Think it's hopeless? You may want to give Trust Digital's Enterprise Mobility Management (EMM) platform a look. We did just that in this final installment of our smartphone security Rolling Review, and found EMM can ably provide centralized security for organizations that have a wide array of mobile devices.
Admins using Microsoft's and Apple's offerings can attain reasonable functionality and manageability, particularly for smaller,
homogeneous deployments. However, if the enterprise starts expanding or if your particular environment has diverse phone types, EMM's benefits start coming into their own.
The compliance filter lives on the perimeter or DMZ, usually on a system such as an Exchange front-end server (with optional ISA support), and monitors all communications to the mail server. The compliance filter not only reports on the types of devices seeking access but can actually block access if the source device doesn't comply with stated policy requirements -- much like a traditional network access control (NAC) device. The filter helps administrators to quickly identify things such as blocking valid users that are running unauthorized mobile phones to access corporate resources.
The back-end server is where all configuration, policy creation, logging, and administration tasks are performed. It's on this device that administrators log in to the server and perform their various tasks for the mobile devices.
Much of what you see on the back-end EMM is generally what you'd expect from what is essentially a mobile device element manager. The Web user interface is clean and provides tiered administration of the information with preset roles for administrators, help desk users, report access, and the like. The heart of the security settings comes with the creation of the policies and the mapping of these policies to Active Directory (AD) groups. The policy settings allow for encryption settings, authentication controls (including support for smartcards), device communication settings (i.e., Bluetooth), and numerous other options.
Even in a diverse phone environment, a single policy can be created and rolled out to all users associated with that policy regardless of their phone. This policy consistency can be a double-edged sword, however, because only the implementable controls will be applied, resulting in an "effective policy" that may include only a subset of controls. For example, since Trust Digital doesn't currently support encryption for the iPhone, these policy settings would be ignored for iPhone users. Although there
is documented mapping of supported policy controls for the different phones, this visibility hasn't yet been mapped into the software. Clearly understanding which parts of the policy are being implemented is something that we believe to be important and would like to see in future releases.
This Rolling Review covers security controls spanning Apple's iPhone 3G, Microsoft Windows Mobile, RIM BlackBerry, and Symbian OS devices.
• Trend Micro Mobile Security 5.0
Suite delivers strong, flexible options for locking down mobile devices.
• Credant Mobile Guardian
Sophisticated, centrally managed data protection.
• PGP Mobile
Provides excellent heterogeneous cross-platform usability.
• Trust Digital EMM
Centralized management platform is developing strong support for enterprise iPhone use.
Rolling Review wrap-up
Page 2:
![]()
1
|
2
Next Page »
Stay connected and informed by visiting the CA Solutions Center Community!

Become a member today for instant access to free InformationWeek research, expert advice, peer perspectives, and more on the following topics:
- Application Performance Management (APM)
- Security Management
- Mainframe 2.0
- IT Automation
- Service Assurance
Also, visit our Government and Financial Services groups to see how these technologies apply specifically to those industries.
NOTE: Offer valid for U.S., U.S. possessions, & Canada only.