170 likes | 371 Views
A Technical Overview of Microsoft Forefront Client Security (FCS). Howard Chow Microsoft MVP. What Will We Cover?. Forefront Client Security (FCS) in the enterprise Deploying FCS policy FCS monitoring features. Helpful Experience. Familiarity with Microsoft Operations Manager (MOM)
E N D
A Technical Overview of Microsoft Forefront Client Security (FCS) Howard Chow Microsoft MVP
What Will We Cover? • Forefront Client Security (FCS) in the enterprise • Deploying FCS policy • FCS monitoring features
Helpful Experience • Familiarity with Microsoft Operations Manager (MOM) • Experience with network security Level 200
Agenda • Reviewing FCS • Creating FCS policies • Alerting and reporting
A Comprehensive Security Solution Services Edge Server Applications Network Access Protection (NAP) Content Client and Server OS Identity Management SystemsManagement Active Directory Federation Services (ADFS) Guidance Developer Tools
What FCS Does One solution for spyware and virus protection Built on protection technology used by millions worldwide Effective threat response Complements other Microsoft security products One console for simplified security administration Define policy to manage client protection agent settings Deploy signatures and software faster Integrates with your existing infrastructure One dashboard for visibility into threats and vulnerabilities View insightful reports Stay informed with state assessment scans and security alerts Unified malware protection for business desktop computers, mobile computers, and server operating systems that is easier to manage and control
Architectural Components and Flow Desktop Computers, Mobile Computers and Server Operating Systems Running Microsoft Forefront Client Security
FCS Prerequisites • SQL Server 2005 • SQL Server 2005 Reporting • Windows Software Update Services • Group Policy Management Console • .NET Framework 2.0 • MMC 3.0 • IIS 6.0 • Clients running Windows 2000, Windows XP, Windows Server 2003, Windows Vista • Installed with FCS • Microsoft Operations Manager 2005 SP1 • Microsoft Operations Manager Reporting
Reviewing FCS Creating FCS policies Alerting and reporting Agenda
Understanding Policies Forefront Client Security Management Console Administrator creates & deploys policy Group Policy Management Console Clients
What Can a Policy Do? Frequency of updates Frequency of scans Real time protection configuration Configure Updates and Scans • Local paths to skip when scanning • Level of local user control Customize FCS Specify Threat Response • Response to specific spyware threats • Alerting settings
Security State Assessment State Assessment summary Reporting and alerting server Client computers
Reviewing FCS Creating FCS policies Alerting and reporting Agenda
Alerting and Reporting Architecture Client (Host) MOM Server SQL Server ReportingServices System Log • Event Table • Alerts Table • State Table MOM Agent
FCS Reporting Design Computer Summary Deployment Summary Threat Summary Alert Summary State Assessment Security Summary
Session Summary • Apply FCS policies to organization units • Configure appropriate alert levels • Use reports to stay on top of threats
For More Information Visit the FCS site on TechNet at:www.microsoft.com/technet/clientsecurity Visit the folloiwng site for additional information: http://www.microsoft.com/hk/technet/webcasts/