Enterprise IT Update August 3, 2012. Introductions AIT Personnel –Mike Alani: Senior Network Engineer –Jay Carper: Exchange & Active Directory Administrator.

Slides:



Advertisements
Similar presentations
Click to edit Master title style ManageEngine ADManager Plus 6 What's New? ADManager Plus offers: AD Automation | AD Management | AD Reporting | AD Delegation.
Advertisements

UTILIZING WITH ITA. offers an entire suite of benefits for you and your students. You can also set up s for the purpose.
SCCM 2012 Features and Benefits
Lotus Notes - the University of Nebraska Experience Greg Gray University of Nebraska Central Administration Computing Services Network.
Welcome Overview of this Session Introduction The Migration –Active Directory (replacing Novell) – & Calendar – from iPlanet to Outlook –Network.
Technology Steering Group January 31, 2007 Academic Affairs Technology Steering Group February 13, 2008.
© Copyright Lumension Security Lumension Security PatchLink Enterprise Reporting™ 6.4 Overview and What’s New.
Enterprise Imaging University of Michigan Administrative Information Services Enterprise Imaging Financial Unit Liaisons Mike Easter 1/18/06.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment Chapter 1: Introduction to Windows Server 2003.
Exchange server Mail system Four components Mail user agent (MUA) to read and compose mail Mail transport agent (MTA) route messages Delivery agent.
Enterprise Physical Access Control System (ePACS) Overview Briefing
Brian Bradley.  Data is any type of stored digital information.  Security is about the protection of assets.  Prevention: measures taken to protect.
MCTS Guide to Microsoft Windows Server 2008 Network Infrastructure Configuration Chapter 11 Managing and Monitoring a Windows Server 2008 Network.
Information Technology Audit Process Business Practices Seminar Paul Toffenetti, CISA Internal Audit 29 February 2008.
Installing and Maintaining ISA Server. Planning an ISA Server Deployment Understand the current network infrastructure Review company security policies.
Offsite Backups. The purpose of this Startup Guide is to familiarize you with Own Web Now's Offsite Backup offering and show you how to purchase, deploy.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment, Enhanced Chapter 1: Introduction to Windows Server 2003.
Patch Management Module 13. Module You Are Here VMware vSphere 4.1: Install, Configure, Manage – Revision A Operations vSphere Environment Introduction.
Account Reset Console Delegated and secure self password resets Joe Vachon Sales Engineer.
11 MAINTAINING THE OPERATING SYSTEM Chapter 5. Chapter 5: MAINTAINING THE OPERATING SYSTEM2 CHAPTER OVERVIEW Understand the difference between service.
Group Policy in Microsoft Windows Active Directory.
Task Scheduler Pro Managing scheduled tasks across the enterprise Joe Vachon Sales Engineer.
Principles of Computer Security: CompTIA Security + ® and Beyond, Second Edition © 2010 Baselines Chapter 14.
Module 1: Installing Windows XP Professional. Overview Manually Installing Windows XP Professional Automating a Windows XP Professional Installation Using.
Module 9 Configuring Server Security Compliance. Module Overview Securing a Windows Infrastructure Overview of EFS Configuring an Audit Policy Overview.
1 Objectives Windows Firewalls with Advanced Security Bit-Lock Update and maintain your clients using Windows Server Update Service Microsoft Baseline.
Training on ManageEngine Desktop Central
©Kwan Sai Kit, All Rights Reserved Windows Small Business Server 2003 Features.
Tim Vander Kooi Systems
© 2010 VMware Inc. All rights reserved Patch Management Module 13.
Current Job Components Information Technology Department Network Systems Administration Telecommunications Database Design and Administration.
Hands-On Microsoft Windows Server Security Enhancements in Windows Server 2008 Windows Server 2008 was created to emphasize security –Reduced attack.
Deploying Chromebooks RICK NICHOLAS A.
Microsoft Active Directory(AD) A presentation by Robert, Jasmine, Val and Scott IMT546 December 11, 2004.
Module 14: Configuring Server Security Compliance
NETWORK FILE ACCESS SECURITY Daniel Mattingly EKU, Dept. of Technology, CEN/CET.
FNAL System Patching Design Jack Schmidt, Al Lilianstrom, Andy Romero, Troy Dawson, Connie Sieh (Fermi National Accelerator Laboratory) Introduction FNAL.
SMS 2003 Deployment and Managing Windows Security Rafal Otto Internet Services Group Department of Information Technology CERN 26 May 2016.
PC MANAGER MEETING January 23, Agenda  Next Meeting  Training  Windows Policy  Main Topic: Windows AV Service Review.
Common Servers in a Workplace Environment Brandon Reynolds Computer Electronic Networking Dept. of Technology, Eastern Kentucky University.
Brian Arkills Software Engineer, LDAP geek, AD guy, Chief Troublemaking Officer Windows HiEd Conference 2006 Managed Workstations: UW Nebula.
2011 AMC INSTITUTE COMMUNITY CONFERENCE “ACCREDITATION - IT’S ALL ABOUT BEST PRACTICES” Suzanne C. Pine, CAE AMC – National Accounts, PCVB AMCI Accreditation.
Managing the Oracle Application Server with Oracle Enterprise Manager 10g.
1 Objectives Windows Firewalls with Advanced Security Bit-Lock Update and maintain your clients using Windows Server Update Service Microsoft Baseline.
Ali Pabrai, CISSP, CSCS ecfirst, chairman & ceo Preparing for a HIPAA Security Audit.
Chapter 13: LAN Maintenance. Documentation Document your LAN so that you have a record of equipment location and configuration. Documentation should include.
Principles of Computer Security: CompTIA Security + ® and Beyond, Third Edition © 2012 Principles of Computer Security: CompTIA Security+ ® and Beyond,
PCI Training for PointOS Resellers PointOS Updated September 28, 2010.
Rob Davidson, Partner Technology Specialist Microsoft Management Servers: Using management to stay secure.
System Center Lesson 4: Overview of System Center 2012 Components System Center 2012 Private Cloud Components VMM Overview App Controller Overview.
Information Security Standards 2015 Update IIPS Security Standards Committee Roderick Brower - Chair.
20409A 7: Installing and Configuring System Center 2012 R2 Virtual Machine Manager Module 7 Installing and Configuring System Center 2012 R2 Virtual.
LibQUAL+ ® Survey Administration LibQUAL+® Exchange Northumbria Florence, Italy August 17, 2009 Presented by: Martha Kyrillidou Senior Director, Statistics.
Managing your IT Environment. Microsoft Operations Manager 2005 Overview.
PROGRESS ON THE IMPLEMENTATION OF AUDIT RECOMMENDATIONS FOR 2014/15: INFORMATION AND COMMUNICATION TECHNOLOGY (ICT) 1 Briefing presentation to the Portfolio.
SharePoint and Active Directory Update March 18, 2010.
Mac Fermilab Name: Ben Segbawu Fermi National Accelerator Laboratory Computer Services Specialist May
Office of Administration Enterprise Server Farm November 2004 Briefing.
Planning Server Deployments Chapter 1. Server Deployment When planning a server deployment for a large enterprise network, the operating system edition.
UFIT Infrastructure Self-Service. Service Offerings And Changes Virtual Machine Hosting Self service portal Virtual Machine Backups Virtual Machine Snapshots.
Basharat Institute of Higher Education
Patch Management Module 13.
Streamline your HR document management processes
MICROSOFT OUTLOOK and Outlook service Provider
20409A 7: Installing and Configuring System Center 2012 R2 Virtual Machine Manager Module 7 Installing and Configuring System Center 2012 R2 Virtual.
Iowa Statewide Assessment of Student Progress
PLANNING A SECURE BASELINE INSTALLATION
Open access in REF – Planning Workshop
John Taylor, Deputy CISO Martin Myers, IT Architect
Presentation transcript:

Enterprise IT Update August 3, 2012

Introductions AIT Personnel –Mike Alani: Senior Network Engineer –Jay Carper: Exchange & Active Directory Administrator –Gene Curtiss: Senior Systems Administrator –John Willis: Chief Architect Department IT Managers -New: RPTS: David Burdette -New: TIGM/PlantGeno: Michael McCleod

Information Technology Today IT State of Affairs

Rules and Procedures Rules and Procedures Progression IT Managers accountable for maintaining all Rules and ProceduresIT Managers accountable for maintaining all Rules and Procedures IT Managers should be up to date and highly awareIT Managers should be up to date and highly aware Approved by AdministrationApproved by Administration If unsure of rule/procedure ask AIT for clarificationIf unsure of rule/procedure ask AIT for clarification

AgriLife Enterprise Service Status Deployed Services –4176 mailboxes, 293 distro groups and 16 domains Domain managed systemsDomain managed systems –2453 computers in domain –All centers and urban centers fully joined/some departments fully joined –Advantages: Acct. Mgmt, Policy Application, SUS, Enterprise File Services Managed Network Hardware (Regional Centers)Managed Network Hardware (Regional Centers) –99 WAP –125 Switches (approximately 3000 ports) –22 Firewalls SophosSophos –5490 computers protected –Upgrade to version 10 completed –Review estate; if not upgraded turn on computer or perform manual install –New single installer model requires that you move any new installed PC’s in console from “NewUnassigned” folder to unit folder in Sophos Console –New Domain enabled console uses domain credentials

AgriLife Enterprise Service Status Deployed Services – continued NessusNessus –Feature of the Server Management Program –Report sent once a month during first week of month –Recommend addressing critical/high alerts asap Recently or Soon to be Deployed Services Windows System Update Service (WSUS)Windows System Update Service (WSUS) –Deployed to all centers and urban centers –Improves bandwidth utilization for centers –Provides snapshot report of update status of domain workstations or windows servers –Report addresses requirement by system policy to represent unit’s efforts in maintaining patch management of workstations/servers CentrifyCentrify –Centralizes Linux or MAC server account management to AGNET Domain –Brings server into compliance with certain required policies

AgriLife Server Management Program (SMP)Overview Who developed the program?Who developed the program? –AIT working in conjunction with system auditors Why was it created?Why was it created? –Clearly outline all required tasks and documentation specified for a server to be TAC/SAP compliant in a consolidated location a server to be TAC/SAP compliant in a consolidated location Where should you be now (a month after program release)?Where should you be now (a month after program release)? –Read program documentation –Formulated any questions and requesting answers from AIT to resolve –Preparing to review servers within your department to determine if they are fully compliant with program requirements i.e. TAC/SAP compliant Next StepsNext Steps –Create updated comprehensive listing of servers and define type –Perform all required tasks and documentation efforts WhenWhen –By December 2012 –In preparation for system audit starting as early as January 2013

AgriLife SMP What does it include?What does it include? –Monthly automated Nessus scans –Access to Centrify Licenses –Recommended baseline templates –Centralized document management system Document Management SMP requires a number of documents (see baseline templates)SMP requires a number of documents (see baseline templates) Centralized document management system to maintain required SMP documentation ()Centralized document management system to maintain required SMP documentation ( ) Common location allows ease of access for IT personnel and audit purposesCommon location allows ease of access for IT personnel and audit purposes

AgriLife People Management (APM)Overview Centralized web based portal to manage the onboarding and off- boarding of employees across the entire organization Developed per input from representatives of IT managers, departmental business and HR coordinators Usage of the portal is required by ALL centers and departments/groups within Ag Account request form no longer accepted beginning September 1stAccount request form no longer accepted beginning September 1st Inactive account report responsibilitiesInactive account report responsibilities Account deactivation automationAccount deactivation automation –120 day deactivation : August 20 th –150 day deletion: September 1st

University Student Domain Offering –Paul Greer –Bill Cochran

Take Aways –Initiate Server Management Program Efforts –Review and familiarize all Rules & Procedures –Review and assess all inactive accounts –Assess workstation Domain Join Status with Department –Implement WSUS integration –Implement Centrify (mac or linux platforms) IT Management Repository

Questions ?