Tech·Ed North America /2/2018 9:50 AM

Slides:



Advertisements
Similar presentations
Faith Allington Program Manager Microsoft Corporation WSV322.
Advertisements

1. 2 Branch Office Network Performance Caches content downloaded from file and Web servers Users in the branch can quickly open files stored in the cache.
Agenda Customer pain points and how data classification can help Ecosystem Windows Server 2008 R2 for file Classification Infrastructure Demos Customer.
Faith Allington Program Manager Microsoft Corporation Session Code: WSV304.
Sudhir Rao Technology Specialist | Microsoft Corporation.
Tech·Ed North America /19/2017 7:21 AM
Walter Pitrof Technology Solution Professional Microsoft Switzerland Backup, Restore und Disaster Recovery mit Data Protection Manager 2012 Philipp Witschi.
John Savill Solutions Architect EMC Session Code: WSV403.
Feature: Suggested Item Enhancements – Sales Script and Additional Information © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows.
Mohamed Osman Senior Consultant GijimaAst WSV312.
Patrick Ortiz Global SQL Solution Architect Dell Inc. BIN209.
What’s New with IIS 8: Open Web Platform for Cloud
In-Depth with Windows Server for the Small and Medium Business
Deployment Internals: Mastering Windows Deployment Services
2010 Microsoft BI Conference
Microsoft Virtual Academy
Julie Strauss Senior Program Manager Microsoft
9/11/2018 5:53 PM © 2009 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered.
Excel Services Deployment and Administration
Inside Panther Troubleshooting the Windows Setup Engine
Overview of Social Computing in Microsoft SharePoint 2010
iSCSI Software Target for Application Storage and Boot
Windows PowerShell Remoting: Definitely NOT Just for Servers
Microsoft Virtual Academy
Setting up team development infrastructure for SharePoint 2013
Microsoft Virtual Academy
Jason Zander Unplugged
Branching and Merging Practices
Twenty Windows Tools You Never Knew Existed
TechEd /28/ :51 PM © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered.
11/29/2018 1:22 AM © 2009 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered.
Manage Your Enterprise from a Single Seat: Windows PowerShell Remoting
Tech·Ed North America /5/2018 6:43 PM
Windows 7 Deployment en Masse
Tech·Ed North America /7/2018 9:06 AM
Microsoft Virtual Academy
Ben Robb MVP, SharePoint Server cScape Ltd Session Code: OFS207
Team Foundation Server 2010 for Everyone
12/9/2018 Desktop Virtualization Corey Hynes Kyle Rosenthal President Technical Lead HynesITe Inc Spider Consulting @windowspcguy.
Authoring for Microsoft Silverlight 4 with Microsoft Expression Blend
Tech·Ed North America /2/2019 4:47 PM
Tech·Ed North America /17/2019 1:47 AM
Windows Server 2008 Iain McDonald Director of Program Management
Microsoft SharePoint Conference 2009 Jon Flanders
2/16/2019 8:43 AM © 2009 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered.
Top OS Deployment Issues With Answers from Experts
Building Silverlight Apps with RIA Services
MDC-B203 Deploying Applications in Microsoft System Center Virtual Machine Manager Using Services John Messec Program Manager Microsoft.
2/27/2019 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
TechEd /28/2019 3:22 PM © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks.
Microsoft Virtual Academy
Tech Ed North America /5/2019 5:26 AM Required Slide
Tech Ed North America /12/2019 6:45 AM Required Slide
A Lap Around Internet Explorer 9 For Developers
(c) 2011 Microsoft. All rights reserved.
Service Template Creation from the Ground Up
Tech Ed North America /27/ :04 AM Required Slide
Service Template Creation from the Ground Up
Lap Around the Windows Azure Platform
Building BI applications using PowerPivot for Excel
5/24/ :22 AM © 2009 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered.
Day 2, Session 2 Connecting System Center to the Public Cloud
Deploying and Managing Windows To Go
Microsoft Virtual Academy
Microsoft Virtual Academy
Making Windows Azure Relevant to IT Professionals
Microsoft Virtual Academy
Microsoft Virtual Academy
Microsoft Virtual Academy
Microsoft Virtual Academy
Presentation transcript:

Tech·Ed North America 2009 7/2/2018 9:50 AM © 2009 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Enhancing the Branch Office Experience with Windows Server 2008 R2 Tech·Ed  North America 2009 7/2/2018 9:50 AM Enhancing the Branch Office Experience with Windows Server 2008 R2 John Savill Solutions Architect EMC Session Code: WSV403 © 2009 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Who am I? Technical Evangelist for EMC Consulting Ten Time Microsoft MVP Author of the Windows FAQ Written numerous books Latest book available “Complete Guide to Windows Server 2008” Speaker at Tech Ed 2006-2009

Agenda Challenges with a branch office 7/2/2018 9:50 AM Agenda Challenges with a branch office Overview of security solutions used with Windows 2008 Virtualization in branch offices Enhancing User Experience and Productivity Branch Access Read-only Distributed File System Replicas © 2007 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Branch Office Challenge Focus for Windows 2008 Offices often require local servers for both performance and resiliency to unavailable links A local domain controller is one of the common services provided which contains a complete copy of the entire organizations domain Remote offices rarely have dedicated server infrastructure areas that are secured nor local support personnel to manage the systems Remote office hardware is susceptible to compromise A way is needed to protect the data on branch office servers, lower maintenance overhead and counteract risk

Protected Branch Office Server BitLocker Server Core RODC

2008 R2 Improvements for Security Server Core had limitations in Windows Server 2008 We had no virtualization “in-box” for Windows 2008 that was RTM BitLocker only worked for internal fixed drives Management had limitations So where are we now?

Server Core Enhancements Subset of .NET 2.0, 3.0 and 3.5 Framework now available Enables more role services such as ASP.Net with IIS Enables PowerShell scripting Active Directory Certificate Services and File Server Resource Manager available WoW64 optionally installable for 32bit application support

Management Changes Remotable Server Manager Enhancements in PowerShell (2.0) which combined with WS-Mgmt gives us fan-out capability Best Practice wizards New version of the Remote Server Administration Tools will be available for Windows 7 to manager 2008 R2

BitLocker to Go Allows USB storage devices to be protected with BitLocker Policy can be used to control complexity and length of passphrase required to unlock drive Possible to configure USB device to auto unlock on specific servers through passphrase caching however this is risky if server is compromised

Server Core and Manageability 7/2/2018 9:50 AM demo Server Core and Manageability © 2007 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Hyper-V 2008 R2 Hyper-V is now included in-box Includes a number of new capabilities including: Support for 32 logical processors Hot add/remove of VHD and pass-through disks on SCSI controller (not IDE) Second Level Address Translation (SLAT) Live Migration and Cluster Shared Volumes Dynamic memory did not make this release

Boot from VHD Can now boot a Windows 7 or Windows 2008 R2 OS from a VHD file Best performance use static VHD file however dynamic VHD supported Few extra steps during the OS install process to create and mount the VHD file to allow installation Shift-F10 to open command window Create, Select and Attach vdisk Partition

Virtualization in the Branch Office Server hardware is often limited in branch offices Multiple roles are run under a single OS instance which is generally not optimal With virtualization we can run the various roles in separate virtualized OS instances We still use BitLocker on the host OS to protect the drives containing the VHD files Can now also protect USB storage devices

2008 R2 Branch Office Server Server Core BitLocker RODC

Improving the End User Experience All of the previous focus was around securing the branch office What about the actual users and their ability to work Most branch locations have slow, high latency links Users consume different types of data Data is typically stored in hub locations for easier management and central backup

Branch Cache Most branches have poor or high latency connections Users download same information from hub locations multiple times Branch cache works in a peer-to-peer or hosted server model to cache information over HTTP (including SharePoint) and SMB Branch computers can then retrieve information from a peer or the hosted server Works using a hash value for each file so data has to be stored on a 2008 R2 server

Branch Cache in Action Peer to peer Hash Cache ?

Branch Cache in Action Hosted cache Hash Cache ?

Branch Cache Requirements For peer to peer (distributed caching) clients must be in the same subnet Hosted cache does not require same subnet 1 Hosted cache per branch Windows 7 and Windows 2008 R2 Only Both solutions require connectivity to the original server If you want resiliency against connectivity failure you should look at DFSR instead

So What Exactly is Cached and When? Any file that has a hash is cached on the client When cache is full the least recently accessed item is removed to make room Only files over 64KB cached Designed for slow changing files Hashing is configured on a per-share level on the server For web content a script is used to create hashes for files and not done automatically Does not care about transport (supports IPSEC, HTTPS etc)

Branch Cache Storage Cache files are stored in chunks under the Network Service profile The cached chunks are not encrypted but protected by ACLs Only the Network Service has access

Monitoring and Controlling How Branch Cache is Used Performance Counters Group Policy and commands to enable distributed cache and to point to hosted cache Group Policy control cache % use of drive Entire cache can be cleared on client through netsh commands

demo Branch Cache in Action 7/2/2018 9:50 AM © 2007 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Distributed File System Replication Branch Cache requires the network for users to obtain file hash values If access to information is required without network connectivity Branch Cache does not work Distributed File System Replication is a good solution using delta based replication Available as part of 2003 R2 and above DFSR only replicates closed files In a multi-writer situation last writer wins (no check-in/check-out, this is SharePoint functionality)

Traditional DFSR Documents Documents Legal Legal Presentations DFSR Replica DFSR Replica Sales Sales Documents Legal Presentations DFSR Replica Documents Legal Presentations DFSR Replica Sales Sales

Read-Only DFSR Replica Documents Legal Presentations Documents Legal Presentations DFSR Replica R-DFSR Replica Sales Sales Documents Legal Presentations R-DFSR Replica Documents Legal Presentations R-DFSR Replica ACCESS DENIED Sales PHEW! Sales

Making a Read-Only Replica Must have 2008 RTM schema extensions Only one check box different During wizard to create replication group on a non-authoritative server check the read-only box This is per folder on the server Can switch between being read-write and read-only with a click

Read-Only DFSR Usage Must have Windows 2008 R2 at the branch only Other replication partners can be Windows 2008 or Windows 2008 R2 R/O Replica can only replicate from a R/W Replica, R/O Replica cannot replicate from another R/O Replica Must use 2008 R2 DFS Management MMC snap-in End-user experience is to simply have read-only access. Acts like read-only media User will get File Access Denied if they try and write If users need to write then they would need to access a writable replica directly via SMB UNC path

Branch Cache vs. Read-Only DFSR So both technologies deal with publication type data For personal data you should be looking at folder re-direction with client side caching For collaboration type data we should be looking at SharePoint If you need data accessed without network connection you need Read-only DFSR If want to save bandwidth but not provide link resiliency Branch Cache is good solution Use Hosted cache over distributed cache if have server at branch Branch Cache requires Windows 7 clients

Summary Windows 2008 was great for securing branch office locations Windows 2008 R2 builds on this secure foundation and adds a great branch office user experience through various technologies Some of the major feature wins require Windows 7

question & answer

Windows Server Resources Make sure you pick up your copy of Windows Server 2008 R2 RC from the Materials Distribution Counter Learn More about Windows Server 2008 R2: www.microsoft.com/WindowsServer2008R2 Technical Learning Center (Orange Section): Highlighting Windows Server 2008 and R2 technologies Over 15 booths and experts from Microsoft and our partners

Resources www.microsoft.com/teched www.microsoft.com/learning Sessions On-Demand & Community www.microsoft.com/learning Microsoft Certification & Training Resources http://microsoft.com/technet Resources for IT Professionals http://microsoft.com/msdn Resources for Developers www.microsoft.com/learning Microsoft Certification and Training Resources

Complete an evaluation on CommNet and enter to win!

7/2/2018 9:50 AM © 2009 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION. © 2007 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.