{"id":129,"date":"2018-08-13T14:25:28","date_gmt":"2018-08-13T11:25:28","guid":{"rendered":"http:\/\/blog.arcak.net\/?p=129"},"modified":"2018-09-11T10:59:04","modified_gmt":"2018-09-11T07:59:04","slug":"vmware-workspace-one-airwatch-2","status":"publish","type":"post","link":"https:\/\/blog.arcak.net\/index.php\/2018\/08\/13\/vmware-workspace-one-airwatch-2\/","title":{"rendered":"VMware Workspace One (AirWatch)"},"content":{"rendered":"<p style=\"text-align: justify;\"><strong>AirWatch<\/strong> is a mobile technology platform founded in <strong>2003<\/strong> and acquired by <strong>VMware<\/strong> in <strong>2013<\/strong> for $<strong>1.54<\/strong>\u00a0<strong>billion <\/strong>and developed as Workspace One (WSONE).<\/p>\n<p style=\"text-align: justify;\">There are<strong> 4 <\/strong>licensing types, <strong>Standard<\/strong>, Advanced, <strong>Enterprise <\/strong>and <strong>Enterprise<\/strong> <strong>for<\/strong> <strong>VDI<\/strong>.<\/p>\n<p style=\"text-align: justify;\">You can review the licensing details <a href=\"https:\/\/www.vmware.com\/content\/dam\/digitalmarketing\/vmware\/en\/pdf\/products\/workspace-one\/workspace-one-editions-comparison.pdf\"><strong>here<\/strong><\/a> and <strong>WSONE<\/strong> related video below.<\/p>\n<p><a href=\"https:\/\/youtu.be\/1anb7jo3Gzo\">Https:\/\/youtu.be\/1anb7jo3Gzo<\/a><\/p>\n<p style=\"text-align: justify;\">To briefly summarize;<\/p>\n<p style=\"text-align: justify;\"><strong>Standard:<\/strong> Basic application, device profile management, location monitoring functions etc.<\/p>\n<p style=\"text-align: justify;\"><strong>Advanced: <\/strong>Standard Edition plus\u00a0enterprise functions such as<strong> Content Locker, <\/strong>Tunnel<strong>, Secure Email Gateway<\/strong>, <strong>Boxer<\/strong>, <strong>People Search<\/strong>, and <strong>Telecom<\/strong>.<\/p>\n<p style=\"text-align: justify;\"><strong>Enterprise<\/strong>: Standard and Advanced edition<strong>\u00a0<\/strong>plus\u00a0<strong>Horizon Apps<\/strong>.<\/p>\n<p style=\"text-align: justify;\"><strong>Enterprise for VDI:<\/strong>All <strong>Workspace<\/strong> <strong>One<\/strong> functions plus all components required for desktop virtualization (<strong>vSphere, vSan, Horizon) <\/strong>are included in this version.<\/p>\n<p style=\"text-align: justify;\"><!--more--><\/p>\n<p style=\"text-align: justify;\">To speak technically, the WSONE is composed of the following components.<\/p>\n<p style=\"text-align: justify;\"><strong>Device Server (DS): <\/strong>The unit in which all end devices are first met, where the device registration, profile updates, health status, Self Service portal, application catalog are managed. Depending on the performance and redundancy requirement, the load balancer can be positioned to be more than one behind.<\/p>\n<p style=\"text-align: justify;\"><strong>Airwatch Admin Console (AC):<\/strong> Central interface for management and integration operations.\u00a0Depending on the performance and redundancy requirement, the load balancer can be positioned to be more than one behind.<\/p>\n<p style=\"text-align: justify;\"><strong>Database: <\/strong>The central database in which all <strong>WSONE<\/strong> data is kept and supports only <strong>Microsoft<\/strong> <strong>SQL<\/strong> <strong>Server <\/strong>releases\u00a0including <strong>Always-ON<\/strong>. By being application servers (<strong>AC<\/strong> and <strong>DS<\/strong>) are stateless, the entire system can be restored if the database is recovered.<\/p>\n<p style=\"text-align: justify;\"><img loading=\"lazy\" decoding=\"async\" class=\" wp-image-576 aligncenter\" src=\"https:\/\/blog.arcak.net\/wp-content\/uploads\/2018\/08\/aw-arch-1.png\" alt=\"\" width=\"353\" height=\"461\" srcset=\"https:\/\/blog.arcak.net\/wp-content\/uploads\/2018\/08\/aw-arch-1.png 417w, https:\/\/blog.arcak.net\/wp-content\/uploads\/2018\/08\/aw-arch-1-230x300.png 230w\" sizes=\"(max-width: 353px) 100vw, 353px\" \/><\/p>\n<p style=\"text-align: justify;\"><strong>Tunnel: WSONE\u00a0<\/strong>provides P<strong>roxy <\/strong>and <strong>Per-app VPN<\/strong> support to the environment, so it provides secure access to enterprise resources via<strong> VMwa<\/strong>re <strong>Tunnel <\/strong>using\u00a0VMware Browser (Proxy) or desired applications (Per-app), in accordance with your criteria. Proxy service supports <strong>Relay <\/strong>and <strong>Endpoint <\/strong>topology, <strong>Per-App <\/strong>can also be installed on two separate servers as Front-end and Back-end to provide extra security.\u00a0The version of Windows and Linux is still available, but has been replaced in recent releases with <strong>Unified Access Gateway (UAG)<\/strong>.<\/p>\n<p style=\"text-align: justify;\"><img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-578 aligncenter\" src=\"https:\/\/blog.arcak.net\/wp-content\/uploads\/2018\/08\/tunnel-1.png\" alt=\"\" width=\"331\" height=\"408\" srcset=\"https:\/\/blog.arcak.net\/wp-content\/uploads\/2018\/08\/tunnel-1.png 331w, https:\/\/blog.arcak.net\/wp-content\/uploads\/2018\/08\/tunnel-1-243x300.png 243w\" sizes=\"(max-width: 331px) 100vw, 331px\" \/><\/p>\n<p style=\"text-align: justify;\"><strong>Secure email Gateway (SEG): <\/strong>By acting as a proxy when positioned in front of the ActiveSync server, it allows you to ensure that the email service is only provided on registered devices of the specified criteria. It supports redundancy be positioned when required.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"wp-image-579 aligncenter\" src=\"https:\/\/blog.arcak.net\/wp-content\/uploads\/2018\/08\/seg-1.png\" alt=\"\" width=\"788\" height=\"309\" srcset=\"https:\/\/blog.arcak.net\/wp-content\/uploads\/2018\/08\/seg-1.png 877w, https:\/\/blog.arcak.net\/wp-content\/uploads\/2018\/08\/seg-1-300x118.png 300w, https:\/\/blog.arcak.net\/wp-content\/uploads\/2018\/08\/seg-1-768x301.png 768w, https:\/\/blog.arcak.net\/wp-content\/uploads\/2018\/08\/seg-1-660x259.png 660w\" sizes=\"(max-width: 788px) 100vw, 788px\" \/><\/p>\n<p style=\"text-align: justify;\"><strong>Content Gateway:<\/strong> We can briefly name it the On Prem Dropbox service. It Requires <strong>Content Locker<\/strong>\u00a0app to be accessed from a mobile device. This software has <strong>DLP<\/strong> features and support integration with the apps within the <strong>WSONE<\/strong>. Although this service can still be avaliable for\u00a0Windows and Linux, it has already been replaced on recent releases with <strong>Unified Access Gateway<\/strong>.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-580 aligncenter\" src=\"https:\/\/blog.arcak.net\/wp-content\/uploads\/2018\/08\/content-basic-1.png\" alt=\"\" width=\"616\" height=\"373\" srcset=\"https:\/\/blog.arcak.net\/wp-content\/uploads\/2018\/08\/content-basic-1.png 616w, https:\/\/blog.arcak.net\/wp-content\/uploads\/2018\/08\/content-basic-1-300x182.png 300w\" sizes=\"(max-width: 616px) 100vw, 616px\" \/> <img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-581 aligncenter\" src=\"https:\/\/blog.arcak.net\/wp-content\/uploads\/2018\/08\/content-relay-1.png\" alt=\"\" width=\"614\" height=\"372\" srcset=\"https:\/\/blog.arcak.net\/wp-content\/uploads\/2018\/08\/content-relay-1.png 614w, https:\/\/blog.arcak.net\/wp-content\/uploads\/2018\/08\/content-relay-1-300x182.png 300w\" sizes=\"(max-width: 614px) 100vw, 614px\" \/><\/p>\n<p><strong>Unified Access Gateway (UAG) :<\/strong>\u00a0It is a virtual appliance with\u00a0<strong>Photon OS<\/strong> and will be replacing and combining services\u00a0 such as <strong>VMware<\/strong> <strong>Tunnel<\/strong>, <strong>Content<\/strong> <strong>Gateway<\/strong>, <strong>Horizon<\/strong> <strong>Security<\/strong> <strong>Server<\/strong> and <strong>Reverse Proxy\u00a0<\/strong>in one place.<\/p>\n<p style=\"text-align: justify;\"><strong>Identity Manager: <\/strong>It\u00a0provides functions such as application access control, application provisioning and SSO. It can be served as both SaaS and On Premise.<\/p>\n<div id=\"attachment_593\" style=\"width: 560px\" class=\"wp-caption aligncenter\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-593\" class=\"wp-image-593 \" src=\"https:\/\/blog.arcak.net\/wp-content\/uploads\/2018\/08\/IDMCC-1.png\" alt=\"\" width=\"550\" height=\"360\" srcset=\"https:\/\/blog.arcak.net\/wp-content\/uploads\/2018\/08\/IDMCC-1.png 565w, https:\/\/blog.arcak.net\/wp-content\/uploads\/2018\/08\/IDMCC-1-300x196.png 300w\" sizes=\"(max-width: 550px) 100vw, 550px\" \/><p id=\"caption-attachment-593\" class=\"wp-caption-text\"><strong>Deployment with AirWatch Cloud Connector<\/strong><\/p><\/div>\n<div id=\"attachment_594\" style=\"width: 560px\" class=\"wp-caption aligncenter\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-594\" class=\"wp-image-594\" src=\"https:\/\/blog.arcak.net\/wp-content\/uploads\/2018\/08\/IDMCO-1.png\" alt=\"\" width=\"550\" height=\"367\" srcset=\"https:\/\/blog.arcak.net\/wp-content\/uploads\/2018\/08\/IDMCO-1.png 626w, https:\/\/blog.arcak.net\/wp-content\/uploads\/2018\/08\/IDMCO-1-300x200.png 300w\" sizes=\"(max-width: 550px) 100vw, 550px\" \/><p id=\"caption-attachment-594\" class=\"wp-caption-text\"><strong>VMware Identity Manager Connector in Outbound Mode<\/strong><\/p><\/div>\n<p><strong>VMware Enterprise System Connector: <\/strong>It\u00a0acts as a proxy so that Directory and Certificate Services,\u00a0E-mail relay etc. can be accessed without direct Internet access. Security definitions are directly\u00a0applied\u00a0for <strong>ESC<\/strong>, so there becomes no direct access to your important servers on your internal network.<\/p>\n<p style=\"text-align: justify;\"><strong>AirWatch Cloud Messaging (AWCM)<\/strong>: Provides security to back-end systems using the <strong>VMware Enterprise System Connector<\/strong>. <strong>AWCM<\/strong> is an alternative to Google Cloud Messaging\u00a0 <strong>(GCM)<\/strong> and allows <strong>Android<\/strong> devices to work without<strong> GCM (without public Internet and Google ID)<\/strong>. It is the only way to manage Windows Rugged\u00a0 devices.<\/p>\n<p style=\"text-align: justify;\"><img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-582 aligncenter\" src=\"https:\/\/blog.arcak.net\/wp-content\/uploads\/2018\/08\/esc-1.png\" alt=\"\" width=\"503\" height=\"218\" srcset=\"https:\/\/blog.arcak.net\/wp-content\/uploads\/2018\/08\/esc-1.png 503w, https:\/\/blog.arcak.net\/wp-content\/uploads\/2018\/08\/esc-1-300x130.png 300w\" sizes=\"(max-width: 503px) 100vw, 503px\" \/><\/p>\n","protected":false},"excerpt":{"rendered":"<p>AirWatch is a mobile technology platform founded in 2003 and acquired by VMware in 2013 for $1.54\u00a0billion and developed as Workspace One (WSONE). There are 4 licensing types, Standard, Advanced, Enterprise and Enterprise for VDI. You can review the licensing details here and WSONE related video below. To briefly summarize; Standard: Basic application, device profile [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[171,165,167],"tags":[],"class_list":["post-129","post","type-post","status-publish","format-standard","hentry","category-mobile-device-management","category-virtualization","category-vmware"],"_links":{"self":[{"href":"https:\/\/blog.arcak.net\/index.php\/wp-json\/wp\/v2\/posts\/129"}],"collection":[{"href":"https:\/\/blog.arcak.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blog.arcak.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blog.arcak.net\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/blog.arcak.net\/index.php\/wp-json\/wp\/v2\/comments?post=129"}],"version-history":[{"count":11,"href":"https:\/\/blog.arcak.net\/index.php\/wp-json\/wp\/v2\/posts\/129\/revisions"}],"predecessor-version":[{"id":595,"href":"https:\/\/blog.arcak.net\/index.php\/wp-json\/wp\/v2\/posts\/129\/revisions\/595"}],"wp:attachment":[{"href":"https:\/\/blog.arcak.net\/index.php\/wp-json\/wp\/v2\/media?parent=129"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blog.arcak.net\/index.php\/wp-json\/wp\/v2\/categories?post=129"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blog.arcak.net\/index.php\/wp-json\/wp\/v2\/tags?post=129"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}