Windows XP Service Pack 2 Deployment Dave Lee West Campus.

Slides:



Advertisements
Similar presentations
Auditing Microsoft Active Directory
Advertisements

Configuring Windows to run Dr.Web scanner remotely.
WSUS Presented by: Nada Abdullah Ahmed.
Module 6: Configuring Windows XP Professional to Operate in a Microsoft Network.
Sandia is a multiprogram laboratory operated by Sandia Corporation, a Lockheed Martin Company, for the United States Department of Energy’s National Nuclear.
Microsoft Windows Server 2008 Software Deployment Chris Rutherford EKU Technology: CEN/CET.
Module 5: Creating and Configuring Group Policy
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment, Enhanced Chapter 9: Implementing and Using Group Policy.
Chapter 7 HARDENING SERVERS.
Changes in Windows XP Service Pack 2
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment Chapter 9: Implementing and Using Group Policy.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment, Enhanced Chapter 10: Server Administration.
Lesson 19: Configuring Windows Firewall
NETOP ONDEMAND What’s new in version 2.1? DECEMBER 09 NETOP ONDEMAND1.
MCTS Guide to Microsoft Windows Server 2008 Network Infrastructure Configuration Chapter 11 Managing and Monitoring a Windows Server 2008 Network.
Group Policy in Microsoft Windows Active Directory.
SUS Services ECE Computer Facilities. SUS Services Software Update Services Microsoft Security And Critical Update Service Microsoft Security And Critical.
Module 16: Software Maintenance Using Windows Server Update Services.
Firewalls CS158B Don Tran. What is a Firewall? A firewall can be a program or a device that controls access to a network.
Module 9 Configuring Server Security Compliance. Module Overview Securing a Windows Infrastructure Overview of EFS Configuring an Audit Policy Overview.
2851A_C01. Microsoft Windows XP Service Pack 2 Security Technologies Bruce Cowper IT Pro Advisor Microsoft Canada.
Windows XP Service Pack 2 Customer Awareness Workshop Plan – Test – Deploy & Troubleshooting Craig Schofield Microsoft Ltd. UK.
Principles of Computer Security: CompTIA Security + ® and Beyond, Second Edition © 2010 Baselines Chapter 14.
SOE and Application Delivery Gwenael Moreau, Abbotsleigh.
9.1 © 2004 Pearson Education, Inc. Exam Planning, Implementing, and Maintaining a Microsoft Windows Server 2003 Active Directory Infrastructure.
1 ISA Server 2004 Installation & Configuration Overview By Nicholas Quinn.
Module 9 Configuring Server Security Compliance. Module Overview Securing a Windows Infrastructure Overview of EFS Configuring an Audit Policy Overview.
1 Objectives Windows Firewalls with Advanced Security Bit-Lock Update and maintain your clients using Windows Server Update Service Microsoft Baseline.
Module 7: Configuring TCP/IP Addressing and Name Resolution.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment, Enhanced Chapter 9: Implementing and Using Group Policy.
Using Windows Firewall and Windows Defender
Module 4: Add Client Computers and Devices to the Network.
Module 13: Maintaining Software by Using Windows Server Update Services.
Section 2: Using Group Policy Management Tools Local vs. Domain Policies Editing Local Policies Managing Domain Policies Understanding Group Policy Refresh.
A detailed look at the Microsoft Windows Infrastructure at UWE including Active Directory (AD), MIIS, Exchange, SMS, IIS, SQL Server, Terminal Services.
Module 14: Configuring Server Security Compliance
Section 1: Introducing Group Policy What Is Group Policy? Group Policy Scenarios New Group Policy Features Introduced with Windows Server 2008 and Windows.
DIT314 ~ Client Operating System & Administration CHAPTER 2 INTRODUCTION TO WINDOWS XP PROFESSIONAL Prepared By : Suraya Alias.
11 MANAGING AND DISTRIBUTING SOFTWARE BY USING GROUP POLICY Chapter 5.
Windows Small Business Server 2003 Setting up and Connecting David Overton Partner Technical Specialist.
C HAPTER 2 Introduction to Windows XP Professional.
Module 11: Implementing ISA Server 2004 Enterprise Edition.
How to use Remote Desktop and Remote Support. What is remote desktop? Remotely control your computer from another office, from home, or while traveling.
1 Objectives Windows Firewalls with Advanced Security Bit-Lock Update and maintain your clients using Windows Server Update Service Microsoft Baseline.
Module 5: Configuring Internet Explorer and Supporting Applications.
Module 5: Creating and Configuring Group Policies.
Lesson 11: Configuring and Maintaining Network Security
Module 4 Planning for Group Policy. Module Overview Planning Group Policy Application Planning Group Policy Processing Planning the Management of Group.
SMS Software Distribution. Overview  Explaining How SMS Distributes Software  Managing Distribution Points  Configuring Software Distribution and the.
Windows XP Service Pack 2 Customer Awareness Workshop XP SP2 Technical Drilldown – Part 1 Craig Schofield Microsoft Ltd. UK September.
Principles of Computer Security: CompTIA Security + ® and Beyond, Third Edition © 2012 Principles of Computer Security: CompTIA Security+ ® and Beyond,
How to implement GPOs and secure a MS Windows Environment with little to NO user awareness!?!?
Module 8: Managing Software Distribution. Collections Packages Programs Advertisements Collections Packages Programs Advertisements How Software.
Rob Davidson, Partner Technology Specialist Microsoft Management Servers: Using management to stay secure.
Module 7: Implementing Security Using Group Policy.
Administering Microsoft Windows Server 2003 Chapter 2.
NetTech Solutions Protecting the Computer Lesson 10.
Module 10: Implementing Administrative Templates and Audit Policy.
Sydney Region Servers. Windows 2003 Standard Configuration Able to be supported remotely Antivirus updates managed from server.
How to Deploy Office XP and Windows XP With One Desktop Touch Liz Levitt Desktop Solution Specialist Microsoft Corporation.
Module 6 Creating and Configuring Group Policy. Module Overview Overview of Group Policy Configuring the Scope of Group Policy Objects Evaluating the.
Module 8 Implementing Security Using Group Policy.
Microsoft® Desktop Deployment Assistance Program 5. Managing the Desktop Joe Liptrot.
Internet Explorer 7 Updated Advice for the NHS 04 February 2008 Version 1.3.
Unit 9 ITT TECHNICAL INSTITUTE NT1330 Client-Server Networking II Date: 2/17/2016 Instructor: Williams Obinkyereh.
1.1 Microsoft® Windows® 2003 Server Group Policy Management Prof. Abdul Hameed.
Labs. Session 1 Lab: Installing and Configuring Windows 7 Exercise 1: Migrating Settings by Using Windows Easy Transfer Exercise 2: Configuring a Reference.
Self-service enrollment for Windows desktops
Unit 9 NT1330 Client-Server Networking II Date: 8/9/2016
Windows Firewall Adem Enes POLAT
Presentation transcript:

Windows XP Service Pack 2 Deployment Dave Lee West Campus

Preparation for a Controlled Deployment Update Group Policy Template for SP2 in Active Directory. Temporarily Disable the Delivery of SP2 Through Windows Updates and Automatic Updates from Active Directory’s GPO. Temporarily Disable SP2 Windows Firewall from Active Directory’s GPO.

Temporary Disabling SP2 GPO from AU and WU

Temporary Disabling SP2 Windows Firewall GPO

Evaluate and Test SP2 with Windows Firewall OFF Compatibility testing –Generally have not encountered problems when firewall is off. –NetOPS School requires latest update. –List of application issues with SP2 from Microsoft

Evaluate and Test SP2 General Results

Controlled Deployment of SP2 with Microsoft SMS 2003 Created collections for Windows XP that needs SP2 separating offices and public computers. Setup advertisement and package of SP2 for the needed collection. Notify campus users that they have 3 weeks to initiate self install of SP2 through “Advertised Programs” in Control Panel from SMS. Force install of SP2 after 3 weeks is up on any computer that requires SP2. Remove GPO that blocks SP2 from AU and WU.

Windows XP SP2 Firewall Assumptions and Concerns The firewall is stateful. Firewall does not block outbound traffic. Some applications we use would be affected: –Visual Studio.NET –SQL –Backup Exec –Ghost Server Corporate Edition –SMS 2003 Server –SecuRemote (SR_GUI) –WSFtp –Exceed –MOM 2000 –Windows Scanner and Camera Wizard –ColdFusion MX Server –SNA –Remote Assistance –Remote Desktop –File and Print Sharing –Windows Messenger –More…

Proposed GPO setting for Windows XP SP2 Firewall at West Campus Protect all network connections: Enabled Do not allow exceptions: Not configured. This setting allows to users to create exceptions. Define program exceptions: Not configured – this setting allows local settings to work so users can define their own exceptions. Allow local program exceptions. Not configured – this setting allows workstation administrators to make local program exception. Allow remote administration exception. Enabled, from IT subnet only, for remote WMI and MMC calls that are needed for workstation security management and public site management. Allow file and print sharing exception. Not configured. This setting allows local administrators to enable file and print sharing. Allow ICMP exceptions. Enabled, for inbound and outbound. Allow Remote Desktop exception. Not configured. This setting allows local administrators to enable Remote Desktop. Allow UPnP framework exception. Not Configured. This setting allows local administrators to enable UPnP. Prohibit notifications. Not configured. IDS and Public Sites will have to test and make a determination of how this affects their images. Allow logging. Enabled, with max log size at 32MB. This setting turns logging on and limits the log size to 32MB. Prohibit unicast response to multicast or broadcast requests. Not configured. This allows workstations to discover if there is another workstation with the same name, among other things. Define port exceptions. Not configured, but we would recommend that users use the local program exceptions instead of a port exception. Allow local port exceptions. Not configured. This allows local administrators to configure local port exceptions.

Deployment and Testing Timeline Force install begins on October 11 th. Final recommendation of firewall GPO on October 25 th. Enable firewall GPO from recommendation by October 31 st.