Mobility XE OverviewJune 2010
AgendaCompanyWhy a Mobile VPNMobility XE FeaturesProductivity Security Management Evaluation and Deployment6/14/20102
NetMotion WirelessSoftware company focused on mobile field workersHeadquartered in Seattle, WashingtonFormed in 2001.Sales Offices throughout N. America, Frankfurt, Paris and London100+ employees25+ industry awards for VPN technology1600+ highly satisfied customers+97% maintenance renewal rate+98% satisfaction rate+50% revenue from add-on sales
GovernmentEnterpriseHealthcareUtilitiesInsurance
ChallengesMobile WorkersCoverage and connectivity challengesMoving from location to locationPoor application performanceComplexity w/ limited access to support resourcesBusiness/ITSecurity when outside corporate networkVisibility and management of field resourcesExtending legacy applications into a mobile and wireless environmentSupport costs – keeping it simple for end-users6/14/20105
6/14/20106Mobile VPNsNew Category Emerges to Address Mobile Challenges"From our vantage point, NetMotion Wireless is the clear leader in the space“— Tony Rizzo, Director, Mobile Research with The 451 GroupLike Legacy IPSec and SSL VPNs….Uses standards based security for authentication and encryptionUnlike Legacy IPSec and SSL VPNs….Designed for organizations with mobile field workersAddresses productivity pain pointsSecurity and management platform independent of network and applicationsSupports smart phones, handhelds, ultra mobiles, tablets and lap tops.Removes common barriers to a successful mobile deployment
6/14/20107Mobility XE – the industry leading Mobile VPNRemoves common barriers to successful mobile deploymentsClient and server softwareSupport for all Microsoft devicesProductivityEnhances productivity of mobile field workersSecurityIndustry standards
Built with mobile field workers in mindManagementCentralized control and visibilityProductivitySecurityManagement
SQLProductivityApplication ServerCorporate OfficeNetMotion ServerInterNetwork Roaming No need to re-login or restart   VPN or applications  Applications pick up exactlywhere they left offNetwork Optimizations 1 to 3x improvement in effectivethroughputReal time application enhancements Best Bandwidth SelectionAutomatically builds the tunnel over the fastest available interfaceApplication Session PersistenceNo lost data or application crashes caused by coverage gaps or suspend & resume operationsVPN Operates as a ServiceEliminates the step of launching a VPN 6/14/2010
6/14/20109ProductivityOnly security product that enhances mobile worker productivity.  Saves time …… eliminates VPN and application disconnects… replaces “shut-down” with “suspend”… eliminates need to launch a VPN… speeds up applications… eliminates need for multiple VPN profiles… provides real-time access to more applicationsImproves IT productivityStraight forward installation and maintenanceEliminates VPN client configuration issuesEnables over-the-air device managementFewer support callsUnified security & mobility platform for internally developed applications.
Jan 2009Mobility XE – Compression on Cellular Data Networks6/14/201010Download Speed in KbpsLaptop copying 10 MB DAT file. AMD 2800+ NMS w/ 2GB RAM running Win2K3
6/14/201011Security – Industry StandardsEncryption FIPS 140-2  Validated 128, 192 or 256-bit AES EncryptionAuthentication MethodsMS Active DirectoryRADIUSRSA SecurIDSmartcardsDigital CertificatesFIPS 140-2 Inside**TM: A Certification Mark of NIST, which does not imply product endorsement by NIST, the U.S. or Canadian Governments
6/14/201012Enhanced SecurityLock-down clientsEnsure traffic is routed through the corporate networkAccess to & from device ONLY through encrypted tunnelComplimentary to client firewallValidate user identity throughout the dayConfigure periodic user reauthentication without disrupting application sessionsVerify device identity Stop foreign devices from accessing corporate networkEnables a low cost form of multi-factor authenticationThe MACHINE is something you haveUsers log in from approved machines only
Enhanced SecurityQuarantine Devices and/or Users Quarantine NEW Devices – keeps unapproved devices off the networkPrevent lost or stolen devices from accessing the enterpriseControl application access by user group or device Keep devices in the field current on patchesUnattended over-the-air management of mobile devicesExtend the reach of existing device and patch management utilities. Supports Active Directory scripting & objectsNetwork Access Control Prevents or allows user connection based on client’s compliance to corporate policiesClient evaluates  Server enforcesAllow | Warn | Remediate | Disconnect | QuarantineIntegrates with Policy Module for ‘smart’ remediation6/14/201013
Centralized web-based viewAccess console from anywhereSee and manage entire pool of servers from a single consoleAll configurations centralizedNo need to touch clientsGranular view into all device connectionsSame view regardless of the device typeSame view regardless of the network connected toStatus of all device connectionsBattery status, operating system version, etc.Processes running on the device6/14/201014ManagementMobility Console – Session Details
6/14/201015ManagementMobility Console – Session Details
ManagementAnalytics ModuleEnables visibility into how mobile deployment is performingUsersNetworksDevices ApplicationsAutomated notifications for proactive management6/14/201016
Connection Status6/14/201017
Network Usage by Application6/14/201018
Without QoS PolicyWith QoS PolicyMobility VPN tunnelMobility VPN tunnelManagementPolicy Management ModuleRule 1 -  Accelerate Web on WANRule 2 – Block Web on HandheldApplication ServerNetMotion ServerQuality of Service (QoS)- Prioritize applications to ensure   optimum performancePolicy Management - Created Centrally- Enforced on the device- Application-level control Policies triggered by network attached to, device type, and many more6/14/2010
    Checks:     Antivirus
     Antispyware
     Firewall
     OS Version

Net Motion Mobility Overview - Field Service

  • 1.
  • 2.
    AgendaCompanyWhy a MobileVPNMobility XE FeaturesProductivity Security Management Evaluation and Deployment6/14/20102
  • 3.
    NetMotion WirelessSoftware companyfocused on mobile field workersHeadquartered in Seattle, WashingtonFormed in 2001.Sales Offices throughout N. America, Frankfurt, Paris and London100+ employees25+ industry awards for VPN technology1600+ highly satisfied customers+97% maintenance renewal rate+98% satisfaction rate+50% revenue from add-on sales
  • 4.
  • 5.
    ChallengesMobile WorkersCoverage andconnectivity challengesMoving from location to locationPoor application performanceComplexity w/ limited access to support resourcesBusiness/ITSecurity when outside corporate networkVisibility and management of field resourcesExtending legacy applications into a mobile and wireless environmentSupport costs – keeping it simple for end-users6/14/20105
  • 6.
    6/14/20106Mobile VPNsNew CategoryEmerges to Address Mobile Challenges"From our vantage point, NetMotion Wireless is the clear leader in the space“— Tony Rizzo, Director, Mobile Research with The 451 GroupLike Legacy IPSec and SSL VPNs….Uses standards based security for authentication and encryptionUnlike Legacy IPSec and SSL VPNs….Designed for organizations with mobile field workersAddresses productivity pain pointsSecurity and management platform independent of network and applicationsSupports smart phones, handhelds, ultra mobiles, tablets and lap tops.Removes common barriers to a successful mobile deployment
  • 7.
    6/14/20107Mobility XE –the industry leading Mobile VPNRemoves common barriers to successful mobile deploymentsClient and server softwareSupport for all Microsoft devicesProductivityEnhances productivity of mobile field workersSecurityIndustry standards
  • 8.
    Built with mobilefield workers in mindManagementCentralized control and visibilityProductivitySecurityManagement
  • 9.
    SQLProductivityApplication ServerCorporate OfficeNetMotionServerInterNetwork Roaming No need to re-login or restart VPN or applications Applications pick up exactlywhere they left offNetwork Optimizations 1 to 3x improvement in effectivethroughputReal time application enhancements Best Bandwidth SelectionAutomatically builds the tunnel over the fastest available interfaceApplication Session PersistenceNo lost data or application crashes caused by coverage gaps or suspend & resume operationsVPN Operates as a ServiceEliminates the step of launching a VPN 6/14/2010
  • 10.
    6/14/20109ProductivityOnly security productthat enhances mobile worker productivity. Saves time …… eliminates VPN and application disconnects… replaces “shut-down” with “suspend”… eliminates need to launch a VPN… speeds up applications… eliminates need for multiple VPN profiles… provides real-time access to more applicationsImproves IT productivityStraight forward installation and maintenanceEliminates VPN client configuration issuesEnables over-the-air device managementFewer support callsUnified security & mobility platform for internally developed applications.
  • 11.
    Jan 2009Mobility XE– Compression on Cellular Data Networks6/14/201010Download Speed in KbpsLaptop copying 10 MB DAT file. AMD 2800+ NMS w/ 2GB RAM running Win2K3
  • 12.
    6/14/201011Security – IndustryStandardsEncryption FIPS 140-2 Validated 128, 192 or 256-bit AES EncryptionAuthentication MethodsMS Active DirectoryRADIUSRSA SecurIDSmartcardsDigital CertificatesFIPS 140-2 Inside**TM: A Certification Mark of NIST, which does not imply product endorsement by NIST, the U.S. or Canadian Governments
  • 13.
    6/14/201012Enhanced SecurityLock-down clientsEnsuretraffic is routed through the corporate networkAccess to & from device ONLY through encrypted tunnelComplimentary to client firewallValidate user identity throughout the dayConfigure periodic user reauthentication without disrupting application sessionsVerify device identity Stop foreign devices from accessing corporate networkEnables a low cost form of multi-factor authenticationThe MACHINE is something you haveUsers log in from approved machines only
  • 14.
    Enhanced SecurityQuarantine Devicesand/or Users Quarantine NEW Devices – keeps unapproved devices off the networkPrevent lost or stolen devices from accessing the enterpriseControl application access by user group or device Keep devices in the field current on patchesUnattended over-the-air management of mobile devicesExtend the reach of existing device and patch management utilities. Supports Active Directory scripting & objectsNetwork Access Control Prevents or allows user connection based on client’s compliance to corporate policiesClient evaluates  Server enforcesAllow | Warn | Remediate | Disconnect | QuarantineIntegrates with Policy Module for ‘smart’ remediation6/14/201013
  • 15.
    Centralized web-based viewAccessconsole from anywhereSee and manage entire pool of servers from a single consoleAll configurations centralizedNo need to touch clientsGranular view into all device connectionsSame view regardless of the device typeSame view regardless of the network connected toStatus of all device connectionsBattery status, operating system version, etc.Processes running on the device6/14/201014ManagementMobility Console – Session Details
  • 16.
  • 17.
    ManagementAnalytics ModuleEnables visibilityinto how mobile deployment is performingUsersNetworksDevices ApplicationsAutomated notifications for proactive management6/14/201016
  • 18.
  • 19.
    Network Usage byApplication6/14/201018
  • 20.
    Without QoS PolicyWithQoS PolicyMobility VPN tunnelMobility VPN tunnelManagementPolicy Management ModuleRule 1 - Accelerate Web on WANRule 2 – Block Web on HandheldApplication ServerNetMotion ServerQuality of Service (QoS)- Prioritize applications to ensure optimum performancePolicy Management - Created Centrally- Enforced on the device- Application-level control Policies triggered by network attached to, device type, and many more6/14/2010
  • 21.
    Checks: Antivirus
  • 22.
    Antispyware
  • 23.
    Firewall
  • 24.
    OS Version