Session Goal Be familiar with the possibilities of the operating system From the user mode and kernel mode We are NOT talking about the forensics!

Slides:



Advertisements
Similar presentations
4/9/2017 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
Advertisements

4/11/2017 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
DCIM-B221

FeatureGroup PolicyDSC Configuration stored inGPO fileConfiguration script / MOF file Target nodes by means ofAD links.
Cloud OS Microsoft’s Vision of the Unified Platform for Modern Business.
Virtual Network Subnet 1Subnet 2Subnet 3 VPN connection On-premises network Virtual Network Subnet Virtual Network Subnet ExpressRoute.
4/14/2017 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
Total digital universe 85% corporations had liability for 66% created by consumers & workers.
@CFullerMVP OpsMgr 2012 Evolution OpsMgr 2012 TechEd 2014.
Complete Scope: Lifecycle of IT- Services in Hybrid Clouds.
Come Visit Us in the Microsoft Solutions Experience! Look for Datacenter and Infrastructure Management TechExpo Level 1 Hall.
Server 2003 Opportunity What end of support means Start planning your migration and transforming your datacenter todayDiscontinued support for many.
6 Hypervisor Management OS Guest VM 1 Guest VM n Hardware User Mode Kernel Mode User Mode … Kernel Mode User Mode.
NIC Management Storage Migration Cluster NIC.
DCIM-B228 No Capacity Planning Function Cannot measure, scorecard or predict future performance Budget Overruns Non fact based investment decisions.
4/19/2017 DCIM-B220 Private Cloud Made Simple The Fast Track Reference Architecture Program Michael Schulz Ian Lucas © 2014 Microsoft Corporation. All.
Server Roles and Features.NET Framework 3.51.NET Framework 4.5 IIS Web Server IIS Default Document IIS Directory Browsing IIS HTTP Errors.
MCTS Guide to Microsoft Windows Server 2008 Network Infrastructure Configuration Chapter 2 Installing Windows Server 2008.
Richard Seroter Director of Product Management Microsoft MVP for Integration Cloud Editor for InfoQ.com Technical Trainer at Pluralsight 3-time Book.
SQL and System Center meet, then got down to business.
CMDB Ticketing Billing Management Systems Web based Runbook Authoring: Service Administrator can create runbooks to automate all aspects of cloud.
Hyper-V Recovery Service DR Orchestration Extensible Data Channel (Hyper-V Replica, SQL AlwaysOn)
DPM 2012 Centralized Management Express full backup of Hyper-V standalone VMs Data Source Extensibility Framework Certificate Based.
Develo p Rapid reaction to feedback Operate Software to value delivery Monitor Fix No actionable feedback resulting in high MTTR Isolated operations.
Service Provider Next generation managed services Public Cloud (true multi- tenant) Private Cloud Hybrid Cloud Delivering the highest levels of user.
Server + storage continuous availability Storage availability Volume platform for availability Next-gen ready for the datacenter / hoster.
Overview of Microsoft DR solution for the three clouds Learn how to setup protection and recover to Microsoft Azure Planning guidance on choosing topologies.
4 2) Code Repository 1) Developers 3) Build4) Test5) Deploy to Cloud 6) Monitor and Improve Contoso App Azure.
4/19/2017 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
Microsoft Dynamics CRM Passwords AttributeFeature SafeSendersHash BlockedSendersHash SafeRecipientHash Filtering Coexistence enables on-premise.
Accelerate adoption, provide customer insights to engineering, and deliver knowledge to the IT Pro community.
On Premises Microsoft Azure Service Provider Business Continuity Tenant Services Service Administration Fabric Management Admin Portal Tenant.
Windows Azure Pack Service Provider Foundation 2012 R2 Windows Server 2012 R2 Virtual Machine Manager 2012 R2 Damian Flynn MVP System Center
CustomerSegment and workloads Virtual Network DNS Server Microsoft Azure.
Blue CorpRed Corp Blue Subnet1 Blue Subnet3Blue Subnet2 Blue Subnet5 Blue Subnet4 Red Subnet2 Red Subnet1 Blue R&D Net Blue Sales Net.
Microsoft delivers a complete datacenter solution with Windows Server 2012 R2 out-of-the-box Cloud OS Development Management Identity Virtualization.
Monitor Linux OS health & performance Monitor log files Monitor JEE app servers Monitor line-of-business applications Monitor databases and web.
Yes No Emulated Devices No Hyper-V integration Limited manageability Limited functionality OK CPU, weak disk/net.
MP Author MP Visual Studio Authoring Extensions (VSAE)
US WestUS East US NorthUS South US CentralUS East 2 Europe NorthEurope West Asia EastAsia South East China NorthChina South Japan EastJapan.
Looking Ahead…Embracing Our Past Building upon our successes for the future of operations.
4/20/2017 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
Availability Configuration PerformanceCapacity.
Available in 2012 R2 UR2 & 2012 SP1 UR6.
CONTROL COST-EFFICIENCY SharePoint (On-premises) SharePoint Value Prop Full h/w control – size/scale Roll-your-own HA/DR/scale Value Prop 100% of.
Focus on “services” describing “what you deliver” Improve quality and consistency Continuous improvement in service delivery Prove it… and “show.
3 VIRTUAL MACHINES WEB SITES SERVICE BUS DATABASE.
86% 50% Infrastructure provisioning Enterprise-class multi- tenant infrastructure for hybrid environments System Center capabilities Application.
Datacenters of the Past StorageNetworkCompute Today’s datacenter.
Processor or Socket NUMA Node Core LP Processor or Socket NUMA Node Core LP Processor or Socket NUMA Node Core LP Processor or Socket NUMA Node Core.
Transforming the business of cloud Cloud Cruiser financial analytics for Microsoft Cloud OS.
Virtual Machines Web Sites and ApplicationsDatabases Service Bus.
Scale Unit 1-Many SMA DB Monitor Workflow Executions New End User Request Monitor SharePoint Lists Monitor TFS for new scripts to deploy Check.
Windows Azure Pack Service Provider Foundation 2012 R2 Windows Server 2012 R2 Virtual Machine Manager 2012 R2 Damian Flynn MVP System Center
4/24/2017 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
Scale means… Business is growing!! However… More servers => More Failures Scale * Complexity Exceeds Skill Rapid change means… Can respond and capture.
Crouching Admin, Hidden Hacker Techniques for Hiding and Detecting Traces Paula Januszkiewicz Penetration Tester, MVP: Enterprise Security, MCT iDesign.
Create Incident Create Checkpoint Start Maint Mode Shut Down VM on error Update on success Invoke Web Services Compare Values Send .
4/26/2017 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
Deeper research never hurts! Memory dumps contain personal information, but… how personal?
Script Have done OS Deployment since 8” floppys. Build and connect Clouds Work as Consultant and Trainer You find.
8/8/2018 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
9/22/2018 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
11/12/2018 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
11/30/2018 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
12/1/2018 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
2/24/2019 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
5/6/2019 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
7/24/2019 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
Presentation transcript:

Session Goal Be familiar with the possibilities of the operating system From the user mode and kernel mode We are NOT talking about the forensics! … just doing a little hacking + conclusions My goal: See one of the ways hacker can act

Summary for Administrators Learn how to detect malicious situations Know your system when it is safe – you need a baseline If you detect a successful attack – do not try to fight Report the issue Investigate or do a penetration test /IT Audit Estimate the range of the attack Know how to recover your data, when necessary

Come Visit Us in the Microsoft Solutions Experience! Look for Datacenter and Infrastructure Management TechExpo Level 1 Hall CD For More Information Windows Server 2012 R2 Microsoft Azure System Center 2012 R2 Azure Pack cloud/products/windows-azure-pack