a technical overview of microsoft forefront client security (fcs)

17
A Technical Overview of Microsoft Forefront Client Security (FCS) Howard Chow Microsoft MVP

Upload: hisano

Post on 25-Feb-2016

66 views

Category:

Documents


0 download

DESCRIPTION

A Technical Overview of Microsoft Forefront Client Security (FCS). Howard Chow Microsoft MVP. What Will We Cover?. Forefront Client Security (FCS) in the enterprise Deploying FCS policy FCS monitoring features. Helpful Experience. Familiarity with Microsoft Operations Manager (MOM) - PowerPoint PPT Presentation

TRANSCRIPT

Page 1: A Technical Overview of Microsoft Forefront Client Security (FCS)

A Technical Overview of Microsoft Forefront Client Security (FCS)

Howard Chow

Microsoft MVP

Page 2: A Technical Overview of Microsoft Forefront Client Security (FCS)

• Forefront Client Security (FCS) in the enterprise

• Deploying FCS policy

• FCS monitoring features

What Will We Cover?

Page 3: A Technical Overview of Microsoft Forefront Client Security (FCS)

Level 200

• Familiarity with Microsoft Operations Manager (MOM)

• Experience with network security

Helpful Experience

Page 4: A Technical Overview of Microsoft Forefront Client Security (FCS)

• Reviewing FCS

• Creating FCS policies

• Alerting and reporting

Agenda

Page 5: A Technical Overview of Microsoft Forefront Client Security (FCS)

Guidance

Developer Tools

SystemsManagementActive Directory Active Directory

Federation Services Federation Services (ADFS)(ADFS)

Identity

Management

Content

Services

Client and Server OS

Server Applicatio

ns

EdgeNetwork Access Protection (NAP)

A Comprehensive Security Solution

Page 6: A Technical Overview of Microsoft Forefront Client Security (FCS)

Unified malware protection for business desktop computers, mobile computers, and server operating systems that is easier to

manage and control

One solution for spyware and virus protectionBuilt on protection technology used by millions worldwideEffective threat responseComplements other Microsoft security products

One console for simplified security administrationDefine policy to manage client protection agent settings Deploy signatures and software fasterIntegrates with your existing infrastructure

One dashboard for visibility into threats and vulnerabilities

View insightful reportsStay informed with state assessment scans and

security alerts

What FCS Does

Page 7: A Technical Overview of Microsoft Forefront Client Security (FCS)

Architectural Components and Flow

Desktop Computers, Mobile Computers and Server Operating Systems Running Microsoft Forefront Client Security

Page 8: A Technical Overview of Microsoft Forefront Client Security (FCS)

FCS PrerequisitesSQL Server 2005SQL Server 2005 ReportingWindows Software Update ServicesGroup Policy Management Console.NET Framework 2.0 MMC 3.0IIS 6.0Clients running Windows 2000, Windows XP,

Windows Server 2003, Windows VistaInstalled with FCSMicrosoft Operations Manager 2005 SP1Microsoft Operations Manager Reporting

Page 9: A Technical Overview of Microsoft Forefront Client Security (FCS)

• Reviewing FCS

• Creating FCS policies

• Alerting and reporting

Agenda

Page 10: A Technical Overview of Microsoft Forefront Client Security (FCS)

Understanding PoliciesForefront Client Security

Management Console

Administrator creates & deploys policy

Group Policy Management Console Clients

Page 11: A Technical Overview of Microsoft Forefront Client Security (FCS)

• Frequency of updates• Frequency of scans• Real time protection configuration

Configure Updates

and Scans

Customize FCS

Specify Threat

Response

• Local paths to skip when scanning• Level of local user control

• Response to specific spyware threats • Alerting settings

What Can a Policy Do?

Page 12: A Technical Overview of Microsoft Forefront Client Security (FCS)

Security State AssessmentReporting and alerting server

State Assessment summary

Client computers

Page 13: A Technical Overview of Microsoft Forefront Client Security (FCS)

• Reviewing FCS

• Creating FCS policies

• Alerting and reporting

Agenda

Page 14: A Technical Overview of Microsoft Forefront Client Security (FCS)

Client (Host)

Alerting and Reporting Architecture

MOM Server SQL Server ReportingServices

System Log

MOM Agent

•Event Table

•Alerts Table

•State Table

Page 15: A Technical Overview of Microsoft Forefront Client Security (FCS)

FCS Reporting Design

Security SummaryAlert

Summary

Computer Summary

Threat Summary

State Assessment

Deployment Summary

Page 16: A Technical Overview of Microsoft Forefront Client Security (FCS)

• Apply FCS policies to organization units

• Configure appropriate alert levels

• Use reports to stay on top of threats

Session Summary

Page 17: A Technical Overview of Microsoft Forefront Client Security (FCS)

http://www.microsoft.com/hk/technet/webcasts/

Visit the FCS site on TechNet at:

www.microsoft.com/technet/clientsecurity

Visit the folloiwng site for additional information:

For More Information