Friday, July 31, 2009

The Cable Guy NAP on the Internet

Please read this article about Network Access Protection (NAP) on the Internet. Very good article on health checking computers connected to the internet. How to manage and check your mobile users.


http://technet.microsoft.com/en-us/magazine/dd744660.aspx

MDM Roadmap

From the SCMDM Blog about the roadmap:

We’ve recently been asked a few questions about the SCMDM roadmap and future versions. Here’s a quick overview of what is to come.
At the recent MMS and Tech Ed US 2009 conferences, the System Center Configuration Manager team revealed some important news regarding the future of device management. Here are a few of the key messages that were shared:
The next major release of Configuration Manager will have the major MDM functionality for device management including SW Dist, Inventory, Settings Management, reporting, etc;
Both desktops and mobile devices can be managed by a "single pane of glass";
Device Management will not require the use of a VPN server;
Corporate network access can be obtained by "then current" solutions supported by the mobile device client and server infrastructure;
Mobile device management will embrace the same "user centric" model as recently announced (more here);
Product roadmaps for both Configuration Manager 2007 (DM) and Mobile Device Manager both converge on this next version of Configuration Manager
While there are surely more details that everyone would like to hear, this should be great news for those wanting to hear a confirmation that Microsoft is committed to continuing and improving mobile device management. We’ll be sure to keep you updated with future developments on this blog, so watch this space!

Problems creating templates for 2008 and Vista in VMM ?

Create the virtual machine ON the Hyper-V box and not deploy a new machine via VMM. Then configure the virtual machine on the Hyper-V box. Remember to set the security to blank password and enable that it can use a blank password in local security policies.
When you have configured and installed applications, boot a last time and then go to the VMM console and create a template from the virtual machine you just created on the Hyper-V box.

I have tested that this works on several installations where I have seen the problem with creating Windows 2008 and Vista template that work in VMM.

I will create a nice guide and post it here later

Wednesday, July 15, 2009

MS09-031 Patch for ISA Server

Microsoft has released this information and hotfix:

Vulnerability in Microsoft ISA Server 2006 Could Cause Elevation of Privilege (970953)

http://www.microsoft.com/technet/security/Bulletin/MS09-031.mspx

Affected Software:

Microsoft Internet Security And Acceleration Server 2006 (KB970811)
Microsoft Internet Security And Acceleration Server 2006 Supportability Update (KB970811)
Microsoft Internet Security And Acceleration Server 2006 Service Pack 1 (KB971143)

This security update resolves a privately reported vulnerability in Microsoft Internet Security and Acceleration (ISA) Server 2006. The vulnerability could allow elevation of privilege if an attacker successfully impersonates an administrative user account for an ISA server that is configured for Radius One Time Password (OTP) authentication and authentication delegation with Kerberos Constrained Delegation.


Test it and install it now.