Rick Claus IT Pro Advisor Microsoft Canada Rodney Buike IT Pro Advisor Microsoft Canada

Slides:



Advertisements
Similar presentations
Rick Claus IT Pro Advisor Microsoft Canada Rodney Buike IT Pro Advisor Microsoft Canada
Advertisements

Rick Claus IT Pro Advisor Microsoft Canada Rodney Buike IT Pro Advisor Microsoft Canada
Active Directory: Beyond The Basics
CN2140 Server II (V2) Kemtis Kunanuraksapong MSIS with Distinction MCT, MCITP, MCTS, MCDST, MCP, A+
Windows Server ® 2008 File Services Infrastructure Planning and Design Published: June 2010 Updated: November 2011.
Rodney Buike IT Pro Advisor, Microsoft Canada
Implementing and Administering AD DS Sites and Replication
MCSE Guide to Microsoft Exchange Server 2003 Administration Chapter 14 Upgrading to Exchange Server 2003.
Module 10: Troubleshooting Active Directory, DNS, and Replication Issues.
Implementing Domain Name System
Module 5: Creating and Configuring Group Policy
Optimizing the User Experience Throughout the Infrastructure Consolidation Process Dan Smith, Enterprise Solutions Manager, GTSI Chris Theon, Practice.
Windows Server ® 2008 Active Directory ® Domain Services Infrastructure Planning and Design Series Published: February 2008 Updated: July 2009.
Managing Windows Server 2003 Best Practices Daniel van Soest IT Pro Technology Advisor Microsoft BV
70-294: MCSE Guide to Microsoft Windows Server 2003 Active Directory, Enhanced Chapter 1: Introduction to Active Directory.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment Chapter 1: Introduction to Windows Server 2003.
Grow strong branches with TradeWeb and the Microsoft ® Branch Office Solution.
Introduction to Dfs. Limits of Dfs 260 characters per file path 32 alternatives per volume 1 Dfs root per server Unlimited Dfs roots per domain Volumes.
Course 6425A Module 2: Configuring Domain Name Service for Active Directory® Domain Services Presentation: 50 minutes Lab: 45 minutes This module helps.
Implementing High Availability
Understanding Active Directory
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment, Enhanced Chapter 1: Introduction to Windows Server 2003.
Windows Server 2008 Chapter 8 Last Update
Hands-On Microsoft Windows Server 2008 Chapter 8 Managing Windows Server 2008 Network Services.
Event Viewer Was of getting to event viewer Go to –Start –Control Panel, –Administrative Tools –Event Viewer Go to –Start.
Introduction to Data Protection Manager Damir Bersinic IT Pro Advisor Microsoft Canada
Chapter 7 Configuring & Managing Distributed File System
Advanced Active Directory Deployments Rick Claus IT Pro Advisor Microsoft Canada
Module 4 Managing Client Access. Module Overview Configuring the Client Access Server Role Configuring Client Access Services for Outlook Clients Configuring.
(ITI310) SESSIONS : Active Directory By Eng. BASSEM ALSAID.
11 REVIEWING MICROSOFT ACTIVE DIRECTORY CONCEPTS Chapter 1.
Module 11: Designing Files Services and DFS in Windows Server® 2008
Designing Active Directory for Security
Active Directory Boundaries - Purpose Replication Boundaries Security Boundaries.
Module 2 Designing Microsoft® Exchange Server 2010 Integration with the Current Infrastructure.
Designing Authentication for a Microsoft Windows 2000 Network Designing Authentication in a Microsoft Windows 2000 Network Designing Kerberos Authentication.
Technical Overview of Windows Server 2003 Active Directory Che-song Lee.
1 Windows 2008 Configuring Server Roles and Services.
Hands-On Microsoft Windows Server Implementing Microsoft Internet Information Services Microsoft Internet Information Services (IIS) –Software included.
Module 5 Managing Message Transport. Module Overview Overview of Message Transport Configuring Message Transport.
© Wiley Inc All Rights Reserved. MCSE: Windows Server 2003 Active Directory Planning, Implementation, and Maintenance Study Guide, Second Edition.
Labs. Session 1 Lab: Designing Network Infrastructure in Windows Server 2008 Exercise 1: Preparing for a Network Infrastructure Design Exercise 2: Designing.
Module 6: Designing Name Resolution. Module Overview Collecting Information for a Name Resolution Design Designing a DNS Server Strategy Designing a DNS.
Configuring File Services. Using the Distributed File System Larger enterprises typically use more file servers Used to improve network performce Reduce.
Module 5 Planning and Deploying Message Transport in Microsoft® Exchange Server 2010.
Terminal Services Technical Overview Olav Tvedt TVEDT.info Microsoft Speaker Community
Windows Server 2003 La migrazione da Windows NT 4.0 a Windows Server 2003 Relatore: MCSE - MCT.
Module 5: Creating and Configuring Group Policies.
Module 4: Configuring Active Directory Sites and Replication.
Introduction to Active Directory
Configuring, Managing and Maintaining Windows Server® 2008 Servers Course 6419A.
1 Configuring Sites Configuring Site Settings Configuring Inter-Site Replication Troubleshooting Replication Maintaining Server Settings.
Active Directory. Computers in organizations Computers are linked together for communication and sharing of resources There is always a need to administer.
The Microsoft Technical Roadshow 2006 Making Your Life Easier With Windows Server 2003 R2 Melville Thomson IT Pro Evangelist
Module 8: Planning for Windows Server 2008 Active Directory Services.
Making Your Life Easier with Windows Server 2003 R2 Troy Kirkland Senior Consultant Microsoft Services Microsoft NZ.
Module 4: Configuring Active Directory ® Domain Sevices Sites and Replication.
70-294: MCSE Guide to Microsoft Windows Server 2003 Active Directory, Enhanced Chapter 6: Active Directory Physical Design.
Module 11: Configuring and Managing Distributed File System.
1 Welcome to Designing a Microsoft Windows 2000 Network Infrastructure.
Module 11 Configuring and Managing Distributed File System.
CONFIGURING A MICROSOFT EXCHANGE SERVER 2003 INFRASTRUCTURE
Securing the Network Perimeter with ISA 2004
(ITI310) SESSIONS 6-7-8: Active Directory.
Objectives Differentiate between the different editions of Windows Server 2003 Explain Windows Server 2003 network models and server roles Identify concepts.
Key Terms Windows 2008 Network Infrastructure Confiuguration Lesson 6
NTC 324 RANK Education Your Life - ntc324rank.com.
NTC 324 RANK Perfect Education/ ntc324rank.com.
NTC 324 RANK Education for Service-- ntc324rank.com.
Module 1: Overview of Systems Management Server 2003
Presentation transcript:

Rick Claus IT Pro Advisor Microsoft Canada Rodney Buike IT Pro Advisor Microsoft Canada Session 3: Extended Branch Services Design

Session Goals: Provide insight into what extended services can be implemented at Branch OfficesProvide insight into what extended services can be implemented at Branch Offices How to configure and tune Active Directory, DFS for the BranchHow to configure and tune Active Directory, DFS for the Branch Protecting mission critical components in a distributed networkProtecting mission critical components in a distributed network Best Practices, Tools and TipsBest Practices, Tools and Tips

Agenda Installing Branch DCInstalling Branch DC Site Design considerationsSite Design considerations Distributed File System and Remote Differential CompressionDistributed File System and Remote Differential Compression Protecting Mission Critical ServicesProtecting Mission Critical Services

Advantages/Disadvantages Control is centralizedControl is centralized Monitoring and management processes can be standardizedMonitoring and management processes can be standardized Replication of data to branch can reduce the impact of WAN problemsReplication of data to branch can reduce the impact of WAN problems Processes support quick response to local business needsProcesses support quick response to local business needs Security risks in branch office can increase risks to corporate dataSecurity risks in branch office can increase risks to corporate data Accelerated Branch Office Infrastructure Topologies Hub Site Branch Office Directory servicesDirectory services DHCP, DNS, WINSDHCP, DNS, WINS File and PrintFile and Print Application servicesApplication services Messaging servicesMessaging services Management servicesManagement services Directory servicesDirectory services DHCP, DNS, WINSDHCP, DNS, WINS Messaging servicesMessaging services Management servicesManagement services Directory servicesDirectory services DHCP, DNS, WINSDHCP, DNS, WINS File and PrintFile and Print Application servicesApplication services Messaging servicesMessaging services Management servicesManagement services

128K Connecting Branch Offices Create Domain Controller from Replica Large Site Branch Office

Connecting Small Offices UGMC Scenarios Scenarios:Scenarios: –Branch offices connected to a Global Catalog server with a low speed WAN link –Offices experiences slow logons due to Universal Group Membership processing Benefits:Benefits: –Faster logon without a Global Catalog server in the site

Connecting Branch Offices Universal Group Membership Caching 128K Univ Groups Large Office GCGC Query Branch Office DC Universal Group 1 Universal Group 2 Logon is faster because group memberships are cached locally!

Demo Demo Creating a Branch Office Domain Controller … …

Agenda Installing Branch DCInstalling Branch DC Site Design considerationsSite Design considerations Distributed File System and Remote Differential CompressionDistributed File System and Remote Differential Compression Protecting Mission Critical ServicesProtecting Mission Critical Services

Site Functions Domain Site 1 Site 2 Site 3

Default-First- Site-Link Site Links TOR MTL VAN TOR-MTL TOR-VAN MTL-VAN Connection Transports RPC over IP SMTP

Site Link Cost TOR-MTL Available KBpsCost TOR-VAN MTL-VAN KBps: 256 Cost: 425 KBps: 9.6 Cost: 1024 KBps: 256 Cost: 425 TORMTL VAN

Demo Demo Configuring Active Directory in the Branch Office … …

Agenda Installing Branch DCInstalling Branch DC Site Design considerationsSite Design considerations Distributed File System and Remote Differential CompressionDistributed File System and Remote Differential Compression Protecting Mission Critical ServicesProtecting Mission Critical Services

Distributed File System Overview Toronto Vancouver Branch Office User Virtual Namespace

Data Publication Distribute Content Reliable Access DFS Deployment Scenarios Data Collection Consolidate Content Back Up Data Loose Collaboration Local Access Content Sharing

DFS Namespace Features Windows Server 2003 Windows Server 2003 R2 Site Proximity Sorting Multiple DFS NamespacesUNC Path SupportImproved Management ToolsLink Target PrioritizationImproved Fail-Back Control

DFS Replication Features Connection typeSave full 3.5MBSave with RDC 56Kbps modem10 minutes3 seconds 500Kbps DSL70 seconds<1 second Uses Remote Differential Compression Active Directory Based Configuration

Remote Differential Compression File.txt Updated file Sending Server Receiving Server The quick fox jumped over the lazy dog who was asleep. The quick fox jumped over the lazy dog who was asleep. The quick fox jumped over the lazy brown dog who was asleep. Request file Differential hashes Transfer changes the lazy brown dog Request changes

DFS Replication Requirements Not between forests Between different domains in a forest Update Active Directory schema DFS classes and attributes Windows 2000 or 2003 domain controllers Cross-file RDC Requires Enterprise or Data Center

Demo Demo Configuring DFSR in the Branch Office … …

Starting DFS DFS Namespace Primary Member 1. Domain Controller Replication 2. DFS Member Server Polls AD 3. Replication

Agenda Installing Branch DCInstalling Branch DC Site Design considerationsSite Design considerations Distributed File System and Remote Differential CompressionDistributed File System and Remote Differential Compression Protecting Mission Critical ServicesProtecting Mission Critical Services

Reference Network

Mission Critical Services Live Communications Server SharePoint Server Exchange Servers ISA Server Windows SMTP Server VirusesWorms IM and Documents Antigen Antigen Antigen Antigen Antigen Layered Defenses Integration with Infrastructure Protection from Latest Threats

Multiple Layers of Protection

Multiple Technologies Signature Files Heuristics SandboxingPhishing Detection

Scan Engine #1 Scan Engine #2 Scan Engine #3 Scan Engine #4 Antigen Multiple Engine Scanning Scan Engine #1 Scan Engine #2 Scan Engine #3 Scan Engine #4

Demo Demo Protecting with Antigen Security for Exchange … …

Session Summary Implement DCs & GCs in Branch Offices enable you to extend mission critical services out beyond HQImplement DCs & GCs in Branch Offices enable you to extend mission critical services out beyond HQ Site definitions with proper Cost values are required for proper DFS FailoverSite definitions with proper Cost values are required for proper DFS Failover Multi-layered defences for your mission critical applications are your best approach to securityMulti-layered defences for your mission critical applications are your best approach to security

Join us for the next session on: Session 4: Ongoing Management and Optimization