版權(quán)說明:本文檔由用戶提供并上傳,收益歸屬內(nèi)容提供方,若內(nèi)容存在侵權(quán),請進(jìn)行舉報或認(rèn)領(lǐng)
文檔簡介
微軟官方白色簡約卡通圖標(biāo)AccessandInformationProtectionProtectyourdataCentralizecorporateinformationforcomplianceanddataprotectionPolicy-basedaccesscontroltoapplicationsanddataEmpowerusersSimplifiedregistrationandenrollmentforBYOdevicesAutomaticallyconnecttointernalresourceswhenneededAccesstocompanyresourcesisconsistentacrossdevices√UnifyyourenvironmentCommonidentitytoaccessresourceson-premisesandinthecloud銳普PPT論壇chinakui分享:ChallengesSolutionsUserswanttousethedeviceoftheirchoiceandhaveaccesstoboththeirpersonalandwork-relatedapplications,data,andresources.Userswantaneasywaytobeabletoaccesstheircorporateapplicationsfromanywhere.ITdepartmentswanttoempoweruserstoworkthisway,buttheyalsoneedtocontrolaccesstosensitiveinformationandremainincompliancewithregulatorypolicies.Userscanregistertheirdevices,whichmakesthemknowntoIT,whocanthenusedeviceauthenticationaspartofprovidingaccesstocorporateresources.Userscanenrolltheirdevices,whichprovidesthemwiththecompanyportalforconsistentaccesstoapplicationsanddata,andtomanagetheirdevices.ITcanpublishaccesstocorporateresourceswithconditionalaccessbasedontheuser’sidentity,thedevicetheyareusing,andtheirlocation.Empowerusers銳普PPT論壇chinakui分享:EnablingITtoempowerusersITcanpublishaccesstoresourceswiththeWebApplicationProxybasedondeviceawarenessandtheusersidentityITcanprovideseamlesscorporateaccesswithDirectAccessandautomaticVPNconnections.Userscanworkfromanywhereontheirdevicewithaccesstotheircorporateresources.Userscanregisterdevicesforsinglesign-onandaccesstocorporatedatawithWorkplaceJoinUserscanenrolldevicesforaccesstotheCompanyPortalforeasyaccesstocorporateapplicationsITcanpublishDesktopVirtualization(VDI)foraccesstocentralizedresourcesActiveDirectoryWebAppsWebApplicationProxyRemoteAccessRDSGatewayVDISessionhostFilesLOBApps銳普PPT論壇chinakui分享:RegisteringandEnrollingDevicesITcanpublishaccesstocorporateresourceswiththeWebApplicationProxybasedondeviceawarenessandtheusersidentity.Multi-factorauthenticationcanbeusedthroughWindowsAzureActiveAuthentication.UserscanregisterBYOdevicesforsinglesign-onandaccesstocorporatedatawithWorkplaceJoin.Aspartofthis,acertificateisinstalledonthedeviceUserscanenrolldeviceswhichconfigurethedeviceformanagementwithWindowsIntune.TheusercanthenusetheCompanyPortalforeasyaccesstocorporateapplicationsAspartoftheregistrationprocess,anewdeviceobjectiscreatedinActiveDirectory,establishingalinkbetweentheuserandtheirdeviceDatafromWindowsIntuneissyncwithConfigurationManagerwhichprovidesunifiedmanagementacrossbothon-premisesandinthecloudActiveAuthenticationActiveDirectoryWebApplicationProxyADFS銳普PPT論壇chinakui分享:DemoWorkplaceJoinPublishaccesstoresourceswiththeWebApplicationProxyUserscanaccesscorporateapplicationsanddatawherevertheyareITcanusetheWebApplicationProxytoauthenticateusersanddeviceswithmulti-factorauthenticationUseconditionalaccessforgranularcontroloverhowandwheretheapplicationcanbeaccessedActiveDirectoryprovidesthecentralrepositoryofuseridentityaswellasthedeviceregistrationinformationOthercloudbasedappsandidentitystoresMobileServicesActiveDirectoryDeveloperscanleverageWindowsAzureMobileServicestointegrateandenhancetheirappsActiveDirectoryReverseproxypassthroughe.g.NTLM&BasicbasedappsPublishedapplicationsRestfulOAuthappsOfficeFormsBasedAccessClaims&KerberoswebappsADIntegratedADFSWebApplicationProxyDevicesApps&Data銳普PPT論壇chinakui分享:DemoWebApplicationProxy銳普PPT論壇chinakui分享:Userscansynctheirworkdatatotheirdevices.UserscanregistertheirdevicestobeabletosyncdatawhenITenforcesconditionalaccessITcanpublishaccessdirectlythroughareverseproxy,orconditionalaccesscanbeenforcedviadeviceregistrationthroughtheWebApplicationProxyITcanconfigureaFileServertoprovideWorkFoldersyncsharesforeachusertostoredatathatsyncstotheirdevices,includingintegrationwithRightsManagementITcanselectivelywipethecorporatedatafromWindows8.1clientsMakecorporatedataavailabletouserswithWorkFoldersActiveDirectorydiscoverabilityprovidesusersWorkFolderslocationDomainjoineddevicesAccessPolicyActiveDirectoryWebApplicationProxyReverseProxyFileServicesDevicesApps&Data銳普PPT論壇chinakui分享:DemoWorkFolders銳普PPT論壇chinakui分享:EffectiveworkingwithRemoteAccessCanoriginateadminconnectionfromintranetConnectiontointranetisalwaysactiveCannotoriginateadminconnectionfromintranetVPNDirectAccessWithDirectAccess,ausersPCisautomaticallyconnectedwheneveranInternetconnectionispresent.TraditionalVPNsareuser-initiatedandprovideon-demandconnectivitytocorporateresources.AnautomaticVPNconnectionprovidesautomatedstartingoftheVPNwhenauserlaunchesanapplicationthatrequiresaccesstocorporateresources.FirewallWebAppsSessionhostLOBAppsFilesVDI銳普PPT論壇chinakui分享:UnifyyourenvironmentChallengesSolutionsProvidinguserswithacommonidentitywhentheyareaccessingresourcesthatarelocatedbothon-premisesinacorporateenvironment,andincloud-basedplatforms.ManagingmultipleidentitiesandkeepingtheinformationinsyncacrossenvironmentsisadrainonITresources.Usershaveasinglesign-onexperiencewhenaccessingallresources,regardlessoflocation.UsersandITcanleveragetheircommonidentityforaccesstoexternalresourcesthroughfederation.ITcanconsistentlymanageidentitiesacrosson-premisesandcloud-basedidentitydomains.銳普PPT論壇chinakui分享:ExpandeddomainjoincapabilitiesNotJoinedWorkplaceJoinedDomainJoinedUserprovideddevicesare“unknown”andIThasnocontrol.Partialaccessmaybeprovidedtocorporateinformation.Registereddevicesare“known”anddeviceauthenticationallowsITtoprovideconditionalaccesstocorporateinformationDomainjoinedcomputersareunderthefullcontrolofITandcanbeprovidedwithcompleteaccesstocorporateinformationBrowsersessionsinglesign-onSeamless2-FactorAuthforwebappsEnterpriseappssinglesign-onDesktopSingleSign-On銳普PPT論壇chinakui分享:ActiveDirectoryforthecloudRunActiveDirectoryatscalewithsupportforvirtualizationandrapiddeploymentthroughdomaincontrollercloning.Developerscanintegrateapplicationsforsinglesign-onacrosson-premisesandcloud-basedapplications.LeveragecloudplatformstorunWindowsServerActiveDirectoryandActiveDirectoryFederationServicestoreduceinfrastructureon-premises.ManageActiveDirectoryusingWindowsPowerShell,usetheimproveddeploymentexperienceandleveragetheActiveDirectoryAdministrativeCenterforcentralizedmanagementActivate
clientsrunningOfficeonatleastWindows
8orWindowsServer2012automaticallyusingexistingActiveDirectoryinfrastructure.ActiveDirectoryFilesLOBAppsWebAppsInfrastructureServices銳普PPT論壇chinakui分享:UsersgetaccessthroughaccountsinWindowsAzureActiveDirectorytoWindowsAzure,Office365and3rdpartyapplicationsManagingcloudidentitiesITcanprovideuserswithacommonidentityacrosson-premisesorcloud-basedservicesleveragingWindowsServerActiveDirectoryandWindowsAzureActiveDirectoryUsersaremoreproductivebyhavingasinglesign-ontoalltheirresourcesITcanuseActiveDirectoryFederationServicestoconnectwithWindowsAzureforaconsistentcloudbasedidentity.DeveloperscanbuildapplicationsthatleveragethecommonidentitymodelDirsynckeepsuserattributesinsyncacrossdirectories.ADFSDirSyncActiveDirectoryActiveDirectoryWebAppsLOBAppsFiles3rdparty
servicesAppsin
Azure銳普PPT論壇chinakui分享:IncreasingthevalueinActiveDirectoryFederationServicesUserscanregistertheirdevicestogainaccesstocorporatedataandappsandsinglesign-onthroughdeviceauthenticationConditionalaccesswithmulti-factorauthenticationisprovidedonaper-applicationbasis,leveraginguseridentity,deviceregistration&networklocationOrganizationscanfederatewithpartnersandotherorganizationsforseamlessaccesstosharedresourcesOrganizationscanconnecttoSaaSapplicationsrunninginWindowsAzure,Office365and3rdpartyprovidersEnhancementstoADFSincludesimplifieddeploymentandmanagementPublishedapplicationsRestfulOAuthappsOfficeFormsBasedAccessClaims&KerberoswebappsFirewallADFSWebApplicationProxy(includesADFSProxy)ADFSActiveDirectoryResourcesinotherbusinessesoridentityrealmsSaaSApps銳普PPT論壇chinakui分享:DemoADFS銳普PPT論壇chinakui分享:CorporateidentitymanagementAllowuserstomanagetheiridentitywithaneasytouseportal,tightlyintegratedwithOffice.Self-servicegroupanddistributionlistmanagement,includingdynamicmembershipcalculationinthesegroupsanddistributionlists,isbasedontheuser’sattributes.UserscanresettheirpasswordsviaWindowslogon,significantlyreducinghelpdeskburdenandcosts.Syncusersidentityacrossdirectories,includingActiveDirectory,Oracle,SQLServer,IBMDS,andLDAP.ManagethecompletelifecycleofcertificatesandsmartcardsthroughintegrationwithActiveDirectory.ActiveDirectory銳普PPT論壇chinakui分享:Userprovisioning,de-provisioning,androleupdatesBuilt-inworkflowforidentitymanagementAutomaticallysynchronizealluserinformationtodifferentdirectoriesacrosstheenterpriseAutomatetheprocessofon-boardingnewusersReal-timede-provisioningfromallsystemstopreventunauthorizedaccessandinformationleakageLDAPCertificateManagementActiveDirectory銳普PPT論壇chinakui分享:ProtectyourdataChallengesSolutionsAsusersbringtheirowndevicesintouseforwork,theywillalsowanttoaccesssensitiveinformationandhaveaccesstothisinformationlocallyonthedevice.Asignificantamountofcorporatedata
canonlybefoundlocallyonuserdevices.ITneedstobeabletosecure,classify,andprotectdatabasedonthecontentitcontains,notjustwhereitresides,includingmaintainingregulatorycompliance.Userscanworkonthedeviceoftheirchoiceandbeabletoaccessalltheirresources,
regardlessoflocationordevice.ITcanenforceasetofcentralaccessandauditpolices,andbeabletoprotectsensitiveinformationbasedonthecontentofthedocuments.ITcancentrallyauditandreportoninformationaccess.√銳普PPT論壇chinakui分享:PolicybasedaccesstocorporateinformationITcanpublishresourcesusingthewebapplicationproxyandcreatebusiness-drivenaccesspolicieswithmulti-factorauthenticationbasedonthecontentbeingaccessed.ITcanaudituseraccesstoinformationbasedoncentralauditpolicies.UserscanaccesscorporatedataregardlessofdeviceorlocationwithWorkFoldersfordatasyncanddesktopvirtualizationforcentralizedapplications.ITcanprovideasecureandfamiliarsolutionforuserstoaccesssensitivecorporatedatafromanywherewithVDIandRemoteApptechnologies.AccessPolicyLOBAppsWebAppsSessionhostFilesVDIDistributedDataDevicesDesktopVirtualizationCentralizedDataRDSGateway銳普PPT論壇chinakui分享:Protectinginformationwithmulti-factorauthentication1.UsersattemptstologinorperformanactionthatissubjecttoMFAActiveAuthentication2.Whentheuserauthenticates,theapplicationorserviceperformsaMFAcall3.Theusermustrespondtothechallenge,whichcanbeconfiguredasatxt,aphonecallorusingamobileapp5.ITcanconfigurethetypeandfrequencyoftheMFAthattheusermustrespondto4.TheresponseisreturnedtotheappwhichthenallowstheusertoproceedUserApplicationauthenticatione.g.ActiveDirectory,Radius,LDAP,SQL,CustomappsADFSDevicesApps&Data銳普PPT論壇chinakui分享:DemoWindowsAzureActiveAuthentication(PhoneFactor)Dependentonnetworkconnectivity
銳普PPT論壇chinakui分享:ProtectdatawithDynamicAccessControlCentrallymanageaccesscontrolandauditpolicesfromWindowsServerActiveDirectory.Automaticallyidentifyandclassifydatabasedoncontent.Classificationappliesasfilesarecreatedormodified.IntegrationwithActiveDirectoryRightsManagementServicesprovidesautomatedencryptionofdocuments.Centralaccessandauditpoliciescanbeappliedacrossmultiplefileservers,withnearreal-timeclassificationandprocessingofnewandmodifieddocuments.Fileclassification,accesspoliciesandautomatedRightsManagementworksagainstclientdistributeddatathroughWorkFolders.ActiveDirectoryFileServices銳普PPT論壇chinakui分享:DemoDynamicAccessControl銳普PPT論壇chinakui分享:搜集整理Recap:AccessandInformationProtectionProtectyourdataCentralizecorporateinformationforcomplianceanddataprotectionPolicy-basedaccesscontroltoapplicationsanddataEmpowerusersSimplifiedregistrationandenrollmentforBYOdevicesAutomaticallyconnecttointernalresourceswhenneededAccesstocompanyresourcesisconsistentacrossdevices√UnifyyourenvironmentCommonidentitytoaccessresourceson-premisesandinthecloud銳普PPT論壇chinakui分享:RelatedcontentAc
溫馨提示
- 1. 本站所有資源如無特殊說明,都需要本地電腦安裝OFFICE2007和PDF閱讀器。圖紙軟件為CAD,CAXA,PROE,UG,SolidWorks等.壓縮文件請下載最新的WinRAR軟件解壓。
- 2. 本站的文檔不包含任何第三方提供的附件圖紙等,如果需要附件,請聯(lián)系上傳者。文件的所有權(quán)益歸上傳用戶所有。
- 3. 本站RAR壓縮包中若帶圖紙,網(wǎng)頁內(nèi)容里面會有圖紙預(yù)覽,若沒有圖紙預(yù)覽就沒有圖紙。
- 4. 未經(jīng)權(quán)益所有人同意不得將文件中的內(nèi)容挪作商業(yè)或盈利用途。
- 5. 人人文庫網(wǎng)僅提供信息存儲空間,僅對用戶上傳內(nèi)容的表現(xiàn)方式做保護(hù)處理,對用戶上傳分享的文檔內(nèi)容本身不做任何修改或編輯,并不能對任何下載內(nèi)容負(fù)責(zé)。
- 6. 下載文件中如有侵權(quán)或不適當(dāng)內(nèi)容,請與我們聯(lián)系,我們立即糾正。
- 7. 本站不保證下載資源的準(zhǔn)確性、安全性和完整性, 同時也不承擔(dān)用戶因使用這些下載資源對自己和他人造成任何形式的傷害或損失。
最新文檔
- 2025年度LNG運(yùn)輸車輛改裝與安全檢測合同3篇
- 2024年食品行業(yè)社會保險管理與代繳合同
- 2025年度物流車輛智能系統(tǒng)升級合同4篇
- 2025年度醫(yī)療健康公司股權(quán)轉(zhuǎn)讓與產(chǎn)業(yè)鏈合作合同3篇
- 2025年度商業(yè)大廈車位包銷及物業(yè)管理合同4篇
- 2025年度智能倉儲物流系統(tǒng)建設(shè)承包經(jīng)營協(xié)議4篇
- 2024石材行業(yè)石材應(yīng)用技術(shù)研究采購合同2篇
- 2025年度網(wǎng)絡(luò)直播個人勞務(wù)合同范本3篇
- 2025年度嬰幼兒專用牛奶采購合作協(xié)議書3篇
- 2025年電動自行車品牌代理銷售合同標(biāo)準(zhǔn)版2篇
- 專利補(bǔ)正書實例
- 《動物生理學(xué)》課程思政優(yōu)秀案例
- 高分子材料完整版課件
- DB37∕T 5118-2018 市政工程資料管理標(biāo)準(zhǔn)
- 大氣紅色商務(wù)展望未來贏戰(zhàn)集團(tuán)年會PPT模板課件
- T∕CAWA 002-2021 中國疼痛科專業(yè)團(tuán)體標(biāo)準(zhǔn)
- 住宅工程公共區(qū)域精裝修施工組織設(shè)計(217頁)
- 冷卻塔技術(shù)要求及質(zhì)量標(biāo)準(zhǔn)介紹
- (完整版)項目工程款收款收據(jù)
- 井點降水臺班記錄表
- 奇瑞汽車4S店各類表格模板
評論
0/150
提交評論