I’m attending MobileIron LIVE 2018 on the 16th and 17th of May.

Follow along below, or feel free to head over to the Discuss topic for live updates.

I’ll be arriving a little late so will miss the opening, but I’ll look to circle back around to that when I get there.

Something to say? Questions for the MobileIron team? Leave a comment below and I’ll aim to answer!

Updates | View live on forum

  1. Main highlights:

    • Big push on Mac management and a general shift towards UEM
    • Given the big presence of Google, I’d say they’re taking Android enterprise very seriously too!
    • Access, Authenticator and identity management
    • MTD and their previously announced partnership with Zimperium was mentioned a lot
    • Orbitera actually looks pretty awesome. Will really help with ecosystem integration (but cloud only…)

    Read on for post-by-post updates!

  2. First stop - Android ( :slight_smile: )

    “There are 400 devices capable of running Android enterprise in the market today, 68% of business shipments will support it”

  3. Talking about the benefits of corp-liable (work-related managed) deployment scenarios.

    Loads of that covered in my existing documentation - bytn.uk/android

  4. I think the main focus of the Android enterprise piece offered by MobileIron is the managed work profiles. No other EMM on the market supports that today which gives MI a good advantage.

    Managed work profiles has been covered off here: bytn.uk/mi-mwp

  5. Can’t fault a zero-touch demo though :sunglasses:

    The lighting in this event is abysmal. Not sure how useful these photos will be later…

  6. Visiting the identity management booth!
    Talking about SAML with & without MI access

    Access sits between the IDP and SP as a means of ensuring only managed devices gain access to the service.

    Without access SAML can of course be used, but you lose the checks to determine if the device in question is authorised to log in.

  7. Windows hello for business integration!

    Passwordless authentication using certificates. Supports cloud, on-prem and hybrid deployments

    It uses 2fa to permit authentication

  8. That’s

    • PIN
    • Fingerprint
    • Facial recognition
    • Trusted signal
  9. Back from lunch, tuning into the keynote now. A brief history of Android enterprise :sunglasses:

    “From later this year every app submitted to Play must use runtime permissions”

  10. Here’s a good opportunity to read up on the Android enterprise Summit live-blog as there’s a lot of crossover here …

  11. Oh! Pre Oreo devices will be getting per-source confirmation when trying to install apps from unknown sources. This will be pushed in a Play Services update.


  12. Walter Ji of Huawei coming onstage to talk about device innovation

  13. Cheeky mention of zero-touch there. Hopefully the new devices support it properly…

  14. Mr. Sonkin comes to the stage! Hello, HMD.

  15. 70 million devices sold in the first year. 600 employees globally. Blimey.

  16. “30 day secure patching and we haven’t missed a single one”


  17. Just in case you were wondering, their lineup:

    ALL of these support zero-touch.

    Some of these aren’t AndroidOne. When the next hardware revisions launch they will also be AO.

  18. This has turned into a Nokia advertisement!

  19. Talking Mac management

    • Mac’s are becoming the approved choice for device lists.
    • Mac TCO is lower than traditional PC
    • Mac management is a requirement for organisations today, particularly for GDPR

  20. End to end Mac management, including DEP!

  21. Seems to be a big push on Mac management this year.

    Lots of talk about script management too with details in the Mac corner on MI community.

  22. And now moving on to DEP and zero-touch

    I’m guessing most will know about DEP/VPP and ZT by now, but if not, here’s a refresher:

  23. I’m looking forward to Apple business manager support. It will be very much welcomed I think. It’s taken far too long for Apple to merge these two portals.

  24. Hey Jason,

    Is there a link from android developers ? Can you explain it a little bit more please ?

  25. No links at present, but it’s essentially replicating what we see in Oreo today - if you try to install an APK from Chrome you get a prompt to trust the source on an individual basis… I don’t know how it’ll work with the wider rollout but details will follow #soon :slight_smile:

  26. 15 mins before we kick off!

  27. John Morgan takes the stage!

  28. Discussing the shift from MDM to EMM to UEM

  29. Key value propositions

    • Protect data at the endpoint
    • Control where data is going
    • Focus on enabling productivity
  30. Very cool to hear they’re excited about Android P. Looks like we might be seeing a bit of focus on COSU :slight_smile:

  31. Strong growth in Android

  32. Managing Windows 10

    Since SCCM is still a fundamental IT tool there’s more work to be done to get orgs migrating to modern management.

  33. Modern work brings with it high velocity productivity.

    Orgs not embracing this way of working aren’t competitive. Much greater attack surface comes with it though.

  34. Mobile threats are everywhere.

  35. Upselling MobileIron Threat Defense

    • Integrated into the agent
    • Instant activation and visibility
    • On-device mitigation

  36. And pivoting over to Access

  37. Talking about the issues with passwords, why they’re not secure… access works towards that, and with it they (re?)introduce authenticator

  38. To be fair, authenticator is super slick

    “If you’re coming from a managed device, should the user be asked for a password? No!”

  39. A nice overview of the tools available/integrated with MI for delivering a great app experience:

  40. Access and office365

    With MTD

    And summarising the MI suite of services

  41. Intro over … heading up to the whisper suite shortly to get some insight on the Google Cloud/MobileIron piece.

  42. Orbitera, something I really didn’t understand the usecase for until today, actually looks pretty powerful.

    Imagine you want Box for your org. Buy it through orbitera and it’ll hook into MobileIron for SSO authentication and license management, push out the box app to users and allow them to log in using their existing accounts. All automatically.

    MobileIron will create the accounts dynamically as licenses are assigned to users and there is no need to manage the solution via the box admin console.

    Pretty slick!

  43. Checking out the HMD session

  44. “We don’t separate our devices into enterprise and non-enterprise” - all devices are treated equally and given the fastest updates possible.

  45. I wish more EMMs were as transparent with patches. Very easy to verify if the device has a patch pending for it… as well as validating devices are patched regularly.

  46. Now Andrej is talking about Android enterprise deployment scenarios. You can read more about that here: bytn.uk/ae

  47. Of course Android Enterprise Recommended is being talked about… :sunglasses:

  48. HMD support 2 letter upgrades

    We’ll be seeing Q on the 2018 lineup based on that statement!

    That’s pretty impressive

  49. Because Nokia devices are so bloat-free, consistent and always up to date, they believe the support overhead in enterprise is lower than other OEMs.

    I’d agree!

  50. With permission, Andrej’s contact details for more information about Nokia devices in the enterprise:

    And lunch!

  51. And back!

    Ojas talking about choice computing

  52. I ended up getting caught up in meetings so missed a session or two, but back in time for the final keynote!

  53. That’s a wrap! Thanks for tuning in :slight_smile:

Something to say?