You are on page 1of 31

Bring your own device We Secure It.

Okan Kalak
Consulting Systems Engineer
01.04.2011

2010 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

! Whats going on? ! What are the bad guys doing? ! Cisco AnyConnect Secure Mobility ! Demo

2010 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

2010 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

The World as We Knew It


Managed Devices

The World Today

Un-Managed Devices
Un-Managed Devices

2010 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

Cybercriminals shift in focus toward mobile users and away from the PC environment is being spurred partly by a significant tipping point in vulnerabilities.

2010 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

68 mins 19 mins 52 mins

36 mins

18 mins

13 mins

10 mins

2010 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

2010 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

2010 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

2010 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

2010 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

10

2010 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

11

Gilbert

You

Gilbert Tony Gilbert Tony Gilbert Tony Gilbert Gilbert Tony Gilbert

Hey hey gil what's up? Not too good. I'm in some kind of deep mess right now oh? I'm stranded in London. I was mugged at gun point last night, all cash on me and my bank card was all stolen dude that's horrible? i have a plane back home in about 3 hours time but i need some money for the hotel bills Can you please loan me some $$ for now i will def have the money refund when i get back home..???????? uh... i'm not to sure how to do that. what's the easiest method? You can have the money sent to me via westernunion money transfer

2010 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

12

2010 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

13

13

! In her mid 20s ! Degree from MIT ! Analyzed cyberthreats for the U.S. Department of the Navy

2010 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

14

Connections with about 300 people in:


U.S Military Government Agencies Security Companies Government Contractors Offered several jobs in security firms including Lockeed Martin

Thomas Ryan removed the profiles after one month


2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 15

The old adage,If it sounds too good to be true, it probably is, should be put into play when it comes to responding to social networking connection requests.

2010 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

16

2010 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

17

Acceptable Use Control Access Control Threat Protection

Spam

Policy

Malware Infections Data-Loss Prevention Intrusions

2010 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

18

18

Limited
Predominantly PC-based Client Support

Manual
Numerous clicks Non-persistent Connection

No Security or Visibility

Security

Rarely-On
Intranet Corporate File Sharing
2010 Cisco and/or its affiliates. All rights reserved.

Only connected if / when absolutely necessary

Cisco Confidential

19

19

Limited Clients
Predominantly PC-based Client Support

Data Loss Prevention Threat Prevention

Acceptable Use Access Control

Limited Security
URL-filtering client unable to address key use cases

Access

No Access

No Access
Intranet Corporate File Sharing
2010 Cisco and/or its affiliates. All rights reserved.

Not integrated, requires separate VPN client

Cisco Confidential

20

20

Web Security with Next Generation Remote Access


Choice
Diverse Endpoint Support for Greater Flexibility

! !

Data Loss Prevention Threat Prevention

Acceptable Use Access Control

! !

Security
Rich, Granular Security Integrated Into the network

Access Granted
Intranet Corporate File Sharing
2010 Cisco and/or its affiliates. All rights reserved.

Experience
Always-on Intelligent Connection for Seamless Experience and Performance
Cisco Confidential

21

21

AnyConnect
Secure Mobility Client

Web Security Appliance


Richer Web Controls

"! Simplified remote access "! Connection and app persistence "! Always-on VPN enforcement

"! Location-aware policy "! Application controls "! SaaS Access Control

Solution 3 Combined End-to-End Seamless Security


Information Sharing Between Cisco ASA and Cisco WSA

News

Email

AnyConnect

ASA

Cisco Web Security Appliance

Corporate AD Social Networking


2010 Cisco and/or its affiliates. All rights reserved.

Enterprise SaaS
Cisco Confidential

22

22

! More Intelligence Optimal Gateway Detection Trusted Network Detection ! More Security Always-On VPN administrative control Quarantine capability ! Better User Experience Hotspot/Captive Portal detection Local print access

2010 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

23

! Windows, Mac and Linux ! Apple iOS 4.1+

iPhone 3G/3GS/4, iPod touch 2nd and 3rd generation and iPad v1 and v2 support
! Windows Mobile 6.x

Touch screen devices


! Secure remote access

to enterprise applications from Apple iOS 4 and Windows Mobile 6.x


! Support planned for additional

enterprise mobility platforms

2010 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

24

New User Interface


! New User Interface for
Windows 7 and Vista (x86 and x64) Windows XP (x86) Windows 2003 Server (x86)
Network Access Manager

! Enhanced UI for other

platforms to follow

Windows 7-style Tray Flyout Provides 95% Functionality


2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 25

!Statistics, Configuration, and Diagnostic Options


2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

26

26

Customized Background

! Logo, background image, application icon, title, system tray icons


2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

27

27

Airport
Software as a Service

Coffee Shop Mobile User

Infrastructure as a Service

Home Office

Platform as a Service

ScanSafe SaaS Web Security


"! 15 data centers "! Billions of Web requests per day "! 100% availability
2010 Cisco and/or its affiliates. All rights reserved.

AnyWhere+ Roaming Support


"! Access ScanSafe services from outside of corporate infrastructure "! Works with VPN "! Location-aware for best performance
Cisco Confidential

28

28

Web Security with ScanSafe - Highlights


! Keeps malware from getting

to your system in the first place Policy

! Enforces Acceptable Use ! Protects users even when

VPN is disconnected
! Tunnels HTTP/HTTPS traffic

through ScanSafe cloud


! Replacement for AnyWhere+

standalone client

2010 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

29

2010 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

30

Thank you.

2010 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

31

You might also like