Presentation is loading. Please wait.

Presentation is loading. Please wait.

System Center Configuration Manager 2007 Technical Drilldown

Similar presentations


Presentation on theme: "System Center Configuration Manager 2007 Technical Drilldown"— Presentation transcript:

1 System Center Configuration Manager 2007 Technical Drilldown
Name Title Microsoft Corporation © 2006 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

2 Agenda SMS 2003 Configuration Manager 2007 Current Status
SP3 and Asset Intelligence Configuration Manager 2007 Current Status Configuration Manager Feature Drilldown Administrative UI Software Distribution Operating System Deployment Desired Configuration Management Software Update Management Internet-based Client Management Network Access Protection (NAP) Other features Configuration Manager Deployment Guidelines

3 SMS 2003 – Quality Update Call volume over the years Usage
4/20/2017 7:00 AM SMS 2003 – Quality Update Call volume over the years SMS 2003 RTM – 356 calls/week Q4CY06 – 236/week Q1CY07 – ~215/week (currently) Down ~40% since SMS 2003 RTM! Hotfix run-rate down ~34% Usage # customers using SMS almost doubled Feature usage increased dramatically Microsoft Management Summit 2007, March 26-30, 2007, San Diego, California© 2007 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

4 SMS 2003 SP3 What is included? Service Pack Deployment
4/20/2017 7:00 AM SMS 2003 SP3 What is included? 11 Hotfix rollups 13 Customer requested enhancements Full support for Windows Vista beyond OS Deployment Full x64 architecture support Asset Intelligence integration Detailed reports of installed software covering over 375,000 different software titles and suites Service Pack Deployment Similar to SP2 - Top-down required Asset Intelligence feature is an optional install Extends the SMS_DEF.MOF file for Asset Intelligence Released April 2007 – available for download Microsoft Management Summit 2007, March 26-30, 2007, San Diego, California© 2007 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

5 System Center Configuration Manager 2007
Simplicity Up and running in minutes Simplified UI Reduced SCCM infrastructure costs with branch office support Improved scheduling and greater control including Wake-on-LAN Common processes for Windows Mobile and embedded devices Simplicity Deployment Unified delivery of Windows operating system for clients and servers One worldwide image to manage with Vista using the Driver Catalog Built on Windows Vista technologies including Windows Imaging Vista and Office 12 upgrade assessment and resolution planning Offline media support for full offline provisioning Deployment Security Integration with “Longhorn” Network Access Protection Simplified, comprehensive software updating w/ templates for common tasks Enterprise Vulnerability assessment Securely managing devices across the Internet Secure network storage of user state during Operating System deployment Security Configuration Knowledge-driven desired configuration management based on the System Definition Model (SDM) IT policies for analyzing corporate and regulatory compliance Out of the box configuration policies for server workloads i.e. Exchange License and asset management Configuration

6 Configuration Manager 2007 Roadmap
Beta 2 Released February 2007 RC1 released July 13th 2007 TAP program complete / RDP in progress 170,000 client seats deployed by TAP 29 TAP Customers participating RTM completed on August 24th 2007 Key Configuration Packs released for Exchange, SQL Server, ISA, SharePoint and 10 other mission critical servers General availability planned for November ‘07 Windows Server 2008 / Vista SP1 Support Currently testing, dependencies exist SCCM R2 current plan: Summer 2008 RTM Includes native SoftGrid integration Support for Server Provisioning scenarios including multicast support on WDS Forefront Client security integration (reporting features) SQL Reporting service (side by side with SMS Reports)

7 New Server Roles SMS 2003 Equivalent Role New SCCM 2007 Role
SQL Server SQL Server Management Point Primary Site Server Server Locator Point System Health Validator Reporting Point Fallback Status Point Distribution Point Software Update Point PXE Service Point Branch DP State Migration Point

8 Administrative UI - New & Improved
Managed code (C# / .NET 2.0) Leverages MMC 3.0 Uses WMI/DCOM for communication with provider Extensible via SDK Feature SMS 2003 SCCM 2007 Drag-and-Drop No Yes Multi-select Actions Pane Preview Pane Wizards Not Many Pervasive Homepages Icons NT 3.51-style High Precision Folders Only organizational; no replication Organizational and Search Folders; replication to child sites

9 demo Admin UI © 2006 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

10 What’s changed in Software Distribution?
4/20/2017 7:00 AM What’s changed in Software Distribution? New Features Copy Package Wizard Maintenance Windows Branch Support Improvements Binary delta replication Client Branding Improved Package cache control Wake on LAN

11 demo Maintenance Windows
© 2006 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

12 Operating System Deployment Deploy Windows Vista & Server 2008 in an enterprise
Major upgrade to OS deployment functionality Significant enhancements from SMS 2003 OS Deployment Feature Pack Enables server deployment through ADS Integrated into core of Configuration Manager Simplifies the planning for a Vista/LH upgrade Unified client and server deployment Uses Vista/LH tools Enhanced OS image security

13 OS Deployment Scenarios
New machine Clean install of OS on hardware – wipe and load No scope for existing state Designed for new or repurposed hardware Wipe-and-load Install OS on existing hardware Reinstall applications under new OS Side-by-side Install new version of operating system on new client hardware for an existing user Reinstall applications on new computer under new OS State migration is possible In-place migration Scripted, targeted OS upgrade to a box Not a wipe and load Migrate installed applications in-place Sent as a Software Distribution Package, not using Task Sequencer so limited

14 OS Deployment Scenarios
Offline with removable media Deployment via removable media (CD/DVD,USB flash drive) With low bandwidth connectivity Large software packages are on the removable media With no connectivity Everything done from removable media No status reporting PXE boot Integrate with WDS PXE server Control deployment action with Configuration Manager advertisements Self-provisioning via F12 OEM OS is pre-deployed on client or server at OEM factory Join corporate infrastructure and additional steps when plugged into corporate network using Task Sequencer

15 What’s New in ConfigMgr OSD?
Scenario SMS 2003 OSD FP ConfigMgr OSD End-to-end deployment Yes Fully automated Wipe-and-load upgrade Bare metal deployment w/PXE Loose integration w/RIS Built-in integration w/WDS Side-by-side Upgrade BDD scripts Yes, w/built-in SMP Fully offline deployment No Integrated Vista upgrade planning Full server deployment Security Good Much stronger Flexibility/customizability Excellent Vista/LH compatibility Device driver management

16 Task Sequence Actions Two kinds of actions
Fixed set of built-in actions that are implemented as part of ConfigMgr Custom actions that can be any command line executable, including executing a VBscript No requirement that OS deployment operations be included Hence task sequences provide a more general purpose sequencing mechanism in ConfigMgr

17 Driver Catalog Catalog of device drivers managed by Configuration Manager “Drivers” node Import drivers into this node Set properties on drivers Assign drivers to Driver Packages “Driver Packages” node Configuration Manager packages that are copied to DPs Typically group related drivers into one package

18 demo OS Deployment © 2006 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

19 Desired Configuration Management
Vision Define configuration baselines Identify required and prohibited configurations Audit compliance of Windows systems Core Scenarios Detect configuration “drift” Improve Helpdesk troubleshooting and “time-to-resolve” Regulatory compliance reporting Change verification

20 Overview: DCM Terms And Concepts
Configuration Item (CI) Units of configuration that can be detected, applied, and removed from ConfigMgr managed machines Application CI Operating System CI General CI Software Updates CI Configuration Baseline (CB) A complex type of CI composed of other CIs which are: Required Optional Prohibited Can be assigned to collections for compliance monitoring

21 DCM Knowledge Configurations available with RTM
Microsoft IT “Best Practices” Exchange 2003 & 2007 SQL 2000 & 2005 Windows Server 2003 AD/DNS/WINS/DHCP Sharepoint 2003 & 2007 Product group “Best Practices” ConfigMgr server roles Vulnerability Assessment SCOM 2007 SCVMM 2007 Sharepoint 2007 SQL 2005

22 Desired Configuration Management
demo Desired Configuration Management © 2006 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

23 Software Update Management
Core Feature of Configuration Manager Built on a WSUS 3.0 architecture Included as a Managed Server role in site hierarchy Full benefits of site management, Binary Delta Replication etc. Provides Compliance assessment Security updates / vulnerability assessment Application updates Supported update deployment Full Microsoft update content Zero-day and routine deployments Simplified admin experience Also manages non-Microsoft software updates OEMs and software vendors (ISVs) Internally-developed applications

24 Software Update Management
Full integration into other areas of Configuration Manager OS Deployment Internet Based Management Windows Server 2008 NAP System Center Update Publisher Desired Configuration Management

25 Software Update Management
demo Software Update Management © 2006 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

26 Internet Based Client Management
4/20/2017 7:00 AM Internet Based Client Management Manage internet clients without a VPN Road Warriors (Sales force, Consultants) Remote Point Of Sale (Restaurant, Retail store, Gas station) Employee home computers Roam in and out intelligently Converge with standards based technology PKI for certificate management SSL/TLS for secure HTTP communication Firewall for SSL termination “Deliver a secure and reliable infrastructure to enable IT administrators in an enterprise to manage computers on the internet with the same level of control as computers on the intranet.”

27 Network Access Protection
Core feature for Configuration Manager End point and infrastructure protection through Health Policy Compliance enforcement Dependencies exist with Windows Server 2008 Policy Validation Validates the health of client systems as defined by corporate security policy Quarantine Restricts access from protected network regions based on client health state. Network Restriction Provides access to resources allowing clients to correct security policy compliance deficiencies Ongoing Compliance Automatic enforcement of changes to defined corporate security policies ensuring sustained policy compliance

28 Network Access Protection
Download Updates to Site Server Microsoft Update Deploy Updates to DP Primary Site Publish Health State in Active Directory DP MP Download New Policy Install Required Updates Healthy Client Protected Network AD Retrieve Health State Policy X X Health Registration Authority Boundary Network Send Statement of Health for Evaluation Network Policy Server : SHV Quarantine Restricted Network

29 Device Management - Core Scenarios
4/20/2017 7:00 AM Device Management - Core Scenarios Device = CE, PPC, Windows Mobile (SmartPhone) Basic Management Hardware/Software inventory File collection Software distribution Settings management - Password policy management, Security policy management Support for Smartphone Over-the-air management of devices Connection Management Internet Based Management Fallback Status Point LOB Device Management CE on ARM at RTM Deployment Automated client distribution via SMS Advanced Client desktop Full integration with SCCM 07 Over-the-air client upgrade

30 Remote Control: What’s New
Completely rewritten! Significantly faster performance Using Vista native “collaboration” technology Back-ported to Windows XP and Windows Server 2003 Underlying protocol: RDP Same basic functionality as SMS 2003: No requirement for end-user approval of a new session NEW! 3 levels of access Full control View only None Still integrated with Remote Assistance

31 Miscellaneous Inventory Discovery
SMS 2003 SP3 AssetMetrix features added Last Usage Inventory Auto-created Metering Rules from this Discovery Discover “Extended AD Attributes” Pre-populated with default attributes Ability to add additional attributes to discover Supports hosting SCCM 2007 Site DB on SQL 2005 Clustered Server VSS-based backup Services off-line for minutes Snapshot data moved to backup location

32 Site Deployment Changes
Updated AD Schema New site systems Required for network access protection FQDN, versioning and site capabilities Platform Support Virtual Server 2005 R2 host/guest Dropped Windows 2000 Server Prerequisite Checking Both site and site system checking Issues and resolutions clearly explained Extensive install and upgrade checks Site Deployment Progress Real time notification of deployment Setup won’t exit until the site is ready to be used Detailed installation report available

33 Site Server Requirements
Resource Minimum Required Recommended < 50k clients Recommended 50K+ clients CPU Pentium 4 2 x 2GHz 4 x 2.8GHz (Dual Core) Memory 512 MB 4 GB 16 GB Network 10 mb/s 100 mb/s 100/1000 mb/s Disk 5 GB 2 MB per client Operating system requirements Windows Server 2003 SP1/SP2 Windows Server 2003 R2 Windows Server 2008 (NPS Server/SHV)

34 Site Security Mode Considerations
Mixed Mode Native Mode SMS 2003 SP2/SP3 site interoperability SMS 2003 SP2/SP3 client support No PKI in place Internet-based clients Highest security level

35 Site System Dependencies
SQL 2005 SP2 IIS WebDAV BITS Server WSUS 3.0 .NET Framework MMC 3.0 BITS Client Management Point (+devices) Distribution Point State Migration Point PXE Service Point System Health Validator Branch Distribution Point Fallback Status Point Software Update Point Server Locator Point Reporting Point SQL Server Admin Console Client

36 Client Requirements Resource Minimum Required Recommended Server OS
CPU Pentium 233 MHz / AMD64 / x64 Pentium 4 – 1GHz+ Memory 256 MB (380 for OSD) 512 MB (OSD) Network 10 mb/s 100 mb/s Disk 150 MB (plus OSD) 200 MB Server OS Client OS Device OS Windows Server 2003 SP1+ Windows Vista (Business only) Pocket PC 2003 Windows Server 2003 R2 Windows XP SP2+ Pocket PC 2005 Windows Server 2008 Windows Embedded Point of Sale Pocket PC Phone 2003 Windows 2000 Server SP4 Windows XP Embedded Pocket PC Phone 5.0 Windows Fundamentals for Legacy PCs Smartphone 2003 Windows 2000 Professional SP4 Smartphone 5.0 / 6.0

37 Supported Client Numbers
Site Role Maximum # of Client Systems Hierarchy (Central Site Server) 200,000 Primary Site Server 100,000 System Health Validator Management Point 25,000 Distribution Point (Non OSD) 4,000 Distribution Point (OSD) Limited by Network & Disk I/O State Migration Point Software Update Point (WSUS) Fallback Status Point Branch Distribution Point Limited by OS License, Network & Disk I/O

38 Client Deployment Tips
Gradual deployment Start small with client numbers Do a simple software advertisement to validate client functionality Site configuration settings Daily heartbeat discovery to initially track client numbers Daily software update scans for faster initial scan results Client approval setting = automatic for all domain joined clients If upgrading, turn off the “This site contains only ConfigMgr 2007 clients” BITS 2.5 install may require restart CCMSETUP will generate FSP message indicating the need to restart Recommended site roles Specify the FSP in the client installation command line (or registry)

39 Summary Download the SCCM 2007 Trial version today!
SCCM 2007 is a major upgrade from SMS 2003 functionality providing features for Network Access Protection Operating System Deployment Internet-based client management WSUS integration for Software Update Management Desired Configuration Management Service windows/collection variables Device management of Smartphones over the air SCCM 2007 has shipped and will be available ofr purchase in November 2007 Download the SCCM 2007 Trial version today!

40 © 2007 Microsoft Corporation. All rights reserved
© 2007 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION. © 2006 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

41


Download ppt "System Center Configuration Manager 2007 Technical Drilldown"

Similar presentations


Ads by Google