Free Essay

Simplify and Enhance Management of Windows Server 2008

In:

Submitted By craftjsd
Words 1556
Pages 7
Microsoft has introduced numerous administrative tools to simplify and enhance management of Windows Server 2008. One of the functions is Active Directory Federation Services. Active Directory Federation Services (ADFS for short) is a software component developed by Microsoft that can be installed on Windows Server operating systems to provide users with Single Sign-On access to systems and applications located across organizational boundaries. It uses a claims-based access control authorization model to maintain application security and implement federated.
Claims based authentication is the process of authenticating a user based on a set of claims about its identity contained in a trusted token. Such a token is often issued and signed by an entity that is able to authenticate the user by other means, and that is trusted by the entity doing the claims based authentication.
In AD FS, identity federation is established between two organizations by establishing trust between two security realms. A federation server on one side (the Accounts side) authenticates the user through the standard means in Active Directory Domain Services and then issues a token containing a series of claims about the user, including its identity. On the other side, the Resources side, another federation server validates the token and issues another token for the local servers to accept the claimed identity. This allows a system to provide controlled access to its resources or services to a user that belongs to another security realm without requiring the user to authenticate directly to the system and without the two systems sharing a database of user identities or passwords.
Another function is Microsoft Active Directory Lightweight Directory Services (AD LDS) is an independent mode of Active Directory that provides dedicated directory services for applications. Although AD LDS independently provides directory storage and access for applications, AD LDS uses the same standard application programming interfaces (APIs) as Active Directory to manage and access the application data. The resulting conceptual and programming compatibility makes AD LDS ideal for applications that require directory services, but do not require the complete infrastructure features of Active Directory. AD LDS is a directory services solution for developers who are familiar with programming for Active Directory. Developers who are unfamiliar with Active Directory will find that integrating AD LDS as a directory service for their applications is easier than using the complete features of Active Directory. In both cases, AD LDS provides a directory services solution for developers who seek compatibility and consistency with Active Directory. AD LDS runs with the full feature set on the Microsoft Windows Server 2008 operating system.
Active Directory Certificate Services (AD CS) provides customizable services for issuing and managing public key certificates used in software security systems that employ public key technologies. The features in AD CS are by using Server Manager; you can install the following components of AD CS: Certification authorities (CAs). Root and subordinate CAs are used to issue certificates to users, computers, and services, and to manage certificate validity. Web enrollment allows users to connect to a CA by means of a Web browser in order to request certificates and retrieve certificate revocation lists (CRLs). The Online Responder service accepts revocation status requests for specific certificates, evaluates the status of these certificates, and sends back a signed response containing the requested certificate status information. The Network Device Enrollment Service allows routers and other network devices that do not have domain accounts to obtain certificates. The Certificate Enrollment Web Service enables users and computers to perform certificate enrollment that uses the HTTPS protocol. Together with the Certificate Enrollment Policy Web Service, this enables policy-based certificate enrollment when the client computer is not a member of a domain or when a domain member is not connected to the domain. The Certificate Enrollment Policy Web Service enables users and computers to obtain certificate enrollment policy information. Together with the Certificate Enrollment Web Service, this enables policy-based certificate enrollment when the client computer is not a member of a domain or when a domain member is not connected to the domain.
The benefits of AD CS are organizations can use AD CS to enhance security by binding the identity of a person, device, or service to a corresponding private key. AD CS gives organizations a cost-effective, efficient, and secure way to manage the distribution and use of certificates. Applications supported by AD CS include Secure/Multipurpose Internet Mail Extensions (S/MIME), secure wireless networks, virtual private network (VPN), Internet Protocol security (IPSec), Encrypting File System (EFS), smart card logon, Secure Socket Layer/Transport Layer Security (SSL/TLS), and digital signatures. The new features of AD CS in Windows Server 2008 R2 include: Certificate enrollment that uses the HTTPS protocol, Certificate enrollment across Active Directory Domain Services (AD DS) forest boundaries, improved support for high-volume certificate issuance, support for CAs on a Server Core installation of Windows Server 2008 R2. By using Active Directory Rights Management Services (AD RMS) and the AD RMS client, you can augment an organization's security strategy by protecting information through persistent usage policies, which remain with the information, no matter where it is moved. You can use AD RMS to help prevent sensitive information—such as financial reports, product specifications, customer data, and confidential e-mail messages—from intentionally or accidentally getting into the wrong hands. An AD RMS system includes a Windows Server® 2008 R2-based server running the Active Directory Rights Management Services (AD RMS) server role that handles certificates and licensing, a database server, and the AD RMS client. The Windows Serverm2008 operating system eases the task of managing and securing multiple server roles in an enterprise with the new Server Manager console. Server Manager in Windows Server 2008 provides a single source for managing a server's identity and system information, displaying server status, identifying problems with server role configuration, and managing all roles installed on the server.
Server Manager replaces several features included with Windows Server® 2003, including Manage Your Server, Configure Your Server, and Add or Remove Windows Components. Server Manager also eliminates the requirement that administrators run the Security Configuration Wizard before deploying servers; server roles are configured with recommended security settings by default, and are ready to deploy as soon as they are installed and properly configured.
Server Manager is an expanded Microsoft Management Console (MMC) that allows you to view and manage virtually all of the information and tools that affect your server's productivity. Commands in Server Manager allow you to install or remove server roles and features, and to augment roles already installed on the server by adding role services.
Server Manager makes server administration more efficient by allowing administrators to do the following by using a single tool: view and make changes to server roles and features installed on the server, perform management tasks associated with the operational life cycle of the server, such as starting or stopping services, and managing local user accounts, perform management tasks associated with the operational life cycle of roles installed on the server, determine server status, identify critical events, and analyze and troubleshoot configuration issues or failures, install or remove roles, role services, and features by using a Windows command line. Server Manager is installed by default as part of the Windows Server 2008 setup process. To use Server Manager, you must be logged on to the computer as a member of the Administrators group on the local computer.
Windows System Resource Manager (WSRM) is a component of Microsoft's Windows Server 2008/2003 operating systems that provides resource management and enables the allocation of resources, including processor and memory resources, among multiple applications based on business priorities. It is also available as a downloadable add-on for Windows Server 2003 Enterprise and Datacenter editions.
WSRM enables users to manage CPU and memory utilization on a per process basis. An administrator sets targets for the amount of hardware resources that running applications or users are allowed to consume. It can allocate resources among multiple applications on a server according to defined policies. This can be helpful in a corporate environment when, for example, your well-behaved application software has to co-exist with an application that has a memory leak. Without protection such as afforded by WSRM, your application will run more slowly and/or crash, because the misbehaving application will eventually cause problems that affect every application that shares its memory space. Thanks to the WSRM, a software application can be limited to an isolated subset of hardware resources. As a result of this, the bad effects caused by the memory leak will be limited to that subset. Hardware partitioning can also solve the problem, but it is a far more complex solution.
Network Access Protection (NAP) is a feature in Windows Server 2008 that controls access to network resources based on a client computer’s identity and compliance with corporate governance policy. NAP allows network administrators to define granular levels of network access based on who a client is, the groups to which the client belongs, and the degree to which that client is compliant with corporate governance policy. If a client is not compliant, NAP provides a mechanism to automatically bring the client back into compliance and then dynamically increase its level of network access.

Bibliography http://technet.microsoft.com/en-us/windowsserver/dd448615. n.d. 12 may 2012.

Similar Documents

Free Essay

Research Paper

...that allows organizations to authenticate users from partner organizations. Using AD FS in Windows Server 2008, you can simply and very securely grant external users access to your organization’s domain resources. AD FS can also simplify integration between untrusted resources and domain resources within your own organization. Active Directory Lightweight Directory Service (AD LDS), formerly known as Active Directory Application Mode, can be used to provide directory services for directory-enabled applications. Instead of using your organization’s AD DS database to store the directory-enabled application data, AD LDS can be used to store the data. AD LDS can be used in conjunction with AD DS so that you can have a central location for security accounts (AD DS) and another location to support the application configuration and directory data (AD LDS). Using AD LDS, you can reduce the overhead associated with Active Directory replication, you do not have to extend the Active Directory schema to support the application, and you can partition the directory structure so that the AD LDS service is only deployed to the servers that need to support the directory-enabled application. Most organizations use certificates to prove the identity of users or computers, as well as to encrypt data during transmission across unsecured network connections. Active Directory Certificate Services (AD CS) enhances security by binding the identity of a person, device, or service to their own private key...

Words: 791 - Pages: 4

Premium Essay

It221 Research Paper 1

...Chris Schroeder IT221 Sat. 2PM 4/23/11 Research Assignment 1 1. Why does Windows Server 2008 come in different versions? What is the significance of each version? Windows Server 2008 comes in different versions because windows marketed the program to all different kinds companies and each different version is adapted for different kind of application of the software. Windows Server 2008 R2 Foundation is a cost-effective, entry-level technology foundation targeted at small business owners and IT generalists supporting small businesses. Foundation is an inexpensive, easy-to-deploy, proven, and reliable technology that provides organizations with the foundation to run the most prevalent business applications as well as share information and resources. Windows Server 2008 R2 Standard is the most robust Windows Server operating system to date. With built-in, enhanced Web and virtualization capabilities, it is designed to increase the reliability and flexibility of your server infrastructure while helping save time and reduce costs. Powerful tools give you greater control over your servers, and streamline configuration and management tasks. Plus, enhanced security features work to harden the operating system to help protect your data and network and provide a solid, highly dependable foundation for your business. Windows Server 2008 R2 Enterprise is an advanced server platform that provides more cost-effective and reliable support for mission-critical workloads. It offers innovative...

Words: 869 - Pages: 4

Free Essay

Research Windows

...How Windows Server 2008 Delivers Business Value Published: January 2008 © 2008 Microsoft Corporation. All rights reserved. This document is developed prior to the product’s release to manufacturing, and as such, we cannot guarantee that all details included herein will be exactly as what is found in the shipping product. The information contained in this document represents the current view of Microsoft Corporation on the issues discussed as of the date of publication. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information presented after the date of publication. The information represents the product at the time this document was printed and should be used for planning purposes only. Information subject to change at any time without prior notice. This whitepaper is for informational purposes only. MICROSOFT MAKES NO WARRANTIES, EXPRESS OR IMPLIED, IN THIS SUMMARY. Microsoft, Active Directory, PowerShell, SharePoint, SoftGrid, Windows, Windows Media, the Windows logo, Windows Vista, and Windows Server are either registered trademarks or trademarks of Microsoft Corporation in the United States and/or other countries. All other trademarks are property of their respective owners. Table of Contents Table of Contents ii Introduction 1 Make Your Infrastructure More Efficient with Virtualization 1 Server Virtualization...

Words: 10609 - Pages: 43

Premium Essay

555 Week One

...Cheeper Sales and Graphics: Accounting System CMGT 555 Cheeper Sales and Graphics: Accounting Management System Cheeper Sales and Graphics have enlisted the services of a third party software design company to assist in developing an online centralized accounting management system. Currently, there is no accounting management system in place to reference or build off. Therefore, the members of both companies are working together to design and develop a system from scratch that fulfills the companies technical, performance, usability, reliability, and security requirements. Technical Aspects Software Requirements: Cheeper Sales and Graphics is listing the following requirements that must be incorporated in the new accounting managements system. The accounting management system will be developed on one of the backbone software of the consulting team owns management application this type of service products simplify data protection in even the most challenging heterogeneous environments, enables administrators to easily and cost-effectively achieve maximum data availability, while protecting against multiple types of failures and reporting on their storage environment ("Quest Software", 2013). This type of product includes backup and recovery, real-time protection and application data protection. This type of software will be uniquely planned to meet the following main features as described by the staff...

Words: 1585 - Pages: 7

Premium Essay

Marketing Strategies

...accelerate agility, and reduce costs Abstract Even in uncertain economic times, leading organizations recognize that investing in information technology (IT) is a key differentiator that can help improve productivity, accelerate agility, and reduce costs. Intended for IT leaders and procurement professionals, this paper describes how Microsoft, with a long history of delivering high-value solutions and market-leading innovation at low cost, helps organizations accomplish these goals. Specifically, this paper will help organizations build an optimized IT infrastructure plan, understand important solutions for saving money, capitalize on future innovations, and maximize investments with the Microsoft Enterprise Agreement. December 2008 1 The information contained in this document represents the current view of Microsoft Corporation on the issues discussed as of the date of publication. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft or its respective suppliers cannot guarantee the accuracy of any information presented after the date of publication. This white paper is for informational purposes only. MICROSOFT AND ITS RESPECTIVE SUPPLIERS MAKES NO WARRANTIES, EXPRESS OR IMPLIED, AS TO THE INFORMATION IN THIS DOCUMENT. Complying with all applicable copyright laws is the responsibility of the user. Without limiting the rights under copyright, no part of this...

Words: 7963 - Pages: 32

Premium Essay

It Strategic

...productivity, accelerate agility, and reduce costs Abstract Even in uncertain economic times, leading organizations recognize that investing in information technology (IT) is a key differentiator that can help improve productivity, accelerate agility, and reduce costs. Intended for IT leaders and procurement professionals, this paper describes how Microsoft, with a long history of delivering high-value solutions and market-leading innovation at low cost, helps organizations accomplish these goals. Specifically, this paper will help organizations build an optimized IT infrastructure plan, understand important solutions for saving money, capitalize on future innovations, and maximize investments with the Microsoft Enterprise Agreement. December 2008 1 The information contained in this document represents the current view of Microsoft Corporation on the issues discussed as of the date of publication. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft or its respective suppliers cannot guarantee the accuracy of any information presented after the date of publication. This white paper is for informational purposes only. MICROSOFT AND ITS RESPECTIVE SUPPLIERS MAKES NO WARRANTIES, EXPRESS OR IMPLIED, AS TO THE INFORMATION IN THIS DOCUMENT. Complying with all applicable copyright laws is the responsibility of the user. Without limiting the rights under copyright, no part of this document...

Words: 7963 - Pages: 32

Premium Essay

Nt1330 Unit 2 System Analysis Paper

...B2: Features and Characteristics of SUSE Linux Enterprise Server 12 (3.12) 1. System Rollback System malfunctioning and failures due to misconfiguration of system parameters and accidentally removal of critical system components such as applications can cause imaginable consequences. Therefore, recovery capability is one of the most concerned aspect. The system rollback feature in SUSE Linux Enterprise Server 12 (3.12) give organization’s servers better resiliency and availability by taking snapshot of system when it is running under healthy condition. When system failure occurs and require recovery action, system administrator can easily reboot the system from the snapshot which has been integrated into system bootloader. 2. Live Patching Capability...

Words: 1824 - Pages: 8

Free Essay

Virualization and Business

...Running Head: Virtualization How will virtualization change the way government agencies do business in the future? Virtualization Abstract: Server and application virtualization is a hot topic among many government information technology program managers. Today’s government agencies are focusing on reducing expenses while improving the capabilities that information technology provides its customers. This is a difficult task to accomplish with shrinking budgets. A key technology that can help reduce costs in multiple ways is virtualization. Virtualization is the creation of a virtual (rather than actual) version of something, such as an operating system, a server, a storage device or network resources. There are many advantages and disadvantages associated with virtualization. Each government agency that is considering virtualization needs to investigate both aspects and make the informed decision according to their business needs and their customers. Depending on the environment that some agencies operate in, virtualization may not be a logical or realistic choice for many of its information technology needs due to security policies that may be in effect. This is especially true within the intelligence community (IC) and Department of Defense (DoD) where they are required to keep different security classifications of data physically separated. Even though system security classification and policy effect government IT environments, the emergence...

Words: 3778 - Pages: 16

Premium Essay

Windows Server 2012 Hyper V 3.0

...Feature Comparison Windows Server 2008 R2 Hyper-V and Windows Server 2012 Hyper-V Contents Introduction ............................................................................... 4 More Secure Multitenancy ..................................................... 5 Flexible Infrastructure .............................................................. 9 Scale, Performance, and Density ....................................... 13 High Availability ..................................................................... 18 Processor and Memory Support ....................................... 24 Network ................................................................................... 24 Storage ..................................................................................... 25 Manageability ......................................................................... 25 Feature Comparison: Windows Server 2008 R2 Hyper-V and Windows Server 2012 Hyper-V 2 Copyright information © 2012 Microsoft Corporation. All rights reserved. This document is provided "as-is." Information and views expressed in this document, including URL and other Internet Web site references, may change without notice. You bear the risk of using it. This document does not provide you with any legal rights to any intellectual property in any Microsoft product. You may copy and use this document for your internal, reference purposes. You may modify this document for your internal, reference purposes...

Words: 4029 - Pages: 17

Free Essay

Navigator12

...Quiz 1 and 2 * Windows Deployment Services (WDS) is a software platform and technology that allows you to perform which function? A) automated network-based installations based on network-based boot and installation media * Which two role services does the WDS Role include? A) Transport Server and Deployment Server * What role does preboot execution environment (PXE) play in WDS? A) It's used to boot to a WDS Server to install a preinstallation environment What is the name of the Windows Server 2012 installation DVD boot image file? A) boot.wim * What function does the System Preparation Utility (Sysprep.exe) perform on a system? A) It removes a system's name and SID * What type of XML file do you need to create and add information to when performing an unattended operating system installation via WDS? A) answer files * How do you mount a Windows image using Dism.exe so that you can update it? A) Offline * Which feature of Windows Server allows you to add driver packages to WDS and then deploy them? A) dynamic driver provisioning * Windows PE 4.0 is based on which operating system? A) Windows 8 * Where in a system do you configure PXE? A) Bios * The initial configuration of WDS includes setup of what other server? A) DHCP * When using sysprep on the master computer, why do you include the /oobe parameter? A) It presents the Windows Welcome Wizard on the next boot ...

Words: 3472 - Pages: 14

Free Essay

Virtual Desktop Infrastructure

...Assistant Professor of IT, College of Management April 13, 2013 Contents Product Description and Application 3 Major Issues 4 Why the Need for VDI? 4 Is VDI for Everyone? 5 Successful Application of VDI 5 What Exactly Does VDI Offer Organizations? 5 Oracle Virtual Desktop Infrastructure Specifications….at a Glance 7 Reviews 8 What Oral Roberts University has to say about VDI 8 Scripps Networks’ Review of VDI 10 What Small Business Computing Reviewer, Joe Moran, Thinks of VDI 10 Summary and Interpretation of Reviews 11 Implementation 12 VDI Project Plan: Start with Using the Proper Apps and Utilize Pilot Program 13 VDI Licensing: Be Wary about Going for the $40 (or less) per Desktop Guarantee 13 Ensure you Tackle VDI Storage Challenge with Network-Attached Storage (NAS) System and Data Deduplication 14 Factors to Consider When Considering Whether or Not to Implement VDI 15 Conclusion 16 VDI offers Better Support 16 VDI Helps Strengthen Security 16 The BYOD Crowd will Be Happier with VDI 17 Product Description and Application Virtual Desktop Infrastructure (VDI) is simply the practice of hosting desktop operating systems (OS) in a virtual machine (also called VM) running on centralized servers. Virtual desktop infrastructure is basically a client/server computing model variation, which is occasionally called server-based computing. VMware Inc. is...

Words: 4825 - Pages: 20

Free Essay

Active Dir

...Guide Thursday, 25 February 2010 Version 2.0.0.0 Baseline Prepared by Microsoft Prepared by Microsoft Copyright This document and/or software (“this Content”) has been created in partnership with the National Health Service (NHS) in England. Intellectual Property Rights to this Content are jointly owned by Microsoft and the NHS in England, although both Microsoft and the NHS are entitled to independently exercise their rights of ownership. Microsoft acknowledges the contribution of the NHS in England through their Common User Interface programme to this Content. Readers are referred to www.cui.nhs.uk for further information on the NHS CUI Programme. All trademarks are the property of their respective companies. Microsoft and Windows are either registered trademarks or trademarks of Microsoft Corporation in the United States and/or other countries. © Microsoft Corporation 2010. All rights reserved. Disclaimer At the time of writing this document, Web sites are referenced using active hyperlinks to the correct Web page. Due to the dynamic nature of Web sites, in time, these links may become invalid. Microsoft is not responsible for the content of external Internet sites. Page ii Active Directory – Design Guide Prepared by Microsoft, Version 2.0.0.0 Last modified on 26 February 2010 Prepared by Microsoft TABLE OF CONTENTS 1 2 Executive Summary .........................................................................................................................

Words: 43732 - Pages: 175

Free Essay

Marketing

...B112 TABLE OF CONTENTS INTRODUCTION ……………………………………………………………………………………………….. 3 HISTORY ………………………………………………………………………………………………… 3 VISION ………………………………………………………………………………………………… MISION …………………………………………………………………………………………………. OPERATIONAL STRATEGY………………………………………………………………………………………5 CONCLUSION ………………………………………………………………………………………………….8 INTRODUCTION Research In Motion (RIM) is a leading designer, manufacturer and marketer of wireless solutions. The company provides platforms and solutions allowing access to time-sensitive information, including email, phone, SMS, internet and intranet-based applications. Its technology also enables a broad array of third-party developers and manufacturers to enhance their products and services with wireless connectivity to data. RIM’s portfolio of products, services and embedded technologies include the BlackBerry wireless solution, and other software and hardware.The company operates offices in North America, Europe and Asia Pacific. The company is organized and managed as a single reportable business segment, which includes the research, design, manufacture and sales of wireless communications products, services and software.The segment includes primary operations related to BlackBerry wireless solution.The BlackBerry wireless solution comprises wireless devices, software and services. RIM generates revenue primarily from the BlackBerry wireless solution, which includes sales of BlackBerry wireless...

Words: 2565 - Pages: 11

Premium Essay

Server 2008 for Dummies

...Windows Server® 2008 FOR DUMmIES ‰ by Ed Tittel and Justin Korelc Windows Server® 2008 For Dummies® Published by Wiley Publishing, Inc. 111 River Street Hoboken, NJ 07030-5774 www.wiley.com Copyright © 2008 by Wiley Publishing, Inc., Indianapolis, Indiana Published by Wiley Publishing, Inc., Indianapolis, Indiana Published simultaneously in Canada No part of this publication may be reproduced, stored in a retrieval system or transmitted in any form or by any means, electronic, mechanical, photocopying, recording, scanning or otherwise, except as permitted under Sections 107 or 108 of the 1976 United States Copyright Act, without either the prior written permission of the Publisher, or authorization through payment of the appropriate per-copy fee to the Copyright Clearance Center, 222 Rosewood Drive, Danvers, MA 01923, (978) 750-8400, fax (978) 646-8600. Requests to the Publisher for permission should be addressed to the Legal Department, Wiley Publishing, Inc., 10475 Crosspoint Blvd., Indianapolis, IN 46256, (317) 572-3447, fax (317) 572-4355, or online at http:// www.wiley.com/go/permissions. Trademarks: Wiley, the Wiley Publishing logo, For Dummies, the Dummies Man logo, A Reference for the Rest of Us!, The Dummies Way, Dummies Daily, The Fun and Easy Way, Dummies.com, and related trade dress are trademarks or registered trademarks of John Wiley & Sons, Inc. and/or its affiliates in the United States and other countries, and may not be used without written permission...

Words: 139691 - Pages: 559

Premium Essay

Hris

...on it. I would also want to thank my fellow group members for the effort and dedication they put in to complete the task of coming up with the report and the final proposal. Chapter one: Company profile NI-Limits Sdn Bhd NI-Limits Sdn Bhd is a digital design & web management company that provides stateof-the-art service through a mixed team of local and foreign professionals with the mission of delivering unparallel service and support to both Malaysian and International markets. NI-Limits Sdn Bhd is a Malaysian based company resulting from a merger of several independent web development agencies (Pixel Media, Webb Designs and Quartz Interactive) and international freelancers that have been in business since 1997. Mark Smalley and Nigel Webb formed Pixel Media in Sarawak, Malaysia in 1997. As a team of independent freelancers working together, they developed online marketing material to clients throughout Asia. The company primarily dealt with Oil and Gas related companies that were looking to develop and manage their private and fully secured back-end administrative (CRM, ERP and CMS) systems. Pixel Media relocated its operations to Cyberjaya in 2005 where digital design and web management opportunities were quickly expanding. In realising growth in this new market, Pixel Media attracted strong financial interests from outside parties. With financial backing, in January...

Words: 10139 - Pages: 41