410 likes | 435 Views
Building an efficient Branch Infrastructure using Windows Server . Session Objectives And Takeaways. Session Objectives: Identify branch office challenges and opportunities Identify new WS08 and Windows Server 2008 R2 features and capabilities benefiting branch office environments
E N D
Building an efficient Branch Infrastructure using Windows Server
Session Objectives And Takeaways • Session Objectives: • Identify branch office challenges and opportunities • Identify new WS08 and Windows Server 2008 R2 features and capabilities benefiting branch office environments • Key Takeaways: • Understand how Windows Servers meets the challenge of branch office scenarios • Map WS08 Technologies to Branch Office Solutions
Session Overview • Microsoft in the Branch Office • Improving WAN efficiency • Next Generation TCP/IP Stack • SMB 2.0 • File System improvements • Transparent Caching for SMB • Offline Files • DFS – Read Only Replica • BranchCache™ • Differentiating Servers in Branch offices • Server Core • Active Directory Domain Services – RoDC • Partnerships to Offer Windows Services in the Context of WAN Optimization NEW in WS08 R2 NEW in WS08 R2
Microsoft in the Branch • Home to 20% of Windows Servers • Most servers used as application servers or to provide infrastructure services H Q Branch Office Source Internal Microsoft Research 2007
Branch Office Deployment Topologies Remote OfficeAppliance Data Center Security VPN, Network Access Protection, Identity and Access Networking Centralized • + Highly resilient • + High Performance • - Costs • - Complex • + Ease of Deployment • + Simplicity • - Performance • - Single Point of Failure Distributed
Why WAN requires special handling • Latency on WAN links • Delays connection setup • Delays Data Txfer • Degrades end user experience • Protocols can only Receive limited data based on buffer size LAN Latency < 1ms WAN Latency >100ms
Microsoft's Commitment Improve end user experience through improvements to the underlying protocols Innovate in the Windows Server platform to add features that make it even more suitable for branch deployments Partnerships to offer Windows services in the context of WAN Optimization Controllers
Network Performance Factors • Make the protocol aware of the varying network conditions • Reduce amount of Round trips the protocol makes • Reduce WAN utilization Sender Application Receiver Application Sender’s Networking Stack Receiver’s Networking Stack Network
Automatically Tune the Network Stack Automatically adjusts for maximum efficiency Faster network transfers, especially across WAN links Optimized use of available network bandwidth Reduced packet loss resulting in fewer retransmits Optimized performance without loss Intelligent, automated tuning of TCP receive window size Better packet loss resiliency (e.g., wireless connectivity) Advanced congestion control for better throughput (CTCP)
TCP Receive Window Size Windows XP & Windows Server 2003 • Default TCP windows size of 64KB • NO AUTO TUNING • Severely limits round trip times • Sender transmits are limited to advertised receive window size • Window size backs off by 50% with packet loss • Windows size increased slightly with every ACK • Manual tuning of receive window size does not offer ideal results Windows Vista/Win7 and Windows Server 2008 and R2 • Auto-tune enabled by default • Max receive window determined by: • Application consumption capacity • Network capacity and conditions
Redesigned TCP/IP Stack Dual-IP layer architecture for native IPv4 and IPv6 support Seamless security through expanded IPsec integration Improved performance via hardware acceleration Network auto-tuning and optimization algorithms Greater extensibility and reliability through rich APIs Winsock User Mode Kernel Mode AFD TDI Clients WSK Clients TDI WSK TDX Next Generation TCP/IP Stack (tcpip.sys) RAW TCP UDP Windows Filtering Platform API IPv6 IPv4 802.3 WLAN Loop-back IPv4 Tunnel IPv6 Tunnel NDIS
Server Message Block 2.0 • Multiple command in a single packet • Reduced wait time and connection overhead • Much larger buffer size • Network stack is no longer the bottleneck • Application & disk are now the bottleneck • Parallel Write, Parallel Response • Durable handles allow recover from brief network disruptions • Symlink support
File Shares – Streaming Improvement Parallel requests greatly increase read/write speed Request Download speed (kb/sec), 100 ms RTT Response SMB1 SMB2
File Copy Comparison 10 MB file over 10 Mbps (50ms) link Windows 2008 & Vista Throughput (Mbps) Windows 2003 & Vista 03 & XP 08 & XP 9.47 12.91 31.24 32.18 Time to Completion (seconds) • The Tolly Group, Inc. (2007)
Enhancing the Offline Files experience • Anjli Chaudhry • Program Manager – Offline Files • Microsoft Corporation • anjlic@microsoft.com
Building on Vista SP1 Offline Files • Provides seamless access to network files on File shares whether client is offline or online • Common deployment scenarios: • Folder RedirectionRedirection of “known” client folders (e.g. ‘Documents’) • Cached Drives(e.g. H:\ mapped to SMB share) • User pinning of remote shares or specific files • Publication content for use in branch offices
Offline Files – "Usually Offline" Support Situation Today • Full 2-way background synchronization at fixed intervals • Synchronization transparent to the end user • IT admin can configure synchronization intervals • Folder redirection is a success with online & offline modes in Windows Vista • Not transparent to users who are on a high latency network with low throughput • Seamless experience for end-users • Corporate data is in sync • Optimizes the network usage for remote workers & branch offices Benefits Windows 7 Solution
Transparent Caching Situation Today • Files accessed on SMB shares are automatically cached to disk • Subsequent reads to the file are satisfied from the local cache • Caching policy configurable through group policy • Transparent to the end user • Read response times for files that were just open takes too long • Opening a file that was just recently read takes just as long as opening a file for the first time • Bandwidth consumption is high regardless of how recent a file was opened • Optimize bandwidth consumption on WAN links • Provide near local read response times for end users working over WAN links Windows 7 Solution Benefits
Branch Office File Copy Windows 7/Server 2008R2 Today Windows Server 2008 Windows Server 2008 R2 Slow WAN Link Slow WAN Link Client 1 Client 1 Client 2 Client 2 Vista SP1 Clients Windows 7 Clients
New in Win7 and WS08R2 Introducing BranchCache™ • Reduce Network utilization • Improve End user experience • Preserve End to End Encryption • Simple to Deploy and Manage
BranchCache™ - Distributed Cache Main Office Data Get Get ID ID Data Data Get Branch Office Get
BranchCache™ - Hosted Cache Main Office Get Get ID ID ID ID ID Data ID Data Data Data Search Search Get Put Advertize Get Cache in the branch that is always available Installable on an existing WS08R2 server Works across IP subnets Request Branch Office
Deployment Use Group Policy to enable Windows Branch Cache on Windows 7 clients Branch Office Branch Office Install the optional “Windows Branch Cache” component on a Windows 7 web or file server Hosted Cache Branch Office IIS • Optionally, install a hosted cache in your branch. Configure clients to use it with Group Policy File Server Group Policy Management Main Office
Framework 3rd Party Applications WSUS SCCM Office WMP IE BITS Explorer SharePoint XCOPY/Robocopy SMB (CSC/SRV) HTTP (WebIO/http.sys) Windows BranchCache
Microsoft Confidential • Distributed File System – Replication File Replication engine – successor to NT FRS. Scalable Reliable Efficient “Just works” • Scales to Terabytes of data and millions of files. • Hundreds of members/replication group, flexible topology. • Hundreds of replication groups and folders/replication group. • No data loss or directory morphs • Multi-master with ‘last writer wins’ conflict resolution • Uses Remote Differential Compression (RDC) to significantly reduce bandwidth consumption. • WAN friendly. • Easy to configure, low touch • Focus on in-box management tools and ship with MOM MP • Auto-recovers from most conditions (e.g. journal wrap or loss, database corruption)
Microsoft Confidential DFS Scenario: Publishing Jennifer (London) DFS Replication DFS Replication (Seattle) DFS Namespace Audrey (Singapore)
Updatedfile copy The quick fox jumped The quick fox jumped The quick fox jumped The quick fox jumped MD421 MD411 over the lazy brown dog. over the lazy brown dog. over the lazy brown dog. MD422 over the lazy brown dog. MD412 The dog was so lazy that he didn’t notice The brown dog was MD423 The brown dog was MD413 so lazy that he didn’t notice so lazy that he didn’t notice MD424 the fox jumping over him. MD414 the fox jumping over him. the fox jumping over him. the fox jumping over him. MD425 Remote Differential Compression Receiving Partner Sending Partner Original file Updated file Request file MD421 … MD425 [use recursion] Fetch new chunks 3, 4 “The brown dog was” “so lazy that he …” Microsoft Confidential
New in Win7 and WS08R2 Introducing ReadOnly DFS Replica Publication data that should never be changed at branch locations Any open or create requesting WRITE access will be failed by a new filter driver In case the filter is not running, other Win7 Replication Group members will refuse updates from a read-only replication partner
Microsoft's Commitment Improve end user experience through improvements to the underlying protocols Innovate in the Windows Server platform to add features that make it even more suitable for branch deployments Partnerships to offer Windows services in the context of WAN optimization Controllers
Server Core in the Branch *Not recommended minimums
What is Server Core? • Server Core is a minimal Windows Server 2008 installation option. • GUI? – Gone (mostly). • Windows Explorer? – Gone. • Internet Explorer & Media Player? – Gone. • .Net Framework? – Gone. • MMC? - Gone too. • Designed to support very specific workloads.
What can I do with Server Core? • Active Directory Domain Services - ADDS • AD LDS (aka, ADAM) • Domain Name System Server - DNS • DHCP Server • File Services • Internet Information Services (IIS7) • Print Server • Windows Media Services • Hyper-V • .NET Support NEW in WS08 R2
Read Only Domain Controller • Reduces risk when deploying DC where physical security is not ideal • Add BitLocker™ for additional security • RODC tools allow targeted response to physical security breach • Reduces replication • Machine and user secrets are among the most frequent directory services changes.
Branch Office Deployment Topologies Remote OfficeAppliance Data Center Security VPN, Network Access Protection, Identity and Access Networking Centralized Hybrid • + Highly resilient • + High Performance • - Costs • - Complex • + Ease of Deployment • + Simplicity • - Performance • - Single Point of Failure Distributed
Microsoft's Commitment Improve end user experience through improvements to the underlying protocols Innovate in the Windows Server platform to add features that make it even more suitable for branch deployments Partnerships to offer Windows services in the context of WAN optimization Controllers
Citrix Branch Repeater with Windows Server • Stages application content • Accelerates enterprise traffic • Consolidates local branch functions
Branch optimized IT services Read-only Domain Controller Print services DNS/DHCP services Complete WAN optimization + application acceleration Ability to host Windows services locally Cisco WAAS with pre-packaged Windows Server 2008 services • Jointly developed architecture • Joint customer support Windows Server with WAAS Microsoft Windows Server 2008 Server Core Cisco WAASwith Virtualization Available Now
Related Content • Breakout Sessions/Chalk Talks • SVR03-IS:Windows Server 2008 in the Branch Office • CLI204 Windows Client: roadmap and introduction to Windows 7 for enterprise customers • CLI06-IS Networking for Mobile Workers: from Windows Vista to Windows 7 • CLI10-IS - Branch Office Networking: from Windows Vista to Windows 7 • CLI 303 - Windows Networking: from Windows Vista to Windows 7 • Branch Office Solutions Booth (booth 36)
© 2008 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.