分享
1-122亮亮图文.ppt
下载文档

ID:3482348

大小:3.48MB

页数:31页

格式:PPT

时间:2024-05-09

收藏 分享赚钱
温馨提示:
1. 部分包含数学公式或PPT动画的文件,查看预览时可能会显示错乱或异常,文件下载后无此问题,请放心下载。
2. 本文档由用户上传,版权归属用户,汇文网负责整理代发布。如果您对本文档版权有争议请及时联系客服。
3. 下载前请仔细阅读文档内容,确认文档内容符合您的需求后进行下载,若出现内容与标题不符可向本站投诉处理。
4. 下载文档时可能由于网络波动等原因无法下载或下载错误,付费完成后未能成功下载的用户请联系客服处理。
网站客服:3074922707
122 亮亮 图文
Todays challenges,People-centric IT,Enable your end usersAllow users to work on the devices of their choice and provide consistent access to corporate resources.,Unify your environmentDeliver a unified application and device management on-premises and in the cloud.,Protect your dataHelp protect corporate information and manage risk.,Management.Access.Protection.,Access and Information Protection,Empower users,Simplified registration and enrollment for BYO devicesAutomatically connect to internal resources when neededAccess to company resources is consistent across devices,Challenges,Solutions,Users want to use the device of their choice and have access to both their personal and work-related applications,data,and resources.Users want an easy way to be able to access their corporate applications from anywhere.IT departments want to empower users to work this way,but they also need to control access to sensitive information and remain in compliance with regulatory policies.,Users can register their devices,which makes them known to IT,who can then use device authentication as part of providing access to corporate resources.Users can enroll their devices,which provides them with the company portal for consistent access to applications and data,and to manage their devices.IT can publish access to corporate resources with conditional access based on the users identity,the device they are using,and their location.,Empower users,Enabling IT to empower users,IT can publish access to resources with the Web Application Proxy based on device awareness and the users identity,IT can provide seamless corporate access with DirectAccess and automatic VPN connections.,Users can work from anywhere on their device with access to their corporate resources.,Users can register devices for single sign-on and access to corporate data with Workplace Join,Users can enroll devices for access to the Company Portal for easy access to corporate applications,IT can publish Desktop Virtualization(VDI)for access to centralized resources,Registering and Enrolling Devices,IT can publish access to corporate resources with the Web Application Proxy based on device awareness and the users identity.Multi-factor authentication can be used through Windows Azure Active Authentication.,Users can register BYO devices for single sign-on and access to corporate data with Workplace Join.As part of this,a certificate is installed on the device,Users can enroll devices which configure the device for management with Windows Intune.The user can then use the Company Portal for easy access to corporate applications,As part of the registration process,a new device object is created in Active Directory,establishing a link between the user and their device,Data from Windows Intune is sync with Configuration Manager which provides unified management across both on-premises and in the cloud,Demo,Workplace Join,Publish access to resources with the Web Application Proxy,Users can access corporate applications and data wherever they are,IT can use the Web Application Proxy to authenticate users and devices with multi-factor authentication,Use conditional access for granular control over how and where the application can be accessed,Active Directory provides the central repository of user identity as well as the device registration information,Developers can leverage Windows Azure Mobile Services to integrate and enhance their apps,Demo,Web Application Proxy,Users can sync their work data to their devices.Users can register their devices to be able to sync data when IT enforces conditional access,IT can publish access directly through a reverse proxy,or conditional access can be enforced via device registration through the Web Application Proxy,IT can configure a File Server to provide Work Folder sync shares for each user to store data that syncs to their devices,including integration with Rights Management,IT can selectively wipe the corporate data from Windows 8.1 clients,Make corporate data available to users with Work Folders,Active Directory discoverability provides users Work Folders location,Access Policy,Demo,Work Folders,Effective working with Remote Access,Can originate admin connection from intranet,Connection tointranet is always active,Cannot originate admin connection from intranet,With DirectAccess,a users PC is automatically connected whenever an Internet connection is present.,Traditional VPNs are user-initiated and provide on-demand connectivity to corporate resources.,An automatic VPN connection provides automated starting of the VPN when a user launches an application that requires access to corporate resources.,Unify your environment,Challenges,Solutions,Providing users with a common identity when they are accessing resources that are located both on-premises in a corporate environment,and in cloud-based platforms.Managing multiple identities and keeping the information in sync across environments is a drain on IT resources.,Users have a single sign-on experience when accessing all resources,regardless of location.Users and IT can leverage their common identity for access to external resources through federation.IT can consistently manage identities across on-premises and cloud-based identity domains.,Expanded domain join capabilities,Not Joined,Workplace Joined,Domain Joined,User provided devices are“unknown”and IT has no control.Partial access may be provided to corporate information.,Registered devices are“known”and device authentication allows IT to provide conditional access to corporate information,Domain joined computers are under the full control of IT and can be provided with complete access to corporate information,Browser session single sign-on,Seamless 2-Factor Auth for web apps,Enterprise apps single sign-on,Desktop Single Sign-On,Active Directory for the cloud,Run Active Directory at scale with support for virtualization and rapid deployment through domain controller cloning.,Developers can integrate applications for single sign-on across on-premises and cloud-based applications.,Leverage cloud platforms to run Windows Server Active Directory and Active Directory Federation Services to reduce infrastructure on-premises.,Manage Active Directory using Windows PowerShell,use the improved deployment experience and leverage the Active Directory Administrative Center for centralized management,Activate clients running Office on at least Windows8 or Windows Server 2012 automatically using existing Active Directory infrastructure.,Users get access through accounts in Windows Azure Active Directory to Windows Azure,Office 365 and 3rd party applications,Managing cloud identities,IT can provide users with a common identity across on-premises or cloud-based services leveraging Windows Server Active Directory and Windows Azure Active Directory,Users are more productive by having a single sign-on to all their resources,IT can use Active Directory Federation Services to connect with Windows Azure for a consistent cloud based identity.,Developers can build applications that leverage the common identity model,Dirsync keeps user attributes in sync across directories.,Increasing the value in Active Directory Federation Services,Users can register their devices to gain access to corporate data and apps and single sign-on through device authentication,Conditional access with multi-factor authentication is provided on a per-application basis,leveraging user identity,device registration&network location,Organizations can federate with partners and other organizations for seamless access to shared resources,Organizations can connect to SaaS applications running in Windows Azure,Office 365 and 3rd party providers,Enhancements to ADFS include simplified deployment and management,

此文档下载收益归作者所有

下载文档
收起
展开