You also left out.And, missed Acronis Access Connect (formerly ExtremeZ-IP). They tend to keep each other honest, as the saying goes. Do contact them for a demo, webinar, and all the hard questions & needs.Īdministering FileVault 2 with the Casper Suite ARD (Apple Remote Desktop) would be a somewhat manual way of handling miscellaneous things.Ĭasper *has* been responsive to custom needs. Not sure about the "personal encryption certificates ", though. Yes, can grab FV2 recovery keys, Opens a new window.Finally, I'd like to be able to manage personal encryption certificates centrally. In addition I'd like to centralize accounts and account management. I need to be able to apply password and encryption policies to the Macs. They have a lot of input to the Mac in enterprise communitySo Centrify would not be able to manage FileVault? We're running 10.10.x, as far as I know, company-wide. There are Open Source key escrow solutions like Cauliflowervest as Google are obviously a large Apple customer these days. They have a lot of input to the Mac in enterprise community ![]() I used to work for the biggest Apple customer in the world and asked a question at a developer conference about why Sophos were being held back deploying SGN Encryption on the Mac, the response was "we would only discuss that level of question with our larger customers" I replied "I am your largest customer" Tumbleweed followedĬasper is your solution for managing this or you can use Sophos SGN now to manage FileVault and they also have good endpoint solutions for the Mac but as with all things this isn't as deeply integrated into the OS as in Windows world Most enterprise encryption solutions on the Mac have moved to managing FileVault as Apple aren't exactly helping 3rd party people in this space. Sosipater wrote: David_CSG I need to be able to apply password and encryption policies to the Macs. But it is not cross-platform.ĭavid_CSG I need to be able to apply password and encryption policies to the Macs. It's also possible to use MS SCCM, with caveats.įor Mac-only environments, Casper is the go-to item. But look at updating your AD infrastructure before moving to OD, especially if you or your admins have no experience with Apple's OS X Server. If you have an existing AD infrastructure, then do leverage that rather than move to Apple's OpenDirectory - which is fine for a strictly Mac-only environment depending on scale - eg. Please elaborate on your specific needs, as well as the number of users. It may offer additional functionality that you desire. There is no need for Centrify to allow the Macs to authenticate to AD, none at all. ![]() Not really for big Mac setups its just integration with Workgroup manager which is obviously a bit Mickey Mouse for enterprise or maybe its just because I got stung with their old product called DAVE which was a dog.once bitten etc But if you want everything this is the dogs conkers.ģ. The rub is you need to do their jump start course to buy it and that plus the software doesn't come cheap. It does everything from deployment to management to deploying updates and managing mobile devices. JAMF Casper is offing excellent but is only really viable on large Mac estates. It integrates well with things like Acronis Access Connect to allow transparent login to Windows shares running Acronis AFP shares, these are the only option (apart from running Samba on *nix) Just ignore OS X Server and OD they are a hobby (at best) for Apple and there are a handful of people using this even in Mac only setups as there is no audit or compliance functionality that will stand up to any serious review.Ģ. I have had battles implementing this and its always been a shoddy AD a the heart of it. I will say this - your AD must be clean and fully functional of this to work properly. ![]() If you are a Windows admin you will be right at home and there are no schema changes needed. For binding devices and implementing GPO style control over the Mac estate its second to none. They aren't the same thing but are sort of the same eat first line.!ġ.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |