@@ -809,28 +809,31 @@ The use case describes a systems that provides centralized governance of the ICT
ICT device management is in general subject to enterprises or larger organization that equip their employees with the essential ICT elements they work with.
The users usually do not have full administration rights and are restricted to the application level to manage personal look and feel.
It can be characterized as follows:
* Delivery of preconfigured ICT elements to the users
* Software delivery to the ICT elements and its update management
* Trust establishment between communicating entities and the NMS
* The NMS controls and sets the ICT element configuration settings to manage:
* The connectivity of the managed ICT elements among each other
* From user group management with dedicated access control management
* ICT element VPN and remote connectivity
* Control software installation, reporting and individual ICT element permissions
* Backup and recovery controls
* Device status tracking and compliance control to enterprise guidelines and safeguards
* Remote control of device application features if present
Due to the broad functionality of the ICT Elements, the controls need also to be strongly extended, compared with the IoT use case, to ensure the centralized governance by the enterprise for the related application is maintained.
That can be characterized as follows:
* Provision of preconfigured ICT elements or enterprise applications to the employees
* Centralized ICT element or enterprise application update management
* Trust establishment between the ICT elements, or the enterprise application, other communicating entities and the NMS, by the NMS
* The NMS controls and sets the ICT element and the enterprise application configuration settings to manage:
* The connectivity of the managed ICT elements and the enterprise application among each other
* The formation of user groups with their management in relation with dedicated access control management
* The ICT element‘s or enterprise application’s VPN and remote connectivity
* Control software installation, reporting and individual permission on the ICT element respectively enterprise application
* Backup and recovery controls for either the ICT element or the enterprise application
* ICT Element respectively enterprise application status tracking and compliance control to enterprise guidelines and safeguards
* Remote control of the ICT element or the enterprise application features if present
ICT Element management is in general subject to enterprises or larger organizations that equip their employees with the essential ICT elements that they can conduct their work.
The users do not have full administration rights on the enterprise application and are usually restricted to manage personal look and feel.
The employees have only those administration rights the central administration granted before and which the NMS configures accordingly to the enterprise rules.
With that the ICT elements are integral part of the business logic and enterprise processes running in the background.
Restrictions in the central governance are only present with relation to GDPR and locally applicable employee protection regulations.
In all known cases, the ICT element functionality, connectivity and its execution of centrally controlled software are subject of the central administration.
The NMS supports the central administration in their governance.
In that context, the NMS can also be used to control the working times, location and connections of the employees operate.
The NMS operating the configuration of the managed ICT elements, usually ensures also the enforcement of enterprise guidelines, restricts user actions, and prevents unallowed connections to protect the enterprise from data disclosure by blocking interfaces and setting restrictions for applications.
Restrictions in the central governance are only present with relation to GDPR and locally applicable employee protection regulations for the enterprise owned parts.
In all known cases, for the enterprise owned parts, connectivity and its execution of centrally controlled software are subject of the central administration.
The NMS supports the central administration in their governance. In that context, the NMS can also be used to control the working times, location and connections of the employee‘s operations.
The NMS operating the configuration of the enterprise owned parts usually ensures also the enforcement of enterprise guidelines, restricts user actions, and prevents unallowed connections to protect the enterprise from data disclosure by blocking interfaces and setting restrictions for applications.
The mobile device management must not be mismatched with the management functions that are subject of the radio network management functionality that ensures connectivity and performance with the RAN.
These requirements are handled with the EN 304 642 network functions [xx].