Windows Server 2008
Download
Report
Transcript Windows Server 2008
Agenda
9:00 – 9:45
9:45 – 11:15
11:15 – 11:30
11:30 – 12:15
12:15 – 13:15
13:15 – 14:15
14:15 – 14:30
14:30 – 15:15
15:15 – 16:00
15:15 – 16:00
Predstavenie systému Windows Server 2008
Windows Server 2008 – manažment,viac kontroly nad systémom
Prestávka
Windows Server 2008 Bezpečnosť
Obed
Virtualizácia – novinky a vylepšenia
Prestávka
Internet Information Services 7.0 – Next Generation Web
Iné novinky Windows Server 2008
Záver podujatia
Vitalis Konopelec
Technology Solution Professional
[email protected]
Microsoft Slovakia s.r.o.
Operations Infrastructure
Application Platform
Control
Flexibility
Availability
Flexible Solutions
Connected Systems
Rich Experiences
Investment in the Fundamentals
Security
Reliability
Performance
More Control
Improved Protection
Greater Flexibility
1. Server Management
2. Windows PowerShell
3. Internet Information Services 7.0
4. Server Hardening
5. Server Core
6. Network Access Protection (NAP)
7. Failover Clustering
8. Branch Office Deployments
9. Windows Server Virtualization
10. New Terminal Services Capabilities
More Control
Improved Protection
Greater Flexibility
1. Server Management
2. Windows PowerShell
3. Internet Information Services 7.0
4. Server Hardening
5. Server Core
6. Network Access Protection (NAP)
7. Failover Clustering
8. Branch Office Deployments
9. Windows Server Virtualization
10. New Terminal Services Capabilities
Installing, securing and managing server roles
fragmented across s multiple tools
Windows Server 2003 Setup
Post-setup security updates
Manage your server
Add/Remove Windows Components
Computer management
Security Configuration Wizard
Server Manager
Initial Configuration
Tasks
Basic Setup Configuration
More than a Web server, Internet Information Services 7.0 provides a secure, easy to manage
platform for developing and reliably hosting Web applications and services
Optimized
Security &
Patching
IIS 7.0 Enhancements
Modular Architecture
Compelling
Custom Solutions
Comprehensive
Extensibility APIs
Unified, Distributable
Configuration Model
Efficient, Integrated
Administration Tools
Powerful Diagnostic
Capabilities
Empowered
Administrators &
Developers
Rapid Solution
Deployment
Less Application
Downtime
More Control
Improved Protection
Greater Flexibility
1. Server Management
2. Windows PowerShell
3. Internet Information Services 7.0
4. Server Hardening
5. Server Core
6. Network Access Protection (NAP)
7. Failover Clustering
8. Branch Office Deployments
9. Windows Server Virtualization
10. New Terminal Services Capabilities
Included as default system component
Performs automated tasks related to:
creating required firewall rules
removing of unneeded firewall rules
disabling unneeded services
applying address and security restrictions to firewall rules
SMB, LanMan, LDAP protocol exposure reduction
Windows XP SP2 / Server 2003 R2
Windows Vista /
Windows Server “Longhorn”
Account
Services
Account
Services
LocalSystem
Wireless Configuration
System Event
Notification
Network Connections
(netman)
COM+ Event System
NLA
Rasauto
Shell Hardware
Detection
Themes
Telephony
Windows Audio
Error Reporting
Workstation
ICS
LocalSystem
Firewall Restricted
WMI Perf Adapter
Automatic updates
Secondary Logon
App Management
Wireless Configuration
LocalSystem
BITS
Themes
Rasman
TrkWks
Error Reporting
6to4
Task scheduler
RemoteAccess
Rasauto
WMI
Network Service
Fully Restricted
DNS Client
ICS
DHCP Client
browser
Server
W32time
Network Service
Network Restricted
Cryptographic Services
Telephony
PolicyAgent
Nlasvc
Local Service
No Network Access
System Event Notification
Network Connections
COM+ Event System
Local Service
Fully Restricted
Windows Audio
TCP/IP NetBIOS helper
WebClient
SSDP
Network
Service
DNS Client
Local Service
SSDP
WebClient
TCP/IP NetBIOS helper
Remote registry
RemoteAccess
DHCP Client
W32time
Rasman
browser
6to4
Help and support
Task scheduler
TrkWks
Cryptographic Services
Removable Storage
WMI Perf Adapter
Automatic updates
WMI
App Management
Secondary Logon
BITS
Shell Hardware Detection
Event Log
Workstation
Remote registry
New installation option available in each “Windows Server” SKU
Delivers the core set of server OS functionality
Can boot and operate stand-alone in headless/embedded scenarios
Part of an overall Windows Server “Longhorn” infrastructure solution
Can be managed by:
Local and remote command-line tools
Terminal Services (Remote)
Microsoft Management Console (Remote)
Policy Validation
Determines whether the computers are compliant with the
company’s security policy. Compliant computers are deemed
“healthy”
Network Restriction
Restricts network access to computers based on their health
Remediation
Provides necessary updates to allow the computer to “get
healthy.” Once healthy, the network restrictions are removed
Ongoing Compliance
Changes to the company’s security policy or to the computers’
health may dynamically result in network restrictions
Simplicity: Clusters for people without PhD’s
Setup is streamlined and simplified
Create an entire cluster in one seamless step
Security: Better service account management
Cluster Service now runs LocalSystem built-in account
No more Cluster Service Account (CSA)
Stability: Greater reliability and performance
New Resource Hosting Subsystem (RHS)
New quorum model – no single point of failure
More Control
Improved Protection
Greater Flexibility
1. Server Management
2. Windows PowerShell
3. Internet Information Services 7.0
4. Server Hardening
5. Server Core
6. Network Access Protection (NAP)
7. Failover Clustering
8. Branch Office Deployments
9. Windows Server Virtualization
10. New Terminal Services Capabilities
Read Only Active Directory Database
Unidirectional Replication
Credential Caching
Benefits of Read Only Domain Controller
Increases security for remote Domain Controllers
where physical security cannot be guaranteed
Improved virtualization features for
Server consolidation and optimization
High Availability solutions
Key features
X64 architecture support
Hot-add memory, CPU
Available in Server core installation
RDC 6.0 (Vista,WinXP SP2)
Network Level authentication
Server authentication / TLS
Display improvements
Display data prioritization
PnP Device redirection
Terminal Services RemoteApp
Terminal Services Gateway (HTTPS)
• Standard
• Enterprise
• Enterprise class platform for business critical applications
• Clustering
• Hot-add processor availability
• Virtualization licensing rights
• Datacenter
• Large scale virtualization
• Dynamic hardware partitioning
• 2 to 64 processors
• Unlimited virtualization licensing rights
• Web Server
• Itanium-Based
• Editions without Hyper-V
© 2005 Microsoft Corporation. All rights reserved.
This presentation is for informational purposes only. Microsoft makes no warranties, express or implied, in this summary.