Uri Lichtenfeld Security Specialist Certified Security Solutions – Microsoft Partner SESSION CODE: SIA312.

Slides:



Advertisements
Similar presentations
Unified Communications Bill Palmer ADNET Technologies, Inc.
Advertisements

Ljubomir Ivaniš CPU d.o.o.
2  Industry trends and challenges  Windows Server 2012: Modern workstyle, enabled  Access from virtually anywhere, any device  Full Windows experience.
2  Industry trends and challenges  Windows Server 2012: Modern workstyle, enabled  Access from virtually anywhere, any device  Full Windows experience.
Enterprise CAL Overview. Different Types of CALs Standard CAL base A component Standard CAL is a base CAL that provides access rights to basic features.
Microsoft Security Solutions A Great New Way of Making $$$ !!! Jimmy Tan Platform Strategy Manager Microsoft Singapore.
Adwait JoshiJim Harrison Sr. Product ManagerProgram Manager Microsoft Corporation SESSION CODE: SIA308.
SIM403. Claims Provider Trust Relying Party x Relying Party Trust Claims Provider Trust Your ADFS STS Partner ADFS STS & IP Relying Party Trust Partner.
Network and Server Basics. 6/1/20152 Learning Objectives After viewing this presentation, you will be able to: Understand the benefits of a client/server.
Understanding Active Directory
Unified Logs and Reporting for Hybrid Centralized Management
Security and Policy Enforcement Mark Gibson Dave Northey
Brjann Brekkan Technical Product Manager Microsoft Corp. Session Code: SIA307.
Windows Server 2012 R2 Capabilities for BYOD Scenario Yuri Diogenes Senior Knowledge Engineer Data Center, Devices & Enterprise Client – CSI Team’s Page:
Exchange 2010 Overview Name Title Group. What You Tell Us Communication overload Globally distributed customers and partners High cost of communications.
Kaspersky Open Space Security: Release 2 World-class security solution for your business.
SIM318. Protect Sensitive Information Reduce risk associated with information leaks Improve regulatory compliance Centrally manage information protection.
The World's Most Secured Browsing Solution COCKPIT4i is a radically new, powerful solution that protects against the security risks posed by exposure to.
Demi Albuz SENIOR PRODUCT MARKETING MANAGER Samim Erdogan PRINCIPAL ENGINEERING MANAGER Thomas Willingham TECHNICAL PRODUCT MANAGER.
Christian Paquin Senior Program Manager Microsoft Corporation SESSION CODE: SIA305.
Forefront Security Exchange. Problem Meddelande system och sammarbetsprodukter är underbarar mål för elak kod och “distrubition” av äkta dynga… Viruses.
Office 365: Efficient Cloud Solutions Wednesday March 12, 9AM Chaz Vossburg / Gabe Laushbaugh.
Srinivas L Technology Specialist – Security | Microsoft
Empower Enterprise Mobility Jasbir Gill Azure Mobility.
WSV404 DirectAccess Server (Server 2008 R2) DirectAccess Client (Windows 7) Internet Native IPv6 6to4 Teredo IP-HTTPS Tunnel over IPv4 UDP, HTTPS,
Virtual techdays INDIA │ august 2010 Secure Collaboration: All You Need to Know about Extending Active Directory Rights Management Services (AD RMS)
Matt Steele Senior Program Manager Microsoft Corporation SESSION CODE: SIA326.
Mobility Without Vulnerability: Secure and Enable Your Mobile Users, Apps, and Devices David Clapp – Intuitive.
Clinton Ho Program Manager Microsoft Corporation SESSION CODE: SIA311.
Partnering For Profitability Growing your business with Microsoft Forefront Security Solutions Mark Hassall Director Security & Access BG Microsoft Corporation.
Gavin Carius Architect Microsoft Services SVR311.
©Kwan Sai Kit, All Rights Reserved Windows Small Business Server 2003 Features.
XPand your capabilities with Citrix ® MetaFrame XP ™ for Windows ®, Feature Release 2.
Keep Your Information Safe! Josh Heller Sr. Product Manager Microsoft Corporation SIA206.
Augusto Valdez Senior Product Manager Mobile Communications Business SESSION CODE: WPH202.
John “JG” Chirapurath Director, Identity & Security BG Microsoft SIA-205 Business Ready Security.
…. PrePlanPrepareMigratePost Pre- Deployment PlanPrepareMigrate Post- Deployment First Mailbox.
Joe SchulmanAdrienne WuProgram ManagerMicrosoft Corporation SESSION CODE: SIA319.
How to create DNS rule that allow internal network clients DNS access Right click on Firewall Policy ->New- >Access Rule Right click on Firewall.
Empowering people-centric IT Unified device management Access and information protection Desktop Virtualization Hybrid Identity.
Jim Harrison Program Manager, Forefront TMG Microsoft Corporation SESSION CODE: SIA325.
Selling Strategies Microsoft Internet Security and Acceleration (ISA) Server 2004 Powerful Protection for Microsoft Applications.
Module 7 Planning and Deploying Messaging Compliance.
Terminal Services Technical Overview Olav Tvedt TVEDT.info Microsoft Speaker Community
Joe Licari Director Microsoft Corporation SESSION CODE: SIA203 Brjann Brekkan Technical Product Manager Microsoft Corporation Business Ready Security.
Forefront – Security in Education Stephen Cakebread Security Solutions Sales Professional Microsoft Corporation.
Enabling Secure Always-On Connectivity [Name] Microsoft Corporation.
Next Generation Remote Access Always On Seamless and Transparent Bi-Directional Connectivity NOT a VPN!
Access and Information Protection Product Overview Andrew McMurray Technical Evangelist – Windows
Access resources in a federation partner organization.
Brian Puhl Principal Technology Architect MSIT Identity & Access Management Microsoft Corporation SESSION CODE: SIA302.
Implementing Microsoft Exchange Online with Microsoft Office 365
Microsoft Virtual Academy Preparing for the Windows 8.1 MCSA Module 5: Managing Devices & Resource Access.
User and Device Management
What’s New Data Loss Prevention 14. Information is Everywhere Brings Productivity, Agility, Convenience ……and Problems Copyright © 2015 Symantec Corporation.
Dominik Zemp Microsoft Switzerland Ltd Liab. Co. Install and Configure Remote Access for SharePoint (and RemoteApp and DirectAccess)
Keep Your Information Safe! Josh Heller Sr. Product Manager Microsoft Corporation SIA206.
Asif Jinnah Field Desktop Services Enabling a Flexible Workforce, an insider’s view.
Microsoft Exchange Server 2013 Security Mick Tomlinson– Technical Instructor New Horizons.
David B. Cross Product Unit Manager Microsoft Corporation Session Code: SIA303 Donny Rose Senior Program Manager.
© 2010 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks.
Tomaž Čebul Principal Consultant Microsoft Bring Your Own Device, kaj pa je to?
Threat Management Gateway
INFS 3500 Martin, Brad, and John
Tech Ed North America /19/2018 1:27 AM SESSION CODE: SIA-323
Access and Information Protection Product Overview October 2013
System Center Marketing
TechEd /6/ :24 PM © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks.
Microsoft Data Insights Summit
Microsoft Virtual Academy
Presentation transcript:

Uri Lichtenfeld Security Specialist Certified Security Solutions – Microsoft Partner SESSION CODE: SIA312

Across on-premises & cloud Integrate and extend security across the enterprise Block from: Enable CostValue SiloedSeamless to: Simplify the security experience, manage compliance Protect everywhere, access anywhere Highly Secure & Interoperable Platform

Information Protection Identity and Access Management Secure Messaging Secure Endpoint Secure Collaboration

PROTECT everywhere ACCESS anywhere SIMPLIFY security, MANAGE compliance Enable more secure business collaboration from virtually anywhere and across devices, while preventing unauthorized use of confidential information INTEGRATE and EXTEND security Secure, seamless access Secure, seamless access Protect sensitive information in documents Protect sensitive information in documents Best-in-class anti-malware Best-in-class anti-malware Enterprise-wide visibility Enterprise-wide visibility Easier partner management Easier partner management Deep Microsoft SharePoint and Office integration Deep Microsoft SharePoint and Office integration Standards-based interoperability across organizations and cloud Standards-based interoperability across organizations and cloud

Active Directory Rights Management Services (AD RMS) template is built in with SharePoint. Windows SharePoint with AD RMS can be used to convert the stored file to an encrypted format each time a user downloads the file.

Automatic Engine Updates Single Engine Multiple Engines 38 times faster response Eliminates single point of failure “ “

SharePoint Server Farm Exchange 2010 AD DS AD FS Business Partners AD DS AD FS AD RMS Federation Trust Application Access Redirect to Security Token Service (STS) Authentication Token and claims Post claims Trey Research Account Forest Woodgrove Bank Resource Forest User Account/Credentials Security Token Shared identity with partner organizations and cloud services Boost cross-organizational efficiency and communication with more secure access − Support the sharing of rights-protected messages between organizations − Improved support for Microsoft SharePoint Server as a claims-aware application

Integrated SSL VPN capabilities Simplified remote access by non-Windows, down-level, or non-trusted endpoints DirectAccess in Windows Server 2008 R2, along with Unified Access Gateway, enables secure, seamless, always-on access to messaging and applications from Windows 7 clients.

Single point of entry to shared and published applications Can locate applications without tracking site addresses Offers same user experience for remote users Supports strong two-factor authentication, which can help organizations to keep their shared information safe Remote user can have access to corporate applications and shared folders without direct access to internal resources. Business partner has limited access to corporate network; Unified Access Gateway allows access only to those applications for which users have permissions.

Identity-centered, policy-based granular access and security for shared resources on collaborative portals Policy definitions to help provide controlled access to application areas and operations Can allow or block application functions, including: – Document download/upload – Document check out/check in – Edit document/properties – Delete

Simplified Management Step 1: Choose the type of application you wish to publish. Step 2: Provide the internal name of the SharePoint Server. Provide the external name. Step 3: Configure the same external name on your SharePoint Server. AllDone! Simplifies deployment and ongoing tasks through wizards and built-in policies. Simplified user experience - reducing support costs Consolidates remote access infrastructure

ZoneInternal URLPublic URL for Zone Defaulthttp://hrportal Internethttp://hrportal.woodgrovebank.comhttps://hrportal.woodgrovebank.com Internethttps://hrportal.woodgrovebank.com ZoneInternal URLPublic URL for Zone Defaulthttp://hrportal Internethttps://hrportal.woodgrovebank.com

Overlay granular access control to specific sites and/or features within sites Built-in endpoint security policies (integrated with NAP) Expanded authentication and authorization capabilities Session clean-up and information leakage prevention Integrated network security Integrated Security

Publish all Exchange mail services as a single UAG application: Easier publishing experience Symmetrical topology for all front-end mail services Publish each Exchange service as a separate application: Greater back-end topology Anywhere Access... And simple, secure access optimized for Exchange

Access multiple sites and libraries Browse a site and view list & libraries easily Access your documents offline

Anywhere Access Forefront UAG: A key enabler of DirectAccess Always On Manage Out Access Policies Protected Transactions UAG extends the benefits of Windows DirectAccess across your infrastructure, enhancing scalability and simplifying deployments and ongoing management

SSL-VPN + Always On IPv6 IPv4 UAG and DirectAccess better together: Extends access to line of business servers with IPv4 support Access for down level and non Windows clients Enhances scalability and management Simplifies deployment and administration Hardened Edge Solution

SSL-VPN + Always On IPv6 IPv4 IPv6 or IPv4 IPv6 or IPv4 UAG and DirectAccess better together: Extends access to line of business servers with IPv4 support Access for down level and non Windows clients Enhances scalability and management Simplifies deployment and administration Hardened Edge Solution

APPLICATION PUBLISHING Granular Application Filtering Session cleanup and removal End point health detection INTEGRATION Integrated with NAP policies Remote Desktop and RemoteApp integration Extends and simplifies DirectAccess deployments SCALE AND MANAGEMENT From IAG to UAG Built in load balancing Array management capabilities Enhanced monitoring and management (SCOM) IAGUAG New New New New New New Improved Improved

23 UAG Form Factors

How to Buy

Enterprise policy enforcement to protect from unauthorized access Enhanced security with reduced risk of information leaks through persistent data protection Streamlined adoption and deployment with out-of-the-box integration with collaboration workflow, the Microsoft Office system, and Active Directory Prevents information leakage from within the documents while moving to the external user Enterprise policy enforcement for external partners and vendors to protect from unauthorized access Dashboard and risk-centered prioritized view throughout the enterprise Centralized reporting and alerting with Unified Access Gateway management console Access to SharePoint sites and ability to edit documents from virtually anywhere: managed laptops, home computers, kiosks, and mobile devices Includes multiple scanning engines from industry-leading security partners integrated in a single solution to help businesses protect against single point of failure Content filters to help keep users from posting or retrieving ethically questionable material and confidential company information Configurable file-filtering rules to help block file types known for carrying viruses or opening organizations to legal exposure

Learn more about our solutions: Try our products:

Sign up for Tech·Ed 2011 and save $500 starting June 8 – June 31 st You can also register at the North America 2011 kiosk located at registration Join us in Atlanta next year