SlideShare a Scribd company logo
1 of 24
Download to read offline
Sophos UTM
Prepare your schools network for BYOD with Sophos UTM Wireless Protection
Agenda

                   Q&A            What is
                                  BYOD?



    How Sophos                              BYOD
    UTM can help
                         Agenda             Benefts



                                    BYOD
              Concerns &          Preparation
             Considerations



2
What is BYOD?

    • General term which may mean different things to
      different people
    • Big topic that covers more than just technology
    • Most people agree it means allowing personal devices to
      access business networks
    • Also used to describe programs where equipment is
      provided (1 – 1 initiatives)
    • BYOD concerns relate to both policy and infrastructure
    • This talk will focus mostly on infrastructure concerns


3
BYOD Benefits to Schools
Why the trend?

    • U.S. Department of Education suggested BYOD in 2010
      National Technology plan
     • http://www.ed.gov/technology/netp-2010/executive-summary
    • Technology may enhance:
     •   Creativity and Innovation
     •   Communication and Collaboration
     •   Critical thinking, Problem solving, Decision making
     •   Present concept of Digital Citizenship
    • Tech skills are essential for modern life and business
    • BYOD may save money
     • On equipment, app’s, and management


4
BYOD Preparations
What should you be thinking of if you’re planning a BYOD initiative?

    • BYOD Policy
     • What are we trying to accomplish?
     • What’s acceptable use for equipment and network?
    • Infrastructure
     • What do we need to support the policy?
     • Do we have the proper equipment or do we need to purchase?
    • Impact on community
     • Are teachers prepared to use and maybe support devices?
     • Privacy concerns, can all students afford devices, do parents
       support, etc…



5
BYOD Infrastructure Considerations
The Network

    • How many new users/devices are you adding onto your
      network? Twice as many? 3 times?
    • Will your current network handle that traffic?
    • What are the security risks? (How can we ensure that
      Guest and/or BYOD traffic is segregated?
    • Will current network and web security solutions be able
      to support BYOD policy?
    • How much extra work is this going to be for IT staff?




6
BYOD Infrastructure Considerations
The Network

    • Network & Web Security equipment should provide (at
      least):
     •   QOS functionality to shape bandwidth
     •   Content filtering to enforce CIPA
     •   Application Control (Next Generation Layer 7 Firewall)
     •   Ability to scale as demands increase
     •   Reporting




7
BYOD Infrastructure Considerations
Your Wireless solution and its capabilities


    •   Does it support multiple SSID’s (wireless zones)?
    •   What security policies does it offer?
    •   What levels of encryption does it offer?
    •   How easy it is to add capacity?
    •   What are the Guest capabilities?
    •   How much work for staff to deploy and manage?




8
BYOD Infrastructure Considerations
Your Wireless solution and its capabilities


    • Wireless Solution should provide (at a minimum):
     •   Multiple Wireless Zones
     •   At least WPA2 encryption
     •   Ability to integrate with security solutions
     •   Usage reporting
     •   Guest Options




9
How can Sophos help with BYOD?

     • Sophos Mobile Device Management solution

     • Sophos Endpoint protection for Laptops

     • Sophos UTM Wireless Protection




10
Sophos Wireless Protection

     •   Easy deployment of Access Points
     •   Simple setup and management of zones
     •   Enterprise level encryption
     •   Configurable Guest options
     •   Integrated protection via UTM security suite
     •   Easily scales to meet increased demand




11
Sophos UTM Wireless Protection
Components



                            Now also
                            available
                          Sophos AP 50




12
Sophos AP 10 / AP 30
Plug and Play Access Points for classrooms

     AP 10                                   AP 30
     • Up to 10 users                        • Up to 30 users
     • 150 Mbit/s throughput                 • 300 Mbit/s throughput
     • 1 x 10/100 Base TX                    • 1 x 10/100 Base TX
     • IEEE 802.11 b/g/n                     • IEEE 802.11 b/g/n
     • 1 x detachable dipole antenna         • 3 x internal antennas
     • Power consumption: < 8 Watt           • Power consumption: < 8 Watt
     • Desktop/wall mounting                 • Desktop/ceiling mounting
                                             • Power over Ethernet (IEEE 802.3af)



                                                PoE-Injector included!




13
Sophos AP 50
Plug and Play Access Points for common areas

     • Dual-band/dual-radio access point
     • IEEE 802.11 a/b/g/n support
     • Support for up to 50 users
     • 300 Mbit/s throughput
     • 1 x 10/100/1000 Base TX
     • PoE+ compatibility (IEEE 802.3at)
     • Power consumption: < 10 W
     • 2 x 2.4G/5G detachable antenna
     • Desktop/wall mounting



          PoE-Injector included!




14
Centralized Management
Built-in wireless controller




                               Sophos UTM




15
Easy installation



                                         Guest

                    Sophos UTM




                                 Staff
                     Student




16
Guest Portal Hotspot support
Most flexible UTM based
Hotspot solution

• Manage temporary Internet
  Access for guests
• Options for:
        Configurable Usage agreement and
         logos
        Automatic ‘Password of the day’
        Quota’s on time and usage


Part of UTM Wireless Subscription




17
Flexible access for the entire organization
Sophos Access Points can be placed anywhere in your organization.
Easily create multiple separate wireless zones.




18
Advantages
Sophos UTM Wireless Protection
     Easy installation and management
      • Centralized configuration (all work done via UTM GUI)
      • Plug and Play Access Point simplify deployment


     Secure and reliable
      • Integrated UTM security for wireless devices
      • Best protection for wireless connections (separate zones, isolate client
        connections, configure quota’s)


     Flexible access
      • Easy Internet access options for guests
      • Multiple SSID support for varying levels of access



19
Integrated security
Once connected to the UTM easily integrates with other security features



                                        Strong Encryption




                   Sophos UTM




           Integrated UTM Security




20
UTM Security features
Optional Subscriptions provide the security features you want
                                      UTM Endpoint
                                      Protection Antivirus

                                      • Antivirus
                                      • HIPS
                                      • Device Control
     UTM Wireless                                                  UTM Network
     Protection                                                    Protection
                                                       optional
                                                                   •   Intrusion prevention
     • Wireless controller         Essential Network               •   IPSec/SSL VPN & RED
     • Multi-zone (SSID) support   Firewall                        •   HTML5 VPN Portal
     • Captive Portal                                              •   Reporting
                                   • Stateful firewall
                                   • Network address translation
                                   • PPTP/L2TP remote access


     UTM Webserver                                                 UTM Web
     Protection                                                    Protection

                                                                   •   URL filter
     • Reverse proxy                                               •   Antivirus & antispyware
     • Web application firewall     UTM Email
                                                                   •   Application control
     • Antivirus                    Protection
                                                                   •   Reporting
                                    • Anti-spam & -phishing
                                    • Dual virus protection
                                    • Email encryption
21
Sophos UTM fit any size network
     Hardware                                                                                                            Multiple
                      UTM 110/120   UTM 220        UTM 320         UTM 425         UTM 525           UTM 625
     Appliance                                                                                                           + RED




                         Small      Medium          Medium           Large           Large             Large         Large networks
     Environment
                        network     network         network         network         network           network          + branches


     Network ports         4           8               8           6 & 2 SFP      10 & 4 SFP         10 & 8 SFP           Multiple

     Max.
     recommended         10/80        300             800            1.500           3.500             5.000             10.000+
     firewall users
     Max.
     recommended         10/35        75              200             600            1.300             2.000               5.000
     UTM users

     Software
     Appliance *                                   Runs on Intel-compatible PCs and servers


     Virtual                                         VMware Ready & Citrix Ready certified
     Appliance *                              Runs in Hyper-V, KVM, and other virtual environments




                                                                                                                *Pricing based #IPs/Users
22
Resources
Questions?


     • National Educational Technology Standards
       •   http://www.iste.org/STANDARDS


       http://digitalcitizenship.net/

       http://www.zdnet.com/how-to-write-a-byod-policy-7000003502/

       http://www.fathomdelivers.com/the-benefits-and-risks-of-byod-in-
       schools/




23
Staying ahead of the curve
Staying ahead of the curve
                                         US and Canada
      facebook.com/securitybysophos     1-866-866-2802
                                      NASales@sophos.com

      Sophos on Google+


                                       UK and Worldwide
      linkedin.com/company/sophos
                                        + 44 1235 55 9933
                                       Sales@sophos.com

      twitter.com/Sophos_News


      nakedsecurity.sophos.com


                                                    24

More Related Content

What's hot

BYOD - Protecting Your School
BYOD - Protecting Your SchoolBYOD - Protecting Your School
BYOD - Protecting Your SchoolSophos
 
Sophos utm-roadshow-south africa-2012
Sophos utm-roadshow-south africa-2012Sophos utm-roadshow-south africa-2012
Sophos utm-roadshow-south africa-2012dvanwyk30
 
What's cooking at Sophos - an introduction to Synchronized Security
What's cooking at Sophos - an introduction to Synchronized SecurityWhat's cooking at Sophos - an introduction to Synchronized Security
What's cooking at Sophos - an introduction to Synchronized SecuritySophos Benelux
 
Exposing the Money Behind Malware
Exposing the Money Behind MalwareExposing the Money Behind Malware
Exposing the Money Behind MalwareSophos
 
2013 Security Threat Report Presentation
2013 Security Threat Report Presentation2013 Security Threat Report Presentation
2013 Security Threat Report PresentationSophos
 
Security: more important than ever - Sophos Day Belux 2014
Security: more important than ever - Sophos Day Belux 2014Security: more important than ever - Sophos Day Belux 2014
Security: more important than ever - Sophos Day Belux 2014Sophos Benelux
 
Sophos Next-Generation Enduser Protection
Sophos Next-Generation Enduser ProtectionSophos Next-Generation Enduser Protection
Sophos Next-Generation Enduser ProtectionGiovanni Giovannelli
 
The next generation of IT security
The next generation of IT securityThe next generation of IT security
The next generation of IT securitySophos Benelux
 
Sophos Mobile Control - Product Overview
Sophos Mobile Control - Product OverviewSophos Mobile Control - Product Overview
Sophos Mobile Control - Product OverviewSophos
 
Cyberoam Firewall Presentation
Cyberoam Firewall PresentationCyberoam Firewall Presentation
Cyberoam Firewall PresentationManoj Kumar Mishra
 
Sophos Day Belgium - What's cooking in Sophos' Network Security Group?
Sophos Day Belgium - What's cooking in Sophos' Network Security Group?Sophos Day Belgium - What's cooking in Sophos' Network Security Group?
Sophos Day Belgium - What's cooking in Sophos' Network Security Group?Sophos Benelux
 
SOPHOS presentation used during the SWITCHPOINT NV/SA Quarterly Experience Da...
SOPHOS presentation used during the SWITCHPOINT NV/SA Quarterly Experience Da...SOPHOS presentation used during the SWITCHPOINT NV/SA Quarterly Experience Da...
SOPHOS presentation used during the SWITCHPOINT NV/SA Quarterly Experience Da...SWITCHPOINT NV/SA
 
The Importance of Endpoint Protection - Featuring SEP 14
The Importance of Endpoint Protection - Featuring SEP 14The Importance of Endpoint Protection - Featuring SEP 14
The Importance of Endpoint Protection - Featuring SEP 14Aventis Systems, Inc.
 
Tech 101: Understanding Firewalls
Tech 101: Understanding FirewallsTech 101: Understanding Firewalls
Tech 101: Understanding FirewallsLikan Patra
 
All about Firewalls ,IPS IDS and the era of UTM in a nutshell
All  about Firewalls ,IPS IDS and the era of UTM in a nutshellAll  about Firewalls ,IPS IDS and the era of UTM in a nutshell
All about Firewalls ,IPS IDS and the era of UTM in a nutshellHishan Shouketh
 
Network Security Certification
Network Security CertificationNetwork Security Certification
Network Security CertificationVskills
 
Panda Security - Endpoint Protection
Panda Security - Endpoint ProtectionPanda Security - Endpoint Protection
Panda Security - Endpoint ProtectionPanda Security
 

What's hot (20)

BYOD - Protecting Your School
BYOD - Protecting Your SchoolBYOD - Protecting Your School
BYOD - Protecting Your School
 
Sophos utm-roadshow-south africa-2012
Sophos utm-roadshow-south africa-2012Sophos utm-roadshow-south africa-2012
Sophos utm-roadshow-south africa-2012
 
What's cooking at Sophos - an introduction to Synchronized Security
What's cooking at Sophos - an introduction to Synchronized SecurityWhat's cooking at Sophos - an introduction to Synchronized Security
What's cooking at Sophos - an introduction to Synchronized Security
 
Sophos Utm Presentation 2016
Sophos Utm Presentation 2016Sophos Utm Presentation 2016
Sophos Utm Presentation 2016
 
Exposing the Money Behind Malware
Exposing the Money Behind MalwareExposing the Money Behind Malware
Exposing the Money Behind Malware
 
2013 Security Threat Report Presentation
2013 Security Threat Report Presentation2013 Security Threat Report Presentation
2013 Security Threat Report Presentation
 
XG Firewall
XG FirewallXG Firewall
XG Firewall
 
Security: more important than ever - Sophos Day Belux 2014
Security: more important than ever - Sophos Day Belux 2014Security: more important than ever - Sophos Day Belux 2014
Security: more important than ever - Sophos Day Belux 2014
 
Sophos Next-Generation Enduser Protection
Sophos Next-Generation Enduser ProtectionSophos Next-Generation Enduser Protection
Sophos Next-Generation Enduser Protection
 
The next generation of IT security
The next generation of IT securityThe next generation of IT security
The next generation of IT security
 
Sophos Mobile Control - Product Overview
Sophos Mobile Control - Product OverviewSophos Mobile Control - Product Overview
Sophos Mobile Control - Product Overview
 
Cyberoam Firewall Presentation
Cyberoam Firewall PresentationCyberoam Firewall Presentation
Cyberoam Firewall Presentation
 
Sophos Day Belgium - What's cooking in Sophos' Network Security Group?
Sophos Day Belgium - What's cooking in Sophos' Network Security Group?Sophos Day Belgium - What's cooking in Sophos' Network Security Group?
Sophos Day Belgium - What's cooking in Sophos' Network Security Group?
 
SOPHOS presentation used during the SWITCHPOINT NV/SA Quarterly Experience Da...
SOPHOS presentation used during the SWITCHPOINT NV/SA Quarterly Experience Da...SOPHOS presentation used during the SWITCHPOINT NV/SA Quarterly Experience Da...
SOPHOS presentation used during the SWITCHPOINT NV/SA Quarterly Experience Da...
 
The Importance of Endpoint Protection - Featuring SEP 14
The Importance of Endpoint Protection - Featuring SEP 14The Importance of Endpoint Protection - Featuring SEP 14
The Importance of Endpoint Protection - Featuring SEP 14
 
Tech 101: Understanding Firewalls
Tech 101: Understanding FirewallsTech 101: Understanding Firewalls
Tech 101: Understanding Firewalls
 
All about Firewalls ,IPS IDS and the era of UTM in a nutshell
All  about Firewalls ,IPS IDS and the era of UTM in a nutshellAll  about Firewalls ,IPS IDS and the era of UTM in a nutshell
All about Firewalls ,IPS IDS and the era of UTM in a nutshell
 
Network Security Certification
Network Security CertificationNetwork Security Certification
Network Security Certification
 
Panda Security - Endpoint Protection
Panda Security - Endpoint ProtectionPanda Security - Endpoint Protection
Panda Security - Endpoint Protection
 
FireEye
FireEyeFireEye
FireEye
 

Similar to Preparing Your School for BYOD with Sophos UTM Wireless Protection

(Sacon) Sumanth Naropanth - IoT network & ecosystem security attacks & secur...
(Sacon) Sumanth Naropanth  - IoT network & ecosystem security attacks & secur...(Sacon) Sumanth Naropanth  - IoT network & ecosystem security attacks & secur...
(Sacon) Sumanth Naropanth - IoT network & ecosystem security attacks & secur...Priyanka Aash
 
CTR350 Cradlepoint Product Brochure (quantum-wireless.com)
CTR350 Cradlepoint Product Brochure (quantum-wireless.com)CTR350 Cradlepoint Product Brochure (quantum-wireless.com)
CTR350 Cradlepoint Product Brochure (quantum-wireless.com)Ari Zoldan
 
5. Firetide Next Generation Wireless Infrastructure for City Surveillance.pdf
5. Firetide Next Generation Wireless Infrastructure for City Surveillance.pdf5. Firetide Next Generation Wireless Infrastructure for City Surveillance.pdf
5. Firetide Next Generation Wireless Infrastructure for City Surveillance.pdfPawachMetharattanara
 
Gab 2015 aymeric weinbach azure iot
Gab   2015 aymeric weinbach azure iot Gab   2015 aymeric weinbach azure iot
Gab 2015 aymeric weinbach azure iot Aymeric Weinbach
 
2005 OSGi Alliance The need of an integration platform
2005 OSGi Alliance The need of an integration platform2005 OSGi Alliance The need of an integration platform
2005 OSGi Alliance The need of an integration platformOSGi Alliance
 
6-IoT protocol.pptx
6-IoT protocol.pptx6-IoT protocol.pptx
6-IoT protocol.pptxPratik Gohel
 
Introduction à l'écosystème de l'Internet des Objets
Introduction à l'écosystème de l'Internet des Objets  Introduction à l'écosystème de l'Internet des Objets
Introduction à l'écosystème de l'Internet des Objets Geeks Anonymes
 
Mesh Surveillance Camera | EnGenius
Mesh Surveillance Camera | EnGeniusMesh Surveillance Camera | EnGenius
Mesh Surveillance Camera | EnGeniusEngi Admi
 
Retail Location Security Complexities
Retail Location Security ComplexitiesRetail Location Security Complexities
Retail Location Security ComplexitiesEtienne Liebetrau
 
Solving the BYOD Problem with Open Standards
Solving the BYOD Problem with Open StandardsSolving the BYOD Problem with Open Standards
Solving the BYOD Problem with Open StandardsChristina Inge
 
Katastrophen-Einsatz-Überwachung mit survival sensor networks on IPv6
Katastrophen-Einsatz-Überwachung mit survival sensor networks on IPv6Katastrophen-Einsatz-Überwachung mit survival sensor networks on IPv6
Katastrophen-Einsatz-Überwachung mit survival sensor networks on IPv6Governments ENabled with IPv6
 
Minimizing Information Transparency
Minimizing Information TransparencyMinimizing Information Transparency
Minimizing Information TransparencyUsman Arshad
 
DEF CON 23 - vivek ramachadran - chellam
DEF CON 23 - vivek ramachadran - chellamDEF CON 23 - vivek ramachadran - chellam
DEF CON 23 - vivek ramachadran - chellamFelipe Prado
 
TM4C-IoT-Gateway-with-Security-Protection_0.pdf
TM4C-IoT-Gateway-with-Security-Protection_0.pdfTM4C-IoT-Gateway-with-Security-Protection_0.pdf
TM4C-IoT-Gateway-with-Security-Protection_0.pdfssuser8b324e
 
Presentatie Alcom - Meetup
Presentatie Alcom - Meetup Presentatie Alcom - Meetup
Presentatie Alcom - Meetup Jesse van Doren
 
SSL & TLS Architecture short
SSL & TLS Architecture shortSSL & TLS Architecture short
SSL & TLS Architecture shortAvirot Mitamura
 
Zero Trust for Private 5G and Edge
Zero Trust for Private 5G and EdgeZero Trust for Private 5G and Edge
Zero Trust for Private 5G and EdgeRebekah Rodriguez
 
Cloaking is the new perimeter
Cloaking is the new perimeterCloaking is the new perimeter
Cloaking is the new perimeterTempered
 
Cloaking is the new perimeter
Cloaking is the new perimeterCloaking is the new perimeter
Cloaking is the new perimeterTempered
 

Similar to Preparing Your School for BYOD with Sophos UTM Wireless Protection (20)

(Sacon) Sumanth Naropanth - IoT network & ecosystem security attacks & secur...
(Sacon) Sumanth Naropanth  - IoT network & ecosystem security attacks & secur...(Sacon) Sumanth Naropanth  - IoT network & ecosystem security attacks & secur...
(Sacon) Sumanth Naropanth - IoT network & ecosystem security attacks & secur...
 
CTR350 Cradlepoint Product Brochure (quantum-wireless.com)
CTR350 Cradlepoint Product Brochure (quantum-wireless.com)CTR350 Cradlepoint Product Brochure (quantum-wireless.com)
CTR350 Cradlepoint Product Brochure (quantum-wireless.com)
 
5. Firetide Next Generation Wireless Infrastructure for City Surveillance.pdf
5. Firetide Next Generation Wireless Infrastructure for City Surveillance.pdf5. Firetide Next Generation Wireless Infrastructure for City Surveillance.pdf
5. Firetide Next Generation Wireless Infrastructure for City Surveillance.pdf
 
FortiGate-60C
FortiGate-60CFortiGate-60C
FortiGate-60C
 
Gab 2015 aymeric weinbach azure iot
Gab   2015 aymeric weinbach azure iot Gab   2015 aymeric weinbach azure iot
Gab 2015 aymeric weinbach azure iot
 
2005 OSGi Alliance The need of an integration platform
2005 OSGi Alliance The need of an integration platform2005 OSGi Alliance The need of an integration platform
2005 OSGi Alliance The need of an integration platform
 
6-IoT protocol.pptx
6-IoT protocol.pptx6-IoT protocol.pptx
6-IoT protocol.pptx
 
Introduction à l'écosystème de l'Internet des Objets
Introduction à l'écosystème de l'Internet des Objets  Introduction à l'écosystème de l'Internet des Objets
Introduction à l'écosystème de l'Internet des Objets
 
Mesh Surveillance Camera | EnGenius
Mesh Surveillance Camera | EnGeniusMesh Surveillance Camera | EnGenius
Mesh Surveillance Camera | EnGenius
 
Retail Location Security Complexities
Retail Location Security ComplexitiesRetail Location Security Complexities
Retail Location Security Complexities
 
Solving the BYOD Problem with Open Standards
Solving the BYOD Problem with Open StandardsSolving the BYOD Problem with Open Standards
Solving the BYOD Problem with Open Standards
 
Katastrophen-Einsatz-Überwachung mit survival sensor networks on IPv6
Katastrophen-Einsatz-Überwachung mit survival sensor networks on IPv6Katastrophen-Einsatz-Überwachung mit survival sensor networks on IPv6
Katastrophen-Einsatz-Überwachung mit survival sensor networks on IPv6
 
Minimizing Information Transparency
Minimizing Information TransparencyMinimizing Information Transparency
Minimizing Information Transparency
 
DEF CON 23 - vivek ramachadran - chellam
DEF CON 23 - vivek ramachadran - chellamDEF CON 23 - vivek ramachadran - chellam
DEF CON 23 - vivek ramachadran - chellam
 
TM4C-IoT-Gateway-with-Security-Protection_0.pdf
TM4C-IoT-Gateway-with-Security-Protection_0.pdfTM4C-IoT-Gateway-with-Security-Protection_0.pdf
TM4C-IoT-Gateway-with-Security-Protection_0.pdf
 
Presentatie Alcom - Meetup
Presentatie Alcom - Meetup Presentatie Alcom - Meetup
Presentatie Alcom - Meetup
 
SSL & TLS Architecture short
SSL & TLS Architecture shortSSL & TLS Architecture short
SSL & TLS Architecture short
 
Zero Trust for Private 5G and Edge
Zero Trust for Private 5G and EdgeZero Trust for Private 5G and Edge
Zero Trust for Private 5G and Edge
 
Cloaking is the new perimeter
Cloaking is the new perimeterCloaking is the new perimeter
Cloaking is the new perimeter
 
Cloaking is the new perimeter
Cloaking is the new perimeterCloaking is the new perimeter
Cloaking is the new perimeter
 

More from Sophos

Sophos Wireless Protection Overview
Sophos Wireless Protection OverviewSophos Wireless Protection Overview
Sophos Wireless Protection OverviewSophos
 
Your Money or Your File! Highway Robbery with Blackhole and Ransomware
Your Money or Your File! Highway Robbery with Blackhole and RansomwareYour Money or Your File! Highway Robbery with Blackhole and Ransomware
Your Money or Your File! Highway Robbery with Blackhole and RansomwareSophos
 
Sophos EndUser Protection
Sophos EndUser ProtectionSophos EndUser Protection
Sophos EndUser ProtectionSophos
 
2013 Security Threat Report
2013 Security Threat Report2013 Security Threat Report
2013 Security Threat ReportSophos
 
When Malware Goes Mobile
When Malware Goes MobileWhen Malware Goes Mobile
When Malware Goes MobileSophos
 
IT Security DOs und DON’Ts (Italian)
IT Security DOs und DON’Ts (Italian)IT Security DOs und DON’Ts (Italian)
IT Security DOs und DON’Ts (Italian)Sophos
 
IT Security DOs and DON'Ts
IT Security DOs and DON'Ts IT Security DOs and DON'Ts
IT Security DOs and DON'Ts Sophos
 

More from Sophos (7)

Sophos Wireless Protection Overview
Sophos Wireless Protection OverviewSophos Wireless Protection Overview
Sophos Wireless Protection Overview
 
Your Money or Your File! Highway Robbery with Blackhole and Ransomware
Your Money or Your File! Highway Robbery with Blackhole and RansomwareYour Money or Your File! Highway Robbery with Blackhole and Ransomware
Your Money or Your File! Highway Robbery with Blackhole and Ransomware
 
Sophos EndUser Protection
Sophos EndUser ProtectionSophos EndUser Protection
Sophos EndUser Protection
 
2013 Security Threat Report
2013 Security Threat Report2013 Security Threat Report
2013 Security Threat Report
 
When Malware Goes Mobile
When Malware Goes MobileWhen Malware Goes Mobile
When Malware Goes Mobile
 
IT Security DOs und DON’Ts (Italian)
IT Security DOs und DON’Ts (Italian)IT Security DOs und DON’Ts (Italian)
IT Security DOs und DON’Ts (Italian)
 
IT Security DOs and DON'Ts
IT Security DOs and DON'Ts IT Security DOs and DON'Ts
IT Security DOs and DON'Ts
 

Recently uploaded

Advanced Computer Architecture – An Introduction
Advanced Computer Architecture – An IntroductionAdvanced Computer Architecture – An Introduction
Advanced Computer Architecture – An IntroductionDilum Bandara
 
Generative AI for Technical Writer or Information Developers
Generative AI for Technical Writer or Information DevelopersGenerative AI for Technical Writer or Information Developers
Generative AI for Technical Writer or Information DevelopersRaghuram Pandurangan
 
DSPy a system for AI to Write Prompts and Do Fine Tuning
DSPy a system for AI to Write Prompts and Do Fine TuningDSPy a system for AI to Write Prompts and Do Fine Tuning
DSPy a system for AI to Write Prompts and Do Fine TuningLars Bell
 
"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii SoldatenkoFwdays
 
DevoxxFR 2024 Reproducible Builds with Apache Maven
DevoxxFR 2024 Reproducible Builds with Apache MavenDevoxxFR 2024 Reproducible Builds with Apache Maven
DevoxxFR 2024 Reproducible Builds with Apache MavenHervé Boutemy
 
Scanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL CertsScanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL CertsRizwan Syed
 
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptxMerck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptxLoriGlavin3
 
The Fit for Passkeys for Employee and Consumer Sign-ins: FIDO Paris Seminar.pptx
The Fit for Passkeys for Employee and Consumer Sign-ins: FIDO Paris Seminar.pptxThe Fit for Passkeys for Employee and Consumer Sign-ins: FIDO Paris Seminar.pptx
The Fit for Passkeys for Employee and Consumer Sign-ins: FIDO Paris Seminar.pptxLoriGlavin3
 
Take control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test SuiteTake control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test SuiteDianaGray10
 
Moving Beyond Passwords: FIDO Paris Seminar.pdf
Moving Beyond Passwords: FIDO Paris Seminar.pdfMoving Beyond Passwords: FIDO Paris Seminar.pdf
Moving Beyond Passwords: FIDO Paris Seminar.pdfLoriGlavin3
 
Unraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdfUnraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdfAlex Barbosa Coqueiro
 
WordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your BrandWordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your Brandgvaughan
 
The State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptxThe State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptxLoriGlavin3
 
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024BookNet Canada
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebUiPathCommunity
 
"ML in Production",Oleksandr Bagan
"ML in Production",Oleksandr Bagan"ML in Production",Oleksandr Bagan
"ML in Production",Oleksandr BaganFwdays
 
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptxThe Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptxLoriGlavin3
 
Digital Identity is Under Attack: FIDO Paris Seminar.pptx
Digital Identity is Under Attack: FIDO Paris Seminar.pptxDigital Identity is Under Attack: FIDO Paris Seminar.pptx
Digital Identity is Under Attack: FIDO Paris Seminar.pptxLoriGlavin3
 
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxPasskey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxLoriGlavin3
 
SALESFORCE EDUCATION CLOUD | FEXLE SERVICES
SALESFORCE EDUCATION CLOUD | FEXLE SERVICESSALESFORCE EDUCATION CLOUD | FEXLE SERVICES
SALESFORCE EDUCATION CLOUD | FEXLE SERVICESmohitsingh558521
 

Recently uploaded (20)

Advanced Computer Architecture – An Introduction
Advanced Computer Architecture – An IntroductionAdvanced Computer Architecture – An Introduction
Advanced Computer Architecture – An Introduction
 
Generative AI for Technical Writer or Information Developers
Generative AI for Technical Writer or Information DevelopersGenerative AI for Technical Writer or Information Developers
Generative AI for Technical Writer or Information Developers
 
DSPy a system for AI to Write Prompts and Do Fine Tuning
DSPy a system for AI to Write Prompts and Do Fine TuningDSPy a system for AI to Write Prompts and Do Fine Tuning
DSPy a system for AI to Write Prompts and Do Fine Tuning
 
"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko
 
DevoxxFR 2024 Reproducible Builds with Apache Maven
DevoxxFR 2024 Reproducible Builds with Apache MavenDevoxxFR 2024 Reproducible Builds with Apache Maven
DevoxxFR 2024 Reproducible Builds with Apache Maven
 
Scanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL CertsScanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL Certs
 
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptxMerck Moving Beyond Passwords: FIDO Paris Seminar.pptx
Merck Moving Beyond Passwords: FIDO Paris Seminar.pptx
 
The Fit for Passkeys for Employee and Consumer Sign-ins: FIDO Paris Seminar.pptx
The Fit for Passkeys for Employee and Consumer Sign-ins: FIDO Paris Seminar.pptxThe Fit for Passkeys for Employee and Consumer Sign-ins: FIDO Paris Seminar.pptx
The Fit for Passkeys for Employee and Consumer Sign-ins: FIDO Paris Seminar.pptx
 
Take control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test SuiteTake control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test Suite
 
Moving Beyond Passwords: FIDO Paris Seminar.pdf
Moving Beyond Passwords: FIDO Paris Seminar.pdfMoving Beyond Passwords: FIDO Paris Seminar.pdf
Moving Beyond Passwords: FIDO Paris Seminar.pdf
 
Unraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdfUnraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdf
 
WordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your BrandWordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your Brand
 
The State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptxThe State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptx
 
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio Web
 
"ML in Production",Oleksandr Bagan
"ML in Production",Oleksandr Bagan"ML in Production",Oleksandr Bagan
"ML in Production",Oleksandr Bagan
 
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptxThe Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
 
Digital Identity is Under Attack: FIDO Paris Seminar.pptx
Digital Identity is Under Attack: FIDO Paris Seminar.pptxDigital Identity is Under Attack: FIDO Paris Seminar.pptx
Digital Identity is Under Attack: FIDO Paris Seminar.pptx
 
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxPasskey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
 
SALESFORCE EDUCATION CLOUD | FEXLE SERVICES
SALESFORCE EDUCATION CLOUD | FEXLE SERVICESSALESFORCE EDUCATION CLOUD | FEXLE SERVICES
SALESFORCE EDUCATION CLOUD | FEXLE SERVICES
 

Preparing Your School for BYOD with Sophos UTM Wireless Protection

  • 1. Sophos UTM Prepare your schools network for BYOD with Sophos UTM Wireless Protection
  • 2. Agenda Q&A What is BYOD? How Sophos BYOD UTM can help Agenda Benefts BYOD Concerns & Preparation Considerations 2
  • 3. What is BYOD? • General term which may mean different things to different people • Big topic that covers more than just technology • Most people agree it means allowing personal devices to access business networks • Also used to describe programs where equipment is provided (1 – 1 initiatives) • BYOD concerns relate to both policy and infrastructure • This talk will focus mostly on infrastructure concerns 3
  • 4. BYOD Benefits to Schools Why the trend? • U.S. Department of Education suggested BYOD in 2010 National Technology plan • http://www.ed.gov/technology/netp-2010/executive-summary • Technology may enhance: • Creativity and Innovation • Communication and Collaboration • Critical thinking, Problem solving, Decision making • Present concept of Digital Citizenship • Tech skills are essential for modern life and business • BYOD may save money • On equipment, app’s, and management 4
  • 5. BYOD Preparations What should you be thinking of if you’re planning a BYOD initiative? • BYOD Policy • What are we trying to accomplish? • What’s acceptable use for equipment and network? • Infrastructure • What do we need to support the policy? • Do we have the proper equipment or do we need to purchase? • Impact on community • Are teachers prepared to use and maybe support devices? • Privacy concerns, can all students afford devices, do parents support, etc… 5
  • 6. BYOD Infrastructure Considerations The Network • How many new users/devices are you adding onto your network? Twice as many? 3 times? • Will your current network handle that traffic? • What are the security risks? (How can we ensure that Guest and/or BYOD traffic is segregated? • Will current network and web security solutions be able to support BYOD policy? • How much extra work is this going to be for IT staff? 6
  • 7. BYOD Infrastructure Considerations The Network • Network & Web Security equipment should provide (at least): • QOS functionality to shape bandwidth • Content filtering to enforce CIPA • Application Control (Next Generation Layer 7 Firewall) • Ability to scale as demands increase • Reporting 7
  • 8. BYOD Infrastructure Considerations Your Wireless solution and its capabilities • Does it support multiple SSID’s (wireless zones)? • What security policies does it offer? • What levels of encryption does it offer? • How easy it is to add capacity? • What are the Guest capabilities? • How much work for staff to deploy and manage? 8
  • 9. BYOD Infrastructure Considerations Your Wireless solution and its capabilities • Wireless Solution should provide (at a minimum): • Multiple Wireless Zones • At least WPA2 encryption • Ability to integrate with security solutions • Usage reporting • Guest Options 9
  • 10. How can Sophos help with BYOD? • Sophos Mobile Device Management solution • Sophos Endpoint protection for Laptops • Sophos UTM Wireless Protection 10
  • 11. Sophos Wireless Protection • Easy deployment of Access Points • Simple setup and management of zones • Enterprise level encryption • Configurable Guest options • Integrated protection via UTM security suite • Easily scales to meet increased demand 11
  • 12. Sophos UTM Wireless Protection Components Now also available Sophos AP 50 12
  • 13. Sophos AP 10 / AP 30 Plug and Play Access Points for classrooms AP 10 AP 30 • Up to 10 users • Up to 30 users • 150 Mbit/s throughput • 300 Mbit/s throughput • 1 x 10/100 Base TX • 1 x 10/100 Base TX • IEEE 802.11 b/g/n • IEEE 802.11 b/g/n • 1 x detachable dipole antenna • 3 x internal antennas • Power consumption: < 8 Watt • Power consumption: < 8 Watt • Desktop/wall mounting • Desktop/ceiling mounting • Power over Ethernet (IEEE 802.3af) PoE-Injector included! 13
  • 14. Sophos AP 50 Plug and Play Access Points for common areas • Dual-band/dual-radio access point • IEEE 802.11 a/b/g/n support • Support for up to 50 users • 300 Mbit/s throughput • 1 x 10/100/1000 Base TX • PoE+ compatibility (IEEE 802.3at) • Power consumption: < 10 W • 2 x 2.4G/5G detachable antenna • Desktop/wall mounting PoE-Injector included! 14
  • 15. Centralized Management Built-in wireless controller Sophos UTM 15
  • 16. Easy installation Guest Sophos UTM Staff Student 16
  • 17. Guest Portal Hotspot support Most flexible UTM based Hotspot solution • Manage temporary Internet Access for guests • Options for:  Configurable Usage agreement and logos  Automatic ‘Password of the day’  Quota’s on time and usage Part of UTM Wireless Subscription 17
  • 18. Flexible access for the entire organization Sophos Access Points can be placed anywhere in your organization. Easily create multiple separate wireless zones. 18
  • 19. Advantages Sophos UTM Wireless Protection Easy installation and management • Centralized configuration (all work done via UTM GUI) • Plug and Play Access Point simplify deployment Secure and reliable • Integrated UTM security for wireless devices • Best protection for wireless connections (separate zones, isolate client connections, configure quota’s) Flexible access • Easy Internet access options for guests • Multiple SSID support for varying levels of access 19
  • 20. Integrated security Once connected to the UTM easily integrates with other security features Strong Encryption Sophos UTM Integrated UTM Security 20
  • 21. UTM Security features Optional Subscriptions provide the security features you want UTM Endpoint Protection Antivirus • Antivirus • HIPS • Device Control UTM Wireless UTM Network Protection Protection optional • Intrusion prevention • Wireless controller Essential Network • IPSec/SSL VPN & RED • Multi-zone (SSID) support Firewall • HTML5 VPN Portal • Captive Portal • Reporting • Stateful firewall • Network address translation • PPTP/L2TP remote access UTM Webserver UTM Web Protection Protection • URL filter • Reverse proxy • Antivirus & antispyware • Web application firewall UTM Email • Application control • Antivirus Protection • Reporting • Anti-spam & -phishing • Dual virus protection • Email encryption 21
  • 22. Sophos UTM fit any size network Hardware Multiple UTM 110/120 UTM 220 UTM 320 UTM 425 UTM 525 UTM 625 Appliance + RED Small Medium Medium Large Large Large Large networks Environment network network network network network network + branches Network ports 4 8 8 6 & 2 SFP 10 & 4 SFP 10 & 8 SFP Multiple Max. recommended 10/80 300 800 1.500 3.500 5.000 10.000+ firewall users Max. recommended 10/35 75 200 600 1.300 2.000 5.000 UTM users Software Appliance * Runs on Intel-compatible PCs and servers Virtual VMware Ready & Citrix Ready certified Appliance * Runs in Hyper-V, KVM, and other virtual environments *Pricing based #IPs/Users 22
  • 23. Resources Questions? • National Educational Technology Standards • http://www.iste.org/STANDARDS http://digitalcitizenship.net/ http://www.zdnet.com/how-to-write-a-byod-policy-7000003502/ http://www.fathomdelivers.com/the-benefits-and-risks-of-byod-in- schools/ 23
  • 24. Staying ahead of the curve Staying ahead of the curve US and Canada facebook.com/securitybysophos 1-866-866-2802 NASales@sophos.com Sophos on Google+ UK and Worldwide linkedin.com/company/sophos + 44 1235 55 9933 Sales@sophos.com twitter.com/Sophos_News nakedsecurity.sophos.com 24