11/11/2008

System Center Mobile Device Manager (MDM) extensions to the Group Policy Management Console (GPMC) and Group Policy object (GPO) Editor enable network administrators to control managed Windows Mobile devices in a familiar environment and in a manner consistent with how they manage their networked desktop and portable computers. These extensions support existing GPMC functionality such as scripting, backup of GPOs, planning mode, and logging mode.

Note:
These extensions are not supported for the Resultant Set of Policies (RSoP) snap-in.

Device Settings

From the GPMC, you can create GPOs that contain the configuration settings that you want to push to the managed devices. Then, you apply the GPO to the Active Directory ® Domain Services object that represents the managed device that you want to target. The settings are then sent to the device the next time that it connects to MDM Device Management Server .

To configure groups of devices, link the GPO to an Organization Unit (OU) that contains Active Directory objects for the managed devices that you want to target. Or, you can use familiar tools such as Security Groups and Windows Management Instrumentation (WMI) filters to apply a GPO to a group of managed devices that meet group membership or WMI Filter query criteria.

MDM Administrative Templates hold most device-related settings. You use the GPO Editor User Interface to access this information.

Network and Certificate Management Settings

The GPO Editor provides the settings for more complex tasks such as configuring new network connections, editing or deleting existing network connections, and managing certificate stores on a managed device.