Distribute
SEP-Mobile
Through an MDM

A Mobile Device Manager (MDM) is an application that distributes all of the mobile device configurations and manages connections that flow through your network. You might have already employed an MDM when you began your
Web Security Service
integration. Or you might elect to integrate an MDM as part of your expanding mobile device security solution.
The following use cases are common and viable for the use of an MDM.
  • In organizations where all devices are managed and employees are not allowed to use their own devices to connect to the corporate network. For example, smart phones and tablets are required to perform the job; therefore, the company purchases and distributes devices. As the company owns them, they are able to maintain and mandate all security and web acceptance policies.
  • The organization distributes managed devices to employees who require them for their jobs, but also allows employees to connect with their own devices. The MDM manages the company-owned devices.

EMM Vendors

The
SEP-Mobile
Management Console contains a panel where you select the Enterprise Mobile Manager (EMM) to provide the MDM solution.
Navigate to
Settings > Integrations > EMM/MDM
.
SEPM EMMs
  1. Select an EMM.
  2. When you select a vendor, the Management Console displays links to more documentation about how to integrate that EMM with
    SEP-Mobile
    . Consult as required.
    Be advised that you must select a vendor when no devices have been enrolled in the environment yet. After the EMM is saved, you cannot change or switch to another vendor from the Management Console. You must contact Support to request updates.
  3. Click
    Apply Changes
    .

Prevent App Downloads from Stores

Outside of the MDM vendor configuration, the
SEP-Mobile
Management Console provides an option that allows you to block downloads of the
SEP-Mobile
app from App Stores. This allows you to control the version that is distributed to all devices.
In the
SEP-Mobile
Management Console, navigate to
Settings > Integrations >
MDM_Vendor
.
This option is per-MDM vendor. A vendor must be integrated before the Management Console displays the vendor name in the
Integrations
menu.
Deny SEP Mobile downloads
From the
Device Enrollment
drop-down, select
Deny
.

Next Steps

  • After you have integrated the MDM, distributed the app, and traffic begins to flow, you can verify mobile connections. Verify Mobile Connections.
  • Apply or manage SSL Interception policy for mobile device connections. Create SSL Policy.