<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://msmvps.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Search results for 'app:weblogs' matching tags 'Security', 'windows server', 'General', and 'Hyper-V'</title><link>http://msmvps.com/search/SearchResults.aspx?q=app:weblogs&amp;tag=Security,windows+server,General,Hyper-V&amp;orTags=0&amp;o=DateDescending</link><description>Search results for 'app:weblogs' matching tags 'Security', 'windows server', 'General', and 'Hyper-V'</description><dc:language>en-US</dc:language><generator>CommunityServer 2008.5 SP2 (Build: 40407.4157)</generator><item><title>Exchange 2010 Service Pack 2 available</title><link>http://msmvps.com/blogs/wssra/archive/2011/12/05/exchange-2010-service-pack-2-available.aspx</link><pubDate>Mon, 05 Dec 2011 06:00:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1803236</guid><dc:creator>TBittner</dc:creator><description>&lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;You can download it from &lt;/font&gt;&lt;a href="http://blogs.technet.com/virtualization/archive/2010/03/18/Explaining-Microsoft-RemoteFX.aspx" target="_blank"&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;here&lt;/font&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;a title="http://www.microsoft.com/download/en/details.aspx?id=28190" href="http://www.microsoft.com/download/en/details.aspx?id=28190" target="_blank"&gt;http://www.microsoft.com/download/en/details.aspx?id=28190&lt;/a&gt;&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Exchange 2010 SP2 is a complete installation software pack, so for new Exchange installations, you can use it to start with from scratch.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Also when you use it for updating your current installations, be aware that you need Schema- and/or Organisaiton Administrator rights, because it contains a Schema update for your Active Directory.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;And this Schema update needs to be execute in the domain where the Schema Master Role exist. So run setup /prepareAD not in the domain where you operate your Exchange Servers, it will not work. You need to go to the root domain, if there is the Schema Master or you have to move the Schema Master on to a domain controller in the domain where you operate your Exchange environment.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;And remember that you should wait for replication across your AD after you’ve performed the Exchange 2010 SP2 Schema update.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;During you’re waiting for replication, you can use the time to install the ‘IIS 6 WMI Compatibility’ feature. It is mandatory for your following Exchange 2010 SP2 installation, because of the new ‘Outlook Mini’ feature, which requires this feature on your CAS server roles.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Schedule&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;5 minutes for /prepareAD     &lt;br /&gt;15 minutes for replication (more if you have higher replication times set on your site links)      &lt;br /&gt;5 minutes for feature prerequisits      &lt;br /&gt;30 minutes for finishing SP2 setup per system&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;so you should be through with it within a hour for your first system and schedule 30 minutes for every following systems …&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Reboot after SP2 installation should not be necessary.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;And think about to disable Anti Virus Scanning on the box you’re going to perform Exchange 2010 SP2 Setup for upgrade.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Read the prerequisits before starting your installation&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;a title="http://technet.microsoft.com/en-us/library/bb691354.aspx" href="http://technet.microsoft.com/en-us/library/bb691354.aspx" target="_blank"&gt;http://technet.microsoft.com/en-us/library/bb691354.aspx&lt;/a&gt;&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&amp;#160;&lt;/font&gt;&lt;/p&gt;</description></item><item><title>Exchange for Hosters</title><link>http://msmvps.com/blogs/wssra/archive/2011/08/30/exchange-for-hosters.aspx</link><pubDate>Tue, 30 Aug 2011 05:00:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1798548</guid><dc:creator>TBittner</dc:creator><description>&lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;As you know, this feature was removed from the current version of Exchange. There are some features back with Exchange 2010 SP1 back not as we had it in the past with legacy versions.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Now with Exchange 2010 SP2 we will get back functionality on a standard On-Premise Exchange environment.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Read&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;a title="http://blogs.technet.com/b/hameroff/archive/2011/08/08/so-you-want-to-host-exchange.aspx" href="http://blogs.technet.com/b/hameroff/archive/2011/08/08/so-you-want-to-host-exchange.aspx" target="_blank"&gt;http://blogs.technet.com/b/hameroff/archive/2011/08/08/so-you-want-to-host-exchange.aspx&lt;/a&gt;&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;and&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;a title="http://blogs.technet.com/b/exchange/archive/2011/08/30/exchange-server-2010-sp2-and-support-for-hosting-exchange.aspx" href="http://blogs.technet.com/b/exchange/archive/2011/08/30/exchange-server-2010-sp2-and-support-for-hosting-exchange.aspx" target="_blank"&gt;http://blogs.technet.com/b/exchange/archive/2011/08/30/exchange-server-2010-sp2-and-support-for-hosting-exchange.aspx&lt;/a&gt;&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&amp;#160;&lt;/font&gt;&lt;/p&gt;</description></item><item><title>Architecting a Microsoft Private Cloud</title><link>http://msmvps.com/blogs/wssra/archive/2011/07/14/architecting-a-microsoft-private-cloud.aspx</link><pubDate>Thu, 14 Jul 2011 05:00:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1796180</guid><dc:creator>TBittner</dc:creator><description>&lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;There are many definitions for cloud computing, but one of the more concise and widely recognized definitions comes from the National Institute of Standards and Technology (NIST). NIST defines five essential characteristics, three service models and four deployment models.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Microsoft Services has designed, built and implemented a Private Cloud/IaaS solution using Windows Server, Hyper-V and System Center. Their goal throughout articles over a four-part series will be to show how to integrate and deploy each of the component products as a solution while providing the essential cloud attributes such as elasticity, resource pooling and self-service.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Start &lt;/font&gt;&lt;a href="http://technet.microsoft.com/en-us/magazine/hh127072.aspx" target="_blank"&gt;here&lt;/a&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;/font&gt;&lt;font color="#004080" size="2" face="Verdana"&gt; with the first article and follow next articles to come.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&amp;#160;&lt;/font&gt;&lt;/p&gt;</description></item><item><title>NetApp Storage Systems in Microsoft Systems Environment</title><link>http://msmvps.com/blogs/wssra/archive/2011/05/03/netapp-storage-systems-in-microsoft-systems-environment.aspx</link><pubDate>Tue, 03 May 2011 05:00:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1792630</guid><dc:creator>TBittner</dc:creator><description>&lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;NetApp published a new article and guide how their storage environment and solutions work in Windows Systems architectures and infrastructures.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;The article gives you a lot valued information about how it works with Domain Controllers in Active Directory in many aspects, for example, it describes how NetApp storage server discovery and redirecting DC/KDC/LDAP services.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;The document describes how NetApp storage systems work seamlessly in the Microsoft Windows environment and how they enable administrator to effortlessly manage data by making use of standard Microsoft services and features such as Active Directory, IntelliMirror, Volume Shadow Copy, Access-Based Enumeration, Offline File Caching, Auditing, Distributed File System (DFS), File Screening, and CIFS Virus Protection.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;a href="http://media.netapp.com/documents/tr-3367.pdf" target="_blank"&gt;TR-3367 - NetApp Storage Systems in a Microsoft Windows Environment&lt;/a&gt;&lt;/font&gt;&lt;/strong&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&amp;#160;&lt;/font&gt;&lt;/p&gt;</description></item><item><title>Update for Hyper-V BPA available</title><link>http://msmvps.com/blogs/wssra/archive/2011/02/25/update-for-hyper-v-bpa-available.aspx</link><pubDate>Fri, 25 Feb 2011 06:00:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1788885</guid><dc:creator>TBittner</dc:creator><description>&lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;There is now an update for Hyper-V BPA available which fixes a few issues and handles the new Dynamic Memory and RemoteFX features under Service Pack 1.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;This update is for Windows Server 2008 R2 with and without SP1.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://support.microsoft.com/kb/2485986"&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;http://support.microsoft.com/kb/2485986&lt;/font&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&amp;#160;&lt;/font&gt;&lt;/p&gt;</description></item><item><title>Secure Access to your Cloud Services</title><link>http://msmvps.com/blogs/wssra/archive/2011/02/22/secure-access-to-your-cloud-services.aspx</link><pubDate>Tue, 22 Feb 2011 06:00:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1788581</guid><dc:creator>TBittner</dc:creator><description>&lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Moving to the Cloud is going on and so we will have more and more On-Premise and Cloud environments living site by site.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Securing access to Cloud Services will be more relevant for the future.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;A great article on this topic has been published by Yuri Diogenes, Senior Security Support Escalation Engineer on Microsoft Forefront Team.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;a title="http://technet.microsoft.com/en-us/magazine/gg607680.aspx" href="http://technet.microsoft.com/en-us/magazine/gg607680.aspx" target="_blank"&gt;http://technet.microsoft.com/en-us/magazine/gg607680.aspx&lt;/a&gt;&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&amp;#160;&lt;/font&gt;&lt;/p&gt;</description></item><item><title>Configure the Forefront TMG 2010 to allow DPM 2010 communication</title><link>http://msmvps.com/blogs/wssra/archive/2010/10/20/configure-the-forefront-tmg-2010-to-allow-dpm-2010-communication.aspx</link><pubDate>Wed, 20 Oct 2010 05:00:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1780361</guid><dc:creator>TBittner</dc:creator><description>&lt;ul&gt;   &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;The DPM agent uses various ports and protocols to connect with the DPM server. The Forefront TMG needs to be configured to allow the DPM server to communicate through those ports. The complete list of ports that are used by DPM are documented at the &lt;/font&gt;&lt;a href="http://go.microsoft.com/fwlink/?LinkId=118620"&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Microsoft Web site&lt;/font&gt;&lt;/a&gt;&lt;font color="#004080" size="2" face="Verdana"&gt; (http://go.microsoft.com/fwlink/?LinkId=118620). &lt;/font&gt;&lt;/p&gt;    &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Use the following procedures to configure the Forefront TMG to work with DPM:&lt;/font&gt;&lt;/p&gt;    &lt;ul&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;/font&gt;&lt;/ul&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Define protocols for DPM in Forefront TMG&lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Add a computer rule for the DPM server&lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Create an access rule for DPM traffic&lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Configure registry settings on the Security Server and the DPM server&lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;/font&gt;&lt;/p&gt;   &lt;/li&gt; &lt;/ul&gt;  &lt;ol&gt;   &lt;ul&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;/font&gt;&lt;/ul&gt;    &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;strong&gt;To define protocols for DPM in Forefront TMG&lt;/strong&gt;&lt;/font&gt;&lt;/p&gt;    &lt;ol&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;/font&gt;&lt;/ol&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Open the &lt;strong&gt;Forefront Threat Management Gateway console&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;In the console tree, expand the node for TMG Server, and then click &lt;strong&gt;Firewall Policy&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;   &lt;/li&gt; &lt;/ol&gt;  &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;In the right pane, click &lt;strong&gt;Toolbox&lt;/strong&gt;, expand &lt;strong&gt;Protocols&lt;/strong&gt;, click &lt;strong&gt;New&lt;/strong&gt;, and then click &lt;strong&gt;Protocol&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;  &lt;ol&gt;   &lt;ol&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;The New Protocol Definition Wizard appears, and you can define a new DPM Agent Coordinator protocol (TCP, outbound, port range 5718) as follows: &lt;/font&gt;&lt;/p&gt;      &lt;ol&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;/font&gt;&lt;/ol&gt;      &lt;li&gt;       &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;In the New Protocol Definition Wizard, type &lt;strong&gt;DPM Agent Coordinator&lt;/strong&gt;, and then click &lt;strong&gt;Next&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;     &lt;/li&gt;      &lt;li&gt;       &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;On the &lt;strong&gt;Primary Connection Information&lt;/strong&gt; page, click &lt;strong&gt;New&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;     &lt;/li&gt;      &lt;li&gt;       &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;In the &lt;strong&gt;New/Edit Protocol Connection&lt;/strong&gt; dialog box, choose a &lt;strong&gt;Protocol type&lt;/strong&gt; of &lt;strong&gt;TCP&lt;/strong&gt;, a &lt;strong&gt;Direction&lt;/strong&gt; of &lt;strong&gt;Outbound&lt;/strong&gt;, and a &lt;strong&gt;Port Range&lt;/strong&gt; (both &lt;strong&gt;From&lt;/strong&gt; and &lt;strong&gt;To&lt;/strong&gt;) of &lt;strong&gt;5718&lt;/strong&gt;. Click &lt;strong&gt;OK&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;     &lt;/li&gt;      &lt;li&gt;       &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Click &lt;strong&gt;Next&lt;/strong&gt; twice, and then click &lt;strong&gt;Finish&lt;/strong&gt; to close the New Protocol Definition Wizard.&lt;/font&gt;&lt;/p&gt;     &lt;/li&gt;   &lt;/ol&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;In the right pane, click &lt;strong&gt;New&lt;/strong&gt;, and then click &lt;strong&gt;Protocol&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;      &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;The New Protocol Definition Wizard appears, and you can define a new DPM Protection Agent protocol (TCP, outbound, port range 5719).&lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;In the right pane, click &lt;strong&gt;New&lt;/strong&gt;, and then click &lt;strong&gt;Protocol&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;      &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;In the New Protocol Definition Wizard, define a new DPM Dynamic Ports protocol (TCP, outbound, port range 50000-50050).&lt;/font&gt;&lt;/p&gt;      &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;img alt="note" src="http://i.technet.microsoft.com/cc512491.note(en-us,WS.10).gif" /&gt;Note &lt;/font&gt;&lt;/p&gt;      &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;You need approximately 50 ports in the unreserved dynamic port range between 49152 and 65535. For more information about this range, see the &lt;/font&gt;&lt;a href="http://go.microsoft.com/fwlink?LinkId=22654"&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Internet Assigned Numbers Authority Web Site&lt;/font&gt;&lt;/a&gt;&lt;font color="#004080" size="2" face="Verdana"&gt; (http://go.microsoft.com/fwlink?LinkId=22654). &lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;ol&gt;       &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;In the right pane, click &lt;strong&gt;New&lt;/strong&gt;, and then click &lt;strong&gt;RPC Protocol&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;        &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;The New RPC Protocol Definition Wizard appears, and you can define a new RPC Compliant DPM protocol as follows: &lt;/font&gt;&lt;/p&gt;        &lt;ol&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;/font&gt;&lt;/ol&gt;        &lt;li&gt;         &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;In the New Protocol Definition Wizard, type &lt;strong&gt;DPM RPC&lt;/strong&gt;, and then click &lt;strong&gt;Next&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;       &lt;/li&gt;        &lt;li&gt;         &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;On the &lt;strong&gt;Select Server&lt;/strong&gt; page, click &lt;strong&gt;Add interfaces manually&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;       &lt;/li&gt;        &lt;li&gt;         &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;On the &lt;strong&gt;Adding Interfaces to the Protocol Definition&lt;/strong&gt; page, click &lt;strong&gt;Add&lt;/strong&gt;. &lt;/font&gt;&lt;/p&gt;       &lt;/li&gt;        &lt;li&gt;         &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;In the &lt;strong&gt;Add/Edit Interfaces&lt;/strong&gt; dialog box, under &lt;strong&gt;Interface UUID&lt;/strong&gt; type &lt;strong&gt;{12345778-1234-abcd-ef00-0123456789ac}&lt;/strong&gt;. Under &lt;strong&gt;Interface Name&lt;/strong&gt;, type &lt;strong&gt;RPC for DPM&lt;/strong&gt;, click &lt;strong&gt;OK&lt;/strong&gt;, and then click &lt;strong&gt;Next&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;       &lt;/li&gt;        &lt;li&gt;         &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Click &lt;strong&gt;Finish&lt;/strong&gt; to close the New RPC Definition Wizard.&lt;/font&gt;&lt;/p&gt;       &lt;/li&gt;     &lt;/ol&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;In the top pane, click &lt;strong&gt;Apply&lt;/strong&gt; to save changes and update the configuration.&lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;ol&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;/font&gt;&lt;/ol&gt;    &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;To add a computer rule element for the DPM server&lt;/font&gt;&lt;/p&gt;    &lt;ol&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;/font&gt;&lt;/ol&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;In the right pane of the Forefront TMG console, click &lt;strong&gt;Toolbox&lt;/strong&gt;, expand &lt;strong&gt;Network Objects&lt;/strong&gt;, click &lt;strong&gt;New&lt;/strong&gt;, and then click &lt;strong&gt;Computer&lt;/strong&gt;. &lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;In the &lt;strong&gt;New Computer Rule Element&lt;/strong&gt; dialog box, type a &lt;strong&gt;Name&lt;/strong&gt; for the DPM server, and then under &lt;strong&gt;Computer IP Address&lt;/strong&gt;, type the server’s IP address. Click &lt;strong&gt;OK&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;In the top pane, click &lt;strong&gt;Apply&lt;/strong&gt; to save changes and update the configuration.&lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;ol&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;/font&gt;&lt;/ol&gt;    &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;To create an access rule for DPM traffic&lt;/font&gt;&lt;/p&gt;    &lt;ol&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;/font&gt;&lt;/ol&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;In the right pane of the Forefront TMG console, click &lt;strong&gt;Tasks&lt;/strong&gt;, and then under &lt;strong&gt;Firewall Policy Tasks&lt;/strong&gt;, click &lt;strong&gt;Create Access Rule&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;The New Access Rule Wizard appears. Type a name for the access rule (such as &lt;strong&gt;Allow DPM Traffic&lt;/strong&gt;), and then click &lt;strong&gt;Next&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;On the &lt;strong&gt;Rule Action&lt;/strong&gt; page, click &lt;strong&gt;Allow&lt;/strong&gt;, and then click &lt;strong&gt;Next&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;On the &lt;strong&gt;Protocols&lt;/strong&gt; page, under &lt;strong&gt;This rule applies to&lt;/strong&gt;, choose &lt;strong&gt;Selected protocols&lt;/strong&gt;, and then click &lt;strong&gt;Add&lt;/strong&gt;. &lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;ul&gt;       &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;In the &lt;strong&gt;Add Protocols&lt;/strong&gt; dialog box, expand &lt;strong&gt;All Protocols&lt;/strong&gt;. Select each of the following protocols and click &lt;strong&gt;Add&lt;/strong&gt;:&lt;/font&gt;&lt;/p&gt;        &lt;ul&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;/font&gt;&lt;/ul&gt;        &lt;li&gt;         &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;DPM Agent Coordinator&lt;/font&gt;&lt;/p&gt;       &lt;/li&gt;        &lt;li&gt;         &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;DPM Dynamic Ports&lt;/font&gt;&lt;/p&gt;       &lt;/li&gt;        &lt;li&gt;         &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;DPM Protection Agent&lt;/font&gt;&lt;/p&gt;       &lt;/li&gt;        &lt;li&gt;         &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;NetBIOS Datagram&lt;/font&gt;&lt;/p&gt;       &lt;/li&gt;        &lt;li&gt;         &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;NetBIOS Name Service&lt;/font&gt;&lt;/p&gt;       &lt;/li&gt;        &lt;li&gt;         &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;NetBIOS Session&lt;/font&gt;&lt;/p&gt;       &lt;/li&gt;        &lt;li&gt;         &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Ping&lt;/font&gt;&lt;/p&gt;       &lt;/li&gt;        &lt;li&gt;         &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;RPC (all interfaces)&lt;/font&gt;&lt;/p&gt;       &lt;/li&gt;        &lt;li&gt;         &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;DPM RPC&lt;/font&gt;&lt;/p&gt;       &lt;/li&gt;        &lt;ul&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;/font&gt;&lt;/ul&gt;        &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;When you have finished adding the protocols, click &lt;strong&gt;Close&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;        &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Turn off RPC filtering for RPC (all interfaces). Under &lt;strong&gt;Protocols&lt;/strong&gt;, click &lt;strong&gt;RPC (all interfaces)&lt;/strong&gt;, and then click &lt;strong&gt;Edit&lt;/strong&gt;. Click the &lt;strong&gt;Parameters&lt;/strong&gt; tab, under &lt;strong&gt;Application Filters&lt;/strong&gt; clear the check box for &lt;strong&gt;RPC Filter&lt;/strong&gt;, click &lt;strong&gt;OK&lt;/strong&gt;, and then click &lt;strong&gt;Next&lt;/strong&gt;. &lt;/font&gt;&lt;/p&gt;     &lt;/ul&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;On the &lt;strong&gt;Access Rule Sources&lt;/strong&gt; page, click &lt;strong&gt;Add&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;ul&gt;       &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;In the &lt;strong&gt;Add Network Entities Dialog&lt;/strong&gt; box, do the following:&lt;/font&gt;&lt;/p&gt;        &lt;ul&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;/font&gt;&lt;/ul&gt;        &lt;li&gt;         &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Expand the &lt;strong&gt;Networks&lt;/strong&gt; node, click &lt;strong&gt;Local Host&lt;/strong&gt;, and then click &lt;strong&gt;Add&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;       &lt;/li&gt;        &lt;li&gt;         &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Expand the &lt;strong&gt;Computers&lt;/strong&gt; node, click the name of your DPM server, and then click &lt;strong&gt;Add&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;       &lt;/li&gt;        &lt;ul&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;/font&gt;&lt;/ul&gt;        &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;When you have finished adding network entities, click &lt;strong&gt;Close&lt;/strong&gt;. Then click &lt;strong&gt;Next&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;     &lt;/ul&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;On the &lt;strong&gt;Access Rule Destinations&lt;/strong&gt; page, click &lt;strong&gt;Add&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;ul&gt;       &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;In the &lt;strong&gt;Add Network Entities Dialog&lt;/strong&gt; box, do the following:&lt;/font&gt;&lt;/p&gt;        &lt;ul&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;/font&gt;&lt;/ul&gt;        &lt;li&gt;         &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Expand the &lt;strong&gt;Networks&lt;/strong&gt; node, click &lt;strong&gt;Local Host&lt;/strong&gt;, and then click &lt;strong&gt;Add&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;       &lt;/li&gt;        &lt;li&gt;         &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Expand the &lt;strong&gt;Computers&lt;/strong&gt; node, click the name of your DPM server, and then click &lt;strong&gt;Add&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;       &lt;/li&gt;        &lt;ul&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;/font&gt;&lt;/ul&gt;        &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;When you have finished adding network entities, click &lt;strong&gt;Close&lt;/strong&gt;. Then click &lt;strong&gt;Next&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;     &lt;/ul&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;On the &lt;strong&gt;User Sets&lt;/strong&gt; page, accept the default (&lt;strong&gt;All Users&lt;/strong&gt;). Click &lt;strong&gt;Next&lt;/strong&gt;, and then click &lt;strong&gt;Finish&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Under &lt;strong&gt;All Firewall Policy&lt;/strong&gt;, right-click the DPM access rule, and then click &lt;strong&gt;Properties&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;In the &lt;strong&gt;Properties&lt;/strong&gt; dialog box, click &lt;strong&gt;Protocols&lt;/strong&gt;, click &lt;strong&gt;RPC (all interfaces)&lt;/strong&gt;, click &lt;strong&gt;Filtering&lt;/strong&gt;, and then click &lt;strong&gt;Configure RPC protocol&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;In the &lt;strong&gt;Configure RPC protocol policy&lt;/strong&gt; dialog box, clear the &lt;strong&gt;Enforce strict RPC compliance&lt;/strong&gt; check box. Then click &lt;strong&gt;OK&lt;/strong&gt; twice.&lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Under &lt;strong&gt;All Firewall Policy&lt;/strong&gt;, if the DPM access rule is not the first listed, right-click the DPM access rule, and then click &lt;strong&gt;Move Up&lt;/strong&gt;. Repeat until the rule is the first listed. &lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;In the top pane, click &lt;strong&gt;Apply&lt;/strong&gt; to save your changes and update the configuration.&lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;ol&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;/font&gt;&lt;/ol&gt;    &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;img alt="Warning" src="http://i.technet.microsoft.com/cc512491.Warning(en-us,WS.10).gif" /&gt;Warning &lt;/font&gt;&lt;/p&gt;    &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Use the following procedure to modify registry settings on TMG and the DPM server. Modify the registry with care. Serious system-wide problems might occur if you modify the registry incorrectly. To correct such problems, you may need to reinstall the operating system software on these servers. &lt;/font&gt;&lt;/p&gt;    &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;To configure registry settings on the TMG and the DPM server&lt;/font&gt;&lt;/p&gt;    &lt;ol&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;/font&gt;&lt;/ol&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Log on to the server as domain administrator.&lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Click &lt;strong&gt;Start&lt;/strong&gt;, click &lt;strong&gt;Run&lt;/strong&gt;, type &lt;strong&gt;regedit&lt;/strong&gt;, and then click &lt;strong&gt;OK&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;In the left pane of Registry Editor, navigate to &lt;strong&gt;HKEY_LOCAL_MACHINE\Software\Microsoft\Rpc&lt;/strong&gt;.&lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Right-click the &lt;strong&gt;Rpc&lt;/strong&gt; node, click &lt;strong&gt;New&lt;/strong&gt;, and then click &lt;strong&gt;Key&lt;/strong&gt;. Type &lt;strong&gt;Internet&lt;/strong&gt; as the name of the key.&lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Configure the following values for the &lt;strong&gt;Internet&lt;/strong&gt; key:&lt;/font&gt;&lt;/p&gt;      &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Ports &lt;/font&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;REG_MULTI_SZ &lt;/font&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;50000-50050&lt;/font&gt;&lt;/p&gt;      &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;PortsInternetAvailable &lt;/font&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;REG_SZ &lt;/font&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Y&lt;/font&gt;&lt;/p&gt;      &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;UseInternetPorts &lt;/font&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;REG_SZ &lt;/font&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;Y&lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;li&gt;     &lt;p&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;To apply the registry settings, close Registry Editor and then restart the server.&lt;/font&gt;&lt;/p&gt;   &lt;/li&gt;    &lt;ol&gt;&lt;font color="#004080" size="2" face="Verdana"&gt;&lt;/font&gt;&lt;/ol&gt; &lt;/ol&gt;</description></item><item><title>Running, Filtering and Saving Scans in Best Practise Analyzer</title><link>http://msmvps.com/blogs/wssra/archive/2010/09/25/running-filtering-and-saving-scans-in-best-practise-analyzer.aspx</link><pubDate>Sat, 25 Sep 2010 05:00:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1778739</guid><dc:creator>TBittner</dc:creator><description>&lt;p&gt;&lt;font color="#000080" size="2" face="Verdana"&gt;Who knows the Best Practise Analyzer for Exchange (ExBPA) is already familiar exporting scan results to other file formats to save or achive. The Best Practise Analyzer (BPA) coming with Windows Server 2008 R2 Server Roles doesn’t have this opportunity to save the scan reports form the Server Manager Console.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#000080" size="2" face="Verdana"&gt;But if you use PowerShell for BPA, you can export your scan report to advanced HTML. There are detailed articles on TechNet describing all the functions and options you have with BPA on Windows Server 2008.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#000080" size="2" face="Verdana"&gt;Details &lt;/font&gt;&lt;a href="http://technet.microsoft.com/en-us/library/dd759206.aspx" target="_blank"&gt;here&lt;/a&gt;&lt;font color="#000080" size="2" face="Verdana"&gt;&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font color="#000080" size="2" face="Verdana"&gt;&amp;#160;&lt;/font&gt;&lt;/p&gt;</description></item></channel></rss>