Ø The Windows Server 2008 operating system is hardened, integrates several identity and access technologies, and includes multiple security innovations to more easily deploy a policy-driven network that helps protect your server infrastructure, your data, and your business. Ø Security Configuration Wizard (SCW) helps administrators configure the operating system for the server roles being deployed to reduce the attack surface area, resulting in a more robust and more secure server environment. Ø Integrated Expanded Group Policy enables efficient creation and management of Group Policies while expanding the number of areas that can be securely managed with policy. Ø Network Access Protection helps ensure your network and systems aren’t compromised by unhealthy computers, isolating and/or remediating those computers that don't comply with the security policies you set. Ø User Account Control provides new authentication architecture for protection against malicious software. Ø Cryptography Next Generation (CNG) , Microsoft's new core cryptographic API, provides better cryptographic flexibility by supporting standard as well as customer-defined cryptographic algorithms, and enables more efficient creation, storage, and retrieval of cryptographic keys. Ø Read Only Domain Controller (RODC) allows a more secure method for local authentication of users in remote and branch office locations using a read-only replica of your primary AD database. Ø Active Directory Federation Services (AD FS) enables trust relationships to be more easily established between partners with different identity and access directories running on different networks, enabling secure single sign ons (SSOs) to each other's networks. Ø Active Directory Certificate Services (AD CS) delivers several enhancements to the Windows Server 2008 Public Key Infrastructure (PKI), including PKIView for monitoring the health of Certification Authorities (CAs) and a new, more secure COM control for certificate Web enrollment in place of ActiveX. Ø Active Directory Rights Management Services (AD RMS) together with RMS-enabled applications helps you safeguard your company's digital information from unauthorized users more easily. Ø Bit Locker Drive Encryption provides enhanced protection against data theft and exposure of server hardware if lost or stolen, and it provides more secure data deletion when your servers are eventually decommissioned. |
Post a Comment