Raven Services Update December 2003 David Wallis Senior Systems Consultant Raven Computers Ltd.

Slides:



Advertisements
Similar presentations
Patch Management Patch Management in a Windows based environment
Advertisements

SUS Feature Pack for SMS Michel Jouvin LAL / IN2P3
Configuration management
Establishing an OU Hierarchy for Managing and Securing Clients Base design on business and IT needs Split hierarchy Separate user and computer OUs Simplifies.
WSUS Presented by: Nada Abdullah Ahmed.
Patch Management –Pedro Carrasquilla –Sean Garrett –Jeni Li Arizona State University East Information Technology October 2, 2003 By Presented to WNUG/CCC.
A Technical Overview of Microsoft Forefront Client Security (FCS) Howard Chow Microsoft MVP.
SAGE-AU Adelaide Windows Update Services Michael Kleef IT Pro Evangelist Microsoft Corporation Level 200.
Microsoft Software Assurance for Academic Licensing Programs.
Patch management with ZenWorks James Dore, IT Officer, New College /
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment Chapter 12: Managing and Implementing Backups and Disaster Recovery.
Windows Update Services Patch Management comes of Age David Wallis Senior Systems Consultant Raven Computers Ltd.
Microsoft Baseline Security Analyzer INLS 187 Security Software Presentation by Hinár György Polczer
MCDST : Supporting Users and Troubleshooting a Microsoft Windows XP Operating System Chapter 5: User Environment and Multiple Languages.
Patching MIT SUS Services IS&T Network Infrastructure Services Team.
Small Business Security By Donatas Sumyla. Content Introduction Tools Symantec Corp. Company Overview Symantec.com Microsoft Company Overview Small Business.
Maintaining and Updating Windows Server 2008
MCTS Guide to Microsoft Windows Server 2008 Network Infrastructure Configuration Chapter 11 Managing and Monitoring a Windows Server 2008 Network.
Mark O’Shea Partner Technology Advisor – SMB Microsoft Australia.
Module 6: Patches and Security Updates 1. Overview Installing Patches and Security Updates Recent patches and security updates for IIS Recent patches.
Maintaining Windows Server 2008 File Services
11 MAINTAINING THE OPERATING SYSTEM Chapter 5. Chapter 5: MAINTAINING THE OPERATING SYSTEM2 CHAPTER OVERVIEW Understand the difference between service.
IT:Network:Microsoft Applications
SUS Services ECE Computer Facilities. SUS Services Software Update Services Microsoft Security And Critical Update Service Microsoft Security And Critical.
Module 16: Software Maintenance Using Windows Server Update Services.
16.1 © 2004 Pearson Education, Inc. Exam Managing and Maintaining a Microsoft® Windows® Server 2003 Environment Lesson 16: Examining Software Update.
11 MAINTAINING THE OPERATING SYSTEM Chapter 5. Chapter 5: MAINTAINING THE OPERATING SYSTEM2 CHAPTER OVERVIEW  Understand the difference between service.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment, Enhanced Chapter 12: Managing and Implementing Backups and Disaster Recovery.
Desktop Security: Worms and Viruses Brian Arkills, C&C NDC-Sysmgt.
Managing CERN Desktops with Systems Management Server (SMS 2003) Michel Christaller Internet Services Group Department of Information Technology CERN May.
Module 9 Configuring Server Security Compliance. Module Overview Securing a Windows Infrastructure Overview of EFS Configuring an Audit Policy Overview.
Elite Networking & Consulting Presents: Everything You Wanted To Know About Data Insurance* * But Were Afraid To Ask Elite Networking & Consulting, LLC,
IT:Network:Microsoft Server 2 Chapter 27 WINDOWS SERVER UPDATE SERVICES.
70-294: MCSE Guide to Microsoft Windows Server 2003 Active Directory Chapter 12: Deploying and Managing Software with Group Policy.
Security Overview for Microsoft Infrastructures Fred Baumhardt and James Noyce Infrastructure Solutions and Security Solutions Teams Microsoft Security.
Hands-On Microsoft Windows Server 2003 Administration Chapter 2 Managing Windows Server 2003 Hardware and Software.
Chapter Fourteen Windows XP Professional Fault Tolerance.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment, Enhanced Chapter 12: Managing and Implementing Backups and Disaster Recovery.
Module 13: Maintaining Software by Using Windows Server Update Services.
Terry Henry IS System Manager, SharePoint SME Micron Technology Inc.
 To explain the importance of software configuration management (CM)  To describe key CM activities namely CM planning, change management, version management.
User Manager Pro Suite Taking Control of Your Systems Joe Vachon Sales Engineer November 8, 2007.
How CERN reacted to the Blaster and Sobig virus attack Christian Boissat, Alberto Pace, Andreas Wagner.
Installing Windows Vista Lesson 2. Skills Matrix Technology SkillObjective DomainObjective # Performing a Clean Installation Set up Windows Vista as the.
FNAL System Patching Design Jack Schmidt, Al Lilianstrom, Andy Romero, Troy Dawson, Connie Sieh (Fermi National Accelerator Laboratory) Introduction FNAL.
SMS 2003 Deployment and Managing Windows Security Rafal Otto Internet Services Group Department of Information Technology CERN 26 May 2016.
Installing SIGNZ on a stand- alone machine. These slides will guide you through the installation of the SIGNZ ‘server’ and ‘client’ components on one machine.
Windows Small Business Server 2003 Setting up and Connecting David Overton Partner Technical Specialist.
Windows 2003 Installation/Upgrade and Update. Checking Compatibility Supported Upgrade paths Using the MS Windows Upgrade Advisor HCL (Hardware Compatibility.
Systems Management Server 2.0: Backup and Recovery Overview SMS Recovery Web Site location: Updated.
Module 15 Managing Windows Server® 2008 Backup and Restore.
Maintaining and Updating Windows Server Monitoring Windows Server It is important to monitor your Server system to make sure it is running smoothly.
Microsoft Management Seminar Series SMS 2003 Change Management.
Vlad Mazek Own Web Now Corp CEO, MCSE, MCSA, CISSP (877) Portions reproduced with permission from Dean Calvert.
11 IMPLEMENTING AND MANAGING SOFTWARE UPDATE SERVICES Chapter 7.
T4L – NSW DET SOE NSW DET SOE SOE was developed in open consultation with TAFE, Schools, Other personnel Developed to provide single BASE image.
Internet Explorer 7 Updated Advice for the NHS 04 February 2008 Version 1.3.
Page 1 Viruses. Page 2 What Is a Virus A virus is basically a computer program that has been written to perform a specific set of tasks. Unfortunately,
Securing a Host Computer BY STEPHEN GOSNER. Definition of a Host  Host  In networking, a host is any device that has an IP address.  Hosts include.
Planning Server Deployments Chapter 1. Server Deployment When planning a server deployment for a large enterprise network, the operating system edition.
Maintaining and Updating Windows Server 2008 Lesson 8.
NETWORK SECURITY LAB 1170 REHAB ALFALLAJ CT1406. Introduction There are a number of technologies that exist for the sole purpose of ensuring that the.
11 DEPLOYING AN UPDATE MANAGEMENT INFRASTRUCTURE Chapter 6.
Microsoft OS Vulnerabilities April 1, 2010 MIS 4600 – MBA © Abdou Illia.
CS457 Introduction to Information Security Systems
Lesson 19: Configuring and Managing Updates
Microsoft SharePoint Server 2016
SharePoint Permissions Manager
Security through Group Policy
Presentation transcript:

Raven Services Update December 2003 David Wallis Senior Systems Consultant Raven Computers Ltd

Agenda Windows Patch Management –What are patches and why do we need them? –Windows Update –Software Update Services (SUS) –Raven Update Service Raven Backup Validation Service Disaster Recovery/Business Continuity Planning

What are Patches Also known as Hotfixes Modifications to the original program code, normally to fix a problem or vulnerability Quick Fix Engineering – QFE Not normally tested as thoroughly as normal software –May introduce new problems

Worms and Vulnerabilities Windows 2000 contains over 30 Million lines of code – Mistakes are inevitable Bugs may be discovered and exploited –Buffer Overflows Worms –Programs are written to automate the exploitation of the bug –Like Virus’s but may not require you to open them –Can spread very quickly, causing havoc –Blaster, Nimda, SOBig

Types of patch Critical Security fixes –Created in direct response to a newly discovered threat –Must be applied quickly to protect against worms written to exploit the vulnerability –Time to release is very short, so testing is “Rapid” –Should almost always be applied if they are relevant to your setup

Types of patch Non-Critical Updates –Created to fix specific bugs or to enhance functionality –Should only be applied if the particular problem affects your computer –Can be more thoroughly tested before release

Types of patch Service Packs –Combination of several hotfixes and updates –Thoroughly tested in a wide range of environments before release –Form a new baseline for the product against which future software will be tested –Should be applied when deemed stable

Windows Update Built into Windows 98, Me, 2000 and XP Visit web page to determine what patches should be applied Tries to only propose relevant patches Must be run manually from each computer Linked from start menu –

Automatic Update Agent Introduced with Windows XP SP1 and Win2k SP4 Available as a download for Win2k SP3 Automates download of critical security patches Can automatically apply and restart computer Can wait for approval before applying Each computer operates separately and fetches its own updates

Software Update Services - SUS Your own Windows Update server Runs on a server on your site Integrates into IIS Administrator approves and downloads patches Client agent on PCs installs approved updates from SUS server Can be managed through Group Policy

Microsoft Software Update Services (SUS)

SUS Client Agent Built into Windows XP SP1 and Win2k SP4 Can be managed and deployed through Active Directory Group Policy Machines can be told to install patches at specified times Machines can be told to reboot at specified times if they are left on

SUS Requirements Runs on Windows 2000 SP3 or later, or Windows 2003 Server running IIS Client PCs must run Windows 2000 SP3 or later, or Windows XP –Windows 9x not supported Installs IISLockdown, so may interfere with some Intranets Administrator must manually approve each update Typical Installation time around ½ day. May vary on some sites

SUS Capabilities SUS can apply all Windows critical security updates and can now deploy service packs to Windows 2000 and Windows XP Next version (due Q2 2004) will allow security patches for Office, Exchange Server and SQL Server to be automatically deployed too

Raven Update Services

Subscription service - £600 per annum –Requires SUS server to be installed Raven Engineers approve updates after testing on a representative sample of platforms Local SUS server pulls only approved “Safe” updates from Raven Update Server Requires no local administration “Hands Free” update of client PCs

Raven Backup Validation Service Is your Backup adequate? Backup is essential, and is YOUR responsibility Have your requirements changed since it was installed? Are you backing up everything you need? Could you recover in the event of a disaster?

Possible backup failings Tape drive needs cleaning Tape is unreadable on another unit Backup job has been interfered with Job may be on hold Critical files may be in use Requirements may have changed Nobody checking that job has run

Raven Backup Validation Service Subsidised fee of £500* for basic server, Raven Consultants will: –Examine your backup strategy –Document your backup procedure in a simple, easy to follow guide –Take a sample tape away and confirm that it contains everything you need –Perform a sample test restore to ensure that data on tape is readable *Based on a single server running supported backup software and DAT or DLT tape unit Prices for more complicated systems on request

Disaster Recovery Planning Business Continuity plan increasingly required by auditors Plan for swift return of IT services in the event of: –Burglary –Fire/Destruction –Critical Failure

Trial Recovery By arrangement, Raven Consultants can: –Perform a complete recovery of your system to a similar hardware platform –Provide a report as to estimated time to get operational –Advise on potential weaknesses and problem areas –Advise on streamlining the recovery process –Document the recovery process in a step by step guide

Conclusions Patch Management of servers and client PCs is essential –SUS can automate this, but requires an administrator –Raven Update Services fills the role of the Administrator for customers without a substantial IT department Be confident in your Backups –Ensure you have adequate backups –Ensure you know how to recover from them if you need to –Utilise Raven services to gain peace of mind

Any Questions? David Wallis Senior Systems Consultant Raven Computers Ltd