<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://blogs.technet.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>MobileMike @ Microsoft</title><link>http://blogs.technet.com/mjimenez/default.aspx</link><description>Ask MobileMike a Microsoft mobility question!</description><dc:language>en-US</dc:language><generator>CommunityServer 2.1 SP1 (Build: 61025.2)</generator><item><title>Porting the Amplitude Application from the iPhone to a Windows Mobile Device – a Case Study </title><link>http://blogs.technet.com/mjimenez/archive/2009/08/17/porting-the-amplitude-application-from-the-iphone-to-a-windows-mobile-device-a-case-study.aspx</link><pubDate>Mon, 17 Aug 2009 22:54:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3274312</guid><dc:creator>mjimenez</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/mjimenez/comments/3274312.aspx</comments><wfw:commentRss>http://blogs.technet.com/mjimenez/commentrss.aspx?PostID=3274312</wfw:commentRss><description>&lt;P mce_keep="true"&gt;This case study documents the efforts and experiences of an iPhone application developer in porting the iPhone application Amplitude to a phone running Windows Mobile 6.5.&amp;nbsp; Definitely worth the read!&lt;/P&gt;
&lt;P&gt;&lt;A href="http://msdn.microsoft.com/en-us/library/ee355030.aspx" mce_href="http://msdn.microsoft.com/en-us/library/ee355030.aspx"&gt;http://msdn.microsoft.com/en-us/library/ee355030.aspx&lt;/A&gt;&lt;/P&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3274312" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/mjimenez/archive/tags/Windows+Mobile/default.aspx">Windows Mobile</category></item><item><title>Update Rollup 9 for Exchange Server 2007 Service Pack 1 </title><link>http://blogs.technet.com/mjimenez/archive/2009/07/19/update-rollup-9-for-exchange-server-2007-service-pack-1.aspx</link><pubDate>Sun, 19 Jul 2009 14:44:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3266145</guid><dc:creator>mjimenez</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/mjimenez/comments/3266145.aspx</comments><wfw:commentRss>http://blogs.technet.com/mjimenez/commentrss.aspx?PostID=3266145</wfw:commentRss><description>The Exchange folks have released Update Rollup 9 for Exchange Server 2007 SP1 which includes fixes for Exchange Active Sync.&amp;nbsp; More info here &lt;A href="http://msexchangeteam.com/archive/2009/07/17/451835.aspx"&gt;http://msexchangeteam.com/archive/2009/07/17/451835.aspx&lt;/A&gt;&amp;nbsp;and &lt;A href="http://support.microsoft.com/kb/970162"&gt;&lt;STRONG&gt;KB 970162&lt;/STRONG&gt;&lt;/A&gt;&lt;FONT size=2&gt; has specific details about this release&amp;nbsp;as well as&amp;nbsp;a complete list of all fixes included in this rollup.&lt;/FONT&gt; &lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3266145" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/mjimenez/archive/tags/Exchange+2007/default.aspx">Exchange 2007</category></item><item><title>SCMDM Roadmap</title><link>http://blogs.technet.com/mjimenez/archive/2009/06/25/scmdm-roadmap.aspx</link><pubDate>Thu, 25 Jun 2009 18:00:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3258637</guid><dc:creator>mjimenez</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/mjimenez/comments/3258637.aspx</comments><wfw:commentRss>http://blogs.technet.com/mjimenez/commentrss.aspx?PostID=3258637</wfw:commentRss><description>At both MMS and Tech Ed US 2009, the Configuration Manager team revealed some important news regarding the future of device management. Here are a few of the key messages that were shared: •The next major release of Configuration Manager will have the major MDM functionality for device management including SW Dist, Inventory, Settings Management, reporting, etc; •Both desktops and mobile devices can be managed by a "single pane of glass"; •Device Management will not require the use of a VPN server; •Corporate network access can be obtained by "then current" solutions supported by the mobile devic client and server infrastructure; •Mobile device management will embrace the same "user centric" model as recently announced (more here); •Product roadmaps for both Configuration Manager 2007 (DM) and Mobile Device Manager both converge on this next version of Config Manager. While there are surely more details that everyone would like to hear, this should be great news for those wanting to hear a confirmation that Microsoft is committed to continuing and improving mobile device management. &lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3258637" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/mjimenez/archive/tags/System+Center+Mobile+Device+Manager+2008/default.aspx">System Center Mobile Device Manager 2008</category></item><item><title>Introducing Bing &amp; Bing for Mobile</title><link>http://blogs.technet.com/mjimenez/archive/2009/06/02/introducing-bing-bing-for-mobile.aspx</link><pubDate>Tue, 02 Jun 2009 06:48:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3249182</guid><dc:creator>mjimenez</dc:creator><slash:comments>1</slash:comments><comments>http://blogs.technet.com/mjimenez/comments/3249182.aspx</comments><wfw:commentRss>http://blogs.technet.com/mjimenez/commentrss.aspx?PostID=3249182</wfw:commentRss><description>&lt;P&gt;In case you've been living under a rock, we have released a new search engine called &lt;STRONG&gt;&lt;A title=Bing href="http://www.bing.com/" target=_blank mce_href="http://www.bing.com"&gt;Bing&lt;/A&gt;&lt;/STRONG&gt;.&amp;nbsp; Bing is a search engine that finds and organizes the answers you need so you can make faster, more informed decisions.&amp;nbsp; Bing is very cool and not only will find the info that you are looking for but Bing will also do things such as provide video previews from other videos sites, show relevant search results, to name a few.&amp;nbsp; &lt;/P&gt;
&lt;P&gt;This post would not be complete if we didn't mention &lt;STRONG&gt;&lt;A title="Bing for mobile" href="http://www.discoverbing.com/mobile/" target=_blank mce_href="http://www.discoverbing.com/mobile/"&gt;Bing&amp;nbsp;for mobile&lt;/A&gt;&lt;/STRONG&gt;.&amp;nbsp; With Bing for Mobile you can:&lt;/P&gt;
&lt;LI&gt;Quickly find great local shops and restaurants, complete with ratings, reviews, hours, and directions.&lt;/LI&gt;
&lt;LI&gt;See movie show times and call to buy your ticket.&lt;/LI&gt;
&lt;LI&gt;Get the latest local weather forecasts.&lt;/LI&gt;
&lt;LI&gt;Shopping? Do a product search to see if you’re getting a fair price.&lt;/LI&gt;
&lt;LI&gt;Get interactive maps with turn-by-turn driving directions.&lt;/LI&gt;
&lt;LI&gt;Help save time with maps that show current traffic conditions.&lt;/LI&gt;
&lt;LI&gt;On foot? Get point-to-point walking directions.&lt;SUP&gt;&lt;A href="http://blogs.technet.com/controlpanel/blogs/posteditor.aspx?SelectedNavItem=NewPost&amp;amp;sectionid=5825&amp;amp;bpt=1#foot-2"&gt;&lt;/A&gt;&lt;/SUP&gt;&lt;/LI&gt;
&lt;LI&gt;Get quick, relevant answers to your questions about local listings, celebrities, and weather.&lt;/LI&gt;
&lt;LI&gt;Create a mobile dashboard with stocks, traffic, weather, and movies.&lt;/LI&gt;
&lt;P&gt;Remember to ask your friends and family if they "Bing" yet :)&lt;/P&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3249182" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/mjimenez/archive/tags/Windows+Mobile/default.aspx">Windows Mobile</category></item><item><title>Checking SCMDM/Windows Mobile Policies with GPMC</title><link>http://blogs.technet.com/mjimenez/archive/2009/05/29/checking-scmdm-windows-mobile-policies-with-gpmc.aspx</link><pubDate>Fri, 29 May 2009 17:04:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3247564</guid><dc:creator>mjimenez</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/mjimenez/comments/3247564.aspx</comments><wfw:commentRss>http://blogs.technet.com/mjimenez/commentrss.aspx?PostID=3247564</wfw:commentRss><description>&lt;P class=MsoNormal&gt;&lt;SPAN style="FONT-SIZE: 10pt"&gt;Question from a customer: We want to verify if all the policies are applied to a device. &lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt"&gt;Is there any way to check policy-application state of each device with SCMDM?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal&gt;&lt;SPAN style="FONT-SIZE: 10pt"&gt;Answer: Yes, you can run the Resultant Set of Policy (RSOP) from within the Group Policy Managment Console.&amp;nbsp; &lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal&gt;&lt;SPAN style="FONT-SIZE: 10pt"&gt;&lt;BR&gt;&lt;STRONG&gt;Creating a Group Policy Report for a Device&lt;/STRONG&gt; &lt;/SPAN&gt;&lt;/P&gt;
&lt;DIV class=title&gt;&lt;SPAN style="FONT-SIZE: 10pt"&gt;&lt;A href="http://technet.microsoft.com/en-us/library/dd261937.aspx" mce_href="http://technet.microsoft.com/en-us/library/dd261937.aspx"&gt;http://technet.microsoft.com/en-us/library/dd261937.aspx&lt;/A&gt;&lt;/SPAN&gt;&lt;/DIV&gt;
&lt;P class=MsoNormal&gt;&lt;SPAN style="FONT-SIZE: 10pt"&gt;&amp;nbsp;:)&lt;/SPAN&gt;&lt;/P&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3247564" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/mjimenez/archive/tags/Windows+Mobile/default.aspx">Windows Mobile</category><category domain="http://blogs.technet.com/mjimenez/archive/tags/System+Center+Mobile+Device+Manager+2008/default.aspx">System Center Mobile Device Manager 2008</category></item><item><title>SCMDM SP1 Support for Virtualization</title><link>http://blogs.technet.com/mjimenez/archive/2009/05/27/scmdm-sp1-support-for-virtualization.aspx</link><pubDate>Wed, 27 May 2009 18:11:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3246235</guid><dc:creator>mjimenez</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/mjimenez/comments/3246235.aspx</comments><wfw:commentRss>http://blogs.technet.com/mjimenez/commentrss.aspx?PostID=3246235</wfw:commentRss><description>&lt;P mce_keep="true"&gt;As you may know, with the Service Pack 1 release of SCMDM we introduced support for virtualization of our server roles.&amp;nbsp; This allows you to run the Windows Server 2003 x64 guest OS in a Hyper-V environment.&amp;nbsp; We wanted to clarify that this applies to the virtualization of the Device Management and Enrollment Server SCMDM roles, but does not apply to the Gateway Server role.&lt;/P&gt;
&lt;P class=MsoNormal&gt;The architecture of the Gateway server requires two network cards, one for the internet and one for the internal network, which the SCMDM VPN monitors traffic on.&amp;nbsp; We recommend that this should not be implemented on a virtual machine due to the complications that this introduces.&amp;nbsp; Therefore the supported setup is to use a physical server with 2 network interfaces for your SCMDM Gateway Servers.&amp;nbsp; For more information about the Gateway Server role and its requirements, please see &lt;A href="https://dawghouse.exchange.microsoft.com/OWA/redir.aspx?C=1bdc93a2cb9a4433975f16c70137b20a&amp;amp;URL=http%3a%2f%2ftechnet.microsoft.com%2fen-us%2flibrary%2fdd252779.aspx" target=_blank mce_href="https://dawghouse.exchange.microsoft.com/OWA/redir.aspx?C=1bdc93a2cb9a4433975f16c70137b20a&amp;amp;URL=http%3a%2f%2ftechnet.microsoft.com%2fen-us%2flibrary%2fdd252779.aspx"&gt;&lt;FONT color=#0000ff&gt;http://technet.microsoft.com/en-us/library/dd252779.aspx&lt;/FONT&gt;&lt;/A&gt;.&lt;/P&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3246235" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/mjimenez/archive/tags/System+Center+Mobile+Device+Manager+2008/default.aspx">System Center Mobile Device Manager 2008</category></item><item><title>System Center Mobile Device Manager support for Windows Server 2008 Certificate Authority</title><link>http://blogs.technet.com/mjimenez/archive/2009/05/20/system-center-mobile-device-manager-support-for-windows-server-2008-certificate-authority.aspx</link><pubDate>Thu, 21 May 2009 00:39:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3243873</guid><dc:creator>mjimenez</dc:creator><slash:comments>1</slash:comments><comments>http://blogs.technet.com/mjimenez/comments/3243873.aspx</comments><wfw:commentRss>http://blogs.technet.com/mjimenez/commentrss.aspx?PostID=3243873</wfw:commentRss><description>&lt;P&gt;&lt;SPAN style="mso-ansi-language: EN-GB" lang=EN-GB&gt;&lt;FONT size=3&gt;&lt;FONT face=Calibri&gt;We are happy to &lt;U&gt;announce&lt;/U&gt; that we now support System Center Mobile Device Manager 2008 SP1 with use with a Windows Server 2008 Enterprise Edition Certificate Authority.&amp;nbsp; We’ll be documenting this on TechNet in the near future, but we wanted to let you all know that this is now fully tested and supported.&lt;?xml:namespace prefix = o ns = "urn:schemas-microsoft-com:office:office" /&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 0pt" class=MsoNormal&gt;&lt;SPAN style="mso-ansi-language: EN-GB" lang=EN-GB&gt;&lt;o:p&gt;&lt;FONT size=3 face=Calibri&gt;&lt;/FONT&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 0pt" class=MsoNormal&gt;&lt;SPAN style="mso-ansi-language: EN-GB" lang=EN-GB&gt;&lt;FONT size=3 face=Calibri&gt;For this to work on the device side, we require Windows Mobile build 6.1.4 or later.&amp;nbsp; For earlier Windows Mobile 6.1 builds, you can install update KB951840 from &lt;/FONT&gt;&lt;A href="http://support.microsoft.com/kb/951840/" mce_href="http://support.microsoft.com/kb/951840/"&gt;&lt;FONT color=#0000ff size=3 face=Calibri&gt;http://support.microsoft.com/kb/951840/&lt;/FONT&gt;&lt;/A&gt;&lt;FONT size=3&gt;&lt;FONT face=Calibri&gt;.&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 0pt" class=MsoNormal&gt;&lt;SPAN style="mso-ansi-language: EN-GB" lang=EN-GB&gt;&lt;o:p&gt;&lt;FONT size=3 face=Calibri&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 0pt" class=MsoNormal&gt;&lt;SPAN style="mso-ansi-language: EN-GB" lang=EN-GB&gt;&lt;FONT size=3 face=Calibri&gt;So now you can deploy SCMDM with Server 2008 issuing CA in a Server 2008 functional level domain.&amp;nbsp; For the complete list of system requirements for SCMDM please see &lt;/FONT&gt;&lt;A href="http://technet.microsoft.com/en-gb/library/dd261866.aspx" mce_href="http://technet.microsoft.com/en-gb/library/dd261866.aspx"&gt;&lt;FONT color=#0000ff size=3 face=Calibri&gt;http://technet.microsoft.com/en-gb/library/dd261866.aspx&lt;/FONT&gt;&lt;/A&gt;&lt;FONT size=3&gt;&lt;FONT face=Calibri&gt;.&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P mce_keep="true"&gt;&amp;nbsp;&lt;/P&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3243873" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/mjimenez/archive/tags/System+Center+Mobile+Device+Manager+2008/default.aspx">System Center Mobile Device Manager 2008</category></item><item><title>Upcoming Microsoft Management Summit 2009 SCMDM Presentations</title><link>http://blogs.technet.com/mjimenez/archive/2009/04/21/microsoft-management-summit-2009-scmdm-presentations.aspx</link><pubDate>Tue, 21 Apr 2009 19:43:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3228756</guid><dc:creator>mjimenez</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/mjimenez/comments/3228756.aspx</comments><wfw:commentRss>http://blogs.technet.com/mjimenez/commentrss.aspx?PostID=3228756</wfw:commentRss><description>&lt;P&gt;&lt;A href="http://www.mms-2009.com/default.aspx" mce_href="http://www.mms-2009.com/default.aspx"&gt;http://www.mms-2009.com/default.aspx&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="FONT-SIZE: 10pt"&gt;The Microsoft Management Summit (MMS) is the premier event of the year for IT Professionals seeking deep technical information and training on the latest IT Management solutions from Microsoft, Partners and Industry Experts.&lt;/SPAN&gt;&lt;/P&gt;&lt;SPAN style="FONT-SIZE: 10pt"&gt;
&lt;P style="MARGIN: 0in 0in 0pt" class=MsoNormal&gt;&lt;B&gt;&lt;FONT size=3&gt;&lt;FONT face=Calibri&gt;MMS 2009&lt;?xml:namespace prefix = o ns = "urn:schemas-microsoft-com:office:office" /&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 0pt" class=MsoNormal&gt;&lt;FONT size=3 face=Calibri&gt;Dates:&amp;nbsp; &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Monday, April 27 – Friday, May 1&lt;/FONT&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 0pt" class=MsoNormal&gt;&lt;FONT size=3 face=Calibri&gt;Location: &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;The Venetian Resort – Las Vegas, NV&lt;/FONT&gt;&lt;/P&gt;
&lt;P style="TEXT-INDENT: -1in; MARGIN: 0in 0in 0pt 1in" class=MsoNormal&gt;&lt;FONT size=3 face=Calibri&gt;Agenda:&amp;nbsp; &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;The current agenda is available on the MMS website at&lt;/FONT&gt;&lt;/P&gt;
&lt;P style="TEXT-INDENT: -1in; MARGIN: 0in 0in 0pt 1in" class=MsoNormal&gt;&lt;FONT size=3 face=Calibri&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/FONT&gt;&lt;A href="http://www.mms-2009.com/public/agendast.aspx" mce_href="http://www.mms-2009.com/public/agendast.aspx"&gt;&lt;FONT size=3 face=Calibri&gt;http://www.mms-2009.com/public/agendast.aspx&lt;/FONT&gt;&lt;/A&gt;&lt;BR&gt;&lt;/P&gt;&lt;/SPAN&gt;
&lt;P&gt;&lt;SPAN style="FONT-SIZE: 10pt"&gt;This year I will be presenting/co-presenting three SCMDM related sessions, come and check them out:&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="FONT-SIZE: 10pt"&gt;&lt;STRONG&gt;The Road to Successful System Center Deployments: Lessons from Microsoft Consulting Services, &lt;/STRONG&gt;4/27/2009 1:30PM-2:45PM, Bellini 2105&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="FONT-SIZE: 10pt"&gt;&lt;STRONG&gt;Microsoft System Center Mobile Device Manager 2008 SP1: Overview,&lt;/STRONG&gt;&amp;nbsp; 4/29/2009 10:15AM-11:30AM , San Polo 3401A &lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="FONT-SIZE: 10pt"&gt;&lt;STRONG&gt;System Center Mobile Device Manager Best Practices &amp;amp; Deployment Lessons Learned, &lt;/STRONG&gt;4/30/2009 11:45AM-1:00PM, San Polo 3401A&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;/SPAN&gt;
&lt;P style="TEXT-INDENT: -1in; MARGIN: 0in 0in 0pt 1in" class=MsoNormal&gt;&lt;A href="http://www.mms-2009.com/public/agendast.aspx" mce_href="http://www.mms-2009.com/public/agendast.aspx"&gt;&lt;FONT size=3 face=Calibri&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;/P&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3228756" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/mjimenez/archive/tags/Windows+Mobile/default.aspx">Windows Mobile</category><category domain="http://blogs.technet.com/mjimenez/archive/tags/System+Center+Mobile+Device+Manager+2008/default.aspx">System Center Mobile Device Manager 2008</category></item><item><title>Using a Special MDM Gateway to Assist IT Security Teams with MDM Device Quarantine</title><link>http://blogs.technet.com/mjimenez/archive/2008/10/06/using-a-special-mdm-gateway-to-help-with-device-quarantine-scenarios.aspx</link><pubDate>Mon, 06 Oct 2008 22:01:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3133011</guid><dc:creator>mjimenez</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/mjimenez/comments/3133011.aspx</comments><wfw:commentRss>http://blogs.technet.com/mjimenez/commentrss.aspx?PostID=3133011</wfw:commentRss><description>&lt;P&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'"&gt;In MDM,&amp;nbsp;Windows Mobile&amp;nbsp;6.1 &amp;nbsp;devices&amp;nbsp;must enroll to a Windows 2003 Active Directory domain to become managed by IT. In the "How MDM Works" technical documentation located at &lt;A href="http://technet.microsoft.com/en-us/library/cc135573.aspx"&gt;http://technet.microsoft.com/en-us/library/cc135573.aspx&lt;/A&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'"&gt;&amp;nbsp;our documentation on MDM&amp;nbsp;describes how the MDM device enrollment process works.&amp;nbsp; I've pasted the steps here to provide a context for this article.&amp;nbsp; At a high level, the steps for enrollment of&amp;nbsp; Windows Mobile 6.1 devices to MDM &lt;SPAN style="COLOR: #1f497d"&gt;are &lt;/SPAN&gt;as follows:&lt;/SPAN&gt;&lt;/P&gt;
&lt;DIV&gt;
&lt;OL type=1&gt;
&lt;LI class=MsoNormal&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'"&gt;The administrator uses a wizard to create a new device enrollment request. &lt;/SPAN&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;/DIV&gt;
&lt;DIV&gt;
&lt;OL type=1 start=2&gt;
&lt;LI class=MsoNormal&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'"&gt;This process generates a one-time enrollment password that the administrator shares with the user of the device in a secure manner. &lt;/SPAN&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;/DIV&gt;
&lt;DIV&gt;
&lt;OL type=1 start=3&gt;
&lt;LI class=MsoNormal&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'"&gt;The user starts an enrollment wizard on the device and provides the e-mail address that the wizard will use to connect to MDM Enrollment Server. If the enrollment process cannot discover the address for MDM Enrollment Server, it prompts the user for the URL. &lt;/SPAN&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;/DIV&gt;
&lt;DIV&gt;
&lt;OL type=1 start=4&gt;
&lt;LI class=MsoNormal&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'"&gt;The enrollment wizard on the Windows Mobile powered device contacts MDM Enrollment Server and requests the Enterprise Trust Root Certificate. &lt;/SPAN&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;/DIV&gt;
&lt;DIV&gt;
&lt;OL type=1 start=5&gt;
&lt;LI class=MsoNormal&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'"&gt;The enrollment wizard authenticates the server response by verifying that the returned data was derived from the one-time enrollment password and the Enterprise Trust Root Certificate.&lt;/SPAN&gt; &lt;/LI&gt;&lt;/OL&gt;&lt;/DIV&gt;
&lt;DIV&gt;
&lt;OL type=1 start=6&gt;
&lt;LI class=MsoNormal&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'"&gt;The enrollment wizard generates a certificate request and sends it to MDM Enrollment Server together with a hash that is generated from the one-time enrollment password and the certificate request.&lt;/SPAN&gt; &lt;/LI&gt;&lt;/OL&gt;&lt;/DIV&gt;
&lt;P class=MsoNormal style="MARGIN-LEFT: 0.5in"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'"&gt;MDM Enrollment Server creates an Active Directory Domain Service computer account for the device, and the device certificate is issued based on the certificate request received from the device. MDM Enrollment Server also links the computer account to the Active Directory account for that user.&lt;/SPAN&gt; &lt;/P&gt;
&lt;DIV&gt;
&lt;OL type=1 start=7&gt;
&lt;LI class=MsoNormal&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'"&gt;The machine certificate is returned to the device, completing the process. &lt;/SPAN&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;/DIV&gt;
&lt;DIV&gt;
&lt;OL type=1 start=8&gt;
&lt;LI class=MsoNormal&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'"&gt;The device disconnects from MDM Enrollment Server and prompts the user to reset the device.&lt;/SPAN&gt; &lt;/LI&gt;&lt;/OL&gt;&lt;/DIV&gt;
&lt;DIV&gt;
&lt;P class=MsoNormal&gt;&lt;BR&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'"&gt;In lieu of this, some customers have asked the following question:&lt;/SPAN&gt;&lt;/P&gt;&lt;/DIV&gt;
&lt;DIV&gt;
&lt;P class=MsoNormal&gt;&lt;EM&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'"&gt;Assuming we don't have a load balanced MDM Device Management server configuration or our main datacenter goes down, if we have MDM gateways deployed in other datacenters will the MDM enrollment still work or complete successfully?&lt;/SPAN&gt;&lt;/EM&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'"&gt;&amp;nbsp; &lt;/SPAN&gt;&lt;/P&gt;&lt;/DIV&gt;
&lt;DIV&gt;
&lt;P class=MsoNormal&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'"&gt;The answer to this question is that the MDM Device Management server does not need to be up and running at all times for devices to enroll to MDM.&amp;nbsp; It is important to note that if the MDM Device Management Server(s) is down or unreachable after the device has completed its enrollment sequence and has restarted as described above, there may be a window of time in which specified corporate mobile policies may not yet be applied to the device but the mobile user will still be connected to the MDM VPN Gateway Server.&amp;nbsp; In this scenario, the mobile user could access corporate resources but not yet have the required mobile policies applied such as PIN lock, require a password, etc.&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/P&gt;&lt;/DIV&gt;
&lt;DIV&gt;
&lt;P class=MsoNormal&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'"&gt;Breaking this down even further: After the first device reboot when enrollment completes, the mobile device tries it's first MDM Device Management server (OMA) session at 3 minutes, and if failed for whatever reason, the next session DM will start at minutes 15 and keep retrying 192 times (cover 48 hours) or until success.&amp;nbsp; &lt;/SPAN&gt;&lt;/P&gt;&lt;/DIV&gt;
&lt;DIV&gt;
&lt;P class=MsoNormal&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'"&gt;An expected response from customers is:&amp;nbsp;&lt;EM&gt;&lt;SPAN style="FONT-FAMILY: 'Arial','sans-serif'"&gt;How can we ensure that corporate policies are enforced BEFORE users can connect to our internal corporate assets?&lt;/SPAN&gt;&lt;/EM&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/DIV&gt;
&lt;DIV&gt;
&lt;P class=MsoNormal&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'"&gt;One way to mitigate this would be to have a centralized enrollment model where all corporate devices would be enrolled internally by IT first then sent to users once policies have been applied and confirmed.&amp;nbsp; If companies wish to permit over the air (OTA) enrollment for user, this may not be a desirable solution.&lt;/SPAN&gt;&lt;/P&gt;&lt;/DIV&gt;
&lt;DIV&gt;
&lt;P class=MsoNormal&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'"&gt;Another option is to a create an interim device quarantine solution by which a "special" MDM gateway server is deployed with a specific device address pool, and restrict that device address pool traffic to only route to the MDM Device Management server from the MDM device address pool.&amp;nbsp; A mobile policy that specifies the fully qualified domain name of the "full service" gateways (device address pools that have full routing capabilities to internal corporate resources) would be pushed to the mobile device which would change the GatewayURI value that is assigned to enrolling mobile devices by default with the MDM Set-EnrollmentConfig Powershell cmdlet that is specified during MDM setup.&amp;nbsp; &lt;/SPAN&gt;&lt;/P&gt;&lt;/DIV&gt;
&lt;DIV&gt;
&lt;P class=MsoNormal&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'"&gt;&lt;STRONG&gt;Note: This solution is NOT required for every MDM deployment but can work if IT security teams&amp;nbsp;desire this addtional functionality.&lt;/STRONG&gt;&amp;nbsp; :)&lt;/SPAN&gt;&lt;/P&gt;&lt;/DIV&gt;
&lt;DIV&gt;
&lt;P class=MsoNormal mce_keep="true"&gt;&amp;nbsp;&lt;/P&gt;&lt;/DIV&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3133011" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/mjimenez/archive/tags/System+Center+Mobile+Device+Manager+2008/default.aspx">System Center Mobile Device Manager 2008</category></item><item><title>System Center Mobile Device Manager 2008 Service Pack 1 Features</title><link>http://blogs.technet.com/mjimenez/archive/2008/09/08/system-center-mobile-device-manager-2008-service-pack-1-features.aspx</link><pubDate>Mon, 08 Sep 2008 22:41:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3121137</guid><dc:creator>mjimenez</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/mjimenez/comments/3121137.aspx</comments><wfw:commentRss>http://blogs.technet.com/mjimenez/commentrss.aspx?PostID=3121137</wfw:commentRss><description>&lt;P&gt;The Mobile Information Worker Product team within Microsoft have posted information detailing the new features of SCMDM SP1 on their blog.&amp;nbsp; At a high level the new features are as follows:&lt;/P&gt;
&lt;P&gt;– &lt;STRONG&gt;Multiple-instance&lt;/STRONG&gt;: allows large organizations with distributed IT control points to independently manage devices within the area of their control. This applies to instances within a single forest. Today when SCMDM is deployed at a company, that deployment will manage all devices in an organization; there is no ability to have multiple SCMDM installation.&amp;nbsp; With SP1, if your company has offices or divisions that have their own IT departments, these offices will be able to install an instance of MDM that does allows devices to managed separately from other offices in the company.&amp;nbsp; &lt;/P&gt;
&lt;P&gt;&lt;FONT face=Arial size=2&gt;– &lt;B&gt;PIN reset&lt;/B&gt;. This feature is the same as what is currently available with Exchange 2007.&amp;nbsp; It will allow device PIN reset either by the SCMDM administrator for a specific device or self-service via the MDM Self-Service portal. This feature requires an update to the client as well.&amp;nbsp; Consequently, client support for this feature will be made available as a downloadable CAB file for WM 6.1 phones.&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT face=Arial size=2&gt;– &lt;B&gt;Windows Server 2008 support&lt;/B&gt;.&amp;nbsp; Support for Windows Server 2008 including Domain functional mode, Forest functional mode. If you are running AD with functional levels raised to WinServer 2008, MDM SP1 will support that architecture. In addition, Hyper-V (virtualization) will be supported for using hosted Windows Server 2003 for testing purposes. &lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT face=Arial size=2&gt;– &lt;STRONG&gt;Performance and scalability enhancement&lt;/STRONG&gt;. The release criteria for SP1 is to increase system coverage to 40,000 users in a single instance versus the 30,000 user single instance limitation in MDM 2008. If you require large scale, but want to keep your deployment within a single instance without acquiring additional hardware, this will be very helpful.&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;To read more&amp;nbsp;visit &lt;A href="http://blogs.technet.com/scmdm/archive/2008/09/02/what-s-coming-in-scmdm-sp1.aspx"&gt;http://blogs.technet.com/scmdm/archive/2008/09/02/what-s-coming-in-scmdm-sp1.aspx&lt;/A&gt;&lt;/P&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3121137" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/mjimenez/archive/tags/Windows+Mobile/default.aspx">Windows Mobile</category><category domain="http://blogs.technet.com/mjimenez/archive/tags/System+Center+Mobile+Device+Manager+2008/default.aspx">System Center Mobile Device Manager 2008</category></item><item><title>System Center Mobile Device Manager 2008 On Technet Edge</title><link>http://blogs.technet.com/mjimenez/archive/2008/02/06/system-center-mobile-device-manager-2008-on-technet-edge.aspx</link><pubDate>Wed, 06 Feb 2008 22:59:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:2839887</guid><dc:creator>mjimenez</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/mjimenez/comments/2839887.aspx</comments><wfw:commentRss>http://blogs.technet.com/mjimenez/commentrss.aspx?PostID=2839887</wfw:commentRss><description>The Technet Edge&amp;nbsp;team have posted a video of me discussing our upcoming mobile device management product called "System Center Mobile Device Manager 2008".&amp;nbsp; You can check it out here &lt;A href="http://edge.technet.com/Media/Intro-to-System-Center-Mobile-Device-Manager-scmdm-2008/"&gt;http://edge.technet.com/Media/Intro-to-System-Center-Mobile-Device-Manager-scmdm-2008/&lt;/A&gt;.&amp;nbsp;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=2839887" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/mjimenez/archive/tags/System+Center+Mobile+Device+Manager+2008/default.aspx">System Center Mobile Device Manager 2008</category></item><item><title>How Do I Programmatically Disable/Enable Microsoft Exchange Active Sync For All Of My Mobile Users?</title><link>http://blogs.technet.com/mjimenez/archive/2007/07/30/how-do-i-programmatically-disable-enable-microsoft-exchange-active-sync-for-all-of-my-mobile-users.aspx</link><pubDate>Mon, 30 Jul 2007 22:23:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:1654395</guid><dc:creator>mjimenez</dc:creator><slash:comments>1</slash:comments><comments>http://blogs.technet.com/mjimenez/comments/1654395.aspx</comments><wfw:commentRss>http://blogs.technet.com/mjimenez/commentrss.aspx?PostID=1654395</wfw:commentRss><description>&lt;P&gt;While working with a customer recently, I&amp;nbsp;created a VBScript that leverages ADO to programmatically disable/enable Microsoft Exchange Active Sync for ALL users in Active Directory.&amp;nbsp; The key to this script is the msExchOmaAdminWirelessEnable attribute.&amp;nbsp; If you know VBScript, the code below is very easy to use.&amp;nbsp; You will need to copy and paste this code into your favorite text editor and save as a .VBS file.&amp;nbsp; Also, this script needs to run on a domain controller and you will need the appropriate privledges to run it.&amp;nbsp; As always,&lt;STRONG&gt; &lt;/STRONG&gt;you should &lt;STRONG&gt;never run this script in a production enviornment without proper testing in a lab first.&lt;/STRONG&gt;&amp;nbsp; I've only tested this on Exchagne 2003, BTW.&amp;nbsp; Disclaimer:&amp;nbsp;This sample script is not supported under any Microsoft standard support program or service. The sample scripts are provided AS IS without warranty of any kind. Microsoft further disclaims all implied warranties including, without limitation, any implied warranties of merchantability or of fitness for a particular purpose. The entire risk arising out of the use or performance of the sample scripts and documentation remains with you. In no event shall Microsoft, its authors, or anyone else involved in the creation, production, or delivery of the scripts be liable for any damages whatsoever (including, without limitation, damages for loss of business profits, business interruption, loss of business information, or other pecuniary loss) arising out of the use of or inability to use the sample scripts or documentation, even if Microsoft has been advised of the possibility of such damages.&lt;/P&gt;
&lt;P&gt;Start of the script:&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;BR&gt;'''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''&lt;BR&gt;''&lt;BR&gt;'' DISABLEEAS.VBS&lt;BR&gt;''&lt;BR&gt;'' Disables Exchange Server 2003 Active Sync for the specified OU in the default domain&lt;BR&gt;''&lt;BR&gt;'' usage: cscript disableeas&lt;BR&gt;''&lt;BR&gt;'''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''&lt;/P&gt;
&lt;P&gt;' Below are the values for the msExchOmaAdminWirelessEnable Exchange attribute that can be modified.&lt;BR&gt;' 5 = disable EAS and keep OMA enabled.(default)&lt;BR&gt;' 7 = disable all mobile features.&lt;BR&gt;' 0 = enable all mobile features. (not recommended)&lt;/P&gt;
&lt;P&gt;&lt;BR&gt;'''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''&lt;BR&gt;'' Create log file instance&lt;BR&gt;'''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''&lt;/P&gt;
&lt;P&gt;On Error Resume Next&lt;BR&gt;Set objFSO = CreateObject("Scripting.FileSystemObject")&lt;BR&gt;Set objLogFile = objFSO.OpenTextFile("c:\disableeas.log", 2, True, 0)&lt;BR&gt;If Err.Number &amp;lt;&amp;gt; 0 Then &lt;BR&gt;&amp;nbsp; ' Attempt to create a log file failed.&amp;nbsp; &lt;BR&gt;&amp;nbsp; On Error GoTo 0 &lt;BR&gt;&amp;nbsp; objLogFile.WriteLine "ERROR: Failed to create a log file.Program execution halted."&lt;BR&gt;&amp;nbsp; WScript.Echo "ERROR: Failed to create a log file. Program execution halted."&lt;BR&gt;&amp;nbsp; WScript.Quit&lt;BR&gt;&amp;nbsp; objLogFile.Close&lt;BR&gt;&amp;nbsp; Set objFSO = Nothing&lt;BR&gt;Else &lt;BR&gt;&amp;nbsp; ' Successfully Created Disableeas.log file. Restore normal error handling. &lt;BR&gt;&amp;nbsp; On Error GoTo 0 &lt;BR&gt;&amp;nbsp; objLogFile.WriteLine "disableeas.log created successfully" &lt;BR&gt;End If &lt;/P&gt;
&lt;P&gt;&lt;BR&gt;'''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''&lt;BR&gt;'' Determine DNS domain name &lt;BR&gt;'''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''&lt;/P&gt;
&lt;P&gt;Set objRootDSE = GetObject("&lt;A href="ldap://rootDSE/" mce_href="ldap://rootDSE/"&gt;LDAP://rootDSE&lt;/A&gt;")&lt;BR&gt;strDNSDomain = objRootDSE.Get("defaultNamingContext")&lt;BR&gt;strBaseOU = "" 'SPECIFY AND ORGANIZATIONAL UNIT NAME HERE. FOR EXAMPLE 'OU=Production&lt;BR&gt;If Err.Number &amp;lt;&amp;gt; 0 Then&lt;BR&gt;&amp;nbsp; ' Attempt to bind to Active Directory Failed.&lt;BR&gt;&amp;nbsp; On Error GoTo 0&lt;BR&gt;&amp;nbsp; objLogFile.WriteLine "ERROR: Binding to Active Directory Failed. Program execution halted."&lt;BR&gt;&amp;nbsp; WScript.Echo "ERROR: Binding to Active Directory Failed. Program execution halted."&lt;BR&gt;&amp;nbsp; WScript.Quit&lt;BR&gt;&amp;nbsp; objLogFile.Close&lt;BR&gt;&amp;nbsp; Set objFSO = Nothing&lt;BR&gt;Else&lt;BR&gt;&amp;nbsp; ' Active Directory bind successful&lt;BR&gt;&amp;nbsp; On Error GoTo 0&lt;BR&gt;&amp;nbsp; objLogFile.WriteLine "Binding to Active Directory successful"&lt;BR&gt;End If&amp;nbsp; &lt;/P&gt;
&lt;P&gt;&lt;BR&gt;'''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''&lt;BR&gt;'' Setup ADO for Active Directory&lt;BR&gt;'''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''&lt;/P&gt;
&lt;P&gt;Set objCommand = CreateObject("ADODB.Command")&lt;BR&gt;Set objConnection = CreateObject("ADODB.Connection")&lt;BR&gt;objConnection.Provider = "ADsDSOObject" &lt;BR&gt;objConnection.Open "Active Directory Provider" &lt;BR&gt;objCommand.ActiveConnection = objConnection &lt;BR&gt;If Err.Number &amp;lt;&amp;gt; 0 Then&lt;BR&gt;&amp;nbsp; ' Attempt to search Active Directory Failed.&lt;BR&gt;&amp;nbsp; On Error GoTo 0&lt;BR&gt;&amp;nbsp; objLogFile.WriteLine "ERROR: ADO Setup for Active Directory Failed. Program execution halted."&lt;BR&gt;&amp;nbsp; WScript.Echo "ERROR: ADO Setup for Active Directory Failed. Program execution halted."&lt;BR&gt;&amp;nbsp; WScript.Quit&lt;BR&gt;&amp;nbsp; objLogFile.Close&lt;BR&gt;&amp;nbsp; Set objFSO = Nothing&lt;BR&gt;Else&lt;BR&gt;&amp;nbsp; ' ADO Active Directory setup successful&lt;BR&gt;&amp;nbsp; On Error GoTo 0&lt;BR&gt;&amp;nbsp; objLogFile.WriteLine "Active Directory setup successful"&lt;BR&gt;End If&amp;nbsp; &lt;/P&gt;
&lt;P&gt;' Test whether an OU is specified.&lt;BR&gt;If strBaseOU &amp;lt;&amp;gt; "" Then&lt;BR&gt;&amp;nbsp;strBase="&amp;lt;LDAP://" &amp;amp; strBaseOU &amp;amp; "," &amp;amp; strDNSDomain &amp;amp; "&amp;gt;"&lt;BR&gt;Else strBase="&amp;lt;LDAP://" &amp;amp; strDNSDomain &amp;amp; "&amp;gt;"&lt;BR&gt;End If&lt;BR&gt;'strBase="&amp;lt;LDAP://" &amp;amp; strDNSDomain &amp;amp; "&amp;gt;"&lt;BR&gt;wscript.echo strBase&lt;/P&gt;
&lt;P&gt;&lt;BR&gt;'''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''&lt;BR&gt;'' Search for users with defined filters&lt;BR&gt;'''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''&lt;/P&gt;
&lt;P&gt;strFilter = "(&amp;amp;(objectCategory=person)(objectClass=user)(!msExchOmaAdminWirelessEnable=5)(mail=*)(userAccountControl=66048))"&lt;BR&gt;strAttributes = "distinguishedName"&lt;BR&gt;strQuery = strBase &amp;amp; ";" &amp;amp; strFilter &amp;amp; ";" &amp;amp; strAttributes &amp;amp; ";subtree" &lt;BR&gt;objCommand.CommandText = strQuery&lt;BR&gt;objCommand.Properties("Page Size") = 100&lt;BR&gt;objCommand.Properties("Timeout") = 30 &lt;BR&gt;objCommand.Properties("Cache Results") = False&lt;BR&gt;Set objRecordSet = objCommand.Execute&lt;BR&gt;If Err.Number &amp;lt;&amp;gt; 0 Then&lt;BR&gt;&amp;nbsp; ' Attempt to search within defined parameters failed.&lt;BR&gt;&amp;nbsp; On Error GoTo 0&lt;BR&gt;&amp;nbsp; objLogFile.WriteLine "Attempt to search within defined parameters failed. Program execution halted."&lt;BR&gt;&amp;nbsp; WScript.Echo "ERROR: Attempt to search within defined parameters failed. Program execution halted."&lt;BR&gt;&amp;nbsp; WScript.Quit&lt;BR&gt;&amp;nbsp; objLogFile.Close&lt;BR&gt;&amp;nbsp; Set objFSO = Nothing&lt;BR&gt;Else&lt;BR&gt;&amp;nbsp; ' Active Directory bind successful&lt;BR&gt;&amp;nbsp; On Error GoTo 0&lt;BR&gt;&amp;nbsp; objLogFile.WriteLine "Search within defined parameters was successful"&lt;BR&gt;End If&amp;nbsp; &lt;/P&gt;
&lt;P&gt;&lt;BR&gt;'''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''&lt;BR&gt;'' Enuerate all users&lt;BR&gt;'''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''&lt;/P&gt;
&lt;P&gt;Do Until objRecordSet.EOF &lt;BR&gt;&amp;nbsp; strDN = objRecordSet.Fields("distinguishedName")&lt;BR&gt;&amp;nbsp; Set objUser = GetObject("LDAP://" &amp;amp; strDN)&lt;BR&gt;&amp;nbsp;&amp;nbsp; On Error Resume Next &lt;BR&gt;&amp;nbsp;&amp;nbsp; objUser.Get("msExchOmaAdminWirelessEnable")&lt;BR&gt;&amp;nbsp;&amp;nbsp; On Error GoTo 0&lt;BR&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; objUser.Put "msExchOmaAdminWirelessEnable", "5"&lt;BR&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; objUser.SetInfo &lt;BR&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; If Err.Number &amp;lt;&amp;gt; 0 Then&lt;BR&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; On Error GoTo 0&lt;BR&gt;&amp;nbsp;objLogFile.Writeline "ERROR: Unfortunately, the required mobile attribute generated an error can could not be set. Program execution halted."&lt;BR&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; WScript.Echo "ERROR: Unfortunately, the required mobile attribute generated an error can could not be set. Program execution halted."&lt;BR&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Wscript.Quit&lt;BR&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; objLogFile.Close&lt;BR&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Set objFSO = Nothing &lt;BR&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Else&lt;BR&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; On Error GoTo 0&lt;BR&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; objLogFile.Writeline "User mobile properties successfully modified: " &amp;amp; objUser.Name&lt;BR&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;Wscript.Echo "User mobile properties successfully modified: " &amp;amp; objUser.Name&lt;BR&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; End If&lt;BR&gt;&amp;nbsp;'&amp;nbsp; End If&lt;BR&gt;&amp;nbsp; objRecordSet.MoveNext &lt;BR&gt;Loop&lt;/P&gt;
&lt;P&gt;'''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''&lt;BR&gt;'' Clean up&lt;BR&gt;'''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''&lt;/P&gt;
&lt;P&gt;objLogFile.WriteLine "End Program"&lt;BR&gt;Wscript.Echo "End Program"&lt;/P&gt;
&lt;P&gt;objLogFile.Close&lt;/P&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=1654395" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/mjimenez/archive/tags/Exchange+2003/default.aspx">Exchange 2003</category></item><item><title>Office Communications Server 2007 and Office Communicator RTM Today</title><link>http://blogs.technet.com/mjimenez/archive/2007/07/28/office-communications-server-2007-and-office-communicator-rtm-today.aspx</link><pubDate>Sat, 28 Jul 2007 04:51:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:1632369</guid><dc:creator>mjimenez</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/mjimenez/comments/1632369.aspx</comments><wfw:commentRss>http://blogs.technet.com/mjimenez/commentrss.aspx?PostID=1632369</wfw:commentRss><description>Office Communications Server 2007 and Office Communicator have officially released to manufacturing (RTM) today.&amp;nbsp; This is&amp;nbsp;a big milestone and a big part of Microsoft's unified communications strategy because OCS 2007 improves on the great feature set already provided in LCS 2005.&amp;nbsp; As with the previous versions, Office Communicator 2007 will be available in desktop, browser-based and Windows Mobile&lt;SUP&gt;®&lt;/SUP&gt;-based versions.&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=1632369" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/mjimenez/archive/tags/Office+Communications+Server+2007+Office+Communicator/default.aspx">Office Communications Server 2007 Office Communicator</category></item></channel></rss>