Providing Internet Access via WSO2 Enterprise Mobility Manager

27
Director , Mobile Architecture Shanmugarajah Providing Internet Access via WSO2 Enterprise Mobility Manager - A WSO2 Case Study 31 July 2014

description

 

Transcript of Providing Internet Access via WSO2 Enterprise Mobility Manager

Page 1: Providing Internet Access via WSO2 Enterprise Mobility Manager

Director , Mobile Architecture

Shanmugarajah

Providing Internet Access via WSO2 Enterprise Mobility Manager - A WSO2 Case Study

31 July 2014

Page 2: Providing Internet Access via WSO2 Enterprise Mobility Manager

About the PresenterShan specializes in mobile technology with over 10 years experience in that field. !He has a strong background in telecommunication software development and is a hardcore coder in Android and iOS platforms. !Prior to joining WSO2Mobile, he was working as the CTO/Director of Microimage Mobile Media for almost 15 years. !He played a key role in engineering products where Microimage has won many local & international awards which includes winning the Inaugural GSMA Asia Mobile Innovation Award, Commendation from GSMA at the Barcelona World Awards in 2007, Asia Pacific ICT Awards (APICTA) !Hobbyist (Arduino/RPi/ Wearable Devices) !Platforms (Windows 8 Phone, Tizen) !

Page 3: Providing Internet Access via WSO2 Enterprise Mobility Manager

About  WSO2๏ Global enterprise, founded in 2005 by

acknowledged leaders in XML, web services technologies, standards and open source

๏ Provides only open source platform-as-a-service for private, public and hybrid cloud deployments

๏ All WSO2 products are 100% open source and released under the Apache License Version 2.0.

๏ Is an Active Member of OASIS, Cloud Security Alliance, OSGi Alliance, AMQP Working Group, OpenID Foundation and W3C.

๏ Driven by Innovation

๏ Launched first open source API Management solution in 2012

๏ Launched App Factory in 2Q 2013

๏ Launched Enterprise Store and first open source Mobile solution in 4Q 2013

Page 4: Providing Internet Access via WSO2 Enterprise Mobility Manager

What WSO2 delivers

Page 5: Providing Internet Access via WSO2 Enterprise Mobility Manager

Internet

• Is a important information resource

• Without internet no work

Page 6: Providing Internet Access via WSO2 Enterprise Mobility Manager

Internet Access

@Office@Home @Travelling

Page 7: Providing Internet Access via WSO2 Enterprise Mobility Manager

@Home

Dial Up Internet

Cable - Cable Modem Internet

DSL - Digital Subscriber Line

Dongle with SIM Telephone Line Cable Line Dongle

Page 8: Providing Internet Access via WSO2 Enterprise Mobility Manager

@Travelling

Page 9: Providing Internet Access via WSO2 Enterprise Mobility Manager

@Work

Page 10: Providing Internet Access via WSO2 Enterprise Mobility Manager

Wi-Fi

• local area wireless technology

• connect to the internet using 2.4 GHz UHF and 5 GHz SHF radio waves

• personal computers, video-game consoles, smartphones, some digital cameras, tablet computers and digital audio players

• range of about 20 meters (66 feet) indoors

• multiple overlapping access points can cover more area

Page 11: Providing Internet Access via WSO2 Enterprise Mobility Manager

Security

Page 12: Providing Internet Access via WSO2 Enterprise Mobility Manager

Wi-Fi Security

• less secured than wired connections • no physical connection needed

Page 13: Providing Internet Access via WSO2 Enterprise Mobility Manager

Wi-Fi has adopted various encryption technologies.

• WEP (Wired Equivalent Privacy)

• WPA (Wi-Fi Protected Access)

• WPA-2

Page 14: Providing Internet Access via WSO2 Enterprise Mobility Manager

14

WPA/WPA2 PSK (Pre-Shared Key)

• Key is the password for the network

• Good for home network

• Not good for enterprise

• One password for everyone

• No way to track who is using the internet

• Can restrict using Mac-Address but not scalable

• Simple to implement

Page 15: Providing Internet Access via WSO2 Enterprise Mobility Manager

15

WPA2 Enterprise

• Does not use PSK

• Difficult to configure

• Appropriate for Organization

• Connects with a RADIUS server

Page 16: Providing Internet Access via WSO2 Enterprise Mobility Manager

16

RADIUS Remote Authentication Dial In User Service

• is a networking protocol

• provides centralized Authentication, Authorization, and Accounting (AAA) management for users that connect and use a network service

• connects to LDAP , AD

Page 17: Providing Internet Access via WSO2 Enterprise Mobility Manager

17

WSO2 Scenario

• Was using WPA2-PSK

• One password shared

• Any device can connect (Laptops, Mobile Devices)

Page 18: Providing Internet Access via WSO2 Enterprise Mobility Manager

18

!Adopted WPA2 - Enterprise !    • RADIUS Server connected to LDAP • Access only to Laptops • Have to give Mac-Address • Have to install certificates

Page 19: Providing Internet Access via WSO2 Enterprise Mobility Manager

19

WPA2-Enterprise

• Can detect the Mac-Address

• Identify the user

• Not the device (what app is installed, rooted, whether the data is secured) . This is ideal and a must for any Mobile devices like phone , tablets.

Page 20: Providing Internet Access via WSO2 Enterprise Mobility Manager

20

WSO2 EMM Implementation

• Configuration issue like reading the mac-address

• installing certificates

• This is the ideal scenario for BYOD - Bring your own device)

Page 21: Providing Internet Access via WSO2 Enterprise Mobility Manager

21

WSO2 EMM Implementation

Page 22: Providing Internet Access via WSO2 Enterprise Mobility Manager

22

WSO2 EMM Implementation

• Framed a policy

• to allow what models of devices were allowed /version

• check whether its rooted

• enforce policy for data security (Password policy)

Page 23: Providing Internet Access via WSO2 Enterprise Mobility Manager

23

Page 24: Providing Internet Access via WSO2 Enterprise Mobility Manager

24

Page 25: Providing Internet Access via WSO2 Enterprise Mobility Manager

Links

!!http://wso2.com/library/articles/2014/02/managing-byod-concept-in-enterprises-with-wso2-enterprise-mobility-manager/

!!!

Page 26: Providing Internet Access via WSO2 Enterprise Mobility Manager

Business Model