|
|
#1 |
|
iPads, Active Directory, and the Enterprise
I have been charged with writing a proposal to adopt iPads into our enterprise environment that is currently 100% Windows (Primarily XP but slowly migrating to Windows 7.)
This is a K-12 education environment, and the proposed adoption is for student use. We currently use Active Directory for authentication, control and management of our hardware and user accounts. As I look over the documentation from Apple in their business white papers, I see mention of the use of certificates, but little or nothing relating to Active Directory. If anyone here is currently using an iPad in an AD environment, I would like to hear about their experiences. I have people on staff who are familiar with the use of certificates, so I don't see that being a problem. What does concern me is the security aspect, especially authentication and the control of devices and updates that we currently perform through the use of group policies and AD. Thanks in advance for the help, MD
__________________
20" CD iMac; 17" C2D iMac; 16GB iPad 2+3G; G4 QS 733 w/400G RAID; TV 1&2; 8G iPhone 4; 8G iPod Touch, 3G PR Nano, 3G 20G iPod; AP Extreme
|
|
|
|
0
|
|
|
#2 |
|
The iPad is a standalone device. There isn't a way to tie it into a proprietary directory service like active directory.
Once the user has access to the UI they have complete control of the device unless you have apps and such allow the use of passwords. Again those passwords will be single user. You can use some functions of LDAP and tie that in with MS LDAP for basic directory services but nothing as holistic as AD and group policy management. Your only safety would be using content filtering appliances, firewalls, and keeping the iPad infrastructure isolated from the enterprise core aside from certain ports and protocols.
__________________
2x 3825|2x 2811|1x 2851|4x 3560-8PC|1x 3560G-24PS|4x 7961G|2X 7962G i7 2760QM|16GB 1600mhz|6990M|2x Intel 510 240GB Raid 0|750GB Momentus|Bigfoot 1103|AUO B173HW01 V.5|ICD 7 And some Apple stuff! |
|
|
|
0
|
|
|
#3 | |
|
Based on what I have been able to determine at this point, you have confirmed my fears. With no multiple user capabilities, nor the ability to authenticate through AD, these things are going to be a real handful to manage. Granted, they are being proposed to be deployed at one site only, which would make management a *little* easier, the problems created by these issues is really going to to make then a totally separate environment, or so it would seem.
Thanks a bunch - you have aggregated a lot of issues into one document. MD Quote:
__________________
20" CD iMac; 17" C2D iMac; 16GB iPad 2+3G; G4 QS 733 w/400G RAID; TV 1&2; 8G iPhone 4; 8G iPod Touch, 3G PR Nano, 3G 20G iPod; AP Extreme
|
||
|
|
0
|
|
|
#4 |
|
If you are using ActiveSync to sync your IPad devices to a corporate Exchange email system, you will need to enable the users in Active Directory to complete the sync.
In addition, you can require user account credentials if you are connecting to a corporate wireless infrastructure. |
|
|
|
0
|
|
|
#5 |
|
iPad / Active Directory integration now available
I just noticed that there is a new free offering out there called Centrify Express for mobile that integrates iPads and iPhones into Active Directory (ie they join the domain like a Win or Mac system) and you get AD authentication, group policies for iOS settings, use ADUC to wipe/lock devices, etc. You might want to check it out here https://www.centrify.com/mobile/free...management.asp .... I read about it on cultofmac here http://www.cultofmac.com/146569/cent...-free-feature/
|
|
|
|
0
|
|
|
#6 |
|
Have no fear. Use an MDM provider like Mobile Iron or Airwatch which talks to your AD. Close down your exchange and wireless so they need certificate-level authentication and push the certificates via MDM.
Works great for the 8000+ iDevices my company has deployed. |
|
|
|
0
|
|
|
#7 |
|
This is why blackberrys are still huge.
__________________
11.6'' MBA 2012 iPhone 4S |
|
|
|
0
|
|
|
#8 | |
|
Quote:
|
||
|
|
0
|
|
|
#9 |
|
We used Ipad in our environment (Car sells)
They go into the backyard with the customer, then from WIFI they RDP into the server to calculate the price in from of the client |
|
|
|
0
|
![]() |
|
«
Previous Thread
|
Next Thread
»
| Thread Tools | Search this Thread |
| Display Modes | |
|
|
Similar Threads
|
||||
| thread | Thread Starter | Forum | Replies | Last Post |
| Active Directory and Lion -Network accounts are unavailable | s.p.xosder | Mac OS X 10.7 Lion | 65 | Sep 22, 2012 03:14 AM |
| Active Directory Issues After Lion Upgrade | andrewbecks | Mac OS X 10.7 Lion | 13 | Jan 15, 2012 07:29 PM |
| Active Directory and home directory on network support? | zorinlynx | Mac OS X 10.7 Lion | 3 | Sep 7, 2011 09:35 AM |
| Active Directory and the OSx | Eric-PTEK | Mac Basics and Help | 0 | Mar 28, 2010 10:19 AM |
| Active Directory and 10.5.2 solution | Matthew Yohe | Mac OS X | 0 | Feb 13, 2008 02:21 PM |
All times are GMT -5. The time now is 10:51 AM.




TV 1&2; 8G iPhone 4; 8G iPod Touch, 3G PR Nano, 3G 20G iPod; AP Extreme



Linear Mode

