IT:Network:Microsoft Applications

Slides:



Advertisements
Similar presentations
Patch Management Patch Management in a Windows based environment
Advertisements

Optimizing Windows Vista Performance Lesson 10. Skills Matrix Technology SkillObjective DomainObjective # Introducing ReadyBoostTroubleshoot performance.
© Copyright Lumension Security Lumension Security PatchLink Enterprise Reporting™ 6.4 Overview and What’s New.
Microsoft Baseline Security Analyzer INLS 187 Security Software Presentation by Hinár György Polczer
Patching MIT SUS Services IS&T Network Infrastructure Services Team.
Small Business Security By Donatas Sumyla. Content Introduction Tools Symantec Corp. Company Overview Symantec.com Microsoft Company Overview Small Business.
Maintaining and Updating Windows Server 2008
How To Keep Up With Security Patches Eric Schultze Security Strategies Microsoft.
Module 6: Patches and Security Updates 1. Overview Installing Patches and Security Updates Recent patches and security updates for IIS Recent patches.
Microsoft ® Application Virtualization 4.5 Infrastructure Planning and Design Series.
11 MAINTAINING THE OPERATING SYSTEM Chapter 5. Chapter 5: MAINTAINING THE OPERATING SYSTEM2 CHAPTER OVERVIEW Understand the difference between service.
© 2013 Jones and Bartlett Learning, LLC, an Ascend Learning Company All rights reserved. Security Strategies in Linux Platforms and.
Patch Management Strategy
Module 16: Software Maintenance Using Windows Server Update Services.
11 MAINTAINING THE OPERATING SYSTEM Chapter 5. Chapter 5: MAINTAINING THE OPERATING SYSTEM2 CHAPTER OVERVIEW  Understand the difference between service.
Security Risk Management Marcus Murray, CISSP, MVP (Security) Senior Security Advisor, Truesec
Wally Mead Senior Program Manager Microsoft Corporation.
Avanade: 10 tips for å sikring av dine SQL Server databaser Bernt Lervik Infrastructure Architect Avanade.
Resiliency Rules: 7 Steps for Critical Infrastructure Protection.
Virtual techdays INDIA │ august 2010 Testing & Fixing Applications on Windows 7 Sudhir Rao │ Solution Specialist, Microsoft Corporation.
Security Audit Tools Project. CT 395 IT Security I Professor Igbeare Summer Quarter 2009 August 25, 2009.
Module 9 Configuring Server Security Compliance. Module Overview Securing a Windows Infrastructure Overview of EFS Configuring an Audit Policy Overview.
1 Objectives Windows Firewalls with Advanced Security Bit-Lock Update and maintain your clients using Windows Server Update Service Microsoft Baseline.
IT:Network:Microsoft Server 2 Chapter 27 WINDOWS SERVER UPDATE SERVICES.
70-294: MCSE Guide to Microsoft Windows Server 2003 Active Directory Chapter 12: Deploying and Managing Software with Group Policy.
1. Windows Vista Enterprise And Mid-Market User Scenarios 2. Customer Profiling And Segmentation Tools 3. Windows Vista Business Value And Infrastructure.
CN1176 Computer Support Kemtis Kunanuraksapong MSIS with Distinction MCT, MCTS, MCDST, MCP, A+
Security Overview for Microsoft Infrastructures Fred Baumhardt and James Noyce Infrastructure Solutions and Security Solutions Teams Microsoft Security.
Hands-On Microsoft Windows Server 2003 Administration Chapter 2 Managing Windows Server 2003 Hardware and Software.
Raven Services Update December 2003 David Wallis Senior Systems Consultant Raven Computers Ltd.
Virtual techdays INDIA │ 9-11 February 2011 Security Discussion: Ask the Experts M.S.Anand │ MTC Technology Specialist │ Microsoft Corporation Anirudh.
Patch Management Only part of the solution….. Bob Isaak Mar 04, 2004.
Managing and Monitoring Windows 7 Performance Lesson 8.
User Manager Pro Suite Taking Control of Your Systems Joe Vachon Sales Engineer November 8, 2007.
Module 14: Configuring Server Security Compliance
The Microsoft Baseline Security Analyzer A practical look….
FNAL System Patching Design Jack Schmidt, Al Lilianstrom, Andy Romero, Troy Dawson, Connie Sieh (Fermi National Accelerator Laboratory) Introduction FNAL.
Time lag between discovering issue and resolving Difficult to find solutions and patches that can help resolve issue Service outages expensive and.
Windows 2003 Installation/Upgrade and Update. Checking Compatibility Supported Upgrade paths Using the MS Windows Upgrade Advisor HCL (Hardware Compatibility.
Managing Windows Software & Updates SUS Server MS Baseline Security Analyzer Software and Group Policy Paul “The Yellow Dart” Peterson University of Minnesota.
1 Objectives Windows Firewalls with Advanced Security Bit-Lock Update and maintain your clients using Windows Server Update Service Microsoft Baseline.
Paul Butterworth Management Technology Architect
Module 6: Designing Security for Network Hosts
Module 14: Securing Windows Server Overview Introduction to Securing Servers Implementing Core Server Security Hardening Servers Microsoft Baseline.
Microsoft Management Seminar Series SMS 2003 Change Management.
THIS PRESENTATION: WINDOWS UPDATES VIA AUTOMATIC DEPLOYMENT RULES BEST PRACTICES SYSTEM CENTER CONFIGURATION MANAGER 2012 R2 Jodie Gaver Jodie Gaver Working.
Microsoft Premier Offering Project Server 2007 Health Review Bishan Ruder Premier Field Engineer (PFE) Enterprise Project Management (EPM)
Rob Davidson, Partner Technology Specialist Microsoft Management Servers: Using management to stay secure.
NetTech Solutions Protecting the Computer Lesson 10.
Optimizing Windows Vista Performance Lesson 10. Skills Matrix Technology SkillObjective DomainObjective # Introducing ReadyBoostTroubleshoot performance.
11 IMPLEMENTING AND MANAGING SOFTWARE UPDATE SERVICES Chapter 7.
Understand Server Protection LESSON Security Fundamentals.
Implementing Server Security on Windows 2000 and Windows Server 2003 Fabrizio Grossi.
Internet Explorer 7 Updated Advice for the NHS 04 February 2008 Version 1.3.
Application Migration Fritz Ohman Alphageek
WMUG Presents System Center 2012 Configuration Manager Software Updates Management Presented by Robert Marshall MVP ConfigMgr
Securing a Host Computer BY STEPHEN GOSNER. Definition of a Host  Host  In networking, a host is any device that has an IP address.  Hosts include.
Managing Servers Lesson 10. Skills Matrix Technology SkillObjective DomainObjective # Using Remote DesktopPlan server management strategies 2.1 Delegating.
ITMT 1371 – Window 7 Configuration 1 ITMT Windows 7 Configuration Chapter 8 – Managing and Monitoring Windows 7 Performance.
Maintaining and Updating Windows Server 2008 Lesson 8.
NETWORK SECURITY LAB 1170 REHAB ALFALLAJ CT1406. Introduction There are a number of technologies that exist for the sole purpose of ensuring that the.
11 DEPLOYING AN UPDATE MANAGEMENT INFRASTRUCTURE Chapter 6.
Patch Management Patch Management Best Practices
Compliance with hardening standards
Lesson #7 MCTS Cert Guide Microsoft Windows 7, Configuring Chapter 7 Configuring Devices and Updates.
Figure 6-4: Installation and Patching
Forum on Application Compatibility for Windows “Longhorn”
5/12/2019 2:57 PM © Microsoft Corporation. All rights reserved.
Microsoft Virtual Academy
Implementing Security Patch Management
Presentation transcript:

IT:Network:Microsoft Applications Network Patch Management

Agenda Network Patch Management Microsoft Baseline Security Analyzer Windows Software Update Services Third Party Products

Network Patch Management What is it? The process of controlling the deployment and maintenance of interim software releases into production environments Patch management is a critical part of maintaining the security of your systems and network. The patch management system that you build and maintain is, among other things, the channel through which you deploy security updates from Microsoft and other vendors. The timely application of security updates is one of the most important and effective things you can do to protect your systems and network, therefore, your patch management system must be as efficient as possible.

Network Patch Management Poor update management can result in: Downtime Remediation time Questionable data integrity Lost credibility Negative public relations Legal defenses Stolen intellectual property

Network Patch Management Ten Principles of Microsoft Patch Management Service packs should form the foundation of your patch management strategy Make Product Support Lifecycle a key element in your strategy Perform risk assessment using the Severity Rating System as a starting point Use mitigating factors to determine applicability and priority Only use workarounds in conjunction with deployment Issues with Security Updates are documented in the Security Bulletin Master Knowledge Base Article Test updates before deployment Contact Microsoft Product Support Services if you encounter problems in testing or deployment Use only methods and information recommended for detection and deployment The Security Bulletin is always authoritative

Network Patch Management Microsoft process for updating software after release Microsoft makes available periodic updates. Every Microsoft product group includes a sustaining engineering team which develops updates to resolve problems. The process is as follows: Microsoft is made aware of a security vulnerability. Issue is evaluated and verified by the Microsoft Security Response Center. The product groups sustaining team creates and tests update. Microsoft distributes the software update through the Microsoft Download Center and other services: Automatic Updates and User Initiated Updates

Network Patch Management Microsoft Update Definitions Term Definition Security patch A broadly released fix for a specific product, addressing a security vulnerability Critical update A broadly released fix for a specific problem, addressing a critical, non-security–related bug Update A broadly released fix for a specific problem, addressing a non-critical, non-security–related bug Hotfix A single package composed of one or more files used to address a problem in a product. Service pack A cumulative set of hotfixes, security patches, critical updates, and updates since the release of the product, including many resolved problems that have not been made available through any other software updates. Service packs may also contain a limited number of customer-requested design changes or features.

Network Patch Management Windows updates—additions to software that can help prevent or fix problems, improve how your computer works, or enhance your computing experience Windows updates can be managed through Control PanelSystem and SecurityWindows Update.

Microsoft Baseline Security Analyzer (MBSA) A tool designed for the IT professional that helps determine their security state in accordance with Microsoft security recommendations and offers remediation guidance. You can use MBSA to detect common security misconfigurations and missing security updates on your computer systems. The MBSA can check computers running: Windows Server 2012, R2 Windows 8 Windows Server 2008 R2, Windows Server 2008 Windows 7 Windows Server 2003 Windows Vista

Microsoft Baseline Security Analyzer (MBSA)

Microsoft Baseline Security Analyzer (MBSA)

Microsoft Baseline Security Analyzer (MBSA)

Windows Software Update Services Enables information technology administrators to deploy the latest Microsoft product updates to computers that are running the Windows operating system. By using WSUS, administrators can fully manage the distribution of updates that are released through Microsoft Update to computers in their network. Must be added as a Role for Windows Server 2008 R2 Requires Internet Information Services to be added as a Role Service

Windows Software Update Services

Windows Software Update Services Enables information technology administrators to deploy the latest Microsoft product updates to computers that are running the Windows operating system. By using WSUS, administrators can fully manage the distribution of updates that are released through Microsoft Update to computers in their network. Must be added as a Role for Windows Server 2008 R2 Requires Internet Information Services to be added as a Role Service

Windows Software Update Services What client platforms support WSUS? Windows XP Windows Vista Windows 7 Windows Server 2003 Windows Server 2008 Windows Server 2008 R2

Windows Software Update Services

Windows Software Update Services

References and other solutions Ten Principles of Microsoft Patch Management http://technet.microsoft.com/en-us/library/cc512589.aspx Windows Software Update Services http://www.microsoft.com/windowsserversystem/updateservices/default. mspx Lumension http://www.lumension.com/ Spiceworks http://www.spiceworks.com/ Microsoft System Center Essentials 2010 http://www.microsoft.com/systemcenter/en/us/essentials.aspx