5/21/2018 9:40 PM BRK3021 Learn about modern infrastructure roles in RDS: Next generation Windows desktop & app virtualization Clark Nicholson - Principal.

Slides:



Advertisements
Similar presentations
1/26/2018 Hosting Windows Desktops and Applications Using Remote Desktop Services and Azure Windows Server Azure Resource Manager © 2014 Microsoft.
Advertisements

Virtual desktops in the cloud: Experiences from the field
Successfully migrate existing databases to Azure SQL Database
5/22/2018 1:39 AM BRK2156 Power BI Report Server: Self-service BI and enterprise reporting on-premises Christopher Finlan Senior Program Manager © Microsoft.
Creating Enterprise Grade BI Models with Azure Analysis Services
Azure on Steroids: Full Automation with PowerShell
Azure File Sync Setup, configuration and management
Use any Amazon S3 application with Azure Blob Storage
6/10/2018 5:07 PM THR2218 Deploying Windows Defender AV and more with Intune and Configuration Manager Amitai Senior Program Manager,
Azure Cloud Shell Magic of Modern Command-line Management
Developing Hybrid Apps on Microsoft Azure Stack
6/17/ :27 AM BRK3341 Unlock extensibility by connecting your service to PowerApps and Microsoft Flow Theresa (Tessa) Palmer–Sr. Program Manager Sunay.
Modernizing your Remote Access
Azure SDKs and Tools for You
6/25/ :13 PM BRK1076 Make Windows devices more secure by taking them out of your existing infrastructure Chris Rhodes & Andrew Bettany MCTs & MVPs.
Lessons learned from moving to Microsoft Azure
Optimizing Microsoft OneDrive for the enterprise
The power of common identity across any cloud
Understand Hybrid Identity with Azure and Azure Stack
Secure Remote Access to on-premises Web Apps using Azure AD
SQL Server on Linux on All-Flash Arrays
Microsoft Ignite /31/ :08 AM
Microsoft 365 Business: Under the Hood
Excel and Power BI Better Together Democratization of data
Modernizing Application Delivery with Containers & Kubernetes
Workflow Orchestration with Adobe I/O
Find, try and get line-of-business apps on Microsoft AppSource
Azure Security in four steps
Automate all things! Microsoft Azure continuous deployment
Data Growth Challenge at WSP USA
Microsoft Teams Mobile Collaboration on the go
Using AAD B2C for WordPress & Secure Deployment Scenario
9/20/ :32 PM BRK1017 Explore Office 365 Education – new innovations for collaborative classrooms Yousaf Sajid Product Marketing Manager Michal Lesiczka.
9/22/2018 3:49 AM BRK2247 Learn from MVPs: Panel discussion on all things SharePoint and OneDrive © Microsoft Corporation. All rights reserved. MICROSOFT.
Azure PowerShell Aaron Roney Senior Program Manager Cormac McCarthy
Port your AWS Knowledge to Azure
11/22/2018 1:43 PM THR3005 How to provide business insight from your data using Azure Analysis Services Peter Myers Bitwise Solutions © Microsoft Corporation.
Continuous Delivery with Visual Studio Team Services
Azure Advisor: Optimization in the best way
Access and Information Protection Product Overview October 2013
Mobile Center and VSTS:​ Better together for your Mobile DevOps
Microsoft products for non-profits
TechEd /7/ :16 AM © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered.
Introduction to ASP.NET Core 1.0
Five cool things you can do with Windows PowerShell on Office 365
Microsoft To-Do Preview
Microsoft Exchange: Through the eyes of MVPs (Panel discussion)
Overview: Dynamics 365 for Project Service Automation
Keep up with Office 365 evolution in the real world
Understand your Azure cloud assets dependencies with BMC Discovery
Surviving identity management in a hybrid world
System Center Marketing
Breaking Down the Value of A Yammer Post: 20 Things to Do
Getting the most out of Azure resources with Azure Advisor
Manage your App Service resources using Command line tools
“Hey Mom, I’ll Fix Your Computer”
4/21/2019 7:09 AM THR2098 Unlock New Opportunities with Nintex Hawkeye Process Intelligence and Workflow Analytics Sr. Product.
Business Continuity and the Microsoft Cloud
Consolidate, manage, backup, and secure your cloud content
Designing Bots that Fit Your Organization
Ask the Experts: Windows 10 deployment and servicing
Passwordless Service Accounts
Azure Networking inside and out
Digital Transformation: Putting the Jigsaw Together
WCF and .NET Framework Microservices in Containers
Diagnostics and troubleshooting in Azure App Service Support Center
Optimizing your content for search and discovery
Day 2, Session 2 Connecting System Center to the Public Cloud
TechEd /18/ :51 PM © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered.
Presentation transcript:

5/21/2018 9:40 PM BRK3021 Learn about modern infrastructure roles in RDS: Next generation Windows desktop & app virtualization Clark Nicholson - Principal Program Manager Pavithra Thiruvengadam - Program Manager II © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Azure: The Future of Windows Virtualization Secure Identity Azure AD conditional access (CA), multi-factor authentication (MFA) Azure Security Center and intelligent security graphs Elasticity Reduces costs by enabling scaling in/out and up/down Abstraction IaaS: eliminates management of physical computing environment PaaS: reduces management of virtual computing environment Global Footprint Service users anywhere on the planet from nearby datacenters

RDS 2012 R2 & Azure IaaS RD Clients RD Infrastructure RD session hosts Azure AD DESKTOPS apps iaas RD Web UPD File Server RD gateway RD broker firewall SQL server Active Directory All roles implemented in Azure virtual machines

RDS 2016 Improvements RD Clients RD Infrastructure RD session hosts Azure AD 6 DESKTOPS apps iaas 1 2 3 RD Web UPD File Server 4 5 RD gateway RD broker firewall Paas Azure AD Domain Services Azure SQL Database PaaS for Azure SQL Database and AAD Domain Services

RDS 2016 Additional Improvements RD Clients RD Infrastructure RD session hosts & Win10 Azure AD DESKTOPS apps iaas RD Web RDVH UPD File Server RD gateway RD broker firewall Paas Azure AD Domain Services Azure SQL Database Integrated with RD Web, connect from any html5 browser device, no RD client installation RD Virtualization Host (VH) enabled using nested Virtualization in Azure Support Windows 10 VDI

RDS modern infrastructure: Web Services RD Clients RD Infrastructure RD session hosts & Win10 Azure AD Azure AD RD diagnostics DESKTOPS apps iaas A A firewall RD Web UPD Azure files Paas Azure AD Domain Services RD gateway RD broker firewall firewall Azure SQL Database RDS roles refactored as web services, can be deployed as Azure App Services (PaaS) RD Virtualization Host eliminated with new guest agent installed on session host & Windows 10 RD Diagnostics service correlates events across the system, simplifies troubleshooting User Profile Disks (UPDs) can be stored on enhanced Azure Files supporting AD ACLs

Demo: RDmi Services as PaaS Pavithra Thiruvengadam

RDmi: Azure AD Authentication RD Clients RD Infrastructure RD session hosts & Win10 Azure AD Azure AD RD diagnostics DESKTOPS apps iaas A A firewall RD Web UPD Azure files Paas Azure AD Domain Services RD gateway RD broker firewall firewall Azure SQL Database RD infrastructure services are not AD domain joined RD clients authenticate with Azure Active Directory (AD) Enables Azure AD security features, e.g. CA, MFA, Intelligent Security Graph

RDmi: Connection Flow Client gets AAD token & presents to RD Web RD Clients RD Infrastructure RD session hosts & Win10 1 Azure AD Azure AD DESKTOPS apps iaas A A 2 6 3 firewall 4 RD Web RD diagnostics UPD 5 Azure files Paas Azure AD Domain Services RD gateway RD broker firewall firewall Azure SQL Database Client gets AAD token & presents to RD Web RD Broker determines resources authorized for user Broker orchestrates connections from client and session host agent to the same RD Gateway

RDmi: Improved Isolation: Reverse Connect RD Clients RD Infrastructure RD session hosts & Win10 Azure AD Azure AD DESKTOPS apps iaas A A firewall RD Web RD diagnostics UPD Azure files Paas Azure AD Domain Services RD gateway RD broker firewall firewall Azure SQL Database WebSocket connections from RD host agents to RD infra Bi-directional communications between session hosts and RD infra over https (443) No inbound ports need be opened to the session host environment

RDmi: Improved Isolation: Multitenancy RD Clients RD Infrastructure RD session hosts & Win10 Azure AD Azure AD DESKTOPS apps firewall A A RD Web RD diagnostics UPD Azure files Azure AD Domain Services RD gateway RD broker Azure AD firewall firewall DESKTOPS apps firewall A A Azure SQL Database VPN RD Infra & all session host environments isolated Enables: Different Azure AD tenants & subscriptions Different AD configs in each session host environment VPN from tenant environments to on-prem UPD File server Active Directory …

Demo: Isolated Tenants Azure AD Multi-Factor Auth Pavithra Thiruvengadam

RDmi: Extensible Platform RD Infrastructure RD session hosts & Win10 Azure AD Azure AD DESKTOPS apps 3rd Party app, script, service iaas firewall A A RD Web RD diagnostics UPD Azure files Paas Azure AD Domain Services RD gateway firewall firewall RD REST API RD powershell RD broker Use RD PowerShell or RD REST API to extend RDmi platform Examples: Deployment automation, session host scaling, management GUI, etc.

Demo: Example Web Management GUI Pavithra Thiruvengadam

Roadmap RDS modern infra v1 Public Preview General Availability RDmi v2 2017 2018

Learn more BRK2169 Learn about our vision and upcoming innovations for Microsoft Remote Desktop Services – Scott Manchester BRK2286 Microsoft Azure File Sync – seamlessly extend file services across servers cloud – Klaas Langhout and Mine Tanrinian Demir BRK3295 What’s New in Azure Active Directory Domain Services - Mahesh Unnikrishnan

Summary of RDmi Improvements Azure App Services simplify management Azure AD authentication enables new security features Reverse connect secures session hosts and user data Multi-tenancy reduces cost while increasing flexibility Extensible platform enables rich partner eco system

Please evaluate this session Tech Ready 15 5/21/2018 Please evaluate this session From your Please expand notes window at bottom of slide and read. Then Delete this text box. PC or tablet: visit MyIgnite https://myignite.microsoft.com/evaluations Phone: download and use the Microsoft Ignite mobile app https://aka.ms/ignite.mobileapp Your input is important! © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

5/21/2018 9:40 PM © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.