際際滷

際際滷Share a Scribd company logo
NAP with IPSEC and PKI in a Real World
Know University of Vila Velha 
Phases of the Project 
Demos 
How to Start 
Q&A
University of Vila Velha 
The first private university of ES with more than 32 years of expertise in higher education
University of Vila Velha 
The largest private library of Esp鱈rito Santo
University of Vila Velha 
Laboratories of biomedical and agricultural courses
University of Vila Velha 
Computing Labs
~ 18.000 Students 
~ 1.200 Teachers 
1.500 Computers 
14 Buildings 
Hospital 
Laboratories of Biomedical 
Agricultural course 
4 Campi 
+ 40 services for students and Teachers (WEB) 
Radio 
University TV
IT Team - DTI 
4 Systems Analysts 
5 Technical Support 
2 Trainees 
3 Shifts (from 07:00 to 23:00)
~ 60 attacks daily (only from our Labs !) 
Hundreds of notebooks ( Teachers and Students) 
in the network 
Physical network grow to fast 
Students became more dangerous
Improve security for our Network 
Restrict access for some Servers 
Deploy more services to Students and Teachers 
Improve the agility to changes in the Campus 
Find the best solution - Security X Cost 
Reduce TCO
Learn the flow of data in our environment 
Documentation and classification of our services, 
data and network
Deploy Server and Domain Isolation (IPSec) with 
Kerberos 
Merge Administrative and Student Network in the 
same physical network
NAP with IPSEC and PKI in a Real World
NAP with IPSEC and PKI in a Real World
NAP with IPSEC and PKI in a Real World
Deploy PKI project 
Deploy Wireless network for Students and 
Teachers 
Change IPSec authentication from Kerberos for 
Certificates 
- Secundary Benefits - 
2-factor authentication (token for Admin access) 
Improve security for VPN Access
NAP with IPSEC and PKI in a Real World
Deploy NAP (Reporting Mode )
NAP with IPSEC and PKI in a Real World
Deploy Forefront Client 
Deploy NAP - Enforcement mode 
Deploy NAP for Linux Clients
1. Understand how your data flow in your enviroment 
2. Create a Documentation of groups, services, servers and 
exemption lists 
3. If possible use PKI 
4. Create a Project LAB for testing 
5. Deploy IPSec with FallBack enable 
6. Deploy NAP (reporting mode)
NAP with IPSEC and PKI in a Real World
Microsoft Developer Network (MSDN) 
(Webcasts, Blogs, Chats, 
http://microsoft.com/msdn 
Microsoft Technet 
(Webcasts, Blogs, Chats) 
http://microsoft.com/technet 
Trial Software e Virtual Labs 
http://www.microsoft.com/technet/downloads/trials/default.mspx 
http://www.microsoft.com/nap 
http://blogs.technet.com/nap/ 
Case IPSec - http://www.microsoft.com/casestudies/casestudy.aspx?casestudyid=49593 
Case NAP - http://www.microsoft.com/brasil/technet/ithero/abril07/default.mspx 
Article IPSec - http://www.microsoft.com/technet/community/columns/secmvp/sv0906.mspx
息 2007 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. 
The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market 
conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. 
MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

More Related Content

Similar to NAP with IPSEC and PKI in a Real World (20)

Nus case study07
Nus case study07Nus case study07
Nus case study07
shyamn1969
Developing Web-based Interactive Teaching System for Core Network Technology ...
Developing Web-based Interactive Teaching System for Core Network Technology ...Developing Web-based Interactive Teaching System for Core Network Technology ...
Developing Web-based Interactive Teaching System for Core Network Technology ...
drboon
Academic Modular Seminar
Academic Modular SeminarAcademic Modular Seminar
Academic Modular Seminar
Jason Reid
NSA Capstone Project III final pp
NSA Capstone Project III final ppNSA Capstone Project III final pp
NSA Capstone Project III final pp
Alfonso Zamorano
Sciences PO
Sciences POSciences PO
Sciences PO
Cisco Case Studies
PowerPoint
PowerPointPowerPoint
PowerPoint
Videoguy
PowerPoint
PowerPointPowerPoint
PowerPoint
Videoguy
IoT meets Big Data
IoT meets Big DataIoT meets Big Data
IoT meets Big Data
ratthaslip ranokphanuwat
NTC 362 Massive Success / snaptutorial.com
NTC 362 Massive Success / snaptutorial.comNTC 362 Massive Success / snaptutorial.com
NTC 362 Massive Success / snaptutorial.com
donaldzs17
NTC 362 Massive Success / snaptutorial...com
NTC 362 Massive Success / snaptutorial...comNTC 362 Massive Success / snaptutorial...com
NTC 362 Massive Success / snaptutorial...com
donaldzs25
A Web-足Based Simulator for a Discrete Manufacturing System
A Web-足Based Simulator for a Discrete  Manufacturing SystemA Web-足Based Simulator for a Discrete  Manufacturing System
A Web-足Based Simulator for a Discrete Manufacturing System
FAST-Lab. Factory Automation Systems and Technologies Laboratory, Tampere University of Technology
EGI Services
EGI Services EGI Services
EGI Services
EGI Federation
Michael Zaytsev-resume-Verint-2013-v3
Michael Zaytsev-resume-Verint-2013-v3Michael Zaytsev-resume-Verint-2013-v3
Michael Zaytsev-resume-Verint-2013-v3
Michael Zaytsev
Faculty lunch slides 121127 v5 1
Faculty lunch slides 121127  v5 1Faculty lunch slides 121127  v5 1
Faculty lunch slides 121127 v5 1
Julie Thorson Journitz
1 App,
1 App, 1 App,
1 App,
Antoine COETSIER
Paul_Kirk Resume 2015
Paul_Kirk Resume 2015Paul_Kirk Resume 2015
Paul_Kirk Resume 2015
Paul Kirk
Mini Project- Virtual Network Project
Mini Project-  Virtual Network ProjectMini Project-  Virtual Network Project
Mini Project- Virtual Network Project
University of Hertfordshire, School of Electronic Communications and Electrical Engineering
Plataforma de Opera巽達o e Simula巽達o Cibern辿tica
Plataforma de Opera巽達o e Simula巽達o Cibern辿ticaPlataforma de Opera巽達o e Simula巽達o Cibern辿tica
Plataforma de Opera巽達o e Simula巽達o Cibern辿tica
Hamilton Oliveira
NTC 362 education changes / sellfy.com
NTC 362  education changes / sellfy.comNTC 362  education changes / sellfy.com
NTC 362 education changes / sellfy.com
nafiana
CYBRScore Course Catalog
CYBRScore Course CatalogCYBRScore Course Catalog
CYBRScore Course Catalog
Christopher Will
Nus case study07
Nus case study07Nus case study07
Nus case study07
shyamn1969
Developing Web-based Interactive Teaching System for Core Network Technology ...
Developing Web-based Interactive Teaching System for Core Network Technology ...Developing Web-based Interactive Teaching System for Core Network Technology ...
Developing Web-based Interactive Teaching System for Core Network Technology ...
drboon
Academic Modular Seminar
Academic Modular SeminarAcademic Modular Seminar
Academic Modular Seminar
Jason Reid
NSA Capstone Project III final pp
NSA Capstone Project III final ppNSA Capstone Project III final pp
NSA Capstone Project III final pp
Alfonso Zamorano
PowerPoint
PowerPointPowerPoint
PowerPoint
Videoguy
PowerPoint
PowerPointPowerPoint
PowerPoint
Videoguy
NTC 362 Massive Success / snaptutorial.com
NTC 362 Massive Success / snaptutorial.comNTC 362 Massive Success / snaptutorial.com
NTC 362 Massive Success / snaptutorial.com
donaldzs17
NTC 362 Massive Success / snaptutorial...com
NTC 362 Massive Success / snaptutorial...comNTC 362 Massive Success / snaptutorial...com
NTC 362 Massive Success / snaptutorial...com
donaldzs25
Michael Zaytsev-resume-Verint-2013-v3
Michael Zaytsev-resume-Verint-2013-v3Michael Zaytsev-resume-Verint-2013-v3
Michael Zaytsev-resume-Verint-2013-v3
Michael Zaytsev
Paul_Kirk Resume 2015
Paul_Kirk Resume 2015Paul_Kirk Resume 2015
Paul_Kirk Resume 2015
Paul Kirk
Plataforma de Opera巽達o e Simula巽達o Cibern辿tica
Plataforma de Opera巽達o e Simula巽達o Cibern辿ticaPlataforma de Opera巽達o e Simula巽達o Cibern辿tica
Plataforma de Opera巽達o e Simula巽達o Cibern辿tica
Hamilton Oliveira
NTC 362 education changes / sellfy.com
NTC 362  education changes / sellfy.comNTC 362  education changes / sellfy.com
NTC 362 education changes / sellfy.com
nafiana
CYBRScore Course Catalog
CYBRScore Course CatalogCYBRScore Course Catalog
CYBRScore Course Catalog
Christopher Will

More from Rodrigo Immaginario (11)

Dicas e Truques de Performance: Como obter o maximo do Windows Server 2008 R2...Dicas e Truques de Performance: Como obter o maximo do Windows Server 2008 R2...
Dicas e Truques de Performance: Como obter o maximo do Windows Server 2008 R2...
Rodrigo Immaginario
Como montar um ambiente de alta disponibilidade com o Hyper-VComo montar um ambiente de alta disponibilidade com o Hyper-V
Como montar um ambiente de alta disponibilidade com o Hyper-V
Rodrigo Immaginario
Configurando DirectAccess em 30minConfigurando DirectAccess em 30min
Configurando DirectAccess em 30min
Rodrigo Immaginario
Apresentando o Windows Server 2008 R2Apresentando o Windows Server 2008 R2
Apresentando o Windows Server 2008 R2
Rodrigo Immaginario
Windows 8 - Recupera巽達o e Seguran巽aWindows 8 - Recupera巽達o e Seguran巽a
Windows 8 - Recupera巽達o e Seguran巽a
Rodrigo Immaginario
Mvp show cast - Defesa em profundidade: Veja como as tecnologias microsoft po...Mvp show cast - Defesa em profundidade: Veja como as tecnologias microsoft po...
Mvp show cast - Defesa em profundidade: Veja como as tecnologias microsoft po...
Rodrigo Immaginario
Estrutura Tecnol坦gica da Universidade Vila Velha (UVV) - Evento CinemarkEstrutura Tecnol坦gica da Universidade Vila Velha (UVV) - Evento Cinemark
Estrutura Tecnol坦gica da Universidade Vila Velha (UVV) - Evento Cinemark
Rodrigo Immaginario
Economize o Consumo de Link WAN com o BranchCacheEconomize o Consumo de Link WAN com o BranchCache
Economize o Consumo de Link WAN com o BranchCache
Rodrigo Immaginario
Reinventando o Acesso Remoto com DirectAccessReinventando o Acesso Remoto com DirectAccess
Reinventando o Acesso Remoto com DirectAccess
Rodrigo Immaginario
Utilizando o AppLocker para proteger seu ambiente da execu巽達o de aplica巽探es n...Utilizando o AppLocker para proteger seu ambiente da execu巽達o de aplica巽探es n...
Utilizando o AppLocker para proteger seu ambiente da execu巽達o de aplica巽探es n...
Rodrigo Immaginario
Melhoramentos de Seguran巽a no Windows 7 e Internet Explorer 8Melhoramentos de Seguran巽a no Windows 7 e Internet Explorer 8
Melhoramentos de Seguran巽a no Windows 7 e Internet Explorer 8
Rodrigo Immaginario
Dicas e Truques de Performance: Como obter o maximo do Windows Server 2008 R2...Dicas e Truques de Performance: Como obter o maximo do Windows Server 2008 R2...
Dicas e Truques de Performance: Como obter o maximo do Windows Server 2008 R2...
Rodrigo Immaginario
Como montar um ambiente de alta disponibilidade com o Hyper-VComo montar um ambiente de alta disponibilidade com o Hyper-V
Como montar um ambiente de alta disponibilidade com o Hyper-V
Rodrigo Immaginario
Configurando DirectAccess em 30minConfigurando DirectAccess em 30min
Configurando DirectAccess em 30min
Rodrigo Immaginario
Apresentando o Windows Server 2008 R2Apresentando o Windows Server 2008 R2
Apresentando o Windows Server 2008 R2
Rodrigo Immaginario
Windows 8 - Recupera巽達o e Seguran巽aWindows 8 - Recupera巽達o e Seguran巽a
Windows 8 - Recupera巽達o e Seguran巽a
Rodrigo Immaginario
Mvp show cast - Defesa em profundidade: Veja como as tecnologias microsoft po...Mvp show cast - Defesa em profundidade: Veja como as tecnologias microsoft po...
Mvp show cast - Defesa em profundidade: Veja como as tecnologias microsoft po...
Rodrigo Immaginario
Estrutura Tecnol坦gica da Universidade Vila Velha (UVV) - Evento CinemarkEstrutura Tecnol坦gica da Universidade Vila Velha (UVV) - Evento Cinemark
Estrutura Tecnol坦gica da Universidade Vila Velha (UVV) - Evento Cinemark
Rodrigo Immaginario
Economize o Consumo de Link WAN com o BranchCacheEconomize o Consumo de Link WAN com o BranchCache
Economize o Consumo de Link WAN com o BranchCache
Rodrigo Immaginario
Reinventando o Acesso Remoto com DirectAccessReinventando o Acesso Remoto com DirectAccess
Reinventando o Acesso Remoto com DirectAccess
Rodrigo Immaginario
Utilizando o AppLocker para proteger seu ambiente da execu巽達o de aplica巽探es n...Utilizando o AppLocker para proteger seu ambiente da execu巽達o de aplica巽探es n...
Utilizando o AppLocker para proteger seu ambiente da execu巽達o de aplica巽探es n...
Rodrigo Immaginario
Melhoramentos de Seguran巽a no Windows 7 e Internet Explorer 8Melhoramentos de Seguran巽a no Windows 7 e Internet Explorer 8
Melhoramentos de Seguran巽a no Windows 7 e Internet Explorer 8
Rodrigo Immaginario

Recently uploaded (20)

Managing expiration dates of products in odoo
Managing expiration dates of products in odooManaging expiration dates of products in odoo
Managing expiration dates of products in odoo
Celine George
The 2024 Survey of Community College Outcomes
The 2024 Survey of Community College OutcomesThe 2024 Survey of Community College Outcomes
The 2024 Survey of Community College Outcomes
Mebane Rash
How to Configure Proforma Invoice in Odoo 18 Sales
How to Configure Proforma Invoice in Odoo 18 SalesHow to Configure Proforma Invoice in Odoo 18 Sales
How to Configure Proforma Invoice in Odoo 18 Sales
Celine George
OOPs Interview Questions PDF By ScholarHat
OOPs Interview Questions PDF By ScholarHatOOPs Interview Questions PDF By ScholarHat
OOPs Interview Questions PDF By ScholarHat
Scholarhat
MELC: Follows ethical standards in writing related literature
MELC: Follows ethical standards in writing related literatureMELC: Follows ethical standards in writing related literature
MELC: Follows ethical standards in writing related literature
joverlynbalansag1
How to create security group category in Odoo 17
How to create security group category in Odoo 17How to create security group category in Odoo 17
How to create security group category in Odoo 17
Celine George
ASP.NET Interview Questions PDF By ScholarHat
ASP.NET  Interview Questions PDF By ScholarHatASP.NET  Interview Questions PDF By ScholarHat
ASP.NET Interview Questions PDF By ScholarHat
Scholarhat
Chapter 1. Basic Concepts of Strategic Management.pdf
Chapter 1. Basic Concepts of Strategic Management.pdfChapter 1. Basic Concepts of Strategic Management.pdf
Chapter 1. Basic Concepts of Strategic Management.pdf
Rommel Regala
Full-Stack .NET Developer Interview Questions PDF By ScholarHat
Full-Stack .NET Developer Interview Questions PDF By ScholarHatFull-Stack .NET Developer Interview Questions PDF By ScholarHat
Full-Stack .NET Developer Interview Questions PDF By ScholarHat
Scholarhat
Effective Product Variant Management in Odoo 18
Effective Product Variant Management in Odoo 18Effective Product Variant Management in Odoo 18
Effective Product Variant Management in Odoo 18
Celine George
The basics of sentences session 6pptx.pptx
The basics of sentences session 6pptx.pptxThe basics of sentences session 6pptx.pptx
The basics of sentences session 6pptx.pptx
heathfieldcps1
Unit 1 Computer Hardware for Educational Computing.pptx
Unit 1 Computer Hardware for Educational Computing.pptxUnit 1 Computer Hardware for Educational Computing.pptx
Unit 1 Computer Hardware for Educational Computing.pptx
RomaSmart1
Cyrus_Kelisha_SMM_PB1_2024-November.pptx
Cyrus_Kelisha_SMM_PB1_2024-November.pptxCyrus_Kelisha_SMM_PB1_2024-November.pptx
Cyrus_Kelisha_SMM_PB1_2024-November.pptx
KelishaCyrus
Azure Solution Architect Interview Questions By ScholarHat
Azure Solution Architect Interview Questions By ScholarHatAzure Solution Architect Interview Questions By ScholarHat
Azure Solution Architect Interview Questions By ScholarHat
Scholarhat
The Constitution, Government and Law making bodies .
The Constitution, Government and Law making bodies .The Constitution, Government and Law making bodies .
The Constitution, Government and Law making bodies .
saanidhyapatel09
How to Configure Flexible Working Schedule in Odoo 18 Employee
How to Configure Flexible Working Schedule in Odoo 18 EmployeeHow to Configure Flexible Working Schedule in Odoo 18 Employee
How to Configure Flexible Working Schedule in Odoo 18 Employee
Celine George
cervical spine mobilization manual therapy .pdf
cervical spine mobilization manual therapy .pdfcervical spine mobilization manual therapy .pdf
cervical spine mobilization manual therapy .pdf
SamarHosni3
Rest API Interview Questions PDF By ScholarHat
Rest API Interview Questions PDF By ScholarHatRest API Interview Questions PDF By ScholarHat
Rest API Interview Questions PDF By ScholarHat
Scholarhat
GRADE-1-QUARTER 4-MATHEMATICS-WEEK-3.pptx
GRADE-1-QUARTER 4-MATHEMATICS-WEEK-3.pptxGRADE-1-QUARTER 4-MATHEMATICS-WEEK-3.pptx
GRADE-1-QUARTER 4-MATHEMATICS-WEEK-3.pptx
AngellieMaeDoce
Chapter 2. Strategic Management: Corporate Governance.pdf
Chapter 2. Strategic Management: Corporate Governance.pdfChapter 2. Strategic Management: Corporate Governance.pdf
Chapter 2. Strategic Management: Corporate Governance.pdf
Rommel Regala
Managing expiration dates of products in odoo
Managing expiration dates of products in odooManaging expiration dates of products in odoo
Managing expiration dates of products in odoo
Celine George
The 2024 Survey of Community College Outcomes
The 2024 Survey of Community College OutcomesThe 2024 Survey of Community College Outcomes
The 2024 Survey of Community College Outcomes
Mebane Rash
How to Configure Proforma Invoice in Odoo 18 Sales
How to Configure Proforma Invoice in Odoo 18 SalesHow to Configure Proforma Invoice in Odoo 18 Sales
How to Configure Proforma Invoice in Odoo 18 Sales
Celine George
OOPs Interview Questions PDF By ScholarHat
OOPs Interview Questions PDF By ScholarHatOOPs Interview Questions PDF By ScholarHat
OOPs Interview Questions PDF By ScholarHat
Scholarhat
MELC: Follows ethical standards in writing related literature
MELC: Follows ethical standards in writing related literatureMELC: Follows ethical standards in writing related literature
MELC: Follows ethical standards in writing related literature
joverlynbalansag1
How to create security group category in Odoo 17
How to create security group category in Odoo 17How to create security group category in Odoo 17
How to create security group category in Odoo 17
Celine George
ASP.NET Interview Questions PDF By ScholarHat
ASP.NET  Interview Questions PDF By ScholarHatASP.NET  Interview Questions PDF By ScholarHat
ASP.NET Interview Questions PDF By ScholarHat
Scholarhat
Chapter 1. Basic Concepts of Strategic Management.pdf
Chapter 1. Basic Concepts of Strategic Management.pdfChapter 1. Basic Concepts of Strategic Management.pdf
Chapter 1. Basic Concepts of Strategic Management.pdf
Rommel Regala
Full-Stack .NET Developer Interview Questions PDF By ScholarHat
Full-Stack .NET Developer Interview Questions PDF By ScholarHatFull-Stack .NET Developer Interview Questions PDF By ScholarHat
Full-Stack .NET Developer Interview Questions PDF By ScholarHat
Scholarhat
Effective Product Variant Management in Odoo 18
Effective Product Variant Management in Odoo 18Effective Product Variant Management in Odoo 18
Effective Product Variant Management in Odoo 18
Celine George
The basics of sentences session 6pptx.pptx
The basics of sentences session 6pptx.pptxThe basics of sentences session 6pptx.pptx
The basics of sentences session 6pptx.pptx
heathfieldcps1
Unit 1 Computer Hardware for Educational Computing.pptx
Unit 1 Computer Hardware for Educational Computing.pptxUnit 1 Computer Hardware for Educational Computing.pptx
Unit 1 Computer Hardware for Educational Computing.pptx
RomaSmart1
Cyrus_Kelisha_SMM_PB1_2024-November.pptx
Cyrus_Kelisha_SMM_PB1_2024-November.pptxCyrus_Kelisha_SMM_PB1_2024-November.pptx
Cyrus_Kelisha_SMM_PB1_2024-November.pptx
KelishaCyrus
Azure Solution Architect Interview Questions By ScholarHat
Azure Solution Architect Interview Questions By ScholarHatAzure Solution Architect Interview Questions By ScholarHat
Azure Solution Architect Interview Questions By ScholarHat
Scholarhat
The Constitution, Government and Law making bodies .
The Constitution, Government and Law making bodies .The Constitution, Government and Law making bodies .
The Constitution, Government and Law making bodies .
saanidhyapatel09
How to Configure Flexible Working Schedule in Odoo 18 Employee
How to Configure Flexible Working Schedule in Odoo 18 EmployeeHow to Configure Flexible Working Schedule in Odoo 18 Employee
How to Configure Flexible Working Schedule in Odoo 18 Employee
Celine George
cervical spine mobilization manual therapy .pdf
cervical spine mobilization manual therapy .pdfcervical spine mobilization manual therapy .pdf
cervical spine mobilization manual therapy .pdf
SamarHosni3
Rest API Interview Questions PDF By ScholarHat
Rest API Interview Questions PDF By ScholarHatRest API Interview Questions PDF By ScholarHat
Rest API Interview Questions PDF By ScholarHat
Scholarhat
GRADE-1-QUARTER 4-MATHEMATICS-WEEK-3.pptx
GRADE-1-QUARTER 4-MATHEMATICS-WEEK-3.pptxGRADE-1-QUARTER 4-MATHEMATICS-WEEK-3.pptx
GRADE-1-QUARTER 4-MATHEMATICS-WEEK-3.pptx
AngellieMaeDoce
Chapter 2. Strategic Management: Corporate Governance.pdf
Chapter 2. Strategic Management: Corporate Governance.pdfChapter 2. Strategic Management: Corporate Governance.pdf
Chapter 2. Strategic Management: Corporate Governance.pdf
Rommel Regala

NAP with IPSEC and PKI in a Real World

  • 2. Know University of Vila Velha Phases of the Project Demos How to Start Q&A
  • 3. University of Vila Velha The first private university of ES with more than 32 years of expertise in higher education
  • 4. University of Vila Velha The largest private library of Esp鱈rito Santo
  • 5. University of Vila Velha Laboratories of biomedical and agricultural courses
  • 6. University of Vila Velha Computing Labs
  • 7. ~ 18.000 Students ~ 1.200 Teachers 1.500 Computers 14 Buildings Hospital Laboratories of Biomedical Agricultural course 4 Campi + 40 services for students and Teachers (WEB) Radio University TV
  • 8. IT Team - DTI 4 Systems Analysts 5 Technical Support 2 Trainees 3 Shifts (from 07:00 to 23:00)
  • 9. ~ 60 attacks daily (only from our Labs !) Hundreds of notebooks ( Teachers and Students) in the network Physical network grow to fast Students became more dangerous
  • 10. Improve security for our Network Restrict access for some Servers Deploy more services to Students and Teachers Improve the agility to changes in the Campus Find the best solution - Security X Cost Reduce TCO
  • 11. Learn the flow of data in our environment Documentation and classification of our services, data and network
  • 12. Deploy Server and Domain Isolation (IPSec) with Kerberos Merge Administrative and Student Network in the same physical network
  • 16. Deploy PKI project Deploy Wireless network for Students and Teachers Change IPSec authentication from Kerberos for Certificates - Secundary Benefits - 2-factor authentication (token for Admin access) Improve security for VPN Access
  • 20. Deploy Forefront Client Deploy NAP - Enforcement mode Deploy NAP for Linux Clients
  • 21. 1. Understand how your data flow in your enviroment 2. Create a Documentation of groups, services, servers and exemption lists 3. If possible use PKI 4. Create a Project LAB for testing 5. Deploy IPSec with FallBack enable 6. Deploy NAP (reporting mode)
  • 23. Microsoft Developer Network (MSDN) (Webcasts, Blogs, Chats, http://microsoft.com/msdn Microsoft Technet (Webcasts, Blogs, Chats) http://microsoft.com/technet Trial Software e Virtual Labs http://www.microsoft.com/technet/downloads/trials/default.mspx http://www.microsoft.com/nap http://blogs.technet.com/nap/ Case IPSec - http://www.microsoft.com/casestudies/casestudy.aspx?casestudyid=49593 Case NAP - http://www.microsoft.com/brasil/technet/ithero/abril07/default.mspx Article IPSec - http://www.microsoft.com/technet/community/columns/secmvp/sv0906.mspx
  • 24. 息 2007 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.