SlideShare uma empresa Scribd logo
1 de 72
Baixar para ler offline
Nicolai Henriksen
               Chief Infrastructure Architect




                VELKOMMEN TIL TECHNET LIVE
               SYSTEM CENTER OG FOREFRONT
Nicolai.Henriksen@ErgoGroup.no STRATEGISK
IT – Viktigere enn noensinne

Sikre infrastruktur

Håndtere systemer

Redusere kostnader



Tilby nye applikasjoner

Kompabilitet

Produktivitet blandt ansatte
                               80%
                               Vedlikehold
                                             20%
                                             Nyskapende
Kjerneinfrastruktur optimalisering (Core IO):
http://www.microsoft.com/norge/infrastruktur/default.mspx
    Grunnivå               Standardisert               Rasjonalisert         Dynamisk

                       Identitet og tilgangsadministrasjon

                 Klient-, enhets- og serveradministrasjon
  Ukoordinerte           Delvis sentralisert IT         Administrert og      Fullstendig
manuelle prosesser       administrasjon med              konsolidert IT     automatisert
   og minimal                   Sikkerhet
                              begrenset           og   nettverk med
                                                       infrastruktur
                                                                           administrasjon,
                           automatisering                                     dynamisk
sentralisert styring                                       maksimal         ressursbruk
                                                        automatisering
                       Databeskyttelse og gjennopprettning

                                        Dynamisk IT
    Kostsenter                Effektiv                                    Strategisk verktøy
                             kostsenter                Forretningsverdi
2009       2010     2011     2012
2007                 vNext
 R2

2008                 vNext
 R2

           2007      2012
            R3

           2010              vNext


           2010     2010
                     R2

Acquired             vNext


           2010              vNext


2009 &     2010 &   2011 &
  R2         R2       R2

           2010              vNext


                     v1
Hvorfor Forefront Endpoint
                Protection?
•   Spare penger på lisenser
•   Administrer antivirus i SCCM konsoll
•   Scorer høyt på å beskytte mot malware.
•   Mer effektiv delegering og kontroll av roller.
•   Sentralisert rapportering
•   Ny teknologi innen Netverks Inspeksjon System (NIS), som
    vil hindre angrep på hver klient bassert på avansert
    deteksjon av malware.
•   Benytter Cload for å levere real-time signatur oppdateringer
    til clienten dersom noe mistenkelig oppdages.
•   Lett å rulle ut.
•   Erstatter og fjerner Mcaffe, Trend, Symantec..
•   FEP løsninger dimensjoneres til 100.000 + klienter.
•   Liten, 11MB disk, trekker lite resurser.
Secure Desktop
Secure Endpoint Solution
   Protect endpoints from emerging threats and information loss, while enabling more
                         secure access from virtually anywhere



  PROTECT everywhere                INTEGRATE and               SIMPLIFY security,
   ACCESS anywhere                  EXTEND security            MANAGE compliance




• Enables multi-layered       • Uses existing System         • Provides unified
  anti-malware protection        Center Configuration          administration for
                                 Manager infrastructure        desktop management
• Protects critical data                                       and protection
  wherever it resides         • Builds on and extends
                                 Windows security            • Increases visibility of
• Provides more secure                                         potentially vulnerable
  always-on access                                             desktops
Management Scenarios
    Keep Protected
I need to centrally monitor FEP   Management
   deployment, push missing
 updates and fix configuration    •    Converged System
             issues                    Management
                                      • Simple Centralized
 Report Compliance                       Policy
                                      • Critical Level
Show me last month trend of              Alerting
   protection compliance              • Security admin-
                                         oriented Reporting

 Alert on Outbreak                •    Desired
                                       Configuration
Alert me on emerging threats           Manager (DCM)-
before they affect productivity        based Vulnerability
                                       Assessments
Dynamic Signature Service
• Low-Fidelity Signatures
   – New class of generics looks for
      suspicious characteristics as
      behavior is emulated with                                        Real-Time
                                                                       Signature
                                                                                                              Behavior

      dynamic translation
                                                                                                              Classifiers
                                                                        Delivery
                                                                                                                                           Reputation
   – Queries reputation service
      about „interesting‟ files         Researchers


• If the file is known bad, a new                                                SpyNet /
                                                                                   MRS
  signature is delivered in real-time
  to the client requesting it




                                                      Properties / Behavior




                                                                                                                     Real-time Signature
                                                                                              Sample Submit
• Balances signature distribution




                                                                              Sample Req
  time/cost with need for real-time
  updates
• Admins must choose to opt-in to
  use this feature
                                                                                           Client
Microsoft
                           Update                                                      REPORTS
                                                                SETTINGS




                                                                      Configuration Manager   Reporting and
                                                                                              Alerting Server

                                        (OR ALTERNATE SYSTEM)
                                       Configuration Manager


 (OR ALTERNATE SYSTEM)
Configuration Manger
                         DEFINITIONS                                       EVENTS



                             Desktops, Laptops and Server Operating Systems
                             Running Microsoft Forefront Endpoint Protection
Check client protection status
• Fix client security
  problems in
  Configuration
  Manager
  – Dashboard view of
    status
  – Drill down to see
    affected computers
    to remediate within
    Configuration
    Manager
• Receive email
  alerts on outbreaks
Extending Endpoint Protection to Servers
One dashboard for visibility into threats
and vulnerabilities

View insightful reports

Stay informed with state assessment
scans and security alerts
Security Summary
System Center
System Center
Operation Manager
       2007
System Center Operations Manager
              2007
        En ende-til-ende service administrasjons-løsning som hjelper virksomheten til å
                 enklere overvåke og kontrollere IT tjenestene og IT miljøet sitt


Ende-til-ende service overvåking
    •   Proaktiv administrasjon av IT tjenester
    •   Integrert overvåking
Økt effektivitet og kontroll
    •   Forbedred “time to value”
    •   Redusert IT administrasjons kompleksitet
“Best of Breed” for Windows
    •   Redusert problemløsnings-tid
    •   Redusert TCO for Windows miljø
    •   Ekspertis for mer enn 50 Microsoft
        applikasjoner, servere, og klienter

        “Vi har altid drevet kostnadsbevisst IT, så dette kommer ikke til å endres med Operations Manager.
        Det skal bare bli enda bedre og muligjøre selskapet å tjene mere penger.
                       -Robert Fort, Chief Information Officer, Virgin Megastores USA
Kunnskap drevet administrasjon

                      IT policy

         Utviklere                Forretningskrav
          innsikt




   Oppdagelse &                          IT service
integritetsmodeller                       modeller
Operations Manager 2007 R2 leverer
            betydningsfulle muligheter
•   Forbedret applikasjons ytelse og
    tilgjenglighet gjennom x-plattform
    overvåking

•   ”Best-of-breed” overvåkingsevne for HP-
    UX®, Sun Solaris™, Red Hat® Enterprise
    Linux®, Novell SUSE® Linux Enterprise
    Server, IBM AIX 5L®, og Windows server
    miljøer.

•   Forbedret ytelse administrasjon av
    applikasjoner i datasentere med SLO
    service nivå overvåking

•   Øk tilgangshastighet til overvåking
    informasjon og funksjonalitet med UI
    forbedringer og forenklet administrasjon
    pack fremstilling
Service Level Tracking
• I dag – Tilgjenglig som en
  Solution Accelerator:
      – Service Level Dashboard MP
        V1.1
        http://technet.microsoft.com/
        en-us/opsmgr/cc539535.aspx

      – Tilgjenglig gjennom
        Management Pack (MP)
        Katalog


• Hva er nytt i R2:
      – Fremstilling av SLOer med
        Ops konsoll og offline i MPs
      – Definer SLOer for integritet og                             “Jeg trenger å følge opp tilgjengligheten av
        ytelse data
      – Utvid service nivå
                                                                    “Line of business” -applikasjonene mot min
        rapporteringsevner                                              avtalte service nivå mål av 99.99%
      – SharePoint integrering for                                           innenfor vanlig arbeidstid”
        visning av service nivå ytelse
Service nivå : Målt og rapportert utførelse mot en eller flere Service Level Objectives(SLO).
Service Level Objective : En metrikk brukt til å administrere en IT tjeneste.
Ytelse og resurs optimalisering
System Center overvåker heterogene
              plattformer
• UNIX & Linux
  overvåking med SCOM
  2007 R2
• Backup for Linux VMs
  med DPM
• VMWare virtuell
  infrastruktur-
  administrasjon
  – SCVMM 2008 R2
  – Støtter Live Migrering
Service Availability
Deployment - Økonomi

    Manuel utrulling
    3000 – 6000kr per PC


          Light Touch
          ~ 1500kr per PC


                       Zero Touch
                       mindre enn 600kr per PC
System Center
Configuration Manager
         2007

           System Center Configuration
           Manager 2007
System Center Configuration Manager 2007

Styr når og hvilke workloads å                                                       Få oversikt av programvaren før
oppdatere : spesifik målretting og                                                          utrulling eller migrering
tidsplanlegging for servere,
desktop og enheter, fjernstyring
                                     SW oppdatering             Data/SW oversikt
                                     SW distribusjon                HW/SW
                                       Drift støtte               inventarliste

DCM – Definer                                                                                 Definer konfigurering,
konfigurerings                  Konfigurerings-                                                partition modell, OS,
                                                                      Kient/Server
standards, oppretthold         administrasjon og                                              drivere og applikasjon
                                                                         design
                                   kontroll                                                                    suite
 regulering og policy


                                                       OS utrulling




                                       Automatisk utrulling av OS
                                         og støtte informasjon
Configuration Manager Server Roles                                                  Primary Site
                                                                                    Secondary Site
                                                                                    MP - Management Point
                                                                                    SLP - Server Locator Point
                                                                                    RP - Reporting Point
                                                                                    DP - Distribution Point
                                  SQL Server     SQL Server                         SMP - State Migration Point*
                                                                                    Branch DP - Branch Office DP*
  SCCM MP                                                                           SUP - Software Update Point*

                          SCCM Primary Site                                         FSP - Fallback Status Point*
                              Server
      SCCM SLP                                                                      SHV - System Health Validator*
                                                                                    PSP - PXE Service Point*
                                                                         SCCM SHV                  * Denotes new server role
            SCCM RP

                      SCCM DP                                 SCCM FSP

                                                                                                     Branch DP
                                                 SCCM
                                               SUP/WSUS

                                SCCM PSP

                 SCCM SMP
Scalable Support for any Size Organization

Supported Client Numbers

               Site Role             Maximum # of Client Systems
Hierarchy (Central Site Server)                                         200,000
Primary Site Server                                                     100,000
System Health Validator                                                 200,000
Management Point                                                         25,000
Distribution Point (Non OSD)                                              4,000
Distribution Point (OSD)                      Limited by Network & Disk I/O
State Migration Point                         Limited by Network & Disk I/O
Software Update Point (WSUS)                                             25,000
Fallback Status Point                                                   100,000
Branch Distribution Point         Limited by OS License, Network & Disk I/O
                                                                            Optimized for
                                         Comprehensive     Enhanced
                                                                            Windows and
                                           Deployment     Insight and
                                                                             Extensible
                                          and Updating      Control
                                                                              Beyond
Platform Support
                           HW/SW                       Software         Software           Desired Config
Feature / Platform        Inventory
                                      OS Deployment
                                                      Distribution    Update Mgmt              Mgmt

Windows 7
Vista
XP SP2
Windows 2000
Server 2008/2008R2
Server 2003
Server 2000
WFLOP
WePOS
XP Embedded
Windows CE
Windows Mobile*
                                                                                                    Optimized for
                                                          Comprehensive       Enhanced
                                                                                                    Windows and
                                                            Deployment       Insight and
                                                                                                     Extensible
                  Not                                      and Updating        Control
   SCCM SP2                                                                                           Beyond
                  supported
Windows Deployment Automation
 Significant improvements to existing scenarios
 Increased range of scenario support

                                                                                 Offline with
                   Wipe-and-                                  In-place
New machine                             Side-by-side                             removable                 PXE boot
                     load                                     migration
                                                                                    media

  -Clean install    - Target and          - Machine to        - Scripted,            - Install without     - WDS
  -No migration     install new OS to     machine             targeted OS            network               integration,
  considerations    existing H/W          - User and app      upgrade                - Removable           network boot
                     - Application        data migration      - Not wipe and         media is source       delivered
  - New or
  repurposed        reinstall under       - Application       load                   - CD/DVD,USB          - PXE style
  hardware          new OS                reinstall           - Sent as              flash drive           delivery
                    - Securely            -Securely           software               - Good for low        - Lite touch,
                    save/restore user     save/restore user   distribution           bandwidth,            network
                    state & settings      state & settings    package                mobile staff          connection
                                                                                                           based




                                                                                                                  Optimized for
                                                                     Comprehensive            Enhanced
                                                                                                                  Windows and
                                                                       Deployment            Insight and
                                                                                                                   Extensible
                                                                      and Updating             Control
                                                                                                                    Beyond
Ønsket konfigurasjon




                       39
SMS reports with categories from AssetMetrix DB
Configuration Manager 2007 R3
• Hva er nytt i R3?
  – Bli grønnnnnn
  – Bedre Konfigurasjonsstyring
  – Raskere Collection oppdatering
  – Raskere AD Discovery
  – Prestage
  – 300.000
System Center Power Management
 Monitor current power
 state and consumptions
 Plan and create a power
 management policy, check
 for exceptions
 Apply power management
 policy
 Check compliance and
 remediate non-compliance.
 Report saving in power
 consumption and costs and
 environmental impact.
Machine and User Activity Report
Deployment
Gjør vi det riktig nå eller..
• Har du en effektiv deployment løsning i
  dag? Og kan du håndtere alle klienter?

• Scenario: Hva om halvparten av maskinene
  dine ble infiserte og ikke ville starte opp.

• Hvordan bygge Image?
  – Lag Image på en Virtuell maskin, Hyper-V,
    VMWare...
• Windows 7 32bit eller 64bit??
   – Mange går for 64bit i utgangspunktet, men faller som
     regel ned på 32bit som standard pga en eller to sentrale
     eldre typer applikasjoner/drivere ikke fungerer. Og kjører
     begge versjoner.

• Anbefaling: Gå for 64bit i utgangspunktet dersom
  hardware/software tillater det. Med tiden vil det
  uansett gå den veien.

• Office 2010 32bit eller 64bit??
   – Kjør 32bit, fordi det er for mange komplikasjoner med
     office tillegg og integrasjoner som ikke vil fungere på
     64bit.
   – Men kjører man en helt ren Office, uten noe 3 parts
     produkter eller eldre versjoner, så Yes! 64bit.
• Har du SCCM client på alle maskiner? Fungerer de som de skal?

• Tykkt eller tynnt..?
    – Tykkt Image med alle standard applikasjoner, kan være fornuftig i en masse
      utrullings fase ved f.eks overgang til ny plattform for raskest deployment.

    – Tynnt Image er det mest dynamiske, lett å endre på, legge
      til/fjerne/oppdatere applikasjoner, men det går noe mer tid under selve
      deploymenten.
        • Anbefales i normal driftsfase.


• Driver struktur
    – Bruk Hybrid driver model.


• Bruker data?
    – Bruk USMT, integrert i SCCM.


• Profil håndtering !?
    – Roaming eller Redirecting
•   300.000

•   SCCM - Treg?

•   Spekk server tilstrekkelig.
•   OS : Disk1 min 50GB
•   SCCM: Disk2 min 100GB
•   Source Pakker: Disk3 ...GB (Kan være nettverkshare, NAS, etc..)
•   Distribution share: Disk4 ...GB (OBS, må være Windows Server, NTFS)

•   Minne: min 8GB

•   Dersom virtuell: Reserver CPU, Minne.
•   Disk IO mest kritisk!

•   SQL på samme som SCCM dersom kraftig nok. Eller dedikert med nok båndbredde - Gbit, kraft.

•   Sikkerhet!!!
     –   Enterprise Admins
     –   Domain Admins
     –   Men, må være admin på klienter.
     –   Bruk preferences.
Commercial Cloud Services




PRODUCTIVITY COMMUNICATIONS
                          COLLABORATION BUSINESS APPS MANAGEMENT   STORAGE   PLATFORM
Help Manage & Secure PCs Anywhere
Requirements
• Administrative Console
  – A browser that supports Silverlight 3.0

• Managed Machines
  – Windows 7 Enterprise, Ultimate and Professional
  – Windows Vista Enterprise, Ultimate and Business
  – Windows XP Professional, Service Pack SP2 or SP3
    (recommended)
Service Architecture
 Windows Intune
      Service




Ops and
     Support


 Contoso.com                    foo.com



 Windows Update
       Agent
 SCOM
 Malware Protection     Admin
       (FEP)
 Lantern (SCCM DCM)
 EZ Assist
Initial Deployment Checklist
• Chose a technique to deploy the enrollment MSIs
       – GP-SI, psexec, login script, email, ACLed public share, …
       – Enrollment will fail after seat limit is reached
              • Can retire computers or purchase more seats
• Define your initial group structure
       – Newly enrolled computers go to “Unassigned Computers”
       – Can create additional (nested) groups as needed for reporting/policy
         boundaries
              • Typically by role or region (often nested by one then the other)
              • Machines can belong to multiple hierarchies
• Configure polices as needed
       – Malware Protection: Conditionally enabled, …
       – Windows Update: Daily scheduled install, …
       – Firewall: Not configured, …
       If using GPOs, filter them to not apply to Windows Intune clients (else
       GP overrides)
• Add admins, configure alert notifications, deploy security updates


Microsoft Confidential
TWO ADDITIONAL SOLUTIONS TO
   SYSTEM CENTER FAMILY




           Microsoft Confidential
Key Technologies
• A work-flow engine for automating all or portions of IT
  processes and for integrating System Center solutions
• A common data warehouse and reporting platform for
  integrating business intelligence information across
  System Center
• A connector framework to support technology
  integration across System Center, other Microsoft
  products, and common industry management tools
• A CMDB to support the management of information
  about IT service components and how they relate to one
  another
• A Self-Service Portal to provide end users with access to
  IT resources, reducing the volume of calls to the help
  desk
• A knowledge base to capture and share practical
  knowledge for IT professionals and end users
Service Manager : The Power is in the Integration


   SELF SERVICE        COMPLIANCE              IT BUSINESS               IT ANALYST
                                              INTELLIGENCE                                      ASSET
                        AND RISK
                                                                                             MANAGEMENT
                                                                                              PROVANCE




                                     Incident and Problem      Change

                                                                                         Workflows
              Portal
                         Knowledge                                           Authoring
                           Base            CMDB             Data Warehouse
Empowering the End User                              The average cost of a
                                                     single call is $25 to $30
                                                     Self Service Portals
                                                     reduce calls by 30%




                                          Provision Software
                                          Reset Passwords
                                          Create/view service requests
                                          View announcements
                                          Search/view knowledge base


               INTEGRATED | EFFICIENT | BUSINESS ALIGNED
Integrated System Center CMDB
System Center common schema
   Common schema across
   System Center
   IT assets are represented
   as configuration items (CIs)
   Incidents, change requests,
   and problems are represented
   as work items (WIs)




Configuration Management
Database (CMDB) features
   Create, update, and view CIs
   Create relationships among CIs, WIs,
   IT staff, and Active Directory® Domain
   Services (AD DS) users
   Automatically track CI change history
   Service definition and mapping



                                    INTEGRATED | EFFICIENT | BUSINESS ALIGNED
Knowledge Management
                  Reducing time to resolution

• Knowledge articles:
  • Customer, Partner, and Analyst
    authored content
  • Capture existing knowledge
    published on the Web
  • Links to external and local content
  • Ratings

• Searchable:
  • Full text
  • Keywords
  • Related incidents, change requests,
    knowledge articles
INTEGRATED               EFFICIENT                       BUSINESS ALIGNED




             INTEGRATED | EFFICIENT | BUSINESS ALIGNED
Addition Of Opalis To System Center Enables
            Process Automation
 IT Process Automation (ITPA), also known as Run Book Automation (RBA), is
 the ability to orchestrate and integrate IT management tools through workflow




                                                     Data       Configuration
                                                 Protection &   Management
                                                                  (Physical &
                                                  Recovery          Virtual)



                                                   Server        End-To-End
                                                 Compliance      Monitoring
Automated Processes
IT Silos                              VM Provisioning Process
Event Mgmt
                                   Remove from                                                                  Add to
                                   Ops Manager                                                                Ops Manager
Service Desk
                   Monitor                            Create      Update      Update                                       Update & close
                   Service                            incident    request     request                                         request
                   request
Asset/CMDB
                                      Retire CI                                                                Create CI


Configuration
                                                                              Test VM     Deploy         Verify
                                                                                        Applications   Application
Virtual
                                Stop VM           Clone new       Update
                                                     VM          properties
Security

Storage
                             Detach Storage


Server

Network                Detach Network Adapter



                  Integration for Virtual Machine Manager 2008 R2 not yet RTM
Opalis And Service Manager Available
  Through System Center License Suites
                                                         SMSE / SMSD




                                                                  *
* Opalis technology granted to SMSE/SMSD customers by Opalis subsidiary
LISENSER
• System Center Server Management
  Suite 2010 – Licensing Update
2 X Kr per
                       Host OSE ML
Server Management Suite + 4 OSE ML


                          0 Kr
Server Management Suite
                          voksende


                          0 Kr         Server Management
Server Management Suite
                          voksende    Suite Enterprise (SMSE)

                                              2 X Kr
                          0 Kr           Per Host OSE ML
Server Management Suite
                          voksende         + 4 OSE MLs

                          0 Kr
Server Management Suite
                          voksende   Med SMSE: 2 X Kr
Server Management Suite Datacenter lisensering
spar kostnader for kunder med tung virtualisering
   SMSD tillater kunder til å administrere og kontrollere tungt virtualiserte
   workloads med full Systems Management evne uten voksende kostnader


                                 Server Management         2.4 X NOK per 2-proc
                                 Suite Datacenter (SMSD)   Ubegrenset OSE MLs

                                                               $0 voksende
                                 SMSD

                                                               $0 voksende
                                 SMSD

                                                               $0 voksende           Server Management
                                 SMSD
                                                                                   Suite Datacenter (SMSD)
                                                               $0 voksende
                                 SMSD

                                                               $0 voksende
                                                                                  2.4 X NOK per 2-proc
                                 SMSD                                             server
                                                               $0 voksende
                                 SMSD                                             Ubegrenset OSE MLs
                                                               $0 voksende
                                 SMSD
                                                               $0 voksende
                                 SMSD
                                                               $0 voksende
                                 SMSD
Takk for meg !!




  Nicolai.Henriksen@EdbErgoGroup.no

Mais conteúdo relacionado

Mais procurados

Nimsoft SaaS Service Desk Essentials - presented at CA World 2011
Nimsoft SaaS Service Desk Essentials - presented at CA World 2011Nimsoft SaaS Service Desk Essentials - presented at CA World 2011
Nimsoft SaaS Service Desk Essentials - presented at CA World 2011CA Nimsoft
 
Miratech Infrastructure Support Services
Miratech Infrastructure Support ServicesMiratech Infrastructure Support Services
Miratech Infrastructure Support ServicesMiratech
 
Res Software In Healthcare
Res Software In HealthcareRes Software In Healthcare
Res Software In Healthcarejckirby
 
Day 2 p2 - business services management
Day 2   p2 - business services managementDay 2   p2 - business services management
Day 2 p2 - business services managementLilian Schaffer
 
Go Bigger! Manage Data Center Technologies
Go Bigger! Manage Data Center TechnologiesGo Bigger! Manage Data Center Technologies
Go Bigger! Manage Data Center Technologiesdoan_slideshares
 
Net cracker resource_inventory
Net cracker resource_inventoryNet cracker resource_inventory
Net cracker resource_inventoryPrasant Kella
 
Managing a public cloud
Managing a public cloudManaging a public cloud
Managing a public cloudInterop
 
Hisham Dalle - Zero client computing - taking the desktop into the cloud
Hisham Dalle - Zero client computing - taking the desktop into the cloudHisham Dalle - Zero client computing - taking the desktop into the cloud
Hisham Dalle - Zero client computing - taking the desktop into the cloudnooralmousa
 
Virtual Desktop Infrastructure
Virtual Desktop InfrastructureVirtual Desktop Infrastructure
Virtual Desktop Infrastructurekrajav
 
Giaspace Managed Services
Giaspace Managed ServicesGiaspace Managed Services
Giaspace Managed ServicesRobert Giannini
 
MS TechDays 2011 - Operation Manager 2012 - New features to Enhance Enterpris...
MS TechDays 2011 - Operation Manager 2012 - New features to Enhance Enterpris...MS TechDays 2011 - Operation Manager 2012 - New features to Enhance Enterpris...
MS TechDays 2011 - Operation Manager 2012 - New features to Enhance Enterpris...Spiffy
 
分会场九Altiris终端管理套件和服务器管理套件现在及远景
分会场九Altiris终端管理套件和服务器管理套件现在及远景分会场九Altiris终端管理套件和服务器管理套件现在及远景
分会场九Altiris终端管理套件和服务器管理套件现在及远景ITband
 
Video Management Platform
Video Management PlatformVideo Management Platform
Video Management PlatformVideoguy
 

Mais procurados (17)

Nimsoft SaaS Service Desk Essentials - presented at CA World 2011
Nimsoft SaaS Service Desk Essentials - presented at CA World 2011Nimsoft SaaS Service Desk Essentials - presented at CA World 2011
Nimsoft SaaS Service Desk Essentials - presented at CA World 2011
 
Miratech Infrastructure Support Services
Miratech Infrastructure Support ServicesMiratech Infrastructure Support Services
Miratech Infrastructure Support Services
 
Guard Era Corp Brochure 2008
Guard Era Corp Brochure 2008Guard Era Corp Brochure 2008
Guard Era Corp Brochure 2008
 
Res Software In Healthcare
Res Software In HealthcareRes Software In Healthcare
Res Software In Healthcare
 
Day 2 p2 - business services management
Day 2   p2 - business services managementDay 2   p2 - business services management
Day 2 p2 - business services management
 
Preso
PresoPreso
Preso
 
Go Bigger! Manage Data Center Technologies
Go Bigger! Manage Data Center TechnologiesGo Bigger! Manage Data Center Technologies
Go Bigger! Manage Data Center Technologies
 
Net cracker resource_inventory
Net cracker resource_inventoryNet cracker resource_inventory
Net cracker resource_inventory
 
Advantages of SAP Hosting
Advantages of SAP HostingAdvantages of SAP Hosting
Advantages of SAP Hosting
 
Managing a public cloud
Managing a public cloudManaging a public cloud
Managing a public cloud
 
Hisham Dalle - Zero client computing - taking the desktop into the cloud
Hisham Dalle - Zero client computing - taking the desktop into the cloudHisham Dalle - Zero client computing - taking the desktop into the cloud
Hisham Dalle - Zero client computing - taking the desktop into the cloud
 
Virtual Desktop Infrastructure
Virtual Desktop InfrastructureVirtual Desktop Infrastructure
Virtual Desktop Infrastructure
 
Giaspace Managed Services
Giaspace Managed ServicesGiaspace Managed Services
Giaspace Managed Services
 
Dedicated Hosting
Dedicated HostingDedicated Hosting
Dedicated Hosting
 
MS TechDays 2011 - Operation Manager 2012 - New features to Enhance Enterpris...
MS TechDays 2011 - Operation Manager 2012 - New features to Enhance Enterpris...MS TechDays 2011 - Operation Manager 2012 - New features to Enhance Enterpris...
MS TechDays 2011 - Operation Manager 2012 - New features to Enhance Enterpris...
 
分会场九Altiris终端管理套件和服务器管理套件现在及远景
分会场九Altiris终端管理套件和服务器管理套件现在及远景分会场九Altiris终端管理套件和服务器管理套件现在及远景
分会场九Altiris终端管理套件和服务器管理套件现在及远景
 
Video Management Platform
Video Management PlatformVideo Management Platform
Video Management Platform
 

Destaque

Statistical analysis article
Statistical analysis articleStatistical analysis article
Statistical analysis articleMohammed Awad
 
CONCEPTOS BÁSICOS EN INFORMÁTICA (ALFABETIZACIÓN DIGITAL)
CONCEPTOS BÁSICOS EN INFORMÁTICA (ALFABETIZACIÓN DIGITAL)CONCEPTOS BÁSICOS EN INFORMÁTICA (ALFABETIZACIÓN DIGITAL)
CONCEPTOS BÁSICOS EN INFORMÁTICA (ALFABETIZACIÓN DIGITAL)Walter Yesid Mejìa Chimà
 
2011 12 19 islaverdeypadulresumido
2011 12 19 islaverdeypadulresumido2011 12 19 islaverdeypadulresumido
2011 12 19 islaverdeypadulresumidopabloacostarobles
 
TechNet Live spor 1 sesjon 4 - lync telefonsentral
TechNet Live spor 1   sesjon 4 - lync telefonsentralTechNet Live spor 1   sesjon 4 - lync telefonsentral
TechNet Live spor 1 sesjon 4 - lync telefonsentralAnders Borchsenius
 
Keeping the Same Rule
Keeping the Same RuleKeeping the Same Rule
Keeping the Same RuleMohammed Awad
 
Doing Business Right
Doing Business RightDoing Business Right
Doing Business RightMohammed Awad
 
2011 12 19 inauguracionjardin
2011 12 19 inauguracionjardin2011 12 19 inauguracionjardin
2011 12 19 inauguracionjardinpabloacostarobles
 
The impact of short haul operation
The impact of short haul operationThe impact of short haul operation
The impact of short haul operationMohammed Awad
 
TechNet Live spor 1 sesjon 6 - more vdi
TechNet Live spor 1   sesjon 6 - more vdiTechNet Live spor 1   sesjon 6 - more vdi
TechNet Live spor 1 sesjon 6 - more vdiAnders Borchsenius
 
A relability assessment
A relability assessmentA relability assessment
A relability assessmentMohammed Awad
 
Minerals of somalia
Minerals of somaliaMinerals of somalia
Minerals of somaliaNuuh Hubiye
 
Defining optimum credit policy1
Defining optimum credit policy1Defining optimum credit policy1
Defining optimum credit policy1Mohammed Awad
 
Yemenia focus no. 2 - Gravity Model for Aden Airport
Yemenia focus no. 2 - Gravity Model for Aden AirportYemenia focus no. 2 - Gravity Model for Aden Airport
Yemenia focus no. 2 - Gravity Model for Aden AirportMohammed Awad
 
Traffic Forecasting 2016 Dubai Airport
Traffic Forecasting 2016 Dubai AirportTraffic Forecasting 2016 Dubai Airport
Traffic Forecasting 2016 Dubai AirportMohammed Awad
 
Ryanair presentation
Ryanair presentationRyanair presentation
Ryanair presentationMohammed Awad
 
2016 08 31 Charca con excavadora
2016 08 31 Charca con excavadora2016 08 31 Charca con excavadora
2016 08 31 Charca con excavadorapabloacostarobles
 

Destaque (19)

Statistical analysis article
Statistical analysis articleStatistical analysis article
Statistical analysis article
 
CONCEPTOS BÁSICOS EN INFORMÁTICA (ALFABETIZACIÓN DIGITAL)
CONCEPTOS BÁSICOS EN INFORMÁTICA (ALFABETIZACIÓN DIGITAL)CONCEPTOS BÁSICOS EN INFORMÁTICA (ALFABETIZACIÓN DIGITAL)
CONCEPTOS BÁSICOS EN INFORMÁTICA (ALFABETIZACIÓN DIGITAL)
 
2011 12 19 islaverdeypadulresumido
2011 12 19 islaverdeypadulresumido2011 12 19 islaverdeypadulresumido
2011 12 19 islaverdeypadulresumido
 
TechNet Live spor 1 sesjon 4 - lync telefonsentral
TechNet Live spor 1   sesjon 4 - lync telefonsentralTechNet Live spor 1   sesjon 4 - lync telefonsentral
TechNet Live spor 1 sesjon 4 - lync telefonsentral
 
Keeping the Same Rule
Keeping the Same RuleKeeping the Same Rule
Keeping the Same Rule
 
Doing Business Right
Doing Business RightDoing Business Right
Doing Business Right
 
2012 04 26 vega_educa
2012 04 26 vega_educa2012 04 26 vega_educa
2012 04 26 vega_educa
 
2011 12 19 inauguracionjardin
2011 12 19 inauguracionjardin2011 12 19 inauguracionjardin
2011 12 19 inauguracionjardin
 
The impact of short haul operation
The impact of short haul operationThe impact of short haul operation
The impact of short haul operation
 
2011 10 23 vivero
2011 10 23 vivero2011 10 23 vivero
2011 10 23 vivero
 
TechNet Live spor 1 sesjon 6 - more vdi
TechNet Live spor 1   sesjon 6 - more vdiTechNet Live spor 1   sesjon 6 - more vdi
TechNet Live spor 1 sesjon 6 - more vdi
 
A relability assessment
A relability assessmentA relability assessment
A relability assessment
 
Minerals of somalia
Minerals of somaliaMinerals of somalia
Minerals of somalia
 
2011 11 10 cahorrossinero
2011 11 10 cahorrossinero2011 11 10 cahorrossinero
2011 11 10 cahorrossinero
 
Defining optimum credit policy1
Defining optimum credit policy1Defining optimum credit policy1
Defining optimum credit policy1
 
Yemenia focus no. 2 - Gravity Model for Aden Airport
Yemenia focus no. 2 - Gravity Model for Aden AirportYemenia focus no. 2 - Gravity Model for Aden Airport
Yemenia focus no. 2 - Gravity Model for Aden Airport
 
Traffic Forecasting 2016 Dubai Airport
Traffic Forecasting 2016 Dubai AirportTraffic Forecasting 2016 Dubai Airport
Traffic Forecasting 2016 Dubai Airport
 
Ryanair presentation
Ryanair presentationRyanair presentation
Ryanair presentation
 
2016 08 31 Charca con excavadora
2016 08 31 Charca con excavadora2016 08 31 Charca con excavadora
2016 08 31 Charca con excavadora
 

Semelhante a TechNet Live spor 2 sesjon 4 - sc-forefront

Securing Your Infrastructure: Identity Management and Data Protection
Securing Your Infrastructure: Identity Management and Data ProtectionSecuring Your Infrastructure: Identity Management and Data Protection
Securing Your Infrastructure: Identity Management and Data ProtectionLumension
 
NIC2012 - System Center Endpoint Protection 2012
NIC2012 - System Center Endpoint Protection 2012NIC2012 - System Center Endpoint Protection 2012
NIC2012 - System Center Endpoint Protection 2012Nicolai Henriksen
 
Sccm 2012 overview - chris_estonina
Sccm 2012 overview - chris_estoninaSccm 2012 overview - chris_estonina
Sccm 2012 overview - chris_estoninaMicrosoft Singapore
 
End-point Management
End-point ManagementEnd-point Management
End-point ManagementIBM Danmark
 
Pre-TechEd EMEA 2012 - SCOM 2012 Down in the cloud
Pre-TechEd EMEA 2012 - SCOM 2012 Down in the cloudPre-TechEd EMEA 2012 - SCOM 2012 Down in the cloud
Pre-TechEd EMEA 2012 - SCOM 2012 Down in the cloudwwwally
 
[Dubravko marak] Kako kreirati private cloud koristeći sistem centar 2012
[Dubravko marak] Kako kreirati private cloud koristeći sistem centar 2012[Dubravko marak] Kako kreirati private cloud koristeći sistem centar 2012
[Dubravko marak] Kako kreirati private cloud koristeći sistem centar 2012Dubravko Marak
 
Day 2 p2 - business services management
Day 2   p2 - business services managementDay 2   p2 - business services management
Day 2 p2 - business services managementLilian Schaffer
 
Res Software In Healthcare
Res Software In HealthcareRes Software In Healthcare
Res Software In Healthcarejckirby
 
Novell Virtual Desktop Infrastructure
Novell Virtual Desktop InfrastructureNovell Virtual Desktop Infrastructure
Novell Virtual Desktop InfrastructureNovell
 
Gtl Rim Capability Final V1 1
Gtl Rim Capability Final V1 1Gtl Rim Capability Final V1 1
Gtl Rim Capability Final V1 1sonnysonare
 
IBM Tivoli Endpoint Manager - PCTY 2011
IBM Tivoli Endpoint Manager - PCTY 2011IBM Tivoli Endpoint Manager - PCTY 2011
IBM Tivoli Endpoint Manager - PCTY 2011IBM Sverige
 
System Center 2012 - January Licensing Update
System Center 2012 - January Licensing UpdateSystem Center 2012 - January Licensing Update
System Center 2012 - January Licensing UpdateSoftchoice Corporation
 
Intergen Twilight Seminar: Infrastructure Management made easy
Intergen Twilight Seminar: Infrastructure Management made easyIntergen Twilight Seminar: Infrastructure Management made easy
Intergen Twilight Seminar: Infrastructure Management made easyIntergen
 
IBM Smarter Business 2012 - PureSystems - PureData
IBM Smarter Business 2012 - PureSystems - PureDataIBM Smarter Business 2012 - PureSystems - PureData
IBM Smarter Business 2012 - PureSystems - PureDataIBM Sverige
 
Vm Turbo Slide Deck
Vm Turbo Slide DeckVm Turbo Slide Deck
Vm Turbo Slide Deckprattysd12
 
Road to superior investment protection for mission critical
Road to superior investment protection for mission criticalRoad to superior investment protection for mission critical
Road to superior investment protection for mission criticalHP ESSN Philippines
 
System Center 2012 Overview
System Center 2012 OverviewSystem Center 2012 Overview
System Center 2012 OverviewAmit Gatenyo
 
PCTY 2012, Overvågning af forretningssystemer i et virtuelt miljø v. Hans Ped...
PCTY 2012, Overvågning af forretningssystemer i et virtuelt miljø v. Hans Ped...PCTY 2012, Overvågning af forretningssystemer i et virtuelt miljø v. Hans Ped...
PCTY 2012, Overvågning af forretningssystemer i et virtuelt miljø v. Hans Ped...IBM Danmark
 

Semelhante a TechNet Live spor 2 sesjon 4 - sc-forefront (20)

Securing Your Infrastructure: Identity Management and Data Protection
Securing Your Infrastructure: Identity Management and Data ProtectionSecuring Your Infrastructure: Identity Management and Data Protection
Securing Your Infrastructure: Identity Management and Data Protection
 
NIC2012 - System Center Endpoint Protection 2012
NIC2012 - System Center Endpoint Protection 2012NIC2012 - System Center Endpoint Protection 2012
NIC2012 - System Center Endpoint Protection 2012
 
Sccm 2012 overview - chris_estonina
Sccm 2012 overview - chris_estoninaSccm 2012 overview - chris_estonina
Sccm 2012 overview - chris_estonina
 
End-point Management
End-point ManagementEnd-point Management
End-point Management
 
Pre-TechEd EMEA 2012 - SCOM 2012 Down in the cloud
Pre-TechEd EMEA 2012 - SCOM 2012 Down in the cloudPre-TechEd EMEA 2012 - SCOM 2012 Down in the cloud
Pre-TechEd EMEA 2012 - SCOM 2012 Down in the cloud
 
Manage engine it360
Manage engine it360Manage engine it360
Manage engine it360
 
[Dubravko marak] Kako kreirati private cloud koristeći sistem centar 2012
[Dubravko marak] Kako kreirati private cloud koristeći sistem centar 2012[Dubravko marak] Kako kreirati private cloud koristeći sistem centar 2012
[Dubravko marak] Kako kreirati private cloud koristeći sistem centar 2012
 
Day 2 p2 - business services management
Day 2   p2 - business services managementDay 2   p2 - business services management
Day 2 p2 - business services management
 
Res Software In Healthcare
Res Software In HealthcareRes Software In Healthcare
Res Software In Healthcare
 
Novell Virtual Desktop Infrastructure
Novell Virtual Desktop InfrastructureNovell Virtual Desktop Infrastructure
Novell Virtual Desktop Infrastructure
 
Gtl Rim Capability Final V1 1
Gtl Rim Capability Final V1 1Gtl Rim Capability Final V1 1
Gtl Rim Capability Final V1 1
 
IBM Tivoli Endpoint Manager - PCTY 2011
IBM Tivoli Endpoint Manager - PCTY 2011IBM Tivoli Endpoint Manager - PCTY 2011
IBM Tivoli Endpoint Manager - PCTY 2011
 
System Center 2012 - January Licensing Update
System Center 2012 - January Licensing UpdateSystem Center 2012 - January Licensing Update
System Center 2012 - January Licensing Update
 
Intergen Twilight Seminar: Infrastructure Management made easy
Intergen Twilight Seminar: Infrastructure Management made easyIntergen Twilight Seminar: Infrastructure Management made easy
Intergen Twilight Seminar: Infrastructure Management made easy
 
Private cloud day session 3 monitor and operate your private cloud
Private cloud day session 3 monitor and operate your private cloud Private cloud day session 3 monitor and operate your private cloud
Private cloud day session 3 monitor and operate your private cloud
 
IBM Smarter Business 2012 - PureSystems - PureData
IBM Smarter Business 2012 - PureSystems - PureDataIBM Smarter Business 2012 - PureSystems - PureData
IBM Smarter Business 2012 - PureSystems - PureData
 
Vm Turbo Slide Deck
Vm Turbo Slide DeckVm Turbo Slide Deck
Vm Turbo Slide Deck
 
Road to superior investment protection for mission critical
Road to superior investment protection for mission criticalRoad to superior investment protection for mission critical
Road to superior investment protection for mission critical
 
System Center 2012 Overview
System Center 2012 OverviewSystem Center 2012 Overview
System Center 2012 Overview
 
PCTY 2012, Overvågning af forretningssystemer i et virtuelt miljø v. Hans Ped...
PCTY 2012, Overvågning af forretningssystemer i et virtuelt miljø v. Hans Ped...PCTY 2012, Overvågning af forretningssystemer i et virtuelt miljø v. Hans Ped...
PCTY 2012, Overvågning af forretningssystemer i et virtuelt miljø v. Hans Ped...
 

TechNet Live spor 2 sesjon 4 - sc-forefront

  • 1. Nicolai Henriksen Chief Infrastructure Architect VELKOMMEN TIL TECHNET LIVE SYSTEM CENTER OG FOREFRONT Nicolai.Henriksen@ErgoGroup.no STRATEGISK
  • 2. IT – Viktigere enn noensinne Sikre infrastruktur Håndtere systemer Redusere kostnader Tilby nye applikasjoner Kompabilitet Produktivitet blandt ansatte 80% Vedlikehold 20% Nyskapende
  • 3. Kjerneinfrastruktur optimalisering (Core IO): http://www.microsoft.com/norge/infrastruktur/default.mspx Grunnivå Standardisert Rasjonalisert Dynamisk Identitet og tilgangsadministrasjon Klient-, enhets- og serveradministrasjon Ukoordinerte Delvis sentralisert IT Administrert og Fullstendig manuelle prosesser administrasjon med konsolidert IT automatisert og minimal Sikkerhet begrenset og nettverk med infrastruktur administrasjon, automatisering dynamisk sentralisert styring maksimal ressursbruk automatisering Databeskyttelse og gjennopprettning Dynamisk IT Kostsenter Effektiv Strategisk verktøy kostsenter Forretningsverdi
  • 4. 2009 2010 2011 2012 2007 vNext R2 2008 vNext R2 2007 2012 R3 2010 vNext 2010 2010 R2 Acquired vNext 2010 vNext 2009 & 2010 & 2011 & R2 R2 R2 2010 vNext v1
  • 5.
  • 6. Hvorfor Forefront Endpoint Protection? • Spare penger på lisenser • Administrer antivirus i SCCM konsoll • Scorer høyt på å beskytte mot malware. • Mer effektiv delegering og kontroll av roller. • Sentralisert rapportering • Ny teknologi innen Netverks Inspeksjon System (NIS), som vil hindre angrep på hver klient bassert på avansert deteksjon av malware. • Benytter Cload for å levere real-time signatur oppdateringer til clienten dersom noe mistenkelig oppdages. • Lett å rulle ut. • Erstatter og fjerner Mcaffe, Trend, Symantec.. • FEP løsninger dimensjoneres til 100.000 + klienter. • Liten, 11MB disk, trekker lite resurser.
  • 8. Secure Endpoint Solution Protect endpoints from emerging threats and information loss, while enabling more secure access from virtually anywhere PROTECT everywhere INTEGRATE and SIMPLIFY security, ACCESS anywhere EXTEND security MANAGE compliance • Enables multi-layered • Uses existing System • Provides unified anti-malware protection Center Configuration administration for Manager infrastructure desktop management • Protects critical data and protection wherever it resides • Builds on and extends Windows security • Increases visibility of • Provides more secure potentially vulnerable always-on access desktops
  • 9. Management Scenarios Keep Protected I need to centrally monitor FEP Management deployment, push missing updates and fix configuration • Converged System issues Management • Simple Centralized Report Compliance Policy • Critical Level Show me last month trend of Alerting protection compliance • Security admin- oriented Reporting Alert on Outbreak • Desired Configuration Alert me on emerging threats Manager (DCM)- before they affect productivity based Vulnerability Assessments
  • 10.
  • 11.
  • 12.
  • 13. Dynamic Signature Service • Low-Fidelity Signatures – New class of generics looks for suspicious characteristics as behavior is emulated with Real-Time Signature Behavior dynamic translation Classifiers Delivery Reputation – Queries reputation service about „interesting‟ files Researchers • If the file is known bad, a new SpyNet / MRS signature is delivered in real-time to the client requesting it Properties / Behavior Real-time Signature Sample Submit • Balances signature distribution Sample Req time/cost with need for real-time updates • Admins must choose to opt-in to use this feature Client
  • 14. Microsoft Update REPORTS SETTINGS Configuration Manager Reporting and Alerting Server (OR ALTERNATE SYSTEM) Configuration Manager (OR ALTERNATE SYSTEM) Configuration Manger DEFINITIONS EVENTS Desktops, Laptops and Server Operating Systems Running Microsoft Forefront Endpoint Protection
  • 15. Check client protection status • Fix client security problems in Configuration Manager – Dashboard view of status – Drill down to see affected computers to remediate within Configuration Manager • Receive email alerts on outbreaks
  • 17. One dashboard for visibility into threats and vulnerabilities View insightful reports Stay informed with state assessment scans and security alerts
  • 21. System Center Operations Manager 2007 En ende-til-ende service administrasjons-løsning som hjelper virksomheten til å enklere overvåke og kontrollere IT tjenestene og IT miljøet sitt Ende-til-ende service overvåking • Proaktiv administrasjon av IT tjenester • Integrert overvåking Økt effektivitet og kontroll • Forbedred “time to value” • Redusert IT administrasjons kompleksitet “Best of Breed” for Windows • Redusert problemløsnings-tid • Redusert TCO for Windows miljø • Ekspertis for mer enn 50 Microsoft applikasjoner, servere, og klienter “Vi har altid drevet kostnadsbevisst IT, så dette kommer ikke til å endres med Operations Manager. Det skal bare bli enda bedre og muligjøre selskapet å tjene mere penger. -Robert Fort, Chief Information Officer, Virgin Megastores USA
  • 22. Kunnskap drevet administrasjon IT policy Utviklere Forretningskrav innsikt Oppdagelse & IT service integritetsmodeller modeller
  • 23. Operations Manager 2007 R2 leverer betydningsfulle muligheter • Forbedret applikasjons ytelse og tilgjenglighet gjennom x-plattform overvåking • ”Best-of-breed” overvåkingsevne for HP- UX®, Sun Solaris™, Red Hat® Enterprise Linux®, Novell SUSE® Linux Enterprise Server, IBM AIX 5L®, og Windows server miljøer. • Forbedret ytelse administrasjon av applikasjoner i datasentere med SLO service nivå overvåking • Øk tilgangshastighet til overvåking informasjon og funksjonalitet med UI forbedringer og forenklet administrasjon pack fremstilling
  • 24. Service Level Tracking • I dag – Tilgjenglig som en Solution Accelerator: – Service Level Dashboard MP V1.1 http://technet.microsoft.com/ en-us/opsmgr/cc539535.aspx – Tilgjenglig gjennom Management Pack (MP) Katalog • Hva er nytt i R2: – Fremstilling av SLOer med Ops konsoll og offline i MPs – Definer SLOer for integritet og “Jeg trenger å følge opp tilgjengligheten av ytelse data – Utvid service nivå “Line of business” -applikasjonene mot min rapporteringsevner avtalte service nivå mål av 99.99% – SharePoint integrering for innenfor vanlig arbeidstid” visning av service nivå ytelse Service nivå : Målt og rapportert utførelse mot en eller flere Service Level Objectives(SLO). Service Level Objective : En metrikk brukt til å administrere en IT tjeneste.
  • 25. Ytelse og resurs optimalisering
  • 26. System Center overvåker heterogene plattformer • UNIX & Linux overvåking med SCOM 2007 R2 • Backup for Linux VMs med DPM • VMWare virtuell infrastruktur- administrasjon – SCVMM 2008 R2 – Støtter Live Migrering
  • 27.
  • 28.
  • 30.
  • 31. Deployment - Økonomi Manuel utrulling 3000 – 6000kr per PC Light Touch ~ 1500kr per PC Zero Touch mindre enn 600kr per PC
  • 32. System Center Configuration Manager 2007 System Center Configuration Manager 2007
  • 33. System Center Configuration Manager 2007 Styr når og hvilke workloads å Få oversikt av programvaren før oppdatere : spesifik målretting og utrulling eller migrering tidsplanlegging for servere, desktop og enheter, fjernstyring SW oppdatering Data/SW oversikt SW distribusjon HW/SW Drift støtte inventarliste DCM – Definer Definer konfigurering, konfigurerings Konfigurerings- partition modell, OS, Kient/Server standards, oppretthold administrasjon og drivere og applikasjon design kontroll suite regulering og policy OS utrulling Automatisk utrulling av OS og støtte informasjon
  • 34. Configuration Manager Server Roles Primary Site Secondary Site MP - Management Point SLP - Server Locator Point RP - Reporting Point DP - Distribution Point SQL Server SQL Server SMP - State Migration Point* Branch DP - Branch Office DP* SCCM MP SUP - Software Update Point* SCCM Primary Site FSP - Fallback Status Point* Server SCCM SLP SHV - System Health Validator* PSP - PXE Service Point* SCCM SHV * Denotes new server role SCCM RP SCCM DP SCCM FSP Branch DP SCCM SUP/WSUS SCCM PSP SCCM SMP
  • 35. Scalable Support for any Size Organization Supported Client Numbers Site Role Maximum # of Client Systems Hierarchy (Central Site Server) 200,000 Primary Site Server 100,000 System Health Validator 200,000 Management Point 25,000 Distribution Point (Non OSD) 4,000 Distribution Point (OSD) Limited by Network & Disk I/O State Migration Point Limited by Network & Disk I/O Software Update Point (WSUS) 25,000 Fallback Status Point 100,000 Branch Distribution Point Limited by OS License, Network & Disk I/O Optimized for Comprehensive Enhanced Windows and Deployment Insight and Extensible and Updating Control Beyond
  • 36. Platform Support HW/SW Software Software Desired Config Feature / Platform Inventory OS Deployment Distribution Update Mgmt Mgmt Windows 7 Vista XP SP2 Windows 2000 Server 2008/2008R2 Server 2003 Server 2000 WFLOP WePOS XP Embedded Windows CE Windows Mobile* Optimized for Comprehensive Enhanced Windows and Deployment Insight and Extensible Not and Updating Control SCCM SP2 Beyond supported
  • 37. Windows Deployment Automation Significant improvements to existing scenarios Increased range of scenario support Offline with Wipe-and- In-place New machine Side-by-side removable PXE boot load migration media -Clean install - Target and - Machine to - Scripted, - Install without - WDS -No migration install new OS to machine targeted OS network integration, considerations existing H/W - User and app upgrade - Removable network boot - Application data migration - Not wipe and media is source delivered - New or repurposed reinstall under - Application load - CD/DVD,USB - PXE style hardware new OS reinstall - Sent as flash drive delivery - Securely -Securely software - Good for low - Lite touch, save/restore user save/restore user distribution bandwidth, network state & settings state & settings package mobile staff connection based Optimized for Comprehensive Enhanced Windows and Deployment Insight and Extensible and Updating Control Beyond
  • 38.
  • 40. SMS reports with categories from AssetMetrix DB
  • 41. Configuration Manager 2007 R3 • Hva er nytt i R3? – Bli grønnnnnn – Bedre Konfigurasjonsstyring – Raskere Collection oppdatering – Raskere AD Discovery – Prestage – 300.000
  • 42. System Center Power Management Monitor current power state and consumptions Plan and create a power management policy, check for exceptions Apply power management policy Check compliance and remediate non-compliance. Report saving in power consumption and costs and environmental impact.
  • 43. Machine and User Activity Report
  • 44.
  • 46. Gjør vi det riktig nå eller.. • Har du en effektiv deployment løsning i dag? Og kan du håndtere alle klienter? • Scenario: Hva om halvparten av maskinene dine ble infiserte og ikke ville starte opp. • Hvordan bygge Image? – Lag Image på en Virtuell maskin, Hyper-V, VMWare...
  • 47. • Windows 7 32bit eller 64bit?? – Mange går for 64bit i utgangspunktet, men faller som regel ned på 32bit som standard pga en eller to sentrale eldre typer applikasjoner/drivere ikke fungerer. Og kjører begge versjoner. • Anbefaling: Gå for 64bit i utgangspunktet dersom hardware/software tillater det. Med tiden vil det uansett gå den veien. • Office 2010 32bit eller 64bit?? – Kjør 32bit, fordi det er for mange komplikasjoner med office tillegg og integrasjoner som ikke vil fungere på 64bit. – Men kjører man en helt ren Office, uten noe 3 parts produkter eller eldre versjoner, så Yes! 64bit.
  • 48. • Har du SCCM client på alle maskiner? Fungerer de som de skal? • Tykkt eller tynnt..? – Tykkt Image med alle standard applikasjoner, kan være fornuftig i en masse utrullings fase ved f.eks overgang til ny plattform for raskest deployment. – Tynnt Image er det mest dynamiske, lett å endre på, legge til/fjerne/oppdatere applikasjoner, men det går noe mer tid under selve deploymenten. • Anbefales i normal driftsfase. • Driver struktur – Bruk Hybrid driver model. • Bruker data? – Bruk USMT, integrert i SCCM. • Profil håndtering !? – Roaming eller Redirecting
  • 49. 300.000 • SCCM - Treg? • Spekk server tilstrekkelig. • OS : Disk1 min 50GB • SCCM: Disk2 min 100GB • Source Pakker: Disk3 ...GB (Kan være nettverkshare, NAS, etc..) • Distribution share: Disk4 ...GB (OBS, må være Windows Server, NTFS) • Minne: min 8GB • Dersom virtuell: Reserver CPU, Minne. • Disk IO mest kritisk! • SQL på samme som SCCM dersom kraftig nok. Eller dedikert med nok båndbredde - Gbit, kraft. • Sikkerhet!!! – Enterprise Admins – Domain Admins – Men, må være admin på klienter. – Bruk preferences.
  • 50. Commercial Cloud Services PRODUCTIVITY COMMUNICATIONS COLLABORATION BUSINESS APPS MANAGEMENT STORAGE PLATFORM
  • 51.
  • 52. Help Manage & Secure PCs Anywhere
  • 53. Requirements • Administrative Console – A browser that supports Silverlight 3.0 • Managed Machines – Windows 7 Enterprise, Ultimate and Professional – Windows Vista Enterprise, Ultimate and Business – Windows XP Professional, Service Pack SP2 or SP3 (recommended)
  • 54. Service Architecture Windows Intune Service Ops and Support Contoso.com foo.com Windows Update Agent SCOM Malware Protection Admin (FEP) Lantern (SCCM DCM) EZ Assist
  • 55. Initial Deployment Checklist • Chose a technique to deploy the enrollment MSIs – GP-SI, psexec, login script, email, ACLed public share, … – Enrollment will fail after seat limit is reached • Can retire computers or purchase more seats • Define your initial group structure – Newly enrolled computers go to “Unassigned Computers” – Can create additional (nested) groups as needed for reporting/policy boundaries • Typically by role or region (often nested by one then the other) • Machines can belong to multiple hierarchies • Configure polices as needed – Malware Protection: Conditionally enabled, … – Windows Update: Daily scheduled install, … – Firewall: Not configured, … If using GPOs, filter them to not apply to Windows Intune clients (else GP overrides) • Add admins, configure alert notifications, deploy security updates Microsoft Confidential
  • 56.
  • 57.
  • 58. TWO ADDITIONAL SOLUTIONS TO SYSTEM CENTER FAMILY Microsoft Confidential
  • 59. Key Technologies • A work-flow engine for automating all or portions of IT processes and for integrating System Center solutions • A common data warehouse and reporting platform for integrating business intelligence information across System Center • A connector framework to support technology integration across System Center, other Microsoft products, and common industry management tools • A CMDB to support the management of information about IT service components and how they relate to one another • A Self-Service Portal to provide end users with access to IT resources, reducing the volume of calls to the help desk • A knowledge base to capture and share practical knowledge for IT professionals and end users
  • 60. Service Manager : The Power is in the Integration SELF SERVICE COMPLIANCE IT BUSINESS IT ANALYST INTELLIGENCE ASSET AND RISK MANAGEMENT PROVANCE Incident and Problem Change Workflows Portal Knowledge Authoring Base CMDB Data Warehouse
  • 61. Empowering the End User The average cost of a single call is $25 to $30 Self Service Portals reduce calls by 30% Provision Software Reset Passwords Create/view service requests View announcements Search/view knowledge base INTEGRATED | EFFICIENT | BUSINESS ALIGNED
  • 62. Integrated System Center CMDB System Center common schema Common schema across System Center IT assets are represented as configuration items (CIs) Incidents, change requests, and problems are represented as work items (WIs) Configuration Management Database (CMDB) features Create, update, and view CIs Create relationships among CIs, WIs, IT staff, and Active Directory® Domain Services (AD DS) users Automatically track CI change history Service definition and mapping INTEGRATED | EFFICIENT | BUSINESS ALIGNED
  • 63. Knowledge Management Reducing time to resolution • Knowledge articles: • Customer, Partner, and Analyst authored content • Capture existing knowledge published on the Web • Links to external and local content • Ratings • Searchable: • Full text • Keywords • Related incidents, change requests, knowledge articles
  • 64. INTEGRATED EFFICIENT BUSINESS ALIGNED INTEGRATED | EFFICIENT | BUSINESS ALIGNED
  • 65. Addition Of Opalis To System Center Enables Process Automation IT Process Automation (ITPA), also known as Run Book Automation (RBA), is the ability to orchestrate and integrate IT management tools through workflow Data Configuration Protection & Management (Physical & Recovery Virtual) Server End-To-End Compliance Monitoring
  • 66. Automated Processes IT Silos VM Provisioning Process Event Mgmt Remove from Add to Ops Manager Ops Manager Service Desk Monitor Create Update Update Update & close Service incident request request request request Asset/CMDB Retire CI Create CI Configuration Test VM Deploy Verify Applications Application Virtual Stop VM Clone new Update VM properties Security Storage Detach Storage Server Network Detach Network Adapter Integration for Virtual Machine Manager 2008 R2 not yet RTM
  • 67. Opalis And Service Manager Available Through System Center License Suites SMSE / SMSD * * Opalis technology granted to SMSE/SMSD customers by Opalis subsidiary
  • 68.
  • 69. LISENSER • System Center Server Management Suite 2010 – Licensing Update
  • 70. 2 X Kr per Host OSE ML Server Management Suite + 4 OSE ML 0 Kr Server Management Suite voksende 0 Kr Server Management Server Management Suite voksende Suite Enterprise (SMSE) 2 X Kr 0 Kr Per Host OSE ML Server Management Suite voksende + 4 OSE MLs 0 Kr Server Management Suite voksende Med SMSE: 2 X Kr
  • 71. Server Management Suite Datacenter lisensering spar kostnader for kunder med tung virtualisering SMSD tillater kunder til å administrere og kontrollere tungt virtualiserte workloads med full Systems Management evne uten voksende kostnader Server Management 2.4 X NOK per 2-proc Suite Datacenter (SMSD) Ubegrenset OSE MLs $0 voksende SMSD $0 voksende SMSD $0 voksende Server Management SMSD Suite Datacenter (SMSD) $0 voksende SMSD $0 voksende 2.4 X NOK per 2-proc SMSD server $0 voksende SMSD Ubegrenset OSE MLs $0 voksende SMSD $0 voksende SMSD $0 voksende SMSD
  • 72. Takk for meg !! Nicolai.Henriksen@EdbErgoGroup.no