Windows Server 2016 Secure IaaS Microsoft Build /1/2018 4:00 AM

Slides:



Advertisements
Similar presentations
System Center 2012 R2 Overview
Advertisements

Security Issues and Challenges in Cloud Computing
Presented by Sujit Tilak. Evolution of Client/Server Architecture Clients & Server on different computer systems Local Area Network for Server and Client.
Security Vulnerabilities in A Virtual Environment
Simplest and most cost effective for SMBs Optimized & supported for specific hardware One-stop shop for hardware, OS, and CALs Lets partner focus on higher-margin.
Clouding with Microsoft Azure
Microsoft Virtual Academy
1/26/2018 Hosting Windows Desktops and Applications Using Remote Desktop Services and Azure Windows Server Azure Resource Manager © 2014 Microsoft.
Run Azure Services in your datacenter
IT Operations Management
Hybrid Management and Security
Chapter 6: Securing the Cloud
Volume Licensing Readiness: Level 100
SQL Server 2016 How can Hoster Partners make money with SQL 2016?
Volume Licensing Readiness: Level 200
Volume Licensing Readiness: Level 200
Volume Licensing Readiness: Level 100
5/31/2018 3:40 PM BRK3113 How Microsoft IT builds Privileged Access Workstation using Windows 10 and Windows Server 2016 Jian (Jane) Yan Sr. Program Manager.
Hybrid Management and Security
Journey to Microsoft Secure Cloud
Windows Server* 2016 & Intel® Technologies
Introducing Windows Server 2016
Microsoft Azure: The only consistent Hybrid Cloud
Ransomware & Security for Virtualization
Microsoft Virtual Academy
Windows Server 2016 Platform for Modern Apps Microsoft Build 2016
Enable the Hybrid Data Platform
Shielded VM and Guarded Fabric
A10 Networks vThunder Leverages the Powerful Microsoft Azure Cloud Platform to Offer Advanced Layer 4-7 Networking, Security on a Global Scale MICROSOFT.
ModernBiz Windows Server 2012 R2 Grow your business by helping customers modernize theirs Millions of customers, high-margin opportunities With millions.
A Fast Track into Device Guard
IT Operations Management
Azure Hybrid Use Benefit Overview
Datacenter Transformation
Volume Licensing Readiness: Level 100
How to prepare for the End of License of Windows Server 2012/R2
Volume Licensing Readiness: Level 200
Veeam Backup Repository
Device Guard: AppLocker on steroids
Software Defined Datacenter
The Microsoft 365 Powered Device
Capitalize on modern technology
11/8/2018 5:04 PM © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN.
Microsoft Azure P wer Lunch
Microsoft Azure P wer Lunch
11/17/2018 9:32 PM © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN.
Why? (or … am I really in the right track?)
Windows Server 2016 Overview Microsoft Build /18/2018 7:44 PM
Microsoft Ignite NZ October 2016 SKYCITY, Auckland.
Data Security for Microsoft Azure
Unitrends Enterprise Backup Solution Offers Backup and Recovery of Data in the Microsoft Azure Cloud for Better Protection of Virtual and Physical Systems.
Crypteron is a Developer-Friendly Data Breach Solution that Allows Organizations to Secure Applications on Microsoft Azure in Just Minutes MICROSOFT AZURE.
Modern Windows 10 device 12/2/2018 E3 E3 P E3 P P P P E3 E3 P P P P P
Microsoft Virtual Academy
Microsoft Virtual Academy
12/26/2018 5:07 AM Leap forward with fast, agile & trusted solutions from Intel & Microsoft* Eman Yarlagadda (for Christine McMonigal) Hybrid Cloud – Product.
Microsoft Virtual Academy
Windows 10 Enterprise subscriptions in CSP – Messaging Summary
Enabling the hybrid cloud with remote access appliances
MDC-B203 Deploying Applications in Microsoft System Center Virtual Machine Manager Using Services John Messec Program Manager Microsoft.
Upgrading Your Private Cloud with Windows Server 2012 R2
Windows Server 2012 Cloud optimize your IT
Move your data to the cloud with Azure and {Partner Company Name}
Windows Server 2016 Guest Offering September 19, 2016
Windows Azure Hybrid Architectures and Patterns
Day 2, Session 2 Connecting System Center to the Public Cloud
SCCM in hybrid world Predrag Jelesijević Microsoft 7/6/ :17 AM
Microsoft Virtual Academy
Microsoft Virtual Academy
Productive + Hybrid + Intelligent + Trusted
Presentation transcript:

Windows Server 2016 Secure IaaS Microsoft Build 2016 6/1/2018 4:00 AM How to make money using Secure IaaS. © 2016 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Hosting Challenges Security Cost Efficient Infrastructure PRISM FY16 6/1/2018 4:00 AM Hosting Challenges Security Cost Efficient Infrastructure Next Generation Application Platform Increasing breaches incidents Identity is target of attacks Not easy to secure virtual environments Looking for cost savings Need to reduce datacenter footprint Lack of integration between solutions Integration with Dev and Ops Fast and lightweight OS How to plan for public cloud In modern hosting environments, providing a safer, inexpensive and agile platform for your customers is more important than ever to be competitive in today’s marketplace consisting of both public and private cloud solutions. © 2014 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Presenting Windows Server 2016 PRISM FY16 6/1/2018 4:00 AM Presenting Windows Server 2016 Advanced Multi-Layer Security Azure Inspired, Software Defined Infrastructure Next Generation Application Platform Privileged identity protection Secure virtualization platform Breach resistance Built-in compute, storage and network virtualization Hyper-Converged Hyper-Scale Traditional & cloud-native apps Containers & microservices Azure Hybrid Use Benefit Windows Server 2016 provides you with the tools necessary to provide services and solutions to your clients while lowering your operational costs, increasing the security posture of your hosting environment, and ensuring that your client’s data stays within their purview. The operating system that powers Azure and Your Business © 2014 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Hosting Opportunities Using Windows Server 2016 Platform for Modern Apps Secure IaaS Cost Efficient Reliable Storage Software Defined Datacenter. Provide higher density and performance for container-based apps and microservices. Compatible with existing server applications. Prevent and block attacks against virtual machines, applications, and data with layers of protection built into the OS. Use industry-standard hardware to build lower- cost, high density, highly available and scalable storage. Achieve cost-savings and flexibility with software-defined compute, storage and network virtualization technologies inspired by Microsoft Azure. Talk to each of the four Offerings described above and how they can help create new revenue streams with value add services and solutions. Establishes new revenue streams with value added services every step of the way

Secure IaaS (Virtual Machines) Microsoft Build 2016 6/1/2018 4:00 AM Secure IaaS (Virtual Machines) Shielded VM Use BitLocker to encrypt the disk and state of virtual machines protecting secrets from compromised admins & malware Host Guardian Service Attests to host health releasing the keys required to boot or migrate a Shielded VM only to healthy hosts Generation 2 VM Supports virtualized equivalents of hardware security technologies (e.g. TPMs) enabling BitLocker encryption for Shielded VMs BUILDING PERIMETER COMPUTER ROOM HYPER-V Virtual machine HYPER-V Shielded virtual machine Physical machine Server Administrator ü ü *Configuration dependent û * torage administrator S û ü û Secure IaaS ensures that Hosters have just enough access (JEA) to administer and manage the environment their client’s applications and data is stored on. Network administrator û ü û Backup operator û ü û Virtualization-host administrator û ü û Virtual machine administrator û ü ü © 2016 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Shielded Virtual Machines Works with Host Guardian Service Cloud/Datacenter Hyper-V Host 1 Host OS Guest VM Guest VM Guest VM Hypervisor Please sir, may I have some keys? Hyper-V Host 2 Host OS Guest VM Guest VM Fabric Controller Powering up a VM works – with WS2016 and SVM, host requests key from Host Guardian service, and releases key. Hypervisor Hyper-V Host 3 Host OS Guest VM Guest VM Key Protection Hypervisor Host Guardian Service

Shielded Virtual Machines Works with Host Guardian Service Cloud/Datacenter Key release criteria (TPM-mode) Known physical machines Trusted Hyper-V instance CI-compliant configuration Hyper-V Host 1 Host OS Guest VM Guest VM Guest VM Hypervisor Sure, I know you and you look healthy Hyper-V Host 2 Host OS Guest VM Guest VM Fabric Controller Hypervisor Hyper-V Host 3 Host OS Guest VM Guest VM Key Protection Hypervisor Host Guardian Service

Challenges in protecting the OS Microsoft Build 2016 6/1/2018 4:00 AM Challenges in protecting the OS New exploits can attack the OS boot-path all the way up through applications. Known and unknown threats need to be blocked without impacting legitimate workloads. ? Once a hacker gets in, we discussed how they can “lay in wait” for days or weeks, looking for an opportunity to get at the really valuable data.  This is usually tied to your strategic applications or databases.  This means we need many layers of protection, from the OS boot-path, all the way to the application. Example threat: Ransomware on university servers locks users away from critical student and research data—until a ransom is paid to the attacker. © 2016 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Help protect the OS and applications On-premises or in any cloud Microsoft Build 2016 6/1/2018 4:00 AM Help protect the OS and applications On-premises or in any cloud Device Guard Ensure that only permitted binaries can be executed from the moment the OS is booted. Windows Defender Actively protects from known malware without impacting workloads. Control Flow Guard Protects against unknown vulnerabilities by helping prevent memory corruption attacks. Additional security features can be enabled as needed to help you: Prevent malware and ransomware from being injected into servers. Quickly identify behavior that indicates a server breach. How Windows Server 2016 helps: Ensure only permitted binaries are executed with Code Integrity. If someone tries to infect your OS with a new application (malware, etc.) they cannot run when the OS is protected by Code Integrity. Windows Defender is the same antimalware feature you get in Windows 10 …it  also protects against known vulnerabilities without impacting server roles (such as Web Servers). Protect against unknown vulnerabilities (these are attacks that are not identified yet in our antimalware database) with Control Flow Guard. If application is acting strange or suspiciously, we can block it until we check it out. These features work no matter where you deploy it! Your datacenter, on Azure/AWS/Google or a VMware environment. © 2016 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Setup a call with a Technology Solutions Professional or Architect.