<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Be Busbared</title>
	<atom:link href="http://autodiscover.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://autodiscover.wordpress.com</link>
	<description>Busbar&#039;s Blog, for writing about Technology when my boss or my wife are not keeping an eye on me</description>
	<lastBuildDate>Tue, 18 Jun 2013 08:09:32 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='autodiscover.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://1.gravatar.com/blavatar/ba305049563c8cc3190ca74196e9f7bb?s=96&#038;d=http%3A%2F%2Fs2.wp.com%2Fi%2Fbuttonw-com.png</url>
		<title>Be Busbared</title>
		<link>http://autodiscover.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://autodiscover.wordpress.com/osd.xml" title="Be Busbared" />
	<atom:link rel='hub' href='http://autodiscover.wordpress.com/?pushpress=hub'/>
		<item>
		<title>TMG Phase-put decisions&#8217; table.</title>
		<link>http://autodiscover.wordpress.com/2013/06/18/tmg-phase-put-decisions-table/</link>
		<comments>http://autodiscover.wordpress.com/2013/06/18/tmg-phase-put-decisions-table/#comments</comments>
		<pubDate>Tue, 18 Jun 2013 08:09:31 +0000</pubDate>
		<dc:creator>Busbar</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://autodiscover.wordpress.com/?p=1392</guid>
		<description><![CDATA[I got this table that will help you in deciding how to replace TMG 2010 based on the feature used also comparing TMG and UAG, please feel free to share and reuse it. Features ISA TMG Solution Reference Route X X Windows Server 2012 RRAS Technet: Routing and Remote Access http://technet.microsoft.com/en-us/network/bb545655 NAT X X Windows [&#8230;]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=autodiscover.wordpress.com&#038;blog=14396120&#038;post=1392&#038;subd=autodiscover&#038;ref=&#038;feed=1" width="1" height="1" />]]></description>
				<content:encoded><![CDATA[<p>I got this table that will help you in deciding how to replace TMG 2010 based on the feature used also comparing TMG and UAG, please feel free to share and reuse it.</p>
<table width="605" border="0" cellspacing="0" cellpadding="0">
<tbody>
<tr>
<td valign="bottom" nowrap="nowrap" width="86" height="20"><b><span style="font-family:Calibri;"><span style="color:#ffffff;">Features</span></span></b></td>
<td valign="bottom" nowrap="nowrap" height="20">
<p align="center"><b><span style="font-family:Calibri;"><span style="color:#ffffff;">ISA</span></span></b></p>
</td>
<td valign="bottom" nowrap="nowrap" height="20">
<p align="center"><b><span style="font-family:Calibri;"><span style="color:#ffffff;">TMG</span></span></b></p>
</td>
<td valign="bottom" nowrap="nowrap" width="102" height="20"><b><span style="font-family:Calibri;"><span style="color:#ffffff;">Solution</span></span></b></td>
<td valign="bottom" nowrap="nowrap" width="341" height="20"><b><span style="font-family:Calibri;"><span style="color:#ffffff;">Reference</span></span></b></td>
</tr>
<tr>
<td valign="top" nowrap="nowrap" width="86" height="40"><span style="font-family:Calibri;"><span style="color:#000000;">Route</span></span></td>
<td valign="top" nowrap="nowrap" height="40">
<p align="center"><span style="font-family:Calibri;"><span style="color:#000000;">X</span></span></p>
</td>
<td valign="top" nowrap="nowrap" height="40">
<p align="center"><span style="font-family:Calibri;"><span style="color:#000000;">X</span></span></p>
</td>
<td valign="top" nowrap="nowrap" width="102" height="40"><span style="font-family:Calibri;"><span style="color:#000000;">Windows Server 2012 RRAS</span></span></td>
<td valign="top" width="341" height="40"><b><span style="color:#000000;font-family:Calibri;">Technet: Routing and Remote Access</span></b><br />
<a href="http://technet.microsoft.com/en-us/network/bb545655"><span style="font-family:Calibri;"><span style="color:#0563c1;"><span style="text-decoration:underline;">http://technet.microsoft.com/en-us/network/bb545655</span></span></span></a></td>
</tr>
<tr>
<td valign="top" nowrap="nowrap" width="86" height="40"><span style="font-family:Calibri;"><span style="color:#000000;">NAT</span></span></td>
<td valign="top" nowrap="nowrap" height="40">
<p align="center"><span style="font-family:Calibri;"><span style="color:#000000;">X</span></span></p>
</td>
<td valign="top" nowrap="nowrap" height="40">
<p align="center"><span style="font-family:Calibri;"><span style="color:#000000;">X</span></span></p>
</td>
<td valign="top" nowrap="nowrap" width="102" height="40"><span style="font-family:Calibri;"><span style="color:#000000;">Windows Server 2012 RRAS</span></span></td>
<td valign="top" width="341" height="40"><b><span style="color:#000000;font-family:Calibri;">Technet: Routing and Remote Access</span></b><br />
<a href="http://technet.microsoft.com/en-us/network/bb545655"><span style="font-family:Calibri;"><span style="color:#0563c1;"><span style="text-decoration:underline;">http://technet.microsoft.com/en-us/network/bb545655</span></span></span></a></td>
</tr>
<tr>
<td valign="bottom" nowrap="nowrap" width="86" height="20"><span style="font-family:Calibri;"><span style="color:#000000;">Edge Firewall</span></span></td>
<td valign="bottom" nowrap="nowrap" height="20">
<p align="center"><span style="font-family:Calibri;"><span style="color:#000000;">X</span></span></p>
</td>
<td valign="bottom" nowrap="nowrap" height="20">
<p align="center"><span style="font-family:Calibri;"><span style="color:#000000;">X</span></span></p>
</td>
<td valign="bottom" nowrap="nowrap" width="102" height="20"><span style="font-family:Calibri;"><span style="color:#000000;">3rd party product</span></span></td>
<td valign="bottom" nowrap="nowrap" width="341" height="20"></td>
</tr>
<tr>
<td valign="bottom" nowrap="nowrap" width="86" height="20"><span style="font-family:Calibri;"><span style="color:#000000;"> Stateful Packet filtering</span></span></td>
<td valign="bottom" nowrap="nowrap" height="20">
<p align="center"><span style="font-family:Calibri;"><span style="color:#000000;">X</span></span></p>
</td>
<td valign="bottom" nowrap="nowrap" height="20">
<p align="center"><span style="font-family:Calibri;"><span style="color:#000000;">X</span></span></p>
</td>
<td valign="bottom" nowrap="nowrap" width="102" height="20"><span style="font-family:Calibri;"><span style="color:#000000;">3rd party product</span></span></td>
<td valign="bottom" nowrap="nowrap" width="341" height="20"></td>
</tr>
<tr>
<td valign="bottom" nowrap="nowrap" width="86" height="20"><span style="font-family:Calibri;"><span style="color:#000000;">Application Layer Firewalling</span></span></td>
<td valign="bottom" nowrap="nowrap" height="20">
<p align="center"><span style="font-family:Calibri;"><span style="color:#000000;">X</span></span></p>
</td>
<td valign="bottom" nowrap="nowrap" height="20">
<p align="center"><span style="font-family:Calibri;"><span style="color:#000000;">X</span></span></p>
</td>
<td valign="bottom" nowrap="nowrap" width="102" height="20"><span style="font-family:Calibri;"><span style="color:#000000;">3rd party product</span></span></td>
<td valign="bottom" nowrap="nowrap" width="341" height="20"></td>
</tr>
<tr>
<td valign="bottom" nowrap="nowrap" width="86" height="20"><span style="font-family:Calibri;"><span style="color:#000000;"> HTTP Filter</span></span></td>
<td valign="bottom" nowrap="nowrap" height="20">
<p align="center"><span style="font-family:Calibri;"><span style="color:#000000;">X</span></span></p>
</td>
<td valign="bottom" nowrap="nowrap" height="20">
<p align="center"><span style="font-family:Calibri;"><span style="color:#000000;">X</span></span></p>
</td>
<td valign="bottom" nowrap="nowrap" width="102" height="20"><span style="font-family:Calibri;"><span style="color:#000000;">3rd party product</span></span></td>
<td valign="bottom" nowrap="nowrap" width="341" height="20"></td>
</tr>
<tr>
<td valign="bottom" nowrap="nowrap" width="86" height="20"><span style="font-family:Calibri;"><span style="color:#000000;"> HTTPS Inspection</span></span></td>
<td valign="bottom" nowrap="nowrap" height="20"></td>
<td valign="bottom" nowrap="nowrap" height="20">
<p align="center"><span style="font-family:Calibri;"><span style="color:#000000;">X</span></span></p>
</td>
<td valign="bottom" nowrap="nowrap" width="102" height="20"><span style="font-family:Calibri;"><span style="color:#000000;">3rd party product</span></span></td>
<td valign="bottom" nowrap="nowrap" width="341" height="20"></td>
</tr>
<tr>
<td valign="bottom" nowrap="nowrap" width="86" height="20"><span style="font-family:Calibri;"><span style="color:#000000;">Intrusion Prevention (IPS) and Intrusion Detection (IDS) system</span></span></td>
<td valign="bottom" nowrap="nowrap" height="20">
<p align="center"><span style="font-family:Calibri;"><span style="color:#000000;">X</span></span></p>
</td>
<td valign="bottom" nowrap="nowrap" height="20">
<p align="center"><span style="font-family:Calibri;"><span style="color:#000000;">X</span></span></p>
</td>
<td valign="bottom" nowrap="nowrap" width="102" height="20"><span style="font-family:Calibri;"><span style="color:#000000;">3rd party product</span></span></td>
<td valign="bottom" nowrap="nowrap" width="341" height="20"></td>
</tr>
<tr>
<td valign="top" nowrap="nowrap" width="86" height="145"><span style="font-family:Calibri;"><span style="color:#000000;">Web proxy and Web caching Server</span></span></td>
<td valign="top" nowrap="nowrap" height="145">
<p align="center"><span style="font-family:Calibri;"><span style="color:#000000;">X</span></span></p>
</td>
<td valign="top" nowrap="nowrap" height="145">
<p align="center"><span style="font-family:Calibri;"><span style="color:#000000;">X</span></span></p>
</td>
<td valign="top" width="102" height="145"><span style="font-family:Calibri;"><span style="font-family:Calibri;"><span style="color:#000000;">Web proxy: 3rd party product</span></span></span>Web Caching Server:<br />
- 3rd party product<br />
- Windows Azure Caching Services for Cloud solutions integration</td>
<td valign="top" width="341" height="145"><b><span style="color:#000000;font-family:Calibri;">Windows Azure Caching Services</span></b><br />
<a href="http://www.windowsazure.com/en-us/services/caching/"><span style="font-family:Calibri;"><span style="color:#0563c1;"><span style="text-decoration:underline;">http://www.windowsazure.com/en-us/services/caching/</span></span></span></a></td>
</tr>
<tr>
<td valign="bottom" nowrap="nowrap" width="86" height="20"><span style="font-family:Calibri;"><span style="color:#000000;"> URL Filtering</span></span></td>
<td valign="bottom" nowrap="nowrap" height="20"></td>
<td valign="bottom" nowrap="nowrap" height="20">
<p align="center"><span style="font-family:Calibri;"><span style="color:#000000;">X</span></span></p>
</td>
<td valign="bottom" nowrap="nowrap" width="102" height="20"><span style="font-family:Calibri;"><span style="color:#000000;">3rd party product</span></span></td>
<td valign="bottom" nowrap="nowrap" width="341" height="20"></td>
</tr>
<tr>
<td valign="bottom" nowrap="nowrap" width="86" height="20"><span style="font-family:Calibri;"><span style="color:#000000;"> Malware Inspection</span></span></td>
<td valign="bottom" nowrap="nowrap" height="20"></td>
<td valign="bottom" nowrap="nowrap" height="20">
<p align="center"><span style="font-family:Calibri;"><span style="color:#000000;">X</span></span></p>
</td>
<td valign="bottom" nowrap="nowrap" width="102" height="20"><span style="font-family:Calibri;"><span style="color:#000000;">3rd party product</span></span></td>
<td valign="bottom" nowrap="nowrap" width="341" height="20"></td>
</tr>
<tr>
<td valign="top" nowrap="nowrap" width="86" height="260"><span style="font-family:Calibri;"><span style="color:#000000;">Forward and reverse Proxy</span></span></td>
<td valign="top" nowrap="nowrap" height="260">
<p align="center"><span style="font-family:Calibri;"><span style="color:#000000;">X</span></span></p>
</td>
<td valign="top" nowrap="nowrap" height="260">
<p align="center"><span style="font-family:Calibri;"><span style="color:#000000;">X</span></span></p>
</td>
<td valign="top" width="102" height="260"><span style="font-family:Calibri;"><span style="color:#000000;">Reverse proxy:<br />
- UAG 2010 </span></span><span style="font-family:Calibri;"><span style="font-family:Calibri;"><span style="color:#000000;"><b>(*)<br />
- </b>Windows 8.1 support for Web Application Proxy <b>(**)</b> &#8211; To be released</span></span></span>Forward proxy: 3rd Party</td>
<td valign="top" width="341" height="260"><b><span style="font-family:Calibri;"><span style="color:#000000;">Publishing Exchange Server 2010 with</span></span></b><b><span style="font-family:Calibri;"><span style="color:#000000;"> Forefront Unified Access Gateway 2010 and Forefront Threat Management Gateway 2010</span><br />
</span></b><a href="http://www.microsoft.com/en-us/download/confirmation.aspx?id=8946"><span style="color:#0563c1;font-family:Calibri;"><span style="text-decoration:underline;">http://www.microsoft.com/en-us/download/confirmation.aspx?id=8946</span></span></a><b></b><span style="font-family:Calibri;"><span style="color:#000000;">Deploying Forefront UAG for mobile devices</span><br />
</span><a href="http://technet.microsoft.com/en-us/library/gg295317.aspx"><span style="color:#0563c1;font-family:Calibri;"><span style="text-decoration:underline;">http://technet.microsoft.com/en-us/library/gg295317.aspx</span></span></a></p>
<p><b><span style="font-family:Calibri;"><span style="color:#000000;">What’s New For The Enterprise In Windows 8.1</span><br />
</span></b><a href="http://blogs.windows.com/windows/b"><span style="font-family:Calibri;"><span style="color:#0563c1;"><span style="text-decoration:underline;">http://blogs.windows.com/windows/b</span></span></span></a></p>
<p><span style="font-family:Calibri;"><span style="color:#0563c1;"><span style="text-decoration:underline;">/springboard</span></span></span></p>
<p><span style="font-family:Calibri;"><span style="color:#0563c1;"><span style="text-decoration:underline;">/archive/2013/06/03/what-s-new-for-the-enterprise-in-windows-8-1.aspx</span></span></span><b></b></td>
</tr>
<tr>
<td valign="top" nowrap="nowrap" width="86" height="40"><span style="font-family:Calibri;"><span style="color:#000000;">VPN Server (Client VPN and Site to Site VPN)</span></span></td>
<td valign="top" nowrap="nowrap" height="40">
<p align="center"><span style="font-family:Calibri;"><span style="color:#000000;">X</span></span></p>
</td>
<td valign="top" nowrap="nowrap" height="40">
<p align="center"><span style="font-family:Calibri;"><span style="color:#000000;">X</span></span></p>
</td>
<td valign="top" nowrap="nowrap" width="102" height="40"><span style="font-family:Calibri;"><span style="color:#000000;">Windows Server 2012 RRAS</span></span></td>
<td valign="top" width="341" height="40"><b><span style="color:#000000;font-family:Calibri;">Technet: Routing and Remote Access</span></b><br />
<a href="http://technet.microsoft.com/en-us/network/bb545655"><span style="font-family:Calibri;"><span style="color:#0563c1;"><span style="text-decoration:underline;">http://technet.microsoft.com/en-us/network/bb545655</span></span></span></a></td>
</tr>
<tr>
<td valign="top" nowrap="nowrap" width="86" height="61"><span style="font-family:Calibri;"><span style="color:#000000;">E-Mail Protection Gateway</span></span></td>
<td valign="top" nowrap="nowrap" height="61">
<p align="center"><span style="font-family:Calibri;"><span style="color:#000000;">X</span></span></p>
</td>
<td valign="top" nowrap="nowrap" height="61">
<p align="center"><span style="font-family:Calibri;"><span style="color:#000000;">X</span></span></p>
</td>
<td valign="top" nowrap="nowrap" width="102" height="61"><span style="font-family:Calibri;"><span style="color:#000000;">Exchange Online Protection</span></span></td>
<td valign="top" width="341" height="61"><b><span style="color:#000000;font-family:Calibri;">Exchange Online Protection &#8211; homepage</span></b><br />
<a href="http://office.microsoft.com/en-"><span style="font-family:Calibri;"><span style="color:#0563c1;"><span style="text-decoration:underline;">http://office.microsoft.com/en-</span></span></span></a><span style="font-family:Calibri;"><span style="color:#0563c1;"><span style="text-decoration:underline;">us/exchange/microsoft-exchange-online-protection-email-filter-and-anti-spam-protection-email-security-email-spam-FX103763969.aspx</span></span></span></td>
</tr>
<tr>
<td valign="bottom" nowrap="nowrap" width="86" height="60"><span style="font-family:Calibri;"><span style="color:#000000;">SSL VPN</span></span></td>
<td valign="bottom" nowrap="nowrap" height="60"></td>
<td valign="bottom" nowrap="nowrap" height="60"></td>
<td valign="bottom" nowrap="nowrap" width="102" height="60"><span style="font-family:Calibri;"><span style="color:#000000;">UAG 2010</span></span></td>
<td valign="bottom" width="341" height="60"><b><span style="color:#000000;font-family:Calibri;">Forefron Unified Access Gateway 2010</span></b><br />
<a href="http://www.microsoft.com/en-us/server-cloud/forefront/unified-access-gateway.aspx"><span style="font-family:Calibri;"><span style="color:#0563c1;"><span style="text-decoration:underline;">http://www.microsoft.com/en-us/server-cloud/forefront/unified-access-gateway.aspx</span></span></span></a></td>
</tr>
</tbody>
</table>
<table border="0" cellspacing="0" cellpadding="0">
<tbody>
<tr>
<td valign="bottom" width="376"><b>(*) Choosing Between Forefront TMG or Forefront UAG</b></td>
<td valign="bottom" width="71"></td>
<td valign="bottom" width="67"></td>
</tr>
<tr>
<td valign="bottom" width="376"></td>
<td valign="bottom" width="71"></td>
<td valign="bottom" width="67"></td>
</tr>
<tr>
<td width="376"><b>Exchange Related Deployment Scenario or Feature</b></td>
<td width="71"><b>Forefront TMG</b></td>
<td width="67"><b>Forefront UAG</b></td>
</tr>
<tr>
<td width="376"><b>Publish Microsoft Office Outlook Web App and the Exchange Control Panel (ECP) using forms-based authentication</b></td>
<td width="71">þ</td>
<td width="67">þ</td>
</tr>
<tr>
<td width="376"><b>Publish Outlook Anywhere using Basic or NTLM authentication</b></td>
<td width="71">þ</td>
<td width="67">þ</td>
</tr>
<tr>
<td width="376"><b>Publish Microsoft Exchange ActiveSync using Basic authentication</b></td>
<td width="71">þ</td>
<td width="67">þ</td>
</tr>
<tr>
<td width="376"><b>Provide load balancing for HTTP-based protocol accessing from the Internet</b></td>
<td width="71">þ</td>
<td width="67">þ</td>
</tr>
<tr>
<td width="376"><b>Support two-factor authentication for Outlook Web App </b></td>
<td width="71">þ</td>
<td width="67">þ</td>
</tr>
<tr>
<td width="376"><b>Support two-factor authentication for Exchange ActiveSync</b></td>
<td width="71">þ</td>
<td width="67"></td>
</tr>
<tr>
<td width="376"><b>Provide certificate-based authentication for Exchange ActiveSync, Outlook Web App, and ECP</b></td>
<td width="71">þ</td>
<td width="67"></td>
</tr>
<tr>
<td width="376"><b>Perform mail hygiene for Exchange with installation of the Edge Transport server role and Microsoft Forefront Protection 2010 for Exchange Server</b></td>
<td width="71">þ</td>
<td width="67"></td>
</tr>
<tr>
<td width="376"><b>Protect and filter Internet access for internal users from malware and other Web-based threats</b></td>
<td width="71">þ</td>
<td width="67"></td>
</tr>
<tr>
<td width="376"><b>Provide support for scaled up Outlook Anywhere deployments by using multiple source IP addresses</b></td>
<td width="71"></td>
<td width="67">þ</td>
</tr>
<tr>
<td width="376"><b>Check a client computer accessing Outlook Web App for presence of approved antivirus software, updates, etc.</b></td>
<td width="71"></td>
<td width="67">þ</td>
</tr>
<tr>
<td width="376"><b>Thoroughly clean up the client following an Outlook Web App session with settings configurable by the admin </b></td>
<td width="71"></td>
<td width="67">þ</td>
</tr>
</tbody>
</table>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/autodiscover.wordpress.com/1392/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/autodiscover.wordpress.com/1392/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=autodiscover.wordpress.com&#038;blog=14396120&#038;post=1392&#038;subd=autodiscover&#038;ref=&#038;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://autodiscover.wordpress.com/2013/06/18/tmg-phase-put-decisions-table/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/31d86ff84e0fcff003cd9fa36bc907e9?s=96&#38;d=wavatar&#38;r=G" medium="image">
			<media:title type="html">busbar2297</media:title>
		</media:content>
	</item>
		<item>
		<title>Did you note the show redundancy and Shadowmessageperefencesetting</title>
		<link>http://autodiscover.wordpress.com/2013/06/11/did-you-note-the-show-redundancy-and-shadowmessageperefencesetting/</link>
		<comments>http://autodiscover.wordpress.com/2013/06/11/did-you-note-the-show-redundancy-and-shadowmessageperefencesetting/#comments</comments>
		<pubDate>Tue, 11 Jun 2013 05:40:11 +0000</pubDate>
		<dc:creator>Busbar</dc:creator>
				<category><![CDATA[Exchange Server 2013]]></category>
		<category><![CDATA[Exchange 2013]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Microsoft Exchange Server 2013]]></category>

		<guid isPermaLink="false">https://autodiscover.wordpress.com/?p=1383</guid>
		<description><![CDATA[I was reading the Exchange 2013 poster where I noted something I missed during my Exchange 2013 readings: In DAG environments, a shadow server in remote Active Directory site is preferred. That is interesting, reading more from http://technet.microsoft.com/en-us/library/dd351027(v=exchg.150).aspx If the primary server is a member of a DAG, the primary server connects to a different [&#8230;]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=autodiscover.wordpress.com&#038;blog=14396120&#038;post=1383&#038;subd=autodiscover&#038;ref=&#038;feed=1" width="1" height="1" />]]></description>
				<content:encoded><![CDATA[<p>I was reading the Exchange 2013 poster where I noted something I missed during my Exchange 2013 readings:</p>
<blockquote><p>In DAG environments, a shadow server in remote Active Directory site is preferred.</p>
</blockquote>
<p>That is interesting, reading more from</p>
<p><a href="http://technet.microsoft.com/en-us/library/dd351027(v=exchg.150).aspx">http://technet.microsoft.com/en-us/library/dd351027(v=exchg.150).aspx</a></p>
<blockquote><p>If the primary server is a member of a DAG, the primary server connects to a different Mailbox server in the same DAG. If the DAG spans multiple Active Directory sites, a Mailbox server in a different Active Directory site is preferred by default. </p>
</blockquote>
<p>This means that servers in DAG will copy the message to a remote AD site by default, that might be ok for you, but for some environment this might not be the case due to network constrains.</p>
<p>to control this setting, continue reading:</p>
<blockquote><p>This setting is controlled by the <i>ShadowMessagePreference</i> parameter on the <b>Set-TransportService</b> cmdlet. The default value is <code>PreferRemote</code>, but you can change it to <code>RemoteOnly</code> or <code>LocalOnly</code>.</p>
</blockquote>
<p>so you can use the set-transportservice cmdlet to control this setting.</p>
<p>Just a reminder to all of us.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/autodiscover.wordpress.com/1383/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/autodiscover.wordpress.com/1383/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=autodiscover.wordpress.com&#038;blog=14396120&#038;post=1383&#038;subd=autodiscover&#038;ref=&#038;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://autodiscover.wordpress.com/2013/06/11/did-you-note-the-show-redundancy-and-shadowmessageperefencesetting/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/31d86ff84e0fcff003cd9fa36bc907e9?s=96&#38;d=wavatar&#38;r=G" medium="image">
			<media:title type="html">busbar2297</media:title>
		</media:content>
	</item>
		<item>
		<title>Installing Symantec Encryption Server &amp; Exchange 2010 Configuration Part3&#8211;Sending Encrypted Emails</title>
		<link>http://autodiscover.wordpress.com/2013/06/02/installing-symantec-encryption-server-exchange-2010-configuration-part3sending-encrypted-emails/</link>
		<comments>http://autodiscover.wordpress.com/2013/06/02/installing-symantec-encryption-server-exchange-2010-configuration-part3sending-encrypted-emails/#comments</comments>
		<pubDate>Sun, 02 Jun 2013 12:59:24 +0000</pubDate>
		<dc:creator>Busbar</dc:creator>
				<category><![CDATA[Security related]]></category>
		<category><![CDATA[Symantec]]></category>
		<category><![CDATA[Exchange 2010]]></category>
		<category><![CDATA[PGP]]></category>
		<category><![CDATA[Symantec. Encryption]]></category>

		<guid isPermaLink="false">https://autodiscover.wordpress.com/?p=1381</guid>
		<description><![CDATA[In part1 and part 2 we explored the basics of installing the SES and configuring and managing encryption Keys, in this part we will glue part1 and part2 and send encrypted emails. Understanding Email Policies: Email policies are the foundation block for handling email, they determine how emails from specific senders sent to specific recipients [&#8230;]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=autodiscover.wordpress.com&#038;blog=14396120&#038;post=1381&#038;subd=autodiscover&#038;ref=&#038;feed=1" width="1" height="1" />]]></description>
				<content:encoded><![CDATA[<p>In <a href="http://autodiscover.wordpress.com/2013/05/21/installing-symantec-encryption-management-server-and-exchange-2010-configuration-part1/">part1</a> and <a href="http://autodiscover.wordpress.com/2013/05/22/installing-symantec-encryption-server-exchange-2010-configuration-part2understand-key-management/">part 2</a> we explored the basics of installing the SES and configuring and managing encryption Keys, in this part we will glue part1 and part2 and send encrypted emails.</p>
<p><strong>Understanding Email Policies:</strong></p>
<p>Email policies are the foundation block for handling email, they determine how emails from specific senders sent to specific recipients with specific contents will be handled.</p>
<p>There are set of defaults policies created by default:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/06/image.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/06/image_thumb.png?w=530&#038;h=438" width="530" height="438" /></a></p>
<p>they determine how outbound/inbound emails will be handled, the default policy has the following settings:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/06/image1.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/06/image_thumb1.png?w=531&#038;h=184" width="531" height="184" /></a></p>
<p>the outbound client has the following settings:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/06/image2.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/06/image_thumb2.png?w=529&#038;h=345" width="529" height="345" /></a></p>
<p>which tell the SES to encrypt the emails if the source client is SMTP/MAPI to send it to the outbound chain which does the encryption actions:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/06/image3.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/06/image_thumb3.png?w=527&#038;h=281" width="527" height="281" /></a></p>
<p>if we explore the outbound chain, we will find the following settings:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/06/image4.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/06/image_thumb4.png?w=528&#038;h=318" width="528" height="318" /></a></p>
<p>which instructs the SES how to handle specific emails with specific conditions, so I edited this rule and added the “confidential rule”, which encrypts emails sent internally or externally with the word “confidential” in the subject line. You can add your own set of rules to meet your business and enforce certail delivery types link web or protected PDF:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/06/image5.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/06/image_thumb5.png?w=526&#038;h=348" width="526" height="348" /></a></p>
<p>
<p>Once you set the rules, you can send encrypted emails, let us see how:</p>
<p>from outlook client, I will send normal email to <a href="mailto:user@domain.com">user@domain.com</a> (which is fictional domain), the client will detect the policy that is set on the server and will send the email out of message steam to the SES:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/06/image6.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/06/image_thumb6.png?w=399&#038;h=200" width="399" height="200" /></a></p>
<p>Because we can’t find a key for <a href="mailto:user@domain.com">user@domain.com</a>, we will send the email to the SES server and the SES will send the user an email notifying him that there is a message waiting him:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/06/image7.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/06/image_thumb7.png?w=527&#038;h=313" width="527" height="313" /></a></p>
<p>In the above email, I am opening the EML file via notepad (I do have only SMTP server at the recipient side), so the message contains the link to open the email (take a look to how the email flowed from the client to keys “the SES Server” to Exchange to the recipient server)</p>
<p>when opening the link, the client will be prompted with the registration (to register in the SES portal with a passphrase), Then the user can login:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/06/image8.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/06/image_thumb8.png?w=523&#038;h=188" width="523" height="188" /></a></p>
<p>Once user login, he can see the email through the portal; The user can reply and interact securely with the internal user or ask for email delivery via secure PDF:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/06/image9.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/06/image_thumb9.png?w=524&#038;h=117" width="524" height="117" /></a></p>
<p><a href="http://autodiscover.files.wordpress.com/2013/06/image10.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/06/image_thumb10.png?w=529&#038;h=293" width="529" height="293" /></a></p>
<p>We reached the end of this series, we can send and exchange emails securely with Symantec Encryption Server now. I hope that you liked this series.</p></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/autodiscover.wordpress.com/1381/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/autodiscover.wordpress.com/1381/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=autodiscover.wordpress.com&#038;blog=14396120&#038;post=1381&#038;subd=autodiscover&#038;ref=&#038;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://autodiscover.wordpress.com/2013/06/02/installing-symantec-encryption-server-exchange-2010-configuration-part3sending-encrypted-emails/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/31d86ff84e0fcff003cd9fa36bc907e9?s=96&#38;d=wavatar&#38;r=G" medium="image">
			<media:title type="html">busbar2297</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/06/image_thumb.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/06/image_thumb1.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/06/image_thumb2.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/06/image_thumb3.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/06/image_thumb4.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/06/image_thumb5.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/06/image_thumb6.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/06/image_thumb7.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/06/image_thumb8.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/06/image_thumb9.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/06/image_thumb10.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>
	</item>
		<item>
		<title>Thanks community &#8211; Awarded the vExpert award from VMware</title>
		<link>http://autodiscover.wordpress.com/2013/06/02/thanks-community-awarded-the-vexpert-award-from-vmware/</link>
		<comments>http://autodiscover.wordpress.com/2013/06/02/thanks-community-awarded-the-vexpert-award-from-vmware/#comments</comments>
		<pubDate>Sun, 02 Jun 2013 07:35:00 +0000</pubDate>
		<dc:creator>Busbar</dc:creator>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[vExpert]]></category>
		<category><![CDATA[vmware]]></category>

		<guid isPermaLink="false">http://autodiscover.wordpress.com/?p=1354</guid>
		<description><![CDATA[if you missed the announcement, the vExperts award for 2013 was announced last week http://blogs.vmware.com/vmtn/2013/05/vexpert-2013-awardees-announced.html, I am overwhelmed to be considered as vExpert this year, joining an execlusive group of elite 580 experts around the world. Thanks everyone, I promise you to deliver and give more.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=autodiscover.wordpress.com&#038;blog=14396120&#038;post=1354&#038;subd=autodiscover&#038;ref=&#038;feed=1" width="1" height="1" />]]></description>
				<content:encoded><![CDATA[<p>if you missed the announcement, the vExperts award for 2013 was announced last week <a href="http://blogs.vmware.com/vmtn/2013/05/vexpert-2013-awardees-announced.html">http://blogs.vmware.com/vmtn/2013/05/vexpert-2013-awardees-announced.html</a>, I am overwhelmed to be considered as vExpert this year, joining an execlusive group of elite 580 experts around the world.</p>
<p>Thanks everyone, I promise you to deliver and give more.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/autodiscover.wordpress.com/1354/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/autodiscover.wordpress.com/1354/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=autodiscover.wordpress.com&#038;blog=14396120&#038;post=1354&#038;subd=autodiscover&#038;ref=&#038;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://autodiscover.wordpress.com/2013/06/02/thanks-community-awarded-the-vexpert-award-from-vmware/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/31d86ff84e0fcff003cd9fa36bc907e9?s=96&#38;d=wavatar&#38;r=G" medium="image">
			<media:title type="html">busbar2297</media:title>
		</media:content>
	</item>
		<item>
		<title>Installing Symantec Encryption Server &amp; Exchange 2010 Configuration Part2&#8211;Understand key Management</title>
		<link>http://autodiscover.wordpress.com/2013/05/22/installing-symantec-encryption-server-exchange-2010-configuration-part2understand-key-management/</link>
		<comments>http://autodiscover.wordpress.com/2013/05/22/installing-symantec-encryption-server-exchange-2010-configuration-part2understand-key-management/#comments</comments>
		<pubDate>Wed, 22 May 2013 10:35:44 +0000</pubDate>
		<dc:creator>Busbar</dc:creator>
				<category><![CDATA[Security related]]></category>
		<category><![CDATA[Symantec]]></category>
		<category><![CDATA[encryption server]]></category>
		<category><![CDATA[encyrption]]></category>
		<category><![CDATA[PGP]]></category>

		<guid isPermaLink="false">https://autodiscover.wordpress.com/?p=1351</guid>
		<description><![CDATA[In part 1 http://autodiscover.wordpress.com/2013/05/21/installing-symantec-encryption-management-server-and-exchange-2010-configuration-part1/ we explored the basic steps to install the Symantec Encryption Server. In This post, we will explore a very important aspect in any encryption solution, which is key management. Introduction: to understand what is public/private keys, check these link: http://www.comodo.com/resources/small-business/digital-certificates2.php http://blogs.msdn.com/b/plankytronixx/archive/2010/10/23/crypto-primer-understanding-encryption-public-private-key-signatures-and-certificates.aspx If you read the above articles you will now realize [&#8230;]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=autodiscover.wordpress.com&#038;blog=14396120&#038;post=1351&#038;subd=autodiscover&#038;ref=&#038;feed=1" width="1" height="1" />]]></description>
				<content:encoded><![CDATA[<p>In part 1 <a title="http://autodiscover.wordpress.com/2013/05/21/installing-symantec-encryption-management-server-and-exchange-2010-configuration-part1/" href="http://autodiscover.wordpress.com/2013/05/21/installing-symantec-encryption-management-server-and-exchange-2010-configuration-part1/">http://autodiscover.wordpress.com/2013/05/21/installing-symantec-encryption-management-server-and-exchange-2010-configuration-part1/</a> we explored the basic steps to install the Symantec Encryption Server.</p>
<p>In This post, we will explore a very important aspect in any encryption solution, which is key management.</p>
<p><font size="3"><strong>Introduction:</strong></font></p>
<p>to understand what is public/private keys, check these link:</p>
<p><a href="http://www.comodo.com/resources/small-business/digital-certificates2.php">http://www.comodo.com/resources/small-business/digital-certificates2.php</a></p>
<p><a href="http://blogs.msdn.com/b/plankytronixx/archive/2010/10/23/crypto-primer-understanding-encryption-public-private-key-signatures-and-certificates.aspx">http://blogs.msdn.com/b/plankytronixx/archive/2010/10/23/crypto-primer-understanding-encryption-public-private-key-signatures-and-certificates.aspx</a></p>
<p>If you read the above articles you will now realize that we will use public and private keys; While Microsoft uses x.509 certificate based on Microsoft CA which utilizes s/MIME to encrypt the messages, Symantec Encryption server uses PGP keys which uses different structure, keys are stored in PGP LDAP server (we will see how to import x.509 certificate to Symantec encryption server later).</p>
<p><font size="3"><strong>Keys Provisioning:</strong></font></p>
<p>In order for a user to obtain PGP keys, the user must register for PGP keys with the server, let use see the steps to do that.</p>
<p>To Configure email enrolment, first you need to define email route, this tells the encryption server where to send the registration emails and any emails send to your domain, from the control panel, go to mail &gt; mail route and add email route to your server</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image20.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb20.png?w=504&#038;h=377" width="504" height="377" /></a></p>
<p>When you download the Desktop encryption install package and install it on the machine, the client will detect automatically the encryption server and try to contact the server, since I don’t have a valid certificate on my server it will warn me; Click on always trust this site.</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image21.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb21.png?w=506&#038;h=305" width="506" height="305" /></a></p>
<p>enter the email address:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image22.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb22.png?w=510&#038;h=343" width="510" height="343" /></a></p>
<p>the user will receive an encrypted email</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image23.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb23.png?w=507&#038;h=339" width="507" height="339" /></a></p>
<p>once the user opens the encrypted email he/she can continue the registration:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image24.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb24.png?w=503&#038;h=339" width="503" height="339" /></a></p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image25.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb25.png?w=504&#038;h=342" width="504" height="342" /></a></p>
<p>verify the username and email address:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image26.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb26.png?w=507&#038;h=344" width="507" height="344" /></a></p>
<p>create a passphrase to protect your key (remember this step as we will talk about it later in details when speaking about the key storage types):</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image27.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb27.png?w=509&#038;h=343" width="509" height="343" /></a></p>
<p>the key will be generated for the user:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image28.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb28.png?w=509&#038;h=343" width="509" height="343" /></a></p>
<p>now when you open the Encryption Desktop, you will see the keys and policies created by the encryption server assigned to the user:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image29.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb29.png?w=510&#038;h=268" width="510" height="268" /></a></p>
<p>in the console, you can see the list of managed keys as well:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image30.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb30.png?w=511&#038;h=158" width="511" height="158" /></a></p>
<p>If you click on the key mode button (from the Desktop Encryption window), you will see that the key is operating ins SKM mode; so what is that?!</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image31.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb31.png?w=439&#038;h=196" width="439" height="196" /></a></p>
<p>Keys in Symantec Encryption Server operates in different modes, the modes are:</p>
<ul>
<li>Server Key mode: In this mode, the private keys are stored on the server and users can’t manager their keys</li>
<li>Client Key Mode: In this mode, the private keys are not stored on the servers and users must manage their own private key and protect it.</li>
<li>Guarded Key Mode: In this mode, a pass phrased protected private key is stored on the server and clients manage their key </li>
<li>Server Client Key Mode: a sub key of the private key is stored on the server, the private key still stored on the client.</li>
<p> you must be very careful when selecting the key mode in your environment; depending on the key mode, you will have or lose some features as per the below table:</ul>
<p> <a href="http://autodiscover.files.wordpress.com/2013/05/image32.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb32.png?w=543&#038;h=426" width="543" height="426" /></a>
<p>for the first instance, SKM might be the ultimate answer, but you have to be aware that administrators have control over private keys, so this might be a security concern.</p>
<p>To change the mode of the key being used, click on the reset key button and you will be taken through a page that will help you selecting the appropriate key mode.</p>
<p>you can also restrict the modes available in your organization, to do so, edit the consumer policy and change the available modes:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image33.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb33.png?w=511&#038;h=346" width="511" height="346" /></a></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/autodiscover.wordpress.com/1351/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/autodiscover.wordpress.com/1351/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=autodiscover.wordpress.com&#038;blog=14396120&#038;post=1351&#038;subd=autodiscover&#038;ref=&#038;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://autodiscover.wordpress.com/2013/05/22/installing-symantec-encryption-server-exchange-2010-configuration-part2understand-key-management/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/31d86ff84e0fcff003cd9fa36bc907e9?s=96&#38;d=wavatar&#38;r=G" medium="image">
			<media:title type="html">busbar2297</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb20.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb21.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb22.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb23.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb24.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb25.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb26.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb27.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb28.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb29.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb30.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb31.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb32.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb33.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>
	</item>
		<item>
		<title>Installing Symantec Encryption Management Server and Exchange 2010 Configuration Part1</title>
		<link>http://autodiscover.wordpress.com/2013/05/21/installing-symantec-encryption-management-server-and-exchange-2010-configuration-part1/</link>
		<comments>http://autodiscover.wordpress.com/2013/05/21/installing-symantec-encryption-management-server-and-exchange-2010-configuration-part1/#comments</comments>
		<pubDate>Tue, 21 May 2013 13:10:44 +0000</pubDate>
		<dc:creator>Busbar</dc:creator>
				<category><![CDATA[Security related]]></category>
		<category><![CDATA[Symantec]]></category>
		<category><![CDATA[encryption server]]></category>
		<category><![CDATA[encyrption]]></category>
		<category><![CDATA[PGP]]></category>
		<category><![CDATA[universal server]]></category>

		<guid isPermaLink="false">https://autodiscover.wordpress.com/?p=1321</guid>
		<description><![CDATA[In this blog series, we will install together Symantec Encryption Server (previously known as PGP universal server) and configure it to work with Exchange 2010. Additionally we will explore some cool features around virtual disks, disk encryption and secure email delivery. The Symantec Encryption Server binaries are certified to be installed as virtual and this [&#8230;]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=autodiscover.wordpress.com&#038;blog=14396120&#038;post=1321&#038;subd=autodiscover&#038;ref=&#038;feed=1" width="1" height="1" />]]></description>
				<content:encoded><![CDATA[<p>In this blog series, we will install together Symantec Encryption Server (previously known as PGP universal server) and configure it to work with Exchange 2010. Additionally we will explore some cool features around virtual disks, disk encryption and secure email delivery.</p>
<p>The Symantec Encryption Server binaries are certified to be installed as virtual and this is the recommended use from Symantec, and this is the method we will use in our environment.</p>
<p>Symantec Encryption Server can manage several different encryption products and solutions including:</p>
<ul>
<li>Symantec encryption email gateway.</li>
<li>Symantec Encryption Desktop.</li>
<li>Symantec File share encryption.</li>
<li>Symantec Encryption portable.</li>
<li>Symantec Drive encryption.</li>
</ul>
<p>In this blog, we will install the Symantec Encryption Server v3.3, the latest version (at this time) of the product. There are several design and architectural decision elements that must be taken into consideration for several features to work; we will explore them later.</p>
<p>To install Symantec Encryption Server, download the ISO image and create a virtual machine, the documentation and install guide mandate that the VM must be created with Kernel 2.6 x86, 4 GB memory for single instance and 8 GB for HA instances.</p>
<p>Once you start the VM with the ISO attached, follow the simple install wizard that will take you through the installation steps:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb.png?w=479&#038;h=307" width="479" height="307" /></a></p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image1.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb1.png?w=481&#038;h=268" width="481" height="268" /></a></p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image2.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb2.png?w=486&#038;h=271" width="486" height="271" /></a></p>
<p>In the IP address field, specify the IP address for the appliance:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image3.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb3.png?w=492&#038;h=274" width="492" height="274" /></a></p>
<p>Specify the Gateway and DNS servers:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image4.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb4.png?w=495&#038;h=276" width="495" height="276" /></a></p>
<p>Specify the host name; one important point is to note that your appliance MUST be named (keys.domain.com), this is mandatory if you want to cooperate with other PGP key servers. PGP keys servers contacts the recipients keys servers “if available” (if the server can’t locate a public key for the recipients) on keys.domain.com, thus if you want to facilitate exchange secure emails with external parties you must name the server’s FQDN keys.domain.com and this name must be reachable from outside.</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image5.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb5.png?w=492&#038;h=274" width="492" height="274" /></a></p>
<p>Once you finish the wizard, the setup will start automatically, once finished the appliance will reboot and the post complete setup will be launched:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image6.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb6.png?w=493&#038;h=399" width="493" height="399" /></a></p>
<p>accept the license agreement</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image7.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb7.png?w=493&#038;h=359" width="493" height="359" /></a></p>
<p>from the installation type, choose the installation mode. since this is the first server we will choose new installation.</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image8.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb8.png?w=495&#038;h=360" width="495" height="360" /></a></p>
<p>set the time/date:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image9.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb9.png?w=491&#038;h=341" width="491" height="341" /></a></p>
<p>Confirm the IP settings:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image10.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb10.png?w=492&#038;h=358" width="492" height="358" /></a></p>
<p>Confirm the setup summary:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image11.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb11.png?w=488&#038;h=351" width="488" height="351" /></a></p>
<p>Reboot:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image12.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb12.png?w=328&#038;h=310" width="328" height="310" /></a></p>
<p>Enter the license information:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image13.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb13.png?w=480&#038;h=343" width="480" height="343" /></a></p>
<p>Enter the administrator information and password:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image14.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb14.png?w=476&#038;h=358" width="476" height="358" /></a></p>
<p>enter the primary domain that you use to send/receive emails:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image15.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb15.png?w=477&#038;h=351" width="477" height="351" /></a></p>
<p>To protect the server in case it is physcially attacked you must configure the ignition keys, I will use a passphrase as my ignition keys; enter them and continue:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image16.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb16.png?w=476&#038;h=342" width="476" height="342" /></a></p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image17.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb17.png?w=479&#038;h=336" width="479" height="336" /></a></p>
<p>review the setup summary:</p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image18.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb18.png?w=480&#038;h=343" width="480" height="343" /></a></p>
<p>Once setup completes you can login to the admin console on <a href="https://keys.domain.com:9000">https://keys.domain.com:9000</a></p>
<p><a href="http://autodiscover.files.wordpress.com/2013/05/image19.png"><img style="background-image:none;border-bottom:0;border-left:0;padding-left:0;padding-right:0;display:inline;border-top:0;border-right:0;padding-top:0;" title="image" border="0" alt="image" src="http://autodiscover.files.wordpress.com/2013/05/image_thumb19.png?w=368&#038;h=236" width="368" height="236" /></a></p>
<p>This completes the Symantec Encryption Server installation, in Part 2 we will continue with the initial setup and keys management, part 2 and 3 will be fun, so stay tuned <img style="border-style:none;" class="wlEmoticon wlEmoticon-smile" alt="Smile" src="http://autodiscover.files.wordpress.com/2013/05/wlemoticon-smile.png?w=595" />.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/autodiscover.wordpress.com/1321/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/autodiscover.wordpress.com/1321/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=autodiscover.wordpress.com&#038;blog=14396120&#038;post=1321&#038;subd=autodiscover&#038;ref=&#038;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://autodiscover.wordpress.com/2013/05/21/installing-symantec-encryption-management-server-and-exchange-2010-configuration-part1/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/31d86ff84e0fcff003cd9fa36bc907e9?s=96&#38;d=wavatar&#38;r=G" medium="image">
			<media:title type="html">busbar2297</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb1.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb2.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb3.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb4.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb5.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb6.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb7.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb8.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb9.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb10.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb11.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb12.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb13.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb14.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb15.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb16.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb17.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb18.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/image_thumb19.png" medium="image">
			<media:title type="html">image</media:title>
		</media:content>

		<media:content url="http://autodiscover.files.wordpress.com/2013/05/wlemoticon-smile.png" medium="image">
			<media:title type="html">Smile</media:title>
		</media:content>
	</item>
		<item>
		<title>Thoughts on DLP in modern business&#8230;</title>
		<link>http://autodiscover.wordpress.com/2013/05/17/thoughts-on-dlp-in-modern-business/</link>
		<comments>http://autodiscover.wordpress.com/2013/05/17/thoughts-on-dlp-in-modern-business/#comments</comments>
		<pubDate>Fri, 17 May 2013 14:37:25 +0000</pubDate>
		<dc:creator>Busbar</dc:creator>
				<category><![CDATA[Exchange]]></category>
		<category><![CDATA[Security related]]></category>
		<category><![CDATA[Symantec]]></category>
		<category><![CDATA[Control]]></category>
		<category><![CDATA[Data Leakage Prevention]]></category>
		<category><![CDATA[DLP]]></category>
		<category><![CDATA[governonace]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">https://autodiscover.wordpress.com/?p=1277</guid>
		<description><![CDATA[What does it mean to implement DLP?? So far as I have seen; each vendor has his own view on how to enforce DLP within the organization and how to manage it. The reason of what brought DLP to the surface is that I had a discussion with one of my customers on DLP enforcement [&#8230;]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=autodiscover.wordpress.com&#038;blog=14396120&#038;post=1277&#038;subd=autodiscover&#038;ref=&#038;feed=1" width="1" height="1" />]]></description>
				<content:encoded><![CDATA[<p>What does it mean to implement DLP?? So far as I have seen; each vendor has his own view on how to enforce DLP within the organization and how to manage it.</p>
<p>The reason of what brought DLP to the surface is that I had a discussion with one of my customers on DLP enforcement and how to manage it within his infrastructure. While reviewing Email encryption solutions by Sophos and Symantec last week; I found that each vendor has his own concept “if we may call it like that” on DLP and how to manage and enforce it.</p>
<p>First, let me state my own view of DLP; DLP is a technology that helps the organization to own the information/data and prevent leaking those information/data out.</p>
<p>Modern information/data is stored in different locations now, some examples:</p>
<p>- ERP/CRM data.</p>
<p>- Email, Office files, PDF documents.</p>
<p>- SharePoint and similar portals.</p>
<p>- Laptops, USB memory sticks, and portable hard disks.</p>
<p>Helping any organization to control data on the above sources is not easy and could be done in several manners and ways, based on my findings; I will share some thoughts with people thinking about rolling out DLP in their infrastructure:</p>
<p>- DLP is not controlling physical ports (USB, serial, firewire ports..Etc).</p>
<p>- DLP is not DRM nor Encryption.</p>
<p>- Permissions help in controlling the data access, but when the data is accessed; a malicious consumer of the data could share them with 3<sup>rd</sup> parties or leak them out either intentionally or unintentionally.</p>
<p>- Internal users do most of the hacks/leaks.</p>
<p>- Encrypting the data might help in DLP, but will not help in controlling what happens if a malicious user decrypted them or encryption algorithm is broken, Also encrypting the data might not help when the organization need to share All/some data with authorized 3<sup>rd</sup> party.</p>
<p>- If the IT department secured physical ports/access, what about leaking the data out using corporate emails or worst, personal emails.</p>
<p>- How you will classify data as corporate and how you will classify data as none-corporate.</p>
<p>- Data classification is suitable for data stored in shared folders, but what about data in SQL/Oracle databases or data copied from documents and sent as emails.</p>
<p>- How data will be shared with 3<sup>rd</sup> party and secured outside the organization’s control circle.</p>
<p>- Monitoring, logging and alerting, and feeding other 3<sup>rd</sup> party security applications that are used by the security team.</p>
<p>- What about endusers experience, do we need any input from users?</p>
<p>- What about data in the cloud?!</p>
<p>As you can read from the above, DLP will never be a single solution/technology, DLP is a mix of solutions, technologies and processes that govern the data inside the corporate.</p>
<p>Hope that the above thoughts will shed some light and ring some bells in your head when thinking about DLP.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/autodiscover.wordpress.com/1277/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/autodiscover.wordpress.com/1277/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=autodiscover.wordpress.com&#038;blog=14396120&#038;post=1277&#038;subd=autodiscover&#038;ref=&#038;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://autodiscover.wordpress.com/2013/05/17/thoughts-on-dlp-in-modern-business/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/31d86ff84e0fcff003cd9fa36bc907e9?s=96&#38;d=wavatar&#38;r=G" medium="image">
			<media:title type="html">busbar2297</media:title>
		</media:content>
	</item>
		<item>
		<title>Dude, What are the 5 elements I must consider in my virtual machine backups?</title>
		<link>http://autodiscover.wordpress.com/2013/04/26/dude-what-are-the-5-elements-i-must-consider-in-my-virtual-machine-backups/</link>
		<comments>http://autodiscover.wordpress.com/2013/04/26/dude-what-are-the-5-elements-i-must-consider-in-my-virtual-machine-backups/#comments</comments>
		<pubDate>Fri, 26 Apr 2013 13:40:11 +0000</pubDate>
		<dc:creator>Busbar</dc:creator>
				<category><![CDATA[BackupExec]]></category>
		<category><![CDATA[Symantec]]></category>
		<category><![CDATA[backup]]></category>
		<category><![CDATA[design]]></category>
		<category><![CDATA[disaster recovery]]></category>
		<category><![CDATA[key elements to consider]]></category>

		<guid isPermaLink="false">https://autodiscover.wordpress.com/?p=1273</guid>
		<description><![CDATA[The new business demands and challenges pushed IT organizations and Pros to rush into using virtualization/cloud technologies, with this push comes a huge challenge in selecting the proper backup method and spotting the key factors to consider when designing backups for virtual machine. To help you addressing this challenge and spotting those points, we will [&#8230;]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=autodiscover.wordpress.com&#038;blog=14396120&#038;post=1273&#038;subd=autodiscover&#038;ref=&#038;feed=1" width="1" height="1" />]]></description>
				<content:encoded><![CDATA[<p>The new business demands and challenges pushed IT organizations and Pros to rush into using virtualization/cloud technologies, with this push comes a huge challenge in selecting the proper backup method and spotting the key factors to consider when designing backups for virtual machine.</p>
<p>To help you addressing this challenge and spotting those points, we will release a white paper that identifies key elements to consider when backing up and recovering virtual machines and explains them in details.</p>
<p>So stuff like Agent or agentless backup, unified or virtual specific backups, Data Deduplication (how, when) with virtual machines, large backup sets, granular vs. one backup/restore set, adding to that great and critical tips for applications (AD, SQL and Exchange), Hypervisors (VMware/Hyper-v) and network layer.</p>
<p>This unique white paper has been written by a group of the best minds in applications, virtualization and backup worlds, the authors of this white paper are:</p>
<ul>
<li>Thomas Maurer: Thomas is Hyper-v MVP, well known in his contributions in System Center, Hyper-v and cloud community.</li>
<li>Mikko Nykyri: VMware vExpert and virtualization product mangaer for backup exec.</li>
<li>me, Mahmoud Magdy</li>
</ul>
<p>In this white paper; Published at Symantec here <a href="http://ow.ly/kOQBJ">http://ow.ly/kOQBJ</a> , we bring you the top points to consider, key factors and top issues to identify when backing up and restoring virtual machines, we will also go through a Google hangout session discussing those elements in details.</p>
<p>so start tuned, and follow us on Twitter, Linkedin and facebook and wish you all happy backup and successful restore.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/autodiscover.wordpress.com/1273/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/autodiscover.wordpress.com/1273/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=autodiscover.wordpress.com&#038;blog=14396120&#038;post=1273&#038;subd=autodiscover&#038;ref=&#038;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://autodiscover.wordpress.com/2013/04/26/dude-what-are-the-5-elements-i-must-consider-in-my-virtual-machine-backups/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/31d86ff84e0fcff003cd9fa36bc907e9?s=96&#38;d=wavatar&#38;r=G" medium="image">
			<media:title type="html">busbar2297</media:title>
		</media:content>
	</item>
		<item>
		<title>Boosting your career and knowledge in Active Directory</title>
		<link>http://autodiscover.wordpress.com/2013/04/25/boosting-your-career-and-knowledge-in-active-directory/</link>
		<comments>http://autodiscover.wordpress.com/2013/04/25/boosting-your-career-and-knowledge-in-active-directory/#comments</comments>
		<pubDate>Thu, 25 Apr 2013 07:33:48 +0000</pubDate>
		<dc:creator>Busbar</dc:creator>
				<category><![CDATA[Active Directory]]></category>
		<category><![CDATA[Career Development]]></category>
		<category><![CDATA[career]]></category>
		<category><![CDATA[career development]]></category>
		<category><![CDATA[consulting]]></category>
		<category><![CDATA[reading]]></category>

		<guid isPermaLink="false">https://autodiscover.wordpress.com/?p=1269</guid>
		<description><![CDATA[Since a while I was thinking about helping others posting their TRUE knowledge and skills, I seen a lot of guys roaming around with no clues how to build true knowledge about IT infrastructure in general. In this blog series, I will list recommended reading for several technologies and components and how you can build [&#8230;]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=autodiscover.wordpress.com&#038;blog=14396120&#038;post=1269&#038;subd=autodiscover&#038;ref=&#038;feed=1" width="1" height="1" />]]></description>
				<content:encoded><![CDATA[<p>Since a while I was thinking about helping others posting their TRUE knowledge and skills, I seen a lot of guys roaming around with no clues how to build true knowledge about IT infrastructure in general.</p>
<p>In this blog series, I will list recommended reading for several technologies and components and how you can build knowledge around that, of course; hand-on and time will give you the required experience, but these recommendations will help you to stop the no-clues auto-pilot mode.</p>
<p>I will start with AD, please note the following:</p>
<ul>
<li>You might have different opinions about the readings, again these are my recommendations.</li>
<li>I read the below list so when I complied this list I wanted to cut it short for you instead of reading useless stuff.</li>
<li>You will still need to build hands-on experience.</li>
</ul>
<p>so let us start with the Active Directory reading lists:</p>
<table width="309" border="0" cellspacing="0" cellpadding="2">
<tbody>
<tr>
<td valign="top" width="297">Active Directory branch office deployment guide for 2003</td>
<td valign="top" width="10"><a href="http://www.microsoft.com/en-us/download/details.aspx?id=5838">http://www.microsoft.com/en-us/download/details.aspx?id=5838</a></td>
</tr>
<tr>
<td valign="top" width="297">Windows Server 2003 Design kit</td>
<td valign="top" width="10"><a href="http://www.microsoft.com/en-us/download/details.aspx?id=3299">http://www.microsoft.com/en-us/download/details.aspx?id=3299</a></td>
</tr>
<tr>
<td valign="top" width="297">Active Directory post graduate readings</td>
<td valign="top" width="10"><a href="http://blogs.technet.com/b/askds/archive/2010/07/27/post-graduate-ad-studies.aspx">http://blogs.technet.com/b/askds/archive/2010/07/27/post-graduate-ad-studies.aspx</a><br />
I recommend reading replication topology, Kerberos, DFSR, DFS replication, logon and authentication technologies,</td>
</tr>
<tr>
<td valign="top" width="297">Active Directory Designing and deploying</td>
<td valign="top" width="10"><a href="http://www.amazon.com/Active-Directory-Designing-Deploying-Running/dp/1449320023/ref=sr_1_1?s=books&amp;ie=UTF8&amp;qid=1366872876&amp;sr=1-1&amp;keywords=active+directory">http://www.amazon.com/Active-Directory-Designing-Deploying-Running/dp/1449320023/<br />
ref=sr_1_1?s=books&amp;ie=UTF8&amp;qid=1366872876&amp;sr=1-1&amp;keywords=active+directory</a></td>
</tr>
<tr>
<td valign="top" width="297">Active Directory cookbook</td>
<td valign="top" width="10"><a href="http://www.amazon.com/Active-Directory-Cookbook-Laura-Hunter/dp/0596521103/ref=sr_1_5?s=books&amp;ie=UTF8&amp;qid=1366872876&amp;sr=1-5&amp;keywords=active+directory">http://www.amazon.com/Active-Directory-Cookbook-Laura-Hunter/dp/0596521103/<br />
ref=sr_1_5?s=books&amp;ie=UTF8&amp;qid=1366872876&amp;sr=1-5&amp;keywords=active+directory</a></td>
</tr>
<tr>
<td valign="top" width="297">Active Directory field guide</td>
<td valign="top" width="10"><a href="http://www.amazon.com/Active-Directory-Field-Guide-Hunter/dp/1590594924/ref=sr_1_19?s=books&amp;ie=UTF8&amp;qid=1366872919&amp;sr=1-19&amp;keywords=active+directory">http://www.amazon.com/Active-Directory-Field-Guide-Hunter/dp/1590594924/<br />
ref=sr_1_19?s=books&amp;ie=UTF8&amp;qid=1366872919&amp;sr=1-19&amp;keywords=active+directory</a></td>
</tr>
<tr>
<td valign="top" width="297">Active Directory MCM reading list</td>
<td valign="top" width="10"><a href="http://www.dynamicevents.com/MCM/MCM_Windows2008-Directory_Pre-reading_v5.pdf">http://www.dynamicevents.com/MCM/MCM_Windows2008-Directory_Pre-reading_v5.pdf</a></td>
</tr>
<tr>
<td valign="top" width="297">AD site coverage/DNS..etc</td>
<td valign="top" width="10"><a href="http://etutorials.org/Server+Administration/Active+Directory.+Windows+server+2003+Windows+2000/Chapter+11.+Site+Topology/Recipe+11.19+Disabling+Automatic+Site+Coverage+for+a+Domain+Controller/">http://etutorials.org/Server+Administration/Active+Directory.<br />
+Windows+server+2003+Windows+2000/Chapter+11.+Site+Topology/<br />
Recipe+11.19+Disabling+Automatic+Site+Coverage+for+<br />
a+Domain+Controller/</a></td>
</tr>
<tr>
<td valign="top" width="297">SOME READS</td>
<td valign="top" width="10"><a href="http://blogs.dirteam.com/blogs/sanderberkouwer/archive/2008/06/24/domain-controller-stickiness-prevention.aspx">http://blogs.dirteam.com/blogs/sanderberkouwer/archive/<br />
2008/06/24/domain-controller-stickiness-prevention.aspx</a><br />
<a href="http://blogs.dirteam.com/blogs/paulbergson/archive/2010/04/19/ad-clients-not-authenticating-to-its-local-site.aspx">http://blogs.dirteam.com/blogs/paulbergson/archive/2010<br />
/04/19/ad-clients-not-authenticating-to-its-local-site.aspx</a><br />
<a href="http://blogs.dirteam.com/blogs/paulbergson/archive/2013/01/02/preventing-spoke-dc-s-from-advertising-in-the-hub-site-for-authentication-availability.aspx">http://blogs.dirteam.com/blogs/paulbergson/archive/2013/<br />
01/02/preventing-spoke-dc-s-from-advertising-in-the-hub-site-for-authentication-availability.aspx</a><br />
<a href="http://jorgequestforknowledge.wordpress.com/category/active-directory-domain-services-adds/dc-locator/">http://jorgequestforknowledge.wordpress.com/category/<br />
active-directory-domain-services-adds/dc-locator/</a><br />
<a href="http://jorgequestforknowledge.wordpress.com/2007/06/30/dc-locator-process-in-w2k-w2k3-r2-and-w2k8-part-1/">http://jorgequestforknowledge.wordpress.com/2007/06/<br />
30/dc-locator-process-in-w2k-w2k3-r2-and-w2k8-part-1/</a></td>
</tr>
</tbody>
</table>
<p>This list will be updated on regular basis to reflect the most recent interesting reads, I wish you all successful career in AD.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/autodiscover.wordpress.com/1269/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/autodiscover.wordpress.com/1269/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=autodiscover.wordpress.com&#038;blog=14396120&#038;post=1269&#038;subd=autodiscover&#038;ref=&#038;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://autodiscover.wordpress.com/2013/04/25/boosting-your-career-and-knowledge-in-active-directory/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/31d86ff84e0fcff003cd9fa36bc907e9?s=96&#38;d=wavatar&#38;r=G" medium="image">
			<media:title type="html">busbar2297</media:title>
		</media:content>
	</item>
		<item>
		<title>Announcement: Exchange 2013 sp1 will support running from removable media such as &#8220;flash drives&#8221;</title>
		<link>http://autodiscover.wordpress.com/2013/04/01/announcement-exchange-2013-sp1-will-support-running-from-removable-media-such-as-flash-drives/</link>
		<comments>http://autodiscover.wordpress.com/2013/04/01/announcement-exchange-2013-sp1-will-support-running-from-removable-media-such-as-flash-drives/#comments</comments>
		<pubDate>Mon, 01 Apr 2013 06:58:36 +0000</pubDate>
		<dc:creator>Busbar</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">https://autodiscover.wordpress.com/?p=1268</guid>
		<description><![CDATA[Through a trusted resource at the product group, we got the information that sp1 of Exchange 2013 will support running from removable media such as flash drives, dvd drives and blue ray disks, this will allow greater flexibility and decouples the sw layer from hw layer allowing exxhamge to be delivered as remote application over [&#8230;]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=autodiscover.wordpress.com&#038;blog=14396120&#038;post=1268&#038;subd=autodiscover&#038;ref=&#038;feed=1" width="1" height="1" />]]></description>
				<content:encoded><![CDATA[<p>Through a trusted resource at the product group, we got the information that sp1 of Exchange 2013 will support running from removable media such as flash drives, dvd drives and blue ray disks, this will allow greater flexibility and decouples the sw layer from hw layer allowing exxhamge to be delivered as remote application over terminal service session or running it as<br />
portable app over linux machines</p>
<p>What a great news, can&#8217;t for service pack 1&#8230;.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/autodiscover.wordpress.com/1268/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/autodiscover.wordpress.com/1268/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=autodiscover.wordpress.com&#038;blog=14396120&#038;post=1268&#038;subd=autodiscover&#038;ref=&#038;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://autodiscover.wordpress.com/2013/04/01/announcement-exchange-2013-sp1-will-support-running-from-removable-media-such-as-flash-drives/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/31d86ff84e0fcff003cd9fa36bc907e9?s=96&#38;d=wavatar&#38;r=G" medium="image">
			<media:title type="html">busbar2297</media:title>
		</media:content>
	</item>
	</channel>
</rss>
