Windows Server 2008 R2: Remote Desktop Services od A do Ž Luka Manojlović MA-NO d.o.o.

Slides:



Advertisements
Similar presentations
Introducing Remote Desktop Services
Advertisements

Ljubomir Ivaniš CPU d.o.o.
SoftGrid och Terminal Services Nyheterna i Terminal Services Application Virtualization, SoftGrid.
Winconnect Server XP by John Mackenzie. What is Winconnect Server XP WinConnect Server XP is software for installation onto Windows XP Pro, which transforms.
Remote Desktop Services
Connect with life Gopikrishna Kannan Program Manager | Microsoft Corporation
SMB, SANs, or direct attached local storage.
Hardware Firewalls: Advanced Feature © N. Ganesan, Ph.D.
Group Presentation Design and Implementation of a company- wide networking & communication technologies strategy 9 th December 2003 Prepared By: …………
INF403 - Windows Server Code Named "Longhorn" Terminal Services: Introduction Alex Balcanquall Product Manager.
Jeff Alexander IT Pro Evangelist Microsoft Australia SVR309.
IT:Network:Applications VIRTUAL DESKTOP INFRASTRUCTURE.
 Christa Anderson Program Manager II Microsoft Corporation  Niraj Agarwala Senior Test Lead Microsoft Corporation ES22.
Remote Access SSL VPN Stewart Duncan Technical Manager.
Remote Desktop Security Raghav Chawla, Jon Ussery Group 20.
Nicola Ferrini IT PRO Trainer
Ashwin Palekar Group Program Manager Microsoft Corp Session Code: VIR307.
Server 2008 Terminal Services and Remote Desktop Services Basic application access is possible without Citrix, and Server 2008 R2 adds on some key features.
Terminal Services Terminal Services is the modern equivalent of mainframe computing, in which servers perform most of the processing and clients are relatively.
TS Licensing RDP Terminal Server TSV Session BrokerTS Gateway Client TS Web Access The terminal server runs applications locally and displays them.
André Keartland Inobits Consulting VIR303 Agenda Remote Desktop Services… What’s that?! Remote Desktop Services - VDI Drilldown Demo.
Mohnish Chaturvedi Marc Jordan.
Sébastien Pittet & Lionel Zufferey.
Week #10 Objectives: Remote Access and Mobile Computing Configure Mobile Computer and Device Settings Configure Remote Desktop and Remote Assistance for.
Course 201 – Administration, Content Inspection and SSL VPN
Implementing and Configuring Microsoft ® Windows Server ® 2008 Terminal Services Nicola Ferrini
Barracuda Load Balancer Server Availability and Scalability.
Access Gateway Operation
Remote Administration Remote Desktop Remote Assistance Remote Server Administration Tools.
Miha Pihler MCSA, MCSE, MCT, CISSP, Microsoft MVP
Microsoft and Community Tour 2011 – Infrastrutture in evoluzione Community Tour 2011 Infrastrutture in evoluzione.
Module 5: Designing a Terminal Services Infrastructure.
Wireless Networks and the NetSentron By: Darren Critchley.
MCTS Guide to Microsoft Windows Server 2008 Applications Infrastructure Configuration (Exam # ) Chapter Four Windows Server 2008 Remote Desktop Services,
PowerLink Bandwidth Aggregation Redundant WAN Link and VPN Fail-Over Solutions.
Remote Desktop Services in Windows Server 2008 R2.
Remote Access Using Citrix Presentation Server December 6, 2006 Matthew Granger IT665.
MCTS Guide to Microsoft Windows Server 2008 Applications Infrastructure Configuration (Exam # ) Chapter Five Windows Server 2008 Remote Desktop Services,
Sudarshan Yadav Sr. Program Manager, Microsoft
James O’Neill : Microsoft UK Windows Server 2008 Terminal Services.
Shai Tirosh Windows Server Regional Director artNET Experts.
Module 8: Managing Terminal Services. Overview Use and manage Terminal Services RemoteApp programs Use and manage Terminal Services Gateway Optimize and.
Remote Administration Remote Desktop Remote Desktop Gateway Remote Assistance Windows Remote Management Service Remote Server Administration Tools.
Integrating and Troubleshooting Citrix Access Gateway.
Terminal Services Technical Overview Olav Tvedt TVEDT.info Microsoft Speaker Community
Operating Systems & Information Services CERN IT Department CH-1211 Geneva 23 Switzerland t OIS Update on Windows 7 at CERN & Remote Desktop.
NETWORKING BASICS.
Module 7: Configuring Terminal Services. Overview Describe how the components of Terminal Services work together Identify new Terminal Services core features.
Seamless Virtual Desktop & Application Delivery 2X RAS v14 – What’s New?
Free, online, technical courses Take a free online course. Microsoft Virtual Academy.
Client Access – Published applications Control through TEMPLATE.ICA Use SSL Authentication level –Remove: EncRc5-0 EncRc5-40 EncRc5-56.
Michael Kleef Senior Technical Product Manager Microsoft Corporation SESSION CODE: WSV205.
VIR312. demo WS03WS 2008 WS 2008 R2 / WS 2008 R2 SP1 Terminal Services Remote Desktop Services Terminal Server RD Session Host TS Session DirectoryTS.
Virtualization Vitalis Konopelec Technology Solution Professional Microsoft Slovakia s.r.o.
Terminal Services.  Allows end user application to be used on different clients connected via a network applications are executed on the server  Terminal.
Installation Guacamole Is a web application that provides access to desktop environments using remote desktop protocols (such as VNC or RDP); Installation.
Click to edit Master title style TechNet goes virtual ©2009 Microsoft Corporation. All Rights Reserved. TechNet goes virtual Windows Server 2008 R2 Remote.
Virtual Private Network Access for Remote Networks
Securing the Network Perimeter with ISA 2004
Unit 27: Network Operating Systems
Utilize Group Policy Terminal Server Settings
Azure AD Application Proxy
Izbrana Poglavja iz Informacijskih Tehnologij (IPIT)
Microsoftove rešitve za šolstvo
Operacijski sistemi Lucijan Katan, 1.at Mentor: Branko Potisk.
ما هي خدمة بروتوكول نقل الملفات؟
Remote Access Services RAS Routing and Remote Access Services RRAS Remote Desktop Terminal Services Virtual Private Networking VPN.
IS 4506 Server Configuration (HTTP Server)
Informacijska varnost v Oracle okolju
Networking and Security
Presentation transcript:

Windows Server 2008 R2: Remote Desktop Services od A do Ž Luka Manojlović MA-NO d.o.o.

Gremo! Demo!

Connection Brokering arhitektura RD Redirector RD Server Connection Broker ClientClient TSVTSV TSVTSV TSVTSV VMVM TSVTSV TSVTSV TSVTSV VMVM Hyper-VHyper-V Hyper-VHyper-V 1.Connect 2.Get Target 4.Return Target 3.Prepare/ Start VM 5.Redirect To VM 6.Connect to VM

Poganjamo aplikacije ali predstavljamo namizje z enega računalnika (strežnika) na drugem “Oddaljimo” uporabniško izkušnjo z uporabo remote desktop protokola Remote Desktop Services v Win2K8 R2

Kaj so terminalske storitve? Skupek orodij za oddaljeni dostop do namizja računalnika Uporabljajo protokol RDP Vrata TCP 3389 Od nas proti strežniku se prenašajo –Tipkovnica in miška Proti odjemalcu se prenaša –Slika

Sejno bazirana infrastruktura Aplikacije se poganjajo na cetralnem strežniku Dovoljuje uporabnikom skupno rabo sistema Uporabniki so izolirani v sejah

Virtual Desktop Infrastructure Poganjanje virtualnih strojev na skupnem strežniku S tem damo posameznemu uporabniku lasten operacijski sistem –Trajen / oseben –Začasen

Kaj imamo na voljo? RD Licensing RD Server Virtual desktop Server Connection BrokerRD Gateway Client RD Web Access RD strežnik poganja aplikacije in jih prikazuje odjemalecem v sejah Virtual desktop server poganja virtualne stroje za uporabnike

Kaj vidim? RD Licensing RD Server Connection Broker RD Web Access RD Gateway Client RD Web Access server prikazuje objavljene aplikacije ali oddaljena namizja Virtual desktop server ConnectionBroker poganja storitve za objavo in pravilno razporejanje obremenitve med RD strežniki

Kako se povezujem? RD Licensing RD Server Connection BrokerRD Gateway Client Connection Broker pošilja oziroma prevsmerja prihajajoče povezave na pravilne končne destinacije RD Web Access Virtual desktop server The RD Gateway strežnik pa ponuja novo varno možnost dostopa do strežniške ali odjemalske infrastrukture znotraj omrežja

Kako pa licenciram? RD Licensing RD Server Connection BrokerRD Gateway Client RD Licensing Server ureja distribucijo in sledljivost TSCAL-ov, ki jih potrebujemo za dostop do oddaljenih storitev RD Web Access Virtual desktop server

Varujmo internetno povezljivost Pred prihodom WS08, sta bili na voljo dve možnosti za oddaljen dostop z uporabo terminalskih storitev: – Odpiranje vrat TCP 3389 – Nastavitev VPN povezav Z uporabo RD Gateway sistema lahko: – Vzpostavimo varno povezavo preko vrat 443 oziroma HTTPS brez uporabe nerodnih VPN povezav – Omejimo dostop samo določenim uporabnikom – Omejimo dostop do virov v omrežju

Kako RD Gateway deluje? DMZ HTTPS / 443 Internet Corp LAN RD Server Hotel External Firewall Internal Firewall Home Business Partner/ Client Site Other RDP Hosts Eg. Desktops RDV Server Internet Tunnels RDP over RPC/HTTPS Passes RDP/SSL traffic to TS Strips off RPC/HTTPS Network Policy Server Active Directory DC RD Gateway Server

Srečanje MSDN in TechNet TS Gateway – primer II (WAN to LAN and WAN)

RD Gateway – primer I (WAN to LAN)

Connection Authorization Policies Katere avtentikacijske metode so na voljo Kateri uporabniki se lahko povezejo? S katerih računalnikov se lahko povežejo?

Connection Authorization Policies Kontrola nad prevsmerjenemi napravami Omogočanje oziroma onemogočanje uporabe naprav

Resource Authorization Policies Control what computers can be connected to by Active Directory Security Group… … or by TSG managed groups Control what ports can be connected

Easy print in Display Data prioritization Easy print je univerzalen tiskalniški gonilnik Na terminalski strežnik ni potrebno instalirati gonilnikov Uporabnikom omogoča uporabo lastnih tiskalniških nastavitev Dejansko “skoči” ven nako pogovorno okno, kot na lokalnem računalniku Spooler hitreje oštevilči preusmerjene tiskalnike – hitrejša prijava Administrator ne vidi več kopice preusmerjenih tiskalnikov Nastavmo lahko per session default printer Krajša imena tiskalnikov, ki so preusmerjeni %printername% (%session id%) Podatki potujejo v XPS XML Paper specification formatu In v praksi... 22

Easy print in Display Data prioritization Privzeto nastavljeno razmerje 70:30 70 % slika 30 % podatki preko preusmerjenih virov oziroma tiskalniške storitve Za nas, ki imamo radi registry pa... HKLM\System\CurrentControlSet\Services\TermD D FlowControlDisable – FIFO ali KPPPM FlowControlDisplayBandwidth – privzeto 70 FlowControlChannelBandwidth – privzeto 30 FlowControlChargePostCompression – privzeto 0 – kalkulacija se vrši na podlagi post- compression bytes Spremembe registra zahtevajo ponovni zagon “Terminal services” storitve 25

Click to edit Master title style Click to edit Master text styles Lorem ipsum –Second level