Optimize your Infrastructure Rich, Web based experiences Hardens the OS and Protects Your Environment Better Security and Compliance Tools Network Access.

Slides:



Advertisements
Similar presentations
Ljubomir Ivaniš CPU d.o.o.
Advertisements

The System Center Family Microsoft. Mobile Device Manager 2008.
1. 2 Branch Office Network Performance Caches content downloaded from file and Web servers Users in the branch can quickly open files stored in the cache.
1 Vladimir Knežević Microsoft Software d.o.o.. 80% Održavanje 80% Održavanje 20% New Cost Reduction Keep Business Up & Running End User Productivity End.
Module 3 Windows Server 2008 Branch Office Scenario.
Technical Overview Nguyen An Que Technology Specialist Microsoft Vietnam
Connect with life Gopikrishna Kannan Program Manager | Microsoft Corporation
Dan Stolts IT Pro Evangelist US DPE - North East Microsoft Corporation
More Control and Flexibility Vitalis Konopelec Technology Solution Professional Microsoft Slovakia s.r.o.
Security and Policy Enforcement Mark Gibson Dave Northey
Michael Kleef Technology Advisor | Microsoft Australia
Optimizing Client Security by Using Windows Vista.
Sudhir Rao Technology Specialist | Microsoft Corporation.
Agenda 9:00 – 9:45 Predstavenie systému Windows Server :45 – 11:15 Windows Server 2008 – manažment,viac kontroly nad systémom 11:15 – 11:30 Prestávka.
Daniel Petri MVP, Microsoft Infrastructure Manager John Bryce Training November 2007.
Executive Overview. PLEASE READ (hidden slide) To deliver this presentation effectively, you need to be familiar with Windows Server 2008 R2 management.
Exchange 2010 Overview Name Title Group. What You Tell Us Communication overload Globally distributed customers and partners High cost of communications.
Windows 7 Windows Server 2008 R2 VirtualizationVirtualization Heterogeneous Server Environment Inventory Linux, Unix & VMware Windows 7 & Server 2008.
Understanding Active Directory
Understanding Active Directory
Wally Mead Senior Program Manager Microsoft Corporation.
Get more control & flexibility of the Windows Azure environment Developers IT Pros Easier migration of existing Windows applications to Windows Azure.
Identity and Access Management Business Ready Security Solutions.
Purpose Intended Audience and Presenter Contents Proposed Presentation Length Intended audience is all distributor partners and VARs Content may be customized.
Clinic Security and Policy Enforcement in Windows Server 2008.
Hands-On Microsoft Windows Server 2008 Chapter 1 Introduction to Windows Server 2008.
Christopher Chapman | MCT Content PM, Microsoft Learning, PDG Planning, Microsoft.
Session 1 – Hyper-V as a Platform for VDI. Virtual Presentation Presentation layer separate from process Virtual Presentation Presentation layer separate.
Hands-On Microsoft Windows Server 2008 Chapter 1 Introduction to Windows Server 2008.
Module 1: Server Roles and Initial Configuration Tasks
Technology Overview. Agenda What’s New and Better in Windows Server 2003? Why Upgrade to Windows Server 2003 ?  From Windows NT 4.0  From Windows 2000.
Technical Overview. SecurityWebVirtualization Solid Foundation for Your Business Workloads Windows Server 2008 pillars Reduces costs, increases hardware.
Contents Chapter 1 : Installation Chapter 2 : Administration Chapter 3 : Users Chapter 4: Groups Chapter 5 : Computers Chapter 6: Group Policy Infrastructure.
Windows XP to Windows 7 using P2V Migration. Agenda Deploying Local P2V Migration for SA Retro Mode Scripts Customize MDT 2010 with Disk2VHD Windows Virtual.
1 Objectives Windows Firewalls with Advanced Security Bit-Lock Update and maintain your clients using Windows Server Update Service Microsoft Baseline.
Sudarshan Yadav Sr. Program Manager, Microsoft
Windows Azure Migrating Applications and Workloads Speaker Title Organization.
Shai Tirosh Windows Server Regional Director artNET Experts.
V-Alliance Solution Overview Years of Business Success.
Terminal Services Technical Overview Olav Tvedt TVEDT.info Microsoft Speaker Community
LegendCorp What is System Center Virtual Machine Manager (SCVMM)? SCVMM at a glance Features and Benefits Components / Topology /
Exchange Deployment Planning Services Exchange 2010 Complementary Products.
Yaniv Feldman Senior Infrasec Architect Microsoft Security Regional Director
Jason De Lorme Microsoft Corporation ISV Architect Evangelist.
Service Pack 2 System Center Configuration Manager 2007.
Module 14: Advanced Topics and Troubleshooting. Microsoft ® Windows ® Small Business Server (SBS) 2008 Management Console (Advanced Mode) Managing Windows.
Virtualization Vitalis Konopelec Technology Solution Professional Microsoft Slovakia s.r.o.
Asif Jinnah Field Desktop Services Enabling a Flexible Workforce, an insider’s view.
Provided Under NDA - Secure Access to Corporate Resources.
Arizona SharePoint Professionals Group.
D-Link Wireless AP with NAP 802.1x solution
Windows Server Branch Office Solutions
SharePoint Online Management and Control
11/11/2018 Desktop Virtualization Corey Hynes Kyle Rosenthal President Technical Lead HynesITe Inc Spider Consulting @windowspcguy.
Microsoft System Center
Server Infrastructure & Managing Workloads
Microsoft Virtual Academy
Microsoft Virtual Academy
Microsoft Virtual Academy
Microsoft Virtual Academy
Windows Server 2008 Iain McDonald Director of Program Management
Microsoft Virtual Academy
Enabling the hybrid cloud with remote access appliances
Windows Azure Hybrid Architectures and Patterns
Microsoft Virtual Academy
Microsoft Virtual Academy
Microsoft Virtual Academy
Microsoft Virtual Academy
Microsoft Virtual Academy
Microsoft Virtual Academy
Presentation transcript:

Optimize your Infrastructure Rich, Web based experiences Hardens the OS and Protects Your Environment Better Security and Compliance Tools Network Access Protection Enhanced Scripting and Task Automation Modular and Extensible Platform Integrated Hypervisor Server Consolidation Power Savings Solid Foundation for Your Business Workloads

Web Solid Foundation for Enterprise Workloads Virtualization Internet Information Services 7.0 Efficient management and deployment tools Customizable platform with.NET extensibility Windows Media Services Advanced streaming and caching Windows SharePoint Services Powerful document and team collaboration Windows Server Virtualization Hypervisor-based virtualization platform High availability through Failover Clustering Terminal Services Gateway Access internal resources through the firewall Terminal Services RemoteApp Access and run remote applications locally Server Core Minimal installation option for better security and reliability Next Generation Networking New TCP/IP stack for improved scalability and performance Failover Clustering Easy to implement and flexible high availability Server Manager Role-based configuration, management and reporting Windows PowerShell Command shell and scripting language for task automation Windows Deployment Services Fast and efficient imaging of clients and servers Security Read-Only Domain Controller Increased security and delegated management for branch offices Network Access Protection Health validation and compliance checking Federated Rights Management Protected document collaboration ManageabilityManageability Reliability

Server Manager Product Installation Initial Configuration

New Command-line shell & Scripting Language Resources Improves productivity & control Accelerates automation of system admin Works with existing scripts Ships with Windows Server 2008 Easy for non-programmers Role management in future versions TechNet Script Center MyITForum.com Newsgroup and Web Forum Team Blog and Channel 9 Books from Manning, O’Reilly, Microsoft Press, Sapien Partners

Server Management and Windows Powershell

Optimized performance without loss Intelligent, automated tuning of TCP receive window size Better packet loss resiliency (e.g. wireless connectivity) Advanced congestion control for better throughput Automatically adjusts for maximum efficiency Faster network transfers, especially across WAN links Optimized use of available network bandwidth Reduced packet loss resulting in fewer retransmits

Heartbeat New Validation Wizard Support for GUID partition table (GPT) disks in cluster storage Improved cluster setup and migration Improvements to stability and security – no single point of failure Geographically dispersed clusters Active Node Passive Node

Streamlined installation means reduced attack surface Simplified administration through variety of tools Customization and extensibility through.NET Xcopy deployment and shared configuration Event logging and tracing for faster troubleshooting Application and health management for Web services

Impact of stolen DC to the Active Directory reduced By default, no users/computers passwords stored on RODC Read-only Partial Attribute Set can prevent application credentials from replicating to RODC Reduced attack surface to the Active Directory for a compromised DC Read-only state with unidirectional replication for AD and FRS/DFSR Each RODC has its own KDC KrbTGT account to provide cryptographic key separation Delegated DCPROMO reduces need for DA to TS into RODC Windows Server 2008 writeable DCs register SRV records on behalf of RODCs to prevent name squatting RODCs are workstation accounts Not members of Enterprise-DC or Domain-DC groups Very limited rights to write in Directory

Branch Hub Read Only DC Windows Server 2008 DC User logs on and authenticates RODC: Looks in DB: "I don't have the users secrets" Forwards Request to Windows Server 2008 DC Windows Server 2008 DC authenticates request Returns authentication response and TGT back to the RODC RODC gives TGT to User and RODC will cache credentials RODC

Determines whether the computers are compliant with the company’s security policy. Compliant computers are deemed “healthy” Policy Validation Restricts network access to computers based on their health Network Restriction Provides necessary updates to allow the computer to “get healthy.” Once healthy, the network restrictions are removed Remediation Changes to the company’s security policy or to the computers’ health may dynamically result in network restrictions Ongoing Compliance

1 Restricted Network MSFT Network Policy Server 3 Policy Servers e.g. MSFT Security Center, SMS, Antigen or 3 rd party Policy compliant DHCP, VPN Switch/Router 2 Windows Vista Client Fix Up Servers e.g. MSFT WSUS, SMS & 3 rd party Corporate Network 5 Not policy compliant 4 Enhanced Security All communications are authenticated, authorized & healthy Defense-in-depth on your terms with DHCP, VPN, IPsec, 802.1X Policy-based access that IT Pros can set and control Customer Benefits

Information AuthorThe Recipient AD RMS protects access to an organization’s digital files AD RMS in Windows Server 2008 includes several new features Improved installation and administration experience Self-enrollment of the AD RMS cluster Integration with AD Federation Services New administrative roles

Group Policy allows central encryption policy and provides Branch Office protection Provides data protection, even when the system is in unauthorized hands or is running a different or exploiting Operating System Uses a v1.2 TPM or USB flash drive for key storage Full Volume Encryption Key (FVEK) Encryption Policy

Windows Server Core New minimal installation option with only “core” components No GUI interface or graphical applications installed Subset of server roles and features available Manage remotely as you would any server

Windows Server Core

A Comprehensive Set of Virtualization Products, from the Data Center to the Desktop Server Virtualization Application Virtualization Desktop Virtualization Presentation Virtualization Assets – Both Virtual and Physical – Managed from a Single Platform Windows Server 2008 Virtualization

Greater scalability and improved performance x64 bit host and guest support SMP support Increased reliability and security Minimal trusted code base Runs as a Server Core role Better flexibility and manageability New UI/Integration with SCVMM VM 1 “Parent” VM 2 “Child” VM 3 “Child” HardwareHardware Windows Server 2003 Virtual Server 2005 R2 VM 2 VM 3

Internet Perimeter Network Corporate Network Remote/ Mobile User Terminal Services Gateway Network Policy Server Active Directory DC Tunnels RDP over HTTPs Strips off RDP / HTTPs Terminal Servers and other RDP Hosts RDP traffic passed to TS Internet

Terminal Server Run server-based applications locally Centrally manage applications Zero footprint client installation Run server-based applications locally Centrally manage applications Zero footprint client installation RDP 6.0 client required

Infrastructure OptimizationApplication Re-PlatformingExtending Core SystemsTraining and SupportSustain & Enhance

© 2007 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.