Cloud and Datacenter Management Blog

Microsoft Hybrid Cloud blogsite about Management


Leave a comment

Windows Dev Kit 2023 aka Project #Volterra #Windows11 #developers #DevOps

Windows Dev Kit 2023 Project Volterra

Windows Dev Kit 2023 is an Arm-powered device built by Windows developers for Windows developers. Everything you need to develop Windows apps for Arm, on Arm. Powerful AI. All on one device.  

More information here about the Windows Dev Kit 2023

You can purchase the dev kit here.  


Leave a comment

What’s New in Windows Server 2022 Security! #Winserv #Security #WindowsServer2022 #SecOps

Microsoft Security Compliance Toolkit 1.0

The Microsoft Security Configuration Toolkit enables enterprise security administrators to effectively manage their enterprise’s Group Policy Objects (GPOs).  Using the toolkit, administrators can compare their current GPOs with Microsoft-recommended GPO baselines or other baselines, edit them, store them in GPO backup file format, and apply them via a domain controller or inject them directly into testbed hosts to test their effects. For more information, see Windows Security Baselines.

 

Baseline security policies for Windows Server 2022.

But what’s new in Microsoft Windows Server 2022?

Here we have some new Windows Server 2022 security features :

  • Secured-core server

  • Hardware root-of-trust

  • Firmware protection

  • Virtualization-based security (VBS)

  • Secure connectivity

    • Transport: HTTPS and TLS 1.3 enabled by default on Windows Server 2022

    • Secure DNS: Encrypted DNS name resolution requests with DNS-over-HTTPS

    • Server Message Block (SMB): SMB AES-256 encryption for the most security conscious

    • SMB: East-West SMB encryption controls for internal cluster communications

    • SMB over QUIC

  • Azure Arc enabled Windows Servers

  • Windows Admin Center

  • Azure Automanage – Hotpatch

You can read more information on these topics on Microsoft Docs

Windows Server 2022 security features

In the following steps you will see some of the security features of Microsoft Windows Server 2022.

When your Windows Server 2022 is running on a Hypervisor like Hyper-V, you can set Memory integrity under Windows Security to ON.
This prevents attacks from inserting malicious code into high security processes. When you set this security feature on, the Server needs a reboot to activate.
Memory Integrity needs a reboot.

Windows Security Notifications.

By default Virus & Threat protection notification is active, when you want notifications about Microsoft defender firewall blocking a new application, you have to turn this feature on and select the firewalls.

In Windows security we have also ransomware protection. 
Protect your files against threats like ransomware, and see how to restore files in case of an attack.
You can do this by Controlled folder access.
Protect files, folders and memory on your Server from unauthorized changes by software.

Protected folders.

New in Windows Server 2022 is Tamper protection in Windows Security.
This Prevents others from tampering with important security features.

 

This was all Microsoft Windows Server 2022 security in the VM, but how about your Windows Server 2022 Hyper-V Hypervisors?

Hypervisor-protected Code Integrity (HVCI) is a virtualization based security (VBS) feature available in Windows. In the Windows Device Security settings, HVCI is referred to as Memory Integrity.

HVCI and VBS improve the threat model of Windows and provide stronger protections against malware trying to exploit the Windows Kernel. VBS leverages the Windows Hypervisor to create an isolated virtual environment that becomes the root of trust of the OS that assumes the kernel can be compromised. HVCI is a critical component that protects and hardens this virtual environment by running kernel mode code integrity within it and restricting kernel memory allocations that could be used to compromise the system.

See Virtualization Based Security System Resource Protections for more details on these protections.

 

Here you find a great video with a session of Jeff Woolsey Principal Program Manager at Microsoft. It’s all about What’s new in Windows Server 2022.

Conclusion

Start with Microsoft Windows Server 2022 today and make your test environment to play with Windows Server 2022 and Security.
Make your core business application solution more secure then ever, and let a ethical hacker do pen tests on your solution.
When you have security by default in your architectural designs, and test your Windows Server 2022 for production workloads it makes a big different to keep your environment and solution safe. And when you monitor your Windows Server 2022 solution pro-active with Azure Monitor, Azure Security Center, Azure Defender like this with Azure Arc enabled Servers

This keeps you in Control on Security by design for your business.


Leave a comment

#Microsoft Debug Diagnostic Tool v2 Update 2 for #ITPro #DevOps #MVPbuzz #Developers

Diag06

Microsoft Debug DiagTool

The Debug Diagnostic Tool (DebugDiag) is designed to assist in troubleshooting issues such as hangs, slow performance, memory leaks or memory fragmentation, and crashes in any user-mode process. The tool includes built-in analysis rules focused on Internet Information Services (IIS) applications, web data access components, COM+, SharePoint and related Microsoft technologies. Debugdiag 2.0 introduces a new analysis engine host with built-in reporting framework that can be accessed from .NET. This new analysis engine simplifies analysis rule development in .NET. Starting with Debugdiag 2.0, the analysis engine relies on Microsoft.Diagnostics.Runtime for .NET analysis.

Diag07

Add your Data files to Analyse

Diag09

Use ? for Help to get the job done

Diag10

Collect your Information for Trouble shooting

Diag11

Make your Own Debug Diag Rules

Diag12

The Help Function in the Tool can Help you understand the DiagTool

Here you can download the Microsoft Debug Diagnostic Tool v2 Update 2


Leave a comment

#Microsoft Windows Management Framework 5.0 Production Preview #Powershell #DSC #Winserv #WMF

World Cloud

This release includes new features and functionality in Windows Management Framework 5.0, including the following:

  • Windows PowerShell 5.0
  • Windows PowerShell Integrated Scripting Environment
  • Windows PowerShell Desired State Configuration
  • Network Switch Cmdlets
  • Package Management
  • Software Inventory Logging

WMF 5.0 Production Preview differs from older previews of WMF 5.0 in the following ways:

  • It is fully supported until three months after WMF 5.0 RTM. By fully supported, we mean we will investigate production-blocking issues, and provide workarounds or updates as necessary.
  • All features in the Production Preview are production-ready. No experimental features are in this package.
  • You must uninstall all previous releases of WMF 5.0 previews before installing the WMF 5.0 Production Preview.

Your feedback about Windows Management Framework 5.0 Production Preview is valuable to us; we invite you to provide feedback at all times. For important information about changes in behavior from Windows PowerShell 4.0, and a list of known issues with this release, be sure to read the release notes that are available for download with this package. You can log bugs and suggestions by using the Microsoft Connect website.

Windows Management Framework 5.0 makes updated management functionality available for installation on Windows Server 2012 R2, Windows 8.1 Pro, Windows 8.1 Enterprise, Windows Server 2012, Windows 7 and Windows Server 2008 R2.

Please read also the awesome Windows Management Framework 5.0 Production Preview Release Notes !

Here you can download the Windows Management Framework 5.0 Production Preview

PowerShellBanner

 

 


Leave a comment

Getting Started with Microsoft #Windows10 for IT Professionals

MVA Windows 10 Deployment

Azure AD ConnectLogon directly with Windows 10 in Microsoft Azure Active Directory

As an IT Pro, how can you securely enable your organization with Windows 10? Find out, in this practical and informative course. Windows offers management features that empower IT professionals to address the current shift toward a mobile workplace, a realization of heterogeneous ecosystems, bring your own device (BYOD) and choose your own device (CYOD) scenarios, and the cloud.

Walk through what’s new in Windows 10 deployment and management, with a team of experts. Look at runtime provisioning, mobile device management (MDM), secure authentication, and much more. Plus, find out what Windows as a Service means for you and your organization.

01 | What’s New in Windows 10 deployment
Focus on upgrading, provisioning, and Wipe-and-Load installations of Windows 10. Take a look at the tools that IT Professionals can use to make Windows 10 deployment happen.
02 | What’s New in Windows 10 Management and the Windows Store

Explore traditional management, with Group Policy, System Center and related components, and mobile device management, which we added in Windows 8.1 and enhanced in Windows 10.

03 | Runtime Provisioning in Windows 10

Since it’s time-prohibitive to re-image a machine, find out the benefits of runtime provisioning (and get precious time back).

04 | Windows 10 Mobile Device Management MDM

Take a closer look at today’s MDM challenges, through more granular device management capabilities.

05 | Protecting Your Data with Containers Without Boxing Yourself In

Since a majority of data leaks happen accidentally, learn how Windows 10 addresses this, without additional cumbersome steps.
06 | A New Era of Threat Resistance for the Windows 10 Platform
Get the details on how Windows 10 addresses ​evolving cyber-threats, with a new approach.

07 | Secure Authentication with Windows Hello
Find out how easy multifactor authentication is now. Learn how to secure your organization via included biometric capabilities made available in Windows 10​. ​

08 | Windows as a Service: What does it mean for your business?
Find out how easy multifactor authentication is now. Learn how to secure your organization via included biometric capabilities made available in Windows 10​. ​

Recommended Resources and Next Steps :
Windows-10-Banner


Leave a comment

#Microsoft Cloud Platform Roadmap Site #Cloud #Azure #HybridCloud

Microsoft Cloud Roadmap

The Microsoft Cloud Platform roadmap provides a snapshot of what Microsoft is working on in the Cloud Platform business. Use the roadmap to find out what Microsoft  recently made generally available, released into public preview, are still developing and testing, or are no longer developing on.

Here you go to the Microsoft Cloud Platform Roadmap site


Leave a comment

#Microsoft Virtual Academy is the place to be……. #Learning #sysctr #Azure #SQL #Office365 #Sharepoint #MVA

MVA Learning

What is MVA?

Successful technologists never stop learning and great technology never stops evolving. Microsoft Virtual Academy (MVA) offers online Microsoft training delivered by experts to help technologists continually learn, with hundreds of Microsoft training courses, in 14 different languages. Our mission is to help developers, knowledgeable IT professionals and advanced students learn the latest technology, build their skills, and advance their careers. Through MVA, we offer free Microsoft training, and the entire service is hosted on Windows Azure.

Become an MVA member so that you can earn points for your learning, achieve different levels of badges and status relative to others in your country or around the world, and get certificates when you complete an entire online training course. Your personal dashboard helps you track your progress against your personal learning plans.

MVA learning opportunities combine on-demand Microsoft training courses and live events:
•On-demand, free Microsoft training courses help you learn at your own pace, and when the time is right for your busy schedule.
•MVA’s exciting live online courses include Jump Start training, where you can interact with experts and a worldwide audience of learners from around the world. Through this method of interactive online training, our instructors and subject matter experts will answer the questions you pose in real time chat sessions so that you can apply what you learn right away.

Developers who want to learn how to build apps for the web, Windows or Windows Phone can explore our free Microsoft training courses on App Development training, HTML5 training, C# training including XAML, Game Development training, Cloud Development, Mobile App Development, Web Development and mobile development training.

IT Pros who are looking to evaluate, deploy, administer, update, and manage infrastructure in their organization should checkout our hundreds of online IT training courses. Topics include Management and Security training, Windows Server training, Office 365 training, Windows 8 training, Windows Azure training, Virtualization, Hybrid Cloud Training and Business Intelligence.

From here you go to Microsoft Virtual Academy

Virtual Labs
Go to Microsoft Virtuallabs for Virtual environments


Leave a comment

Remote Server Administration Tools for Windows 10 Technical Preview #Windows #Windows10 #Winserv #Hyperv

RSAT Windows Server Technical Preview

Remote Server Administration Tools for Windows 10 Technical Preview includes Server Manager, Microsoft Management Console (MMC) snap-ins, consoles, Windows PowerShell cmdlets and providers, and command-line tools for managing roles and features that run on Windows Server Technical Preview.

In this preview release of Remote Server Administration Tools, there are some known issues, and tools that are unavailable.

The following management tools are not available in this release of Remote Server Administration Tools.

  • BitLocker Drive Encryption administration utilities
  • Direct Access
  • Routing and Remote Access
  • Remote Desktop Services
  • Windows PowerShell cmdlets for Cluster Aware Updating
  • Windows PowerShell cmdlets for Best Practices Analyzer

Here you can download RSAT for Windows Server 10 Technical Preview


Leave a comment

What’s New in the Windows Server Technical Preview #Windows #Winserv #Hyperv #sysctr #SCVMM

Windows 10 Family

What’s New in the Windows Server Technical Preview :

  • What’s New in Active Directory Federation Services. Active Directory Federation Services (AD FS) in Windows Server Technical Preview includes new features that enable you to configure AD FS to authenticate users stored in Lightweight Directory Access Protocol (LDAP) directories. For more information, see Active Directory Federation Services Overview.
  • What’s new for Hyper-V in the Technical Preview. This topic explains the new and changed functionality of the Hyper-V role in Windows Server Technical Preview, Client Hyper-V running on Windows 10 Technical Preview, and Microsoft Hyper-V Server Technical Preview.
  • Windows Defender Overview. Windows Defender is installed and enabled by default in Windows Server Technical Preview, but the user interface for Windows Defender is not installed. However, Windows Defender will update antimalware definitions and protect the computer without the user interface. If you need the user interface for Windows Defender, you can install it after the operating system installation by using the Add Roles and Features Wizard.
  • What’s New in Remote Desktop Services in the Windows Server Technical Preview. For the Windows Server Technical Preview, the Remote Desktop Services team focused on improvements based on customer requests. We added support for OpenGL and OpenCL applications, and added MultiPoint Services as a new role in Windows Server.
  • What’s New in Storage Services in Windows Server Technical Preview. This topic explains the new and changed functionality of Storage Services. An update in storage quality of service now enables you to create storage QoS policies on a Scale-Out File Server and assign them to one or more virtual disks on Hyper-V virtual machines. Storage Replica is a new feature that enables synchronous replication between servers for disaster recovery, as well as stretching of a failover cluster for high availability..
  • What’s New in Failover Clustering in Windows Server Technical Preview. This topic explains the new and changed functionality of Failover Clustering. A Hyper-V or Scale-out File Server failover cluster can now easily be upgraded without any downtime or need to build a new cluster with nodes that are running Windows Server Technical Preview.
  • What’s New in Web Application Proxy. Web Application Proxy now supports preauthentication for applications using the HTTP Basic protocol, wildcards in external URLS of applications, redirection from HTTP to HTTPS, use of pass-through authentication with HTTP applications, publishing of Remote Desktop Gateway apps, a new debug log, propagation of client IP addresses to backend applications, and improvements to the Administrator console.
  • What’s New in Windows PowerShell 5.0. Windows PowerShell 5.0 includes significant new features—including support for developing with classes, and new security features—that extend its use, improve its usability, and allow you to control and manage Windows-based environments more easily and comprehensively. Multiple new features in Windows PowerShell Desired State Configuration (DSC) are also described in this topic.
  • What’s New in Networking in Windows Server Technical Preview. With this topic you can discover information about new networking technologies, such as Network Controller and Generic Routing Encapsulation (GRE) Tunneling, and new features for existing technologies, including IP Address Management (IPAM), DNS, and DHCP. Detailed information about what’s new is available for these networking technologies: