews  cross-platform app & policy definitions  single sign-on for MDX apps  FIPS 140-2 support  connectivity checks & support bundle  integrated Worx productivity apps
  • 12. Worx apps (1)  WorxHome  authenticates users (AD with certificates, tokens and other second factors)  permits lock/wipe of corporate data/apps on selected devices  SSO for all managed apps (hosted (HDX) apps and desktops, web/SaaS apps, MDX managed mobile apps)  access to the MDX apps (determines policies and app entitlements and controls data exchange)  provides gateway tickets for microVPN access, certificates for protected websites, SAML tokens for ShareFile access, ...
  • 13. Worx apps (2)  WorxWeb  HTML5-compatible browser  whitelist/blacklist URLs, set bookmarks and home page  leverages microVPN (full tunnel) or SecureBrowse (client-side rewrite)  https://bramwolfs.com/2012/08/24/cloud-gateway-a-wrap-up-so-far- part-2/  WorxMail  ActiveSync mail/calendar/contacts client  microVPN or STA to sync email from Exchange or Office 365
  • 14. Worx apps (3)  WorxEdit  open, view, create or edit Microsoft Office documents  view PDF files  track changes from multiple reviewers  local storage for offline copy editing  WorxNotes  create, sync and share notes  create notes from WorxMail messages  ShareFile integration for storage and sync  integrated with Exchange server (email and calendar)
  • 15. Worx apps (4)  WorxTasks  securely manage tasks  integration with Outlook tasks and WorxMail  WorxDesktop  secure „VDI like” access to physical desktop  access work files and apps  ShareFile  secure enterprise file share and sync  mobile content editing  SharePoint & network files integration
  • 17. NetScaler  hardware (MPX, SDX) or software appliance (VPX)  provides content switching and load balancing for MDM, MAM or EMM  manages the complete lifecycle of the request/response transaction  supports connection reuse (reduces TCP overhead on web servers)  communicates with XenMobile (better together)  built-in monitor for XenMobile  built-in diagnostic tools for XenMobile  supports microVPN (MDX) technology in XenMobile
  • 18. NetScaler addresses  NSIP  NetScaler IP (IP of the appliance)  management IP  SNIP  subnet IP  communication to backend services like XenMobile, AD, database, ... („points of presence” in different subnets)  VIP  virtual IP  IP address of a virtual server (client-side access)
  • 20. Deployment of EMM (1)  prerequisites:  firewall ports  http://docs.citrix.com/en-us/xenmobile/10-3/xmob-system- requirements/xmob-deploy-component-port-reqs-con.html  hypervisor of choice  SQL Server 2012+  XenMobile license  service accounts (DB creator, AD reader)  4 free IP Addresses in the DMZ  2 free public IP addresses  2 SSL certificates (or a wildcard certificate)  Apple Push Notification Services certificate (APNS)  for managing Apple devices  NetScaler Gateway  NetScaler Standard or higher supports Load Balancing  SMTP server (optional)
  • 21. Deployment of EMM (2)  steps:  XenMobile  import the XenMobile appliance(s)  initial configuration from CLI (IP, database, NTP, ...)  additional configuration from console (SSL, NSGW, LDAP, ...)  create additional appliance(s)/enable clustering  update the environment (for WM10)  integration with NetScaler  import the NetScaler appliance(s)  initial configuration from CLI (NSIP)  additional configuration from console (license, SSL, ...)  XenMobile integration wizard  create additional appliance(s)/enable HA mode
  • 22. Zagreb, 29.09.2016. DEMO XenMobile Enterprise deployment and NetScaler integration
  • 23. Tips...  XenMobile  don’t install and upgrade the first node and later try to add another one (hint: database schema upgrades... sometimes )  use VM cloning for multiplication of nodes  RBAC – can’t add a group to Support role  create another role, tailored to your wishes  restart appliances to pick up certificates & updates  NetScaler  4K certificates limitation on VPX  only hardware appliances support 4K certificates  vCPU limitation on Hyper-V (intentional!)  limited to two vCPUs (use VMware instead )  bug with AD authentication in GUI  if you password contains special characters, beware... 
  • 24. Conclusion  complete enterprise mobility management solution  three „flavours” – MDM, MDM+MAM, EMM  end-to-end security, easy deployment and great user experience  integration with NetScaler appliance is easy and preferred  nice built-in productivity apps  fast deployment
  • 25. Resources  https://www.citrix.com/products/xenmobile/  http://docs.citrix.com/en-us/xenmobile/10/xmob-about.html  https://www.citrix.com/downloads/xenmobile.html  https://www.citrix.com/content/dam/citrix/en_us/documents/pr oducts-solutions/xenmobile-security-understanding-the- technology-used-by-xenmobile.pdf  http://www.robinhobo.com/how-to-setup-citrix-xenmobile-10- including-configuring-netscaler/  http://www.carlstalhood.com/netscaler-gateway-11-ldap- authentication/  http://www.ingmarverheij.com/one-content-switch-to-rule- them-all/
  • 26. Ankete Popunite ankete i osvojite vrijedne nagrade! Ankete su dostupne na: a) Mobilnim uređajima (Android, Apple, Windows) b) Web-u http://www.mobilityday.com PIN za pristup se nalazi na poleđini akreditacije i u vašem on-line profilu.

Editor's Notes

  1. This session will be a kind of introduction to Citrix XenMobile solution for IT Pros. We will talk about what is Citrix XenMobile solution, its prerequisites and components, and how to set it all up. As NetScaler ADC is an important part of the complete solution, we will introduce it as well and show you how it fits into the Citrix mobile management story. Last, but not least, we will show you how to manage different mobile devices using XenMobile.