Windows Small Business Server 2003 la sicurezza garantita e pre-configurata per i servizi Exchange, l'accesso remoto e l'amministrazione della rete Alessandro.

Slides:



Advertisements
Similar presentations
VPN Client-to-Lan e Lan-to-Lan con Windows Small Business Server 2003 installazione, configurazione, sicurezza Alessandro Appiani Consultant Microsoft.
Advertisements

Corso referenti S.I.R.A. – Modulo 2 Windows Client & Server Security 20/11 – 27/11 – 05/12 11/12 – 13/12 (gruppo 1) 12/12 – 15/12 (gruppo 2) Cristiano.
Encrypting Wireless Data with VPN Techniques
Enabling Secure Internet Access with ISA Server
Microsoft Internet Security and Acceleration (ISA) Server 2004 Technical Overview
© 2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 1 High-performance Gigabit Ethernet ports rapidly transfer large files supporting.
Setting Up a Virtual Private Network Chapter 9. Learning Objectives Understand the components and essential operations of virtual private networks (VPNs)
Module 5: Configuring Access to Internal Resources.
Module 5: Configuring Access for Remote Clients and Networks.
1 Objectives Configure Network Access Services in Windows Server 2008 RADIUS 1.
Building Your Own Firewall Chapter 10. Learning Objectives List and define the two categories of firewalls Explain why desktop firewalls are used Explain.
Introduction to ISA 2004 Dana Epp Microsoft Security MVP.
Principles of Information Security, 2nd Edition1 Firewalls and VPNs.
Chapter 7 HARDENING SERVERS.
K. Salah 1 Chapter 31 Security in the Internet. K. Salah 2 Figure 31.5 Position of TLS Transport Layer Security (TLS) was designed to provide security.
MCDST : Supporting Users and Troubleshooting a Microsoft Windows XP Operating System Chapter 14: Troubleshooting Remote Connections.
Remote Networking Architectures
Network Address Translation, Remote Access and Virtual Private Networks BSAD 146 Dave Novak Sources: Network+ Guide to Networks, Dean 2013.
1 © J. Liebeherr, All rights reserved Virtual Private Networks.
1 Enabling Secure Internet Access with ISA Server.
MCTS GUIDE TO MICROSOFT WINDOWS 7 Chapter 14 Remote Access.
70-291: MCSE Guide to Managing a Microsoft Windows Server 2003 Network Chapter 10: Remote Access.
Week #10 Objectives: Remote Access and Mobile Computing Configure Mobile Computer and Device Settings Configure Remote Desktop and Remote Assistance for.
Module 4 Managing Client Access. Module Overview Configuring the Client Access Server Role Configuring Client Access Services for Outlook Clients Configuring.
Your storage on the ground; Your files in the cloud.
CS426Fall 2010/Lecture 361 Computer Security CS 426 Lecture 36 Perimeter Defense and Firewalls.
Configuring Routing and Remote Access(RRAS) and Wireless Networking
Internal NetworkExternal Network. Hub Internal NetworkExternal Network WS.
©Kwan Sai Kit, All Rights Reserved Windows Small Business Server 2003 Features.
Securing Microsoft® Exchange Server 2010
Microsoft Internet Security and Acceleration (ISA) Server 2004 is an advanced packet checking and application-layer firewall, virtual private network.
Implementing ISA Server Publishing. Introduction What Are Web Publishing Rules? ISA Server uses Web publishing rules to make Web sites on protected networks.
Objectives Configure routing in Windows Server 2008 Configure Routing and Remote Access Services in Windows Server 2008 Network Address Translation 1.
Module 8 Configuring Mobile Computing and Remote Access in Windows® 7.
1 Chapter Overview Using the New Connection Wizard to configure network and Internet connections Using the New Connection Wizard to configure outbound.
Module 4: Configuring ISA Server as a Firewall. Overview Using ISA Server as a Firewall Examining Perimeter Networks and Templates Configuring System.
Module 11: Remote Access Fundamentals
VIRTUAL PRIVATE NETWORK By: Tammy Be Khoa Kieu Stephen Tran Michael Tse.
Windows Small Business Server 2003 Setting up and Connecting David Overton Partner Technical Specialist.
11.59 © 2004 Pearson Education, Inc. Exam Managing and Maintaining a Microsoft® Windows® Server 2003 Environment Lesson 11: Introducing WINS, DNS,
Hands-On Microsoft Windows Server Introduction to Remote Access Routing and Remote Access Services (RRAS) –Enable routing and remote access through.
Module 11: Implementing ISA Server 2004 Enterprise Edition.
Network and Perimeter Security Paula Kiernan Senior Consultant Ward Solutions.
Overview of Microsoft ISA Server. Introducing ISA Server New Product—Proxy Server In 1996, Netscape had begun to sell a web proxy product, which optimized.
TCP/IP Protocols Contains Five Layers
Hands-On Microsoft Windows Server Implementing Microsoft Internet Information Services Microsoft Internet Information Services (IIS) –Software included.
Extending ISA/IAG beyond the limit. AGAT Security suite - introduction AGAT Security suite is a set of unique components that allow extending ISA / IAG.
TCP/IP (Transmission Control Protocol / Internet Protocol)
ISA SERVER 2004 Group members : Sagar Bhakta – [intro] Orit Ahmed – [installation] Michael Wijaya [advantages] Rene Salazar - [features]
Protocols COM211 Communications and Networks CDA College Olga Pelekanou
Security fundamentals Topic 10 Securing the network perimeter.
Securing Data Transmission and Authentication. Securing Traffic with IPSec IPSec allows us to protect our network from within IPSec secures the IP protocol.
MCSE Guide to Microsoft Exchange Server 2003 Administration Chapter One Introduction to Exchange Server 2003.
Securing the Network Perimeter with ISA Server 2004 Ravi Sankar IT Professional Evangelist Microsoft.
Securing Access to Data Using IPsec Josh Jones Cosc352.
VIRTUAL SERVERS Chapter 7. 2 OVERVIEW Exchange Server 2003 virtual servers Virtual servers in a clustering environment Creating additional virtual servers.
Defining Network Infrastructure and Network Security Lesson 8.
Firewalls Definition: Device that interconnects two or more networks and manages the network traffic between those interfaces. Maybe used to: Protect a.
Security fundamentals
Virtual Private Networks
Securing the Network Perimeter with ISA 2004
Implementing TMG Server Publishing
* Essential Network Security Book Slides.
Server-to-Client Remote Access and DirectAccess
Firewalls Routers, Switches, Hubs VPNs
IS 4506 Server Configuration (HTTP Server)
NETWORK SECURITY LAB Lab 8. Firewall and VPN.
Cengage Learning: Computer Networking from LANs to WANs
Designing IIS Security (IIS – Internet Information Service)
IS 4506 Configuring the FTP Service
Presentation transcript:

Windows Small Business Server 2003 la sicurezza garantita e pre-configurata per i servizi Exchange, l'accesso remoto e l'amministrazione della rete Alessandro Appiani Microsoft Certified Partner

Agenda Componenti tecnologici per la sicurezza Sicurezza perimetrale Sicurezza nelle comunicazioni di rete Sicurezza interna Policy, Auditing & Control Le aree pre-configurate in Windows Small Business Server 2003 Network design & Architecture Infrastruttura Exchange Remote Access Active Directory Tools Live Demo...

Componenti tecnologici per la sicurezza Perimetrale Firewalling protection Comunicazioni Encryption Secure Socket Layer Virtual Private Network Remote Access Rete interna Active Directory / Security Realm Policy (User, Computer,...) Auditing Content inspection (Antivirus)

Sicurezza perimetrale

Firewall Uno o più componenti/dispositivi che controllano laccesso da una rete protetta verso/da Internet e/o altre reti * * Zwicky, Cooper, Chapman – Building Internet Firewalls – OReilly 1995/2000

Filters and Network Access Streaming Media SMTP DNS Intrusion Firewall Access Policy Allow HTTP All Destinations Internal/Protected Network External/Unsecured Network Rules Applied Streaming Media SMTP

Firewall in Small Business Server A Controlled Point of Access for All Traffic that Enters the Internal Network A Controlled Point of Access for All Traffic that Leaves the Internal Network Inside/Outside Windows Server 2003 ISA Server

Sicurezza nelle comunicazioni

Quali problemi abbiamo con una comunicazione di rete che usa connettività pubblica come Internet? Network Monitoring Data Modification Identity Spoofing Man-in- the-Middle Password- based Password- based

Encrypts Data at the Application Layer SSL TLS Encrypts Data at the Network Layer Tunneling Protocol IPSec La soluzione: la cifratura dei dati trasmessi Encrypted IP Packet

Cifratura del traffico Application-Layer Network-Layer: Virtual Private Network (VPN) ApplicationApplication SSL/TLSSSL/TLS TCP/UDPTCP/UDP IP/IPSec Link Layer Physical Layer Application SSL/TLS

Sicurezza interna e controllo Active Directory!

Windows Small Business Server 2003 Componenti di sicurezza setup & configuration

Scenario di connessione router Interne t Router (ISP) SBS rete pubblica (es: /29) rete privata /24.2 xDSL Fibra ottica ISDN... rete pubblica (con NAT) (es: /24) azienda.local

To Do List

The Configure and Internet Connection Wizard This wizard provides on-screen instructions to configure the following server settings: Networking Firewall Secure Web publishing Networking Firewall Secure Web publishing

Network Connections Broadband connection types include: Direct broadband connection Local router Broadband connection that requires a user name and password Direct broadband connection Local router Broadband connection that requires a user name and password The Configure and Internet Connection Wizard supports multiple Internet connections that use a broadband device or a modem

Firewall Settings To configure the firewall, you must meet one of the following criteria: Use a dial-up connection to the Internet Use a direct broadband connection that requires a user name and password (es: modem adsl) Use a broadband connection to the Internet (es: router) Use an existing firewall device on your network that supports Universal Plug and Play Use a dial-up connection to the Internet Use a direct broadband connection that requires a user name and password (es: modem adsl) Use a broadband connection to the Internet (es: router) Use an existing firewall device on your network that supports Universal Plug and Play

You can choose which Web site services that users can access, such as: Secure Web Site Settings Outlook Web Access Remote Web Workspace Performance and Usage reports Outlook Mobile Access SharePoint site Outlook Web Access Remote Web Workspace Performance and Usage reports Outlook Mobile Access SharePoint site

To send and receive Internet messages by using Exchange: Settings Choose the appropriate delivery method Choose the appropriate retrieval method Choose the signal type Enter the registered Internet domain name Determine whether to remove attachments from incoming

Windows Small Business Server Remote Access Wizard This wizard provides on-screen instructions for configuring your server for: VPN connections Dial-up connections Both VPN and dial-up connections VPN connections Dial-up connections Both VPN and dial-up connections After clicking Finish, the wizard: Configures the server according to your selected settings Creates the Client Connection Manager configuration file Configures the remote access policy to allow members of the Mobile Users group to use remote access Configures the server according to your selected settings Creates the Client Connection Manager configuration file Configures the remote access policy to allow members of the Mobile Users group to use remote access

Riferimenti e risorse Risorse tecniche per Windows Small Business Server chinfo/default.mspx chinfo/default.mspx MOC Course 2395: Design, Deploy, and Manage a Network Solution for a Small and Medium Business Exam : Design, Deploy, and Manage a Network Solution for a Small- and Medium-Sized Business