Download presentation
Presentation is loading. Please wait.
2
Michael Kleef Technology Advisor | Microsoft Australia http://blogs.technet.com/mkleef
3
Branch Office Vision Promote Server Core to RODC Implement DFS-N and DFS-R Roles Implement BitLocker Implement Policy Based Qos
4
Data Protection Remote Support Server Management Service Deployment WAN Performance
5
Cache: Local request handling Store-and-forward to central server State-of-the-art compression Cache: Limits bandwidth usage Cache: Mitigates WAN latency Clients failover to a central server Service cache: No unique state Easy to re-provision replacements ServiceAccelerator Continuity of Services A simple, self-healing, self diagnosing, “admin-free” server OptionalDisposableReplaceable
6
Server Core Only a subset of the executable files and DLLs installed No GUI interface installed Nine available Server Roles Can be managed with remote tools
7
Main Office Branch Office Features Read Only Active Directory Database and GC PAS Only allowed user passwords are stored on RODC Unidirectional Replication Role Separation Benefits Increases security for remote Domain Controllers where physical security cannot be guaranteed Support ADFS,DNS, DHCP, FRS V1, DFSR (FRS V2), Group Policy, IAS/VPN, DFS, SMS, ADSI queries, MOM RODC
8
Branch Hub Read Only DC Windows Server 2008 DC 11 22 33 44 55 66 66 112233445566 User logs on and authenticates RODC: Looks in DB: "I don't have the users secrets" Forwards Request to Windows Server 2008 DC Windows Server 2008 DC authenticates request Returns authentication response and TGT back to the RODC RODC gives TGT to User and RODC will cache credentials RODC
9
Create Pre- Created RODC Account Export script for DCPROMO Promote Server Core to RODC
10
DFS-R Namespace Sydney User Singapore User SingaporeServer Sydney Server
11
Install DFS Role on Hub File Server Install DFS Role on Branch File Server Create Namespace and Setup Replication
12
Mitigate against external threats…. BitLocker drive encryption support in Windows Server 2008 Protects data while a system is offline Ensures boot process integrity Simplifies equipment recycling
13
Install the BitLocker Feature Escrow Keys in AD GPO Enforcement
15
Create QOS Policy for Web Traffic Create QOS Policy for VOIP Traffic
16
Send Window Receive Window
17
Increase restrictive constants Decrease protocol traffic More efficient bandwidth utilisation More resilient against interruptions
18
Request Response SMB1SMB2 Vista SP1 Further Information: http://blogs.technet.com/markrussinovich/archive/2008/02/04/2826167.aspx
19
Open Dir Query Dir Query Volume Response Open Dir Query Dir Query Volume Response Close Dir Response Query Dir Query Volume Satisfied from cache
20
40% discount for TechNet Plus Direct and TechNet Plus Single User for Launch Attendees Promo code TLNW08 www.microsoft.com.au/technetplus Priority Access to the latest software Windows Vista SP1 Technical support when you need it most 2 technical sessions with a Microsoft Support Professional Enhanced levels of service in TechNet Managed Newsgroups E-learning Updated quarterly E-Learning courses
21
Sign up to the TechNet Flash www.microsoft.com.au/technetflash Subscribe to the TechNet Australia Blog http://blogs.technet.com/itproaustralia Try a TechNet Virtual Lab www.microsoft.com.au/virtuallabs
22
How your branch offices can be more efficient with Windows Server 2008 Server Core Read Only Domain Controllers DFS-N and DFS-R BitLocker Drive Encryption
23
© 2007 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.
Similar presentations
© 2025 SlidePlayer.com. Inc.
All rights reserved.