SIM317
Built on top of Microsoft ® System Center Configuration ManagerBuilt on top of Microsoft ® System Center Configuration Manager Supports all System Center Configuration Manager topologies and scaleSupports all System Center Configuration Manager topologies and scale Facilitates easy migrationFacilitates easy migration Deploy across various operating systems Windows ® client and ServerDeploy across various operating systems Windows ® client and Server Protection against all type of malwareProtection against all type of malware Proactive security against zero day threatsProactive security against zero day threats Productivity-oriented default configurationProductivity-oriented default configuration Integrated management of host firewallIntegrated management of host firewall Backed by Microsoft Malware Protection CenterBacked by Microsoft Malware Protection Center Unified management interface for desktop administratorsUnified management interface for desktop administrators Effective alertsEffective alerts Simple, operation-oriented policy administrationSimple, operation-oriented policy administration Historical reporting for security administratorsHistorical reporting for security administrators Ease of Deployment Enhanced Protection Simplified Desktop Management
SQL Reporting Services (or File Share) ConfigMgr Software Distribution ConfigMgr Desired Configuration Management ConfigMgr Site Server & DB DATA Config. / Dashboard Reports EVENTS Desktops, Laptops, and Servers running ConfigMgr Client & FEP 2010 TELEMETRY SpyNet
ConfigMgr Reporting ConfigMgr Console ConfigMgr Agent FEP Reports Forefront Endpoint Protection 2010 WMI ConfigMgr DB ConfigMgr DB FEP Warehouse ConfigMgr Server DCM ConfigMgr Forefront Endpoint Protection 2010 FEP UI Managed Computer Registry Event log ConfigMgr Software Distribution FEP Extensions
FEP Console Extension FEP Server Extensions FEP Reports FEP Console Extensions Centralized policies, monitoring, and reporting capabilities Secondary Site CENTRAL SITE Primary Site
TaskCentral Primary Site Child Primary Site(s) Monitor Forefront Endpoint Protection client deployment progress Yes Create or modify Forefront Endpoint Protection policiesYesNo Assign Forefront Endpoint Protection policies to collections Yes Monitor Forefront Endpoint Protection via the Forefront Endpoint Protection dashboard YesNo Forefront Endpoint Protection ReportingYesNo Configure Forefront Endpoint Protection alertsYesNo
Secondary Site CENTRAL SITE Primary Site FEP Console Extensions FEP Server Extensions FEP Reports FEP Console Extensions FEP Server Extensions FEP Reports FEP Console Extensions FEP Server Extensions FEP Reports Separate security management and operations to child sites
TaskCentral Primary Site Child Primary Site(s) Monitor Forefront Endpoint Protection client deployment progress NoYes Create or modify Forefront Endpoint Protection policiesNoYes Assign Forefront Endpoint Protection policies to collections NoYes Monitor Forefront Endpoint Protection via the Forefront Endpoint Protection dashboard NoYes Forefront Endpoint Protection ReportingNoYes Configure Forefront Endpoint Protection alertsNoYes
TaskCentral Primary Site Child Primary Site(s) Monitor Forefront Endpoint Protection client deployment progress NoYes Create or modify Forefront Endpoint Protection policiesNoYes Assign Forefront Endpoint Protection policies to collections NoYes Monitor Forefront Endpoint Protection via the Forefront Endpoint Protection dashboard NoYes Forefront Endpoint Protection ReportingYes Configure Forefront Endpoint Protection alertsNoYes
One less infrastructure to deploy, secure & maintain ; No additional HW required; Simple - Auto discovery & installation of FEP on top of ConfigMgr roles FEP Console Extension FEP Server Extensions FEP Reports FEP Console Extension
FEP Server Extensions FEP Reports FEP Console Extension
FEP Console Extensions FEP Server Extensions FEP Reports FEP Server Extensions FEP Reports Central policies, monitoring and reporting capabilities. Separate security management and operations to child sites Consolidated reporting
* Actual capacity planning depends on organization load profile, retention policy and specific hardware deployment * planning-worksheet.aspxhttp://blogs.technet.com/b/clientsecurity/archive/2011/01/19/fep-capacity- planning-worksheet.aspx CriteriaRecommended Resource availability based on CM HW recommendation FEP K topology internal test results SQL server CPU impact by FEP (delta) 20%<5% SCCM Server CPU impact by FEP (delta) 10%<2% Memory footprint 500MB<100MB Expected disk capacity after 1-year 500GB<400GB
demo
Event Log UPDATE SOURCES Corporate network (UNC share) Corporate network (UNC share) Internet (MU/WU) Corporate network (WSUS) Corporate network (WSUS) Antimalware Service (FEP Client) Network Service Local system
First Install Signature Version: Engine Version: Signature Version: Engine Version: Signature Version: Engine Version: Signature Version: Engine Version: Full Package BDE Package Delta Package Signature Version: Engine Version: Signature Version: Engine Version: Current Definition Updates available on MU Signature Version: Engine version : Signature Version: Engine version : BDD Package Forefront Endpoint Protection Definition Update Scenarios
22
demo
32
demo
Convergence of Management and Security Built on System Center Configuration Manager 2012 Advanced protection with lower impact on productivity New Enhancements Simplified hierarchy model Role Based Access Control Definition Updates and automatic approval rules through ConfigMgr Improved alert timings Evaluation Options FEP 2012 Beta available now: Join Community Evaluation Program (included in ConfigMgr CEP)
FEP PRIMARY SITES CENTRAL ADMINISTRATION SITE Simplified installation using existing infrastructure FEP objects replicated to sites FEP Reporting Client data up Simplified Migration
Security Administrator Create new policies Modify default policies Modify custom policies Modify Precedence Create new policies Modify default policies Modify custom policies Modify Precedence Policy Deployment Manager Assign policy to collection
FEP Primary Site Distribution Point Software Distribution Point Download FEP Sigs Sync Catalog Management Point Refresh Package with Sigs Update rules Check update Rules
Demo
Required Slide Speakers, please list the Breakout Sessions, Interactive Discussions, Labs, Demo Stations and Certification Exam that relate to your session. Also indicate when they can find you staffing in the TLC.
Sessions On-Demand & CommunityMicrosoft Certification & Training Resources Resources for IT ProfessionalsResources for Developers Connect. Share. Discuss.
Scan the Tag to evaluate this session now on myTechEd Mobile