Introduction Server Virtualization Storage including Cloud Integrated Storage

  • Slides: 61
Download presentation

 Introduction Server Virtualization Storage including Cloud Integrated Storage with Storsimple Networking Management and

Introduction Server Virtualization Storage including Cloud Integrated Storage with Storsimple Networking Management and Automation Web and Application Platform Virtual Desktop Infrastructure Identity and Access 2

New apps Device proliferation Data explosion Cloud computing 4

New apps Device proliferation Data explosion Cloud computing 4

Windows Server 2012 Datacenter Windows Server 2012 Standard Windows Microsoft Server Hyper-V 2012 Server.

Windows Server 2012 Datacenter Windows Server 2012 Standard Windows Microsoft Server Hyper-V 2012 Server. Essentials 2012 Windows Server 2012 Foundation 5'

6'

6'

SCALE AND PERFORMANCE VIRTUAL MACHINE MOBILITY CONTINUOUS SERVICES OPEN AND EXTENSIBLE ISOLATION AND MULTITENANCY

SCALE AND PERFORMANCE VIRTUAL MACHINE MOBILITY CONTINUOUS SERVICES OPEN AND EXTENSIBLE ISOLATION AND MULTITENANCY Larger virtual machines support increased workloads Simultaneous live migrations ease management burdens Clustering enhancements increase availability Open, extensible switch helps support security and management needs Network Virtualization supports multitenancy and IP portability Hardware offloading offers better performance and scale Shared-nothing live migration enables live migration between clusters Dynamic Memory increases capacity with no downtime Increased support for Windows Power. Shell helps increase automation Resource Metering shows how many resources each tenant is using 8

Maximum number System Host Virtual machine Cluster Improvement factor Resource Windows 2008 R 2

Maximum number System Host Virtual machine Cluster Improvement factor Resource Windows 2008 R 2 Windows Server 2012 Logical processors on hardware 64 320 5× Physical memory 1 terabyte 4 terabytes 4× Virtual processors per host 512 1, 024 2× Virtual processors per virtual machine 4 64 16× Memory per virtual machine 64 GB 1 terabyte 16× Active virtual machines 384 1, 024 2. 7× Virtual disk size 2 terabytes 64 terabytes 32× Nodes 16 64 4× Virtual machines 1, 000 8× 9

VIRTUAL MACHINE MOBILITY Improvements • Faster and simultaneous migration • Live migration outside a

VIRTUAL MACHINE MOBILITY Improvements • Faster and simultaneous migration • Live migration outside a clustered environment • Store virtual machines on a File Share Modified Memory Storage Live migration pages handle transferred moved setup VM MEMORY Live migration of VM’s on SAN or File Share (SMB 3) Modified memory pages Configuration Memory content data IP connection VM ost th e g Tar SMB network storage 10

VIRTUAL MACHINE MOBILITY Live migration of storage Move virtual hard disks attached to a

VIRTUAL MACHINE MOBILITY Live migration of storage Move virtual hard disks attached to a running virtual machine Disk Reads writes contents are andmirrored; writes are copied go outstanding to to new Reads and writes go to the source VHD changes destination are replicated VHD Benefits • Manage storage in a cloud environment with greater flexibility and control Virtual machine Computer running Hyper‑V • Move storage with no downtime • Update physical storage available to a virtual machine (such as SMB-based storage) • Windows Power. Shell cmdlets Source device Target device VHD 11

VIRTUAL MACHINE MOBILITY Benefits • Increase flexibility of virtual machine placement Source Hyper‑V Virtual

VIRTUAL MACHINE MOBILITY Benefits • Increase flexibility of virtual machine placement Source Hyper‑V Virtual machine MEMORY Shared-nothing live migration Disk writes Reads contents are andmirrored; writes are copied gooutstanding totothe new Live Migration Completes Continues sourcechanges VHD. destination source Live are. Migration VHD replicated VHD Begins Destination Hyper‑V Live Migration Configuration data Modified memory pages Memory content Virtual machine IP connection • Increase administrator efficiency • Reduce downtime for migrations across cluster boundaries Source device Target device VHD 12

VIRTUAL MACHINE MOBILITY Primary site New feature Replicate Hyper‑V virtual machines from a primary

VIRTUAL MACHINE MOBILITY Primary site New feature Replicate Hyper‑V virtual machines from a primary site to a replica site Benefits • Affordable in-box business continuity and disaster recovery • Failure recovery in minutes • More secure replication across network • No need for storage arrays • No need for other software replication technologies • Automatic handling of live migration • Simpler configuration and management Replica site Exchange virtual machine IIS virtual machine CRM virtual machine SQL virtual machine Share. Point virtual machine Exchange replica virtual machine CRM replica virtual machine R 2 P 1 P 2 Replicate over WAN link R 3 R 1 SMB file share SAN Hyper‑V role and tools Hyper‑V cmdlets Hyper‑V PS integrated UI Send/receive replica traffic Hyper‑V Management Module tracks and replicates changes for each virtual machine Hyper‑V Management Module receives and applies the changes to the replica virtual machine 13

CONTINUOUS SERVICES Features Virtual machine failover prioritization Affinity (and anti-affinity) virtual machine rules •

CONTINUOUS SERVICES Features Virtual machine failover prioritization Affinity (and anti-affinity) virtual machine rules • Lets you configure virtual machine priorities • Lets you configure partnered Virtual machines to migrate simultaneously during failover. • Controls the order in which virtual machines fail over or start Hyper-V App Monitoring • Monitors services and event logs inside WIN 2012 virtual machines • Restart servicesvm’s if necessary • Allows you to specify that two virtual machines cannot coexist on the same node in a failover scenario (anti-affinity) Encrypted Cluster Volumes • Use Bitlocker Drive Encryption to encrypt cluster volumes hosting virtual machines 14

CONTINUOUS SERVICES Vote Last Man Standing! Cluster Survives! Vote 1 N=1 Majority = 1

CONTINUOUS SERVICES Vote Last Man Standing! Cluster Survives! Vote 1 N=1 Majority = 1 Vote 2 N=2 Majority = 2 Vote 3 N=3 Majority = 2 Vote 4 N=4 Majority = 3 5 N=5 Majority = 3 6 N=6 Majority = 4

16

16

IMPROVED PERFORMANCE AND MORE CHOICE THROUGH INDUSTRY INNOVATION ALWAYS ON, ENTERPRISE-CLASS FEATURES ON LESS

IMPROVED PERFORMANCE AND MORE CHOICE THROUGH INDUSTRY INNOVATION ALWAYS ON, ENTERPRISE-CLASS FEATURES ON LESS EXPENSIVE HARDWARE ALWAYS UP SERVICES Storage Spaces Application storage support through SMB 3. 0 Offloaded Data Transfers (ODX) Virtual Fibre Channel for Hyper-V Data Deduplication Server Message Block (SMB) Direct Windows Cluster in a Box Windows Storage Server CONTINUOUS APPLICATION AVAILABILITY SIMPLIFIED MANAGEABILITY File system enhancements SMB Transparent Failover Online backup Management options Cluster-Aware Updating (CAU) SMB Multichannel High availability with i. SCSI and NFS Unified storage management 18

Windows Application Server or File Server Storage Pools and Storage Spaces Physical or virtualized

Windows Application Server or File Server Storage Pools and Storage Spaces Physical or virtualized deployments Integrated with other Windows Server 2012 capabilities Windows Virtualized Storage • Virtualization of storage with • Storage resilience and File Server Administration Console Hyper-V Failover Clustering NTFS SMB Direct Cluster Shared Volume NFS Windows Storage Mgmt. SMB Multichannel availability with commodity hardware • Resiliency and data redundancy through n-way mirroring (clustered or unclustered) or parity mode (unclustered) • Utilization optimized through Storage Space thin and trim provisioning and enclosure awareness • Integration with other Storage Pool Windows Server 2012 capabilities • Serial Attached SCSI (SAS) and Physical Storage Serial AT Attachment (SATA) interconnects (Shared) SAS or SATA 19

Maximize capacity by removing duplicate data VHD Library • 2: 1 with file shares,

Maximize capacity by removing duplicate data VHD Library • 2: 1 with file shares, 20: 1 with virtual storage • Less data to back up, archive, and migrate Software Deployment Share Increased scale and performance • Low CPU and memory impact • Configurable compression schedule • Transparent to primary server workload General File Share Improved reliability and integrity • Redundant metadata and critical data • Checksums and integrity checks • Increase availability through redundancy User Home Folder (My Docs) 0% 20% 40% 60% 80% 100% Average savings with Data Deduplication by workload type Faster file download times with Branch. Cache Source: “Microsoft Internal Testing" 20

 • High-performance, continually available fileshares for business critical applications • Support for planned

• High-performance, continually available fileshares for business critical applications • Support for planned moves, load balancing, operating system restart, unplanned failures, and client redirection (scale-out only) • Resilient for file and directory operations • All servers involved should have Windows Server 2012 Windows Server file server cluster • Failover transparent to server applications with zero downtime and with only a small I/O delay \fooshare \foo 1share 1 \foo 2share 1 21

ALWAYS ON, ISCSI SOFTWARE TARGET ALWAYS UP SERVICES Microsoft i. SCSI Software Target now

ALWAYS ON, ISCSI SOFTWARE TARGET ALWAYS UP SERVICES Microsoft i. SCSI Software Target now an in-box feature in Windows Integrated with clustering to enable a high availability i. SCSI Target i. SCSI network boot provides a reliable, cost effective, and highly available option for Hyper-V host and HPC boot Faster recovery from hardware failures NFS SUPPORT Continuous availability for applications deployed over NFSv 3 or NFSv 2 (specifically VMware) with transparent server -side failover NFS 4. 1 support for early adopters Better reliability with stateful protocol Cost-effective alternative for virtualized deployments Create i. SCSI cluster using Server Manager UI or Windows Power. Shell 22

Third-party cloud Third-party online backup portal Microsoft online backup portal • Sign up •

Third-party cloud Third-party online backup portal Microsoft online backup portal • Sign up • Billing Registration Microsoft online backup service Windows Server 2012 Third-party online backup service Backup/ Restore Inbox engine Inbox UI Windows Server 2012 backup (extensible) • Sign up • Billing • Ability to leverage Windows Azure cloud services to back up data • Reduced cost for backup storage and management • Options for third-party cloud services • Ideal for small Registration businesses, branch offices, and departmental business needs Agents • Microsoft online backup • Third-party agents IT Pro 23

Applications in Physical or Virtual Servers ISCSI Connectivity Most active data on SSD SAS

Applications in Physical or Virtual Servers ISCSI Connectivity Most active data on SSD SAS local tier Connects Windows, Hyper-V and VMware servers to Windows Azure Storage in minutes with no application modification Key Capabilities & Benefits • Consolidates primary, archive, backup, DR Automatic Tiering + Cloud Snapshots Inactive data + backuparchive in Azure storage thru seamless integration with Azure • Automatic tiering of data between SSDSATAAzure • Cloud Snapshots = revolutionary speed, simplicity & reliability for backup & recovery • Reduces enterprise storage TCO by 60 -80% 24

A B C A B D E E C D D SSD Linear Tier

A B C A B D E E C D D SSD Linear Tier SSD Deduplicated E SAS Deduplicated Compressed E Cloud Deduplicated Compressed Encrypted 25

Cloud Snapshots Production Data Enterprise Data Center 1 Connect many servers to cloud storage

Cloud Snapshots Production Data Enterprise Data Center 1 Connect many servers to cloud storage and scale data sets with Stor. Simple solution Enterprise Data Center 2 Rapidly recover to any data center – location independent via mounting the cloud 26

27

27

CONTINUOUS APPLICATION AVAILABILITY RICHER ECOSYSTEM HIGH-PERFORMANCE NETWORKING OPERATIONAL EFFICIENCY NIC Teaming Server Message Block

CONTINUOUS APPLICATION AVAILABILITY RICHER ECOSYSTEM HIGH-PERFORMANCE NETWORKING OPERATIONAL EFFICIENCY NIC Teaming Server Message Block (SMB) 3. 0 Multichannel Hyper-V Extensible Switch SMB Direct IP Address Management (IPAM) Dynamic Host Configuration Protocol (DHCP) failover Quality of Service (Qo. S) Hardware partners Single Root I/O Virtualization (SR-IOV) Resource Metering Receive-Side scaling (RSS) Microsoft Windows Power. Shell Receive Segment Coalescing (RSC) Branch. Cache SIMPLIFIED MULTITENANT INFRASTRUCTURE Private virtual local area network (PVLAN) Hyper-V Network Virtualization Cross-premises connectivity Dynamic Virtual Machine Queue (D-VMQ) 29

 • Provides network fault tolerance and continuous availability when network adapters fail by

• Provides network fault tolerance and continuous availability when network adapters fail by teaming multiple network interfaces • Vendor agnostic and shipped inbox • Provides local or remote management through Windows Power. Shell or UI Virtual adapters Team network adapter • Enables teams of up to 32 network adapters • Aggregates bandwidth from multiple network adapters • Includes multiple nodes: switch dependent and independent 30

New feature Handles network traffic among virtual machines, external network, and host operating system

New feature Handles network traffic among virtual machines, external network, and host operating system Benefits • Layer 2 virtual interface • Managed programmatically • Extensible by partners or customers Hyper–V host Virtual machine Network application Virtual network adapter Hyper‑V Extensible Switch Physical network adapter Physical switch 31

Extending the Hyper‑V Extensible Switch For new capabilities Virtual Machine Two platforms for extensions

Extending the Hyper‑V Extensible Switch For new capabilities Virtual Machine Two platforms for extensions • Network Device Interface Specification (NDIS) filter drivers • Windows Filtering Platform (WFP) callout drivers You can extend or replace • • • NDIS filter drivers WFP callout drivers Ingress filtering Destination lookup and forwarding Egress filtering Other features Virtual Machine Parent Partition VM NIC Host NIC VM NIC Extension monitoring Extension uniqueness Extensions that learn virtual machine life cycle Extensions that can veto state changes Multiple extensions on same switch Virtual Switch Extension Protocol Capture Extensions Extension A Filtering Extensions Extension C Forwarding Extension D Extension Miniport Physical NIC Hyper‑V Extensible Switch architecture 32

Extension Purpose Potential examples Extensible component Network packet inspection Inspecting network packets, but not

Extension Purpose Potential examples Extensible component Network packet inspection Inspecting network packets, but not altering them s. Flow and network monitoring (In. Mon) NDIS filter driver Network packet filter Injecting, modifying, and dropping network packets Security NDIS filter driver Network forwarding Third-party forwarding that bypasses default forwarding Open. Flow (NEC), Virtual Ethernet Port Aggregator (VEPA), and proprietary network fabrics (Cisco Nexus V 1000 UCS) NDIS filter driver Firewall/intrusion detection Filtering and modifying TCP/IP packets, monitoring or authorizing connections, filtering IPsecprotected traffic, and filtering RPCs Virtual firewall and connection monitoring (5 nines – virtual firewallAV) WFP callout driver 33

Multitenant security and isolation OTHER TOOLS BENEFITS ARP spoofing protection Enhanced security and isolation

Multitenant security and isolation OTHER TOOLS BENEFITS ARP spoofing protection Enhanced security and isolation DHCP guard protection Manageability Virtual port ACLs Isolation of customers’ networks from one another Trunk mode to virtual machines No need to set up and maintain VLANs Monitoring Protection against malicious data interception Windows Power. Shell | Windows Management Instrumentation (WMI) 34

Orange sees Blue sees SQL Server NVGRE • Standards based tunneling technology built on

Orange sees Blue sees SQL Server NVGRE • Standards based tunneling technology built on IETF standard GRE protocol • Better network scalability by sharing PA 10. 1. 1. 1 Web 10. 1. 1. 2 10. 1. 1. 1 192. 168. 1. 10 10. 1. 1. 2 192. 168. 2. 12 What’s really happening 192. 168. n. n tenancy support PROVIDER ADDRESS SPACE (PA) • Strong partner eco-system with silicon Machine Manager 2012 10. 1. 1. 1 192. 168. 1. 10 • Explicit Virtual Subnet ID for better multi- • Manage using System Center Virtual Web 10. 1. 1. 1 among VMs partners, switch extension partners, switch and load balancer partners and gateway partners SQL Server 192. 168. 1. 10 192. 168. 2. 12 10. 1. 1. 1 192. 168. 1. 10 10. 1. 1. 2 192. 168. 2. 12 10. 1. 1. 1 SQL Server 10. 1. 1. 2 Web CUSTOMER ADDRESS SPACE 35

Features and mechanisms Features • Establishes either a bandwidth floor or cap • Assigns

Features and mechanisms Features • Establishes either a bandwidth floor or cap • Assigns specified bandwidth for each type of traffic • Helps to ensure fair sharing during congestion • Can exceed quota with no congestion Two mechanisms • Enhanced packet scheduler (software) • Network adapter with DCB support (hardware) Relative minimum bandwidth Normal priority W=1 High priority Strict minimum bandwidth Critical W=2 W=5 Hyper‑V Extensible Switch Bronze tenant 100 MB Silver tenant Gold tenant 200 MB 500 MB Hyper‑V Extensible Switch 1 Gbps Strict maximum bandwidth Bronze tenant 100 MB Silver tenant Gold tenant 200 MB 500 MB Be careful of oversubscription! Hyper‑V Extensible Switch 1 Gbps 36

Benefits Runtime bandwidth demand (gigabits per second) General benefits • Needs fewer expensive network

Benefits Runtime bandwidth demand (gigabits per second) General benefits • Needs fewer expensive network adapters • Makes best use of 10 -Gb. E hardware Service Virtual machine For public cloud hosting providers • Manages performance levels for SLAs • Delivers minimal impact or compromise in shared infrastructure Reservation T 1 T 2 T 3 Actual bandwidth usage by each service T 2 3 30% 4 4 2 T 1 4 4 Storage 40% 5 5 5 6 T 3 2 6 2 Live migration 20% 0 3 2 Cluster Shared Volume 10% 0. 5 1 0. 5 When bandwidth is available, each service takes as much as it can When the link is congested, each service takes its fair share 2 When bandwidth becomes available, each service takes as much as it wants 37

STANDARDS-BASED MANAGEMENT MULTISERVER MANAGEMENT ECOSYSTEM AND EXTENSIBILITY Windows Management Framework provides a common platform

STANDARDS-BASED MANAGEMENT MULTISERVER MANAGEMENT ECOSYSTEM AND EXTENSIBILITY Windows Management Framework provides a common platform for building automation and integration incorporating Power. Shell, WSManagement and WMI Server Manager enables a multiserver management experience that builds on the standardized approach to management and robust automation capabilities Cross platform capabilities enable automation across the datacenter ROBUST AUTOMATION Windows Power. Shell 3. 0 provides more features to allow more activities to be automated across the server ecosystem Standardized interfaces and tools extend the interoperability with Dev. Ops 39

ROBUST AUTOMATION Key features Broader coverage Greater resiliency • • Rich management through more

ROBUST AUTOMATION Key features Broader coverage Greater resiliency • • Rich management through more than 2300 cmdlets Windows Power. Shell Web Access Robust session connectivity Disconnected sessions Session configuration files Job scheduling Windows Power. Shell Workflow More intuitive • • • Integrated Scripting Environment 3. 0: Intelli. Sense | Code Snippets Syntax simplification Cmdlet discovery and module autoloading Updatable help Script-sharing Higher performance • • On-the-fly compilation—up to six times faster Performance improvements 40

Server with a GUI Minimal Server Interface Server Core Classic “Full Server” • Full

Server with a GUI Minimal Server Interface Server Core Classic “Full Server” • Full Modern-style GUI shell • Install Desktop Experience to run Metro-style apps NEW Full Server without Server Graphical Shell • No Explorer, Internet Explorer or associated files • MMC, Server Manager, and a subset of Control Panel applets are still installed • Provides many of the benefits of Server Core for those applications or users that haven’t yet made the transition Server Core • NEW Can move between Server Core and Full Server by simply installing or uninstalling components

POWERSHELL Uninstall-Windows. Feature Server-Gui-Mgmt-Infra -Restart Single reboot required to restart all services POWERSHELL Install-Windows.

POWERSHELL Uninstall-Windows. Feature Server-Gui-Mgmt-Infra -Restart Single reboot required to restart all services POWERSHELL Install-Windows. Feature Server-Gui-Mgmt-Infra, Server-Gui-Shell Restart NEW Can install multiple features with one command by separating with commas

POWERSHELL Uninstall-Windows. Feature Server-Gui-Shell -Restart POWERSHELL Install-Windows. Feature Server-Gui-Mgmt-Infra -Restart

POWERSHELL Uninstall-Windows. Feature Server-Gui-Shell -Restart POWERSHELL Install-Windows. Feature Server-Gui-Mgmt-Infra -Restart

MUTLTENANT HIGH-DENSITY WEBSITES Server Name Indication (SNI) allows high-density sites that are more secure

MUTLTENANT HIGH-DENSITY WEBSITES Server Name Indication (SNI) allows high-density sites that are more secure Non-Uniform Memory Architecture (NUMA) takes advantage of hardware that has complex specifications Centralized SSL store dynamically maps sites to certificates CONSISTENT AND REPEATABLE CONFIGURATIONS ECOSYSTEM AND EXTENSIBILITY Shared configuration helps ensure consistency across web farms Embraces web standards to work more easily with PHP and node. js Configuration. Editor provides a rich, visual method to edit web configurations and create repeatable actions Provides a common development platform across clouds HIGH-PERFORMANCE WEB APPLICATIONS Application Initialization improves user experience of first requests CPU throttlinghelps ensure that no single web application affects the performance of others Dynamic FTP and IP restrictions set policies to block unwanted access 45

EFFICIENT MANAGEMENT Easy deployment automates deploying and configuring server roles Unified administration uses a

EFFICIENT MANAGEMENT Easy deployment automates deploying and configuring server roles Unified administration uses a single, integrated console for management Streamlined management helps IT manage pooled and personal virtual machines RICH USER EXPERIENCE Remote. FX for wide area network (WAN) dynamically detects network conditions and tunes experience Graphics processing unit (GPU) supportfor both physical and software GPUs USB redirection enables access to locally attached devices in remote desktops Seamless experience supports multitouch, new Windows Experience, and Start menu integration BEST VALUE FOR VDI User Profile Disk maintains user personalization in pooled deployments Fair Share dynamically distributes bandwidth, CPU, and disk use Multiple storage options support directattached, networkattached, or storage area network (SAN) storage of virtual machines 47

Support direct, attached, network, or SAN storage of virtual machines User Profile Disk Fair

Support direct, attached, network, or SAN storage of virtual machines User Profile Disk Fair Share Dynamically distribute bandwidth, CPU, and disk use Multiple storage options High availability for all roles Maintain user personalization in pooled deployments 48

RICH USER EXPERIENCE Remote. FX delivers a consistently rich user experience to users over

RICH USER EXPERIENCE Remote. FX delivers a consistently rich user experience to users over LAN or WAN (regardless of deployment model) Hardware and software GPUs Corporate LAN Internet or WAN Rich multimedia USB redirection Multitouch WAN acceleration Single sign-on 49

50

50

Protection of corporate resources Dynamic Access Control Active Directory virtualization Data access management and

Protection of corporate resources Dynamic Access Control Active Directory virtualization Data access management and protection Classification Direct. Access Active Directory cloning Kerberos constrained delegation Simplified deployment and management of identity infrastructure Simpler deployment of Active Directory Domain Name System Security Extensions Private VLAN Multitenant security and isolation 52

Activate clients using existing Active Directory infrastructure Activation object is maintained in the configuration

Activate clients using existing Active Directory infrastructure Activation object is maintained in the configuration partition Computers running Windows 8 or Windows Server 2012 automatically activate Beyond installation and service-specific requirements, no data is written back to the directory 53

Classification Access control Auditing • Files inherit classification tags from parent folder • Central

Classification Access control Auditing • Files inherit classification tags from parent folder • Central access policies are based on classification • Central audit policies can be applied across multiple file servers • Access conditions for user claims, device claims, and file tags are based on expressions • Audits for user claims, device claims, and file tags are based on expressions • Assistance is available for denial of access • Audits can be staged to simulate policy changes in a real environment • File owners tag files manually • Files are tagged automatically • Files are tagged by applications Rights Management Services protection • Automatic Rights Management Services (RMS) protection is available for Microsoft Office documents • Protection is in near-real– time when a file is tagged • RMS protection extends to files not created in Microsoft Office 54

Active Directory Domain Services User claims User. Department = Finance User. Clearance = High

Active Directory Domain Services User claims User. Department = Finance User. Clearance = High File server Device claims Device. Department = Finance Device. Managed = True Resource properties Resource. Department = Finance Resource. Impact = High Access policy For access to financial information that has high business impact, a user must be a finance department employee with a high security clearance, and must use a managed device registered with the finance department. 55

Active Directory Domain Services High business impact policy Personally identifiable information policy Finance policy

Active Directory Domain Services High business impact policy Personally identifiable information policy Finance policy Organizational policies Corporate file servers Characteristics • High business impact • Personally identifiable information • Composed of central access rules Finance department policies • Supplement (not replace) native file and folder access control lists from New Technology File System (NTFS) • High business impact • Personally identifiable information • Finance • Applied to file servers through Group Policy objects User folders Finance folders 56

Audit everyone who does not have a high security clearance and who tries to

Audit everyone who does not have a high security clearance and who tries to access a document that has a high impact on business Audit all vendors when they try to access documents related to projects that they are not working on Audit | Everyone | All-Access | Resource. Business. Impact=HBI AND User. Security. Clearance!=High Audit | Everyone | All-Access | User. Employment. Status=Vendor AND User. Project Not_Any. Of Resource. Project. 57

Enables dynamic cloud access Ease of deployment Improved manageability Enabling new scenarios Improved scale

Enables dynamic cloud access Ease of deployment Improved manageability Enabling new scenarios Improved scale and performance • Express setup wizard • Unified remote access management experience • Multisite and hybrid cloud • Support for high availability and external load balancers • Ability to work with existing network equipment • Connectivity to IPv 4 and IPv 6 servers • Deployment mode supporting only remote management of mobile computers • Enriched experience for monitoring remote client activity and status • Reporting and accounting capabilities for audit/compliance • Rich Windows Power. Shell management interface • Support for one-time password and Trusted Platform Module authentication • Provisioning support for offpremises clients • Improved performance in virtualized environments • Dramatically more users per server • Deployment of Direct. Access server behind network address translation device • Enhanced troubleshooting tools 58

59

59

Get the evaluation Microsoft Server and Cloud Platform: http: //www. microsoft. com/en-us/server-cloud/windows-server/2012 -default. aspx

Get the evaluation Microsoft Server and Cloud Platform: http: //www. microsoft. com/en-us/server-cloud/windows-server/2012 -default. aspx Get certified Microsoft Learning: http: //www. microsoft. com/learning/ Get trained Microsoft Virtual Academy: http: //www. microsoftvirtualacademy. com Microsoft Technet Library: Windows Server 2012 http: //technet. microsoft. com/en-gb/library/hh 801901. aspx 60