Reviewing Least Privilege Security for Windows 7, Vista and XP

I was recently approached to do a book review on “Least Privilege Security for Windows 7,Vista and XP by Russell Smith” published by Packt Publishing. I will review it soon. It show you how to configure your environment so that your users can operate without administrator permissions.

Here is a list of the just some of technologies that this book talks about to achieve a Least Privilege Security:

  • Program Compatibility Wizard
  • Applications Compatibility Wizard
  • User Account Control
  • Group Policy Software
  • Internet Explorer Add-on Management
  • Troubleshooting Remote Users
  • Configuring Windows Firewall
  • Software Restrictions Policies and AppLocker
  • Deployment Toolkit
  • CD Burning
  • ActiveX Controls
  • Changing system time and time zones
  • Power Management
  • Managing networks
  • Standard Users Analyzer
  • Applications Compatibility Toolkit
  • Logon Scripts
  • Remote Desktop Services
  • Med-V

I have read already some chapters. I think it is a great book to have on your collection.
You have always not enough time thinking about security. This book does it for you.

As a special offer Packt Publishing are also letting people download preview chapter of this book by download here Chapter No. 3 – Solving Least privilege Problems with the Application Compatibility Toolkit

clip_image001

Post to Twitter

Microsoft Assessment & Planning Toolkit

The Microsoft Assessment and Planning (MAP) Toolkit is an agentless toolkit that finds computers on a network and performs a detailed inventory of the computers using Management Instrumentation (WMI) and the Remote Registry Service. The data and analysis provided by this toolkit can significantly simplify the planning process for migrating to ® 7, ®, , Windows Server® , Windows Server 2008, Hyper-V, Microsoft Application Virtualization, Microsoft Server 2008, and Forefront® Client Security and Network Access Protection. Assessments for Windows Server 2008 R2, Windows Server 2008, , and Windows include device driver availability as well as recommendations for hardware upgrades.

You can use MAP to inventory the following platforms:

  • Windows 7
  • Windows Vista
  • Windows ® Professional
  • Windows Server 2008 or Windows Server 2008 R2
  • Windows Server 2003 or Windows Server 2003 R2
  • Windows 2000 Professional or Windows 2000 Server
  • VMware
  • VMware Server

Reporting
- Identification of currently installed Windows client operating systems, their hardware, and recommendations for migration to Windows 7 and Windows Vista. The tool also reports if desktops have anti-virus and anti-malware programs installed and if the Windows Firewall is turned on.
- Identification of currently installed Windows Server operating systems, their hardware, and recommendations for migration to Windows Server 2008 R2 and Windows Server 2008.
- Identification of currently installed Microsoft Office software and recommendations for migration to Microsoft Office 2007.
- Detailed assessment and reporting of server utilization gathered using the Performance Metrics Wizard.
- Recommendations for server consolidation and virtual machine placement using Hyper-V
- Assessment of client machines, servers, and the technology environment for the implementation of Microsoft Application Virtualization ()
- Identification of machines where Microsoft SQL Server components are installed.
- Identification of virtual machines, their hosts, and details about each.
- Identification of Windows Server Roles

Hardware Requirements:
- Windows 2003 x86/x64 or Windows 2008 x86/x64
- 1,5 GB (2 GB 2008)

Software Requirements:
- NET Framework 3.5 SP1
- Windows Installer 4.5
- Microsoft Office Word 2007 or Word 2003 SP2
- MIcrosoft Office Excel 2007 or Excel 2003 SP2
- Express Edition, , or

image image
image image

Download Microsoft Assessment and Planning (MAP) Toolkit HIER

Post to Twitter

Microsoft Enterprise Desktop Virtualization (MED-V) 1.0 SP1 – now available for Windows 7

There is a new version of MDOP: MDOP 2010 refresh. MDOP 2010 includes:
- Enterprise Desktop Virtualization (MED-V) 1.0 SP1 – now available for production on 7
- Microsoft Application Virtualization () 4.6 – localized client versions and additional languages support

Existing MDOP customers can download the MDOP 2010 Refresh at the Volume Licensing Service Center (VLSC).  For evaluation, MDOP 2010 Refresh can be downloaded from MSDN and TechNet.

What’s new in MED-V 1.0 SP1?
- Support for hosts – 32-bit and 64-bit
- MED-V server support for Windows Server
- Support for Japanese Windows versions

Post to Twitter

Microsoft Desktop Optimization Pack (MDOP) 2008 R2

Van het Microsoft Desktop Optimization Pack (MDOP) 2008, het pack voor desktop beheer dat beschikbaar stelt aan klanten is er nu een R2-versie verschenen. MDOP bevat AIS; ; Enterprise Desktop Virtualization (beheer en installeren van virtuele pc’s); Desktop Error Monitoring; Advanced Group Policy Management (AGPM) en de Diagnostics and Recovery Toolset. De R2-versie van MDOP bevat App-V 4.5 (voorheen Softgrid). Dankzij Operations Manager 2007 Management Pack for App-V 4.5, is er een integratie met . App-V 4.5 bevat Dynamic Suite Composition (DSC), voor het virtualiseren van suites, het ondersteunt 11 talen, en een licentie voor online dienstverleners, ‘ Application Virtualization 4.5 Hosting for Desktops’.
Advanced Group Policy Management 3.0 (AGPM) in MDOP is verbeterd.
Tevens bevat R2 versie Asset Inventory Service 1.5 (AIS) waar mee gescand kan worden welke software pakketten op de pc zitten of en of eventuele licenties nog kloppen.

Post to Twitter

Microsoft Application Virtualization 4.5 – Nieuwe Functie’s

Ben je opzoek naar alle nieuwe functies van zie hier:

  • Unattended Application Pre-Cache
  • Auto-caching
  • Granular Client Configuration
  • Offline Application Usage Metering
  • Dynamic Suite Composition
  • Product Available in 11 new languages
  • Accessibility
  • HTTP Streaming
  • Enhanced Sequencing
  • MSI Package Generation
  • Memory Locked Cache

http://www.microsoft.com/systemcenter/appv/whatsnew.mspx

Post to Twitter