Microsoft Windows 10 and Server 2012 R2 Gp Os Guidance.Pdf

Total Page:16

File Type:pdf, Size:1020Kb

Microsoft Windows 10 and Server 2012 R2 Gp Os Guidance.Pdf Windows 10 GP OS Guidance Microsoft Windows Common Criteria Evaluation Microsoft Windows 10 Microsoft Windows Server 2012 R2 Common Criteria Supplemental Admin Guidance Document Information Version Number 0.09 Updated On January 13, 2016 Microsoft © 2016 Page 1 of 32 Windows 10 GP OS Guidance Microsoft © 2016 Page 2 of 32 Windows 10 GP OS Guidance This is a preliminary document and may be changed substantially prior to final commercial release of the software described herein. The information contained in this document represents the current view of Microsoft Corporation on the issues discussed as of the date of publication. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information presented after the date of publication. This document is for informational purposes only. MICROSOFT MAKES NO WARRANTIES, EXPRESS OR IMPLIED, AS TO THE INFORMATION IN THIS DOCUMENT. Complying with all applicable copyright laws is the responsibility of the user.This work is licensed under the Creative Commons Attribution-NoDerivs-NonCommercial VLicense (which allows redistribution of the work). To view a copy of this license, visithttp://creativecommons.org/licenses/by-nd-nc/1.0/ or send a letter to Creative Commons, 559 Nathan Abbott Way, Stanford, California 94305, USA. Microsoft may have patents, patent applications, trademarks, copyrights, or other intellectual property rights covering subject matter in this document. Except as expressly provided in any written license agreement from Microsoft, the furnishing of this document does not give you any license to these patents, trademarks, copyrights, or other intellectual property. The example companies, organizations, products, people and events depicted herein are fictitious. No association with any real company, organization, product, person or event is intended or should be inferred. © 2016Microsoft Corporation. All rights reserved. Microsoft, Active Directory, Visual Basic, Visual Studio, Windows, the Windows logo, Windows NT, and Windows Serverare either registered trademarks or trademarks of Microsoft Corporation in the United States and/or other countries. The names of actual companies and products mentioned herein may be the trademarks of their respective owners. Microsoft © 2016 Page 3 of 32 Windows 10 GP OS Guidance TABLE OF CONTENTS 1 INTRODUCTION .......................................................................................................................................................................................................................................................8 1.1 EVALUATED WINDOWS EDITIONS AND HARDWARE PLATFORMS .............................................................................................................................................................................................8 1.2 CONFIGURATION .........................................................................................................................................................................................................................................................8 1.2.1 EVALUATED CONFIGURATION ............................................................................................................................................................................................................................................................. 8 2 MANAGEMENT FUNCTIONS ................................................................................................................................................................................................................................... 11 3 MANAGING AUDITS .............................................................................................................................................................................................................................................. 12 3.1 AUDIT EVENTS .......................................................................................................................................................................................................................................................... 12 3.2 MANAGING AUDIT POLICY........................................................................................................................................................................................................................................... 18 3.2.1 LOCAL ADMINISTRATOR GUIDANCE ................................................................................................................................................................................................................................................... 18 4 MANAGING TLS ..................................................................................................................................................................................................................................................... 20 4.1 LOCAL ADMINISTRATOR GUIDANCE ............................................................................................................................................................................................................................... 20 4.2 USER GUIDANCE ....................................................................................................................................................................................................................................................... 21 5 MANAGING ACCOUNT LOCKOUT POLICY................................................................................................................................................................................................................ 21 5.1 LOCAL ADMINISTRATOR GUIDANCE ............................................................................................................................................................................................................................... 21 6 MANAGING PASSWORDS AND PASSWORD POLICY ................................................................................................................................................................................................ 22 Microsoft © 2016 Page 4 of 32 Windows 10 GP OS Guidance 6.1 LOCAL ADMINISTRATOR GUIDANCE ............................................................................................................................................................................................................................... 22 6.2 USER GUIDANCE ....................................................................................................................................................................................................................................................... 23 7 MANAGING CERTIFICATES ..................................................................................................................................................................................................................................... 23 7.1 LOCAL ADMINISTRATOR GUIDANCE ............................................................................................................................................................................................................................... 23 7.2 USER GUIDANCE ....................................................................................................................................................................................................................................................... 25 8 MANAGING SCREEN LOCK AND SESSION TIMEOUT ................................................................................................................................................................................................. 25 8.1 LOCAL ADMINISTRATOR GUIDANCE ............................................................................................................................................................................................................................... 25 8.2 USER GUIDANCE ....................................................................................................................................................................................................................................................... 26 9 MANAGING LOCAL AREA NETWORK ...................................................................................................................................................................................................................... 27 9.1 LOCAL ADMINISTRATOR GUIDANCE ............................................................................................................................................................................................................................... 27 10 MANAGING BLUETOOTH ....................................................................................................................................................................................................................................... 27 10.1 LOCAL ADMINISTRATOR GUIDANCE ............................................................................................................................................................................................................................... 27 10.2 USER GUIDANCE ......................................................................................................................................................................................................................................................
Recommended publications
  • List of CMD COMMANDS a PDF by MYEDUKIT
    List OF CMD COMMANDS A PDF BY MYEDUKIT CMD command Description Basics: call calls a batch file from another one cd change directory cls clear screen cmd start command prompt color change console color date show/set date dir list directory content echo text output exit exits the command prompt or a batch file find find files hostname display host name pause pauses the execution of a batch file and shows a message runas start a program as another user shutdown shutdown the computer sort sort the screen output start start an own window to execute a program or command taskkill terminate a process or an application tasklist display applications and related tasks time display/edit the system time timeout wait any time title set title for prompt ver display operating system version w32tm setting time synchronisation/time server/time zone Network: ftp transfer files to an FTP server ftype display file type and mapping getmac display MAC address ipconfig display IP network settings netsh configure/control/display network components netstat display TCP/IP connections and status nslookup query the DNS pathping test the connection to a specific IP address ping pings the network route display network routing table, add static routes systeminfo displays computer-specific properties and configurations telnet establish a Telnet connection tftp transfer files to a TFTP server tracert trace routes similar to patchping Files: attrib display file attributes comp compare file contents compact display/change file compression copy / xcopy copy files diskcomp
    [Show full text]
  • System Requirements
    Trend Micro Incorporated reserves the right to make changes to this document and to the products described herein without notice. Before installing and using the software, please review the readme files, release notes, and the latest version of the applicable user documentation, which are available from the Trend Micro website at: http://docs.trendmicro.com/en-us/enterprise/officescan.aspx Trend Micro, the Trend Micro t-ball logo, and OfficeScan are trademarks or registered trademarks of Trend Micro Incorporated. All other product or company names may be trademarks or registered trademarks of their owners. Copyright © 2017 Trend Micro Incorporated. All rights reserved. Release Date: October 2017 Protected by U.S. Patent No. 5,623,600; 5,889,943; 5,951,698; 6,119,165 Table of Contents Chapter 1: OfficeScan Server Installations Fresh Installations on Windows Server 2008 R2 Platforms .............................................................................................................................................................................. 1-2 Fresh Installations on Windows Server 2012 Platforms ..................................................................................................................................................................................... 1-3 Fresh Installations on Windows Server 2016 Platforms ..................................................................................................................................................................................... 1-4 Fresh Installations
    [Show full text]
  • Prepare Customer Site Servers
    Prepare Customer Site Servers • Prepare Customer Site Servers, on page 1 • Prepare Cisco UCS C-Series Customer Site Servers, on page 1 • Prepare HyperFlex M5 series Customer Site Servers, on page 3 • NTP and Time Synchronization, on page 4 • Global Catalog Requirements, on page 5 Prepare Customer Site Servers Perform all the procedures in this section on the Side A and the Side B servers. Prepare Cisco UCS C-Series Customer Site Servers Configure RAID for C240 M4SX The disk array configuration for the C240 M4SX is already set up to match what is required for Packaged CCE. Verify the settings as follows. Using Cisco Integrated Management Controller, check that the following settings are configured correctly: • Virtual Drive Info: RAID 5 with 5 (Physical Disks) * 4 (Virtual Drives/Datastores) • Stripe Size: 128KB • Write Policy: Write Back with BBU • Read Policy: Read Ahead Always For more information regarding RAID configuration for C240 M4SX in Configure RAID with GUI (UCS C-Series M4 Servers) section, see Cisco Collaboration on Virtual Servers Guide at: https://www.cisco.com/ c/en/us/td/docs/voice_ip_comm/cucm/virtual/CHCS_BK_C7C7ED05_00_cisco-collaboration-on-virtual-servers/ CHCS_BK_C7C7ED05_00_cisco-collaboration-on-virtual-servers_chapter_01.html#CUCM_TK_C2DC4F2D_ 00. Prepare Customer Site Servers 1 Prepare Customer Site Servers Run the RAID Config Validator Utility Run the RAID Config Validator Utility After you set up RAID configuration and add the datastores, run the RAID Config Validator utility to ensure that your datastore configuration is correct. Before you begin To run the utility, Java 7 (any update) must be installed. Java 8 and later releases are not supported.
    [Show full text]
  • Deployment Strategy
    System Management Best Practices Bryan S Owen PE Copyright c 2004 OSIsoft Inc. All rights reserved. Richness & Reliability “Value Coefficients” • Quality – Across operations and data systems • Quantity – Across business needs and over time • Utilization – Across enterprise and just in time It all Starts with Great Software …and the Right Architecture • Visualization Tools • Availability • Reliability • Security Integrated Data Collection Proven: Cutting Edge: Integrated Interface Embedded Historian Embedded PI Historian • Continuous Historian for DeltaV Application Station http://www.easydeltav.com/pd/PDS_ApplicationStation.pdf • “56SAM” Historian for Allen-Bradley ControlLogix www.oldi.com • “Promoted” Interface Node • Also visit: www.echohistorian.com Fault Tolerant vs Redundant Incident Tolerant Redundant Environment Fault JJ JJJ Hardware Fault JJJ JJ Software Fault K J Administrative Error JK JJ Scheduled Down K JJJ “Smile” Points: 15/30 22/30 Redundant Architecture • Reliability – Build from the Data Up • Availability – Build from the Users Down You decide what comes first! Redundant Data Collection Dual Gateways Interface Node Failover Redundant Data Service Dual PI Servers Dual PI Clients Redundant Architecture No single point of failure sounds great, what’s the catch? • Interface Support • History Recovery • Gap Filling • Client Impact • Fugitive Data Fugitive Data Capture Essential for rich content but… 1% of the data causes 99% perspiration! • Manual Entry Systems • Custom Applications • Isolated Point to Point Links Solution:
    [Show full text]
  • Microsoft Windows Server 2019 Version 1809 Hyper-V
    Operational and Administrative Guidance Microsoft Windows Server, Microsoft Windows 10 version 1909 (November 2019 Update), Microsoft Windows Server 2019 version 1809 Hyper-V Common Criteria Evaluation under the Protection Profile for Virtualization, including the Extended Package for Server Virtualization Revision date: January 15, 2021 © 2021 Microsoft. All rights reserved. Microsoft Windows Server and Windows 10 Hyper-V Administrative Guidance Copyright and disclaimer The information contained in this document represents the current view of Microsoft Corporation on the issues discussed as of the date of publication. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information presented after the date of publication. This document is for informational purposes only. MICROSOFT MAKES NO WARRANTIES, EXPRESS OR IMPLIED, AS TO THE INFORMATION IN THIS DOCUMENT. Complying with all applicable copyright laws is the responsibility of the user. This work is licensed under the Creative Commons Attribution-NoDerivs-NonCommercial VLicense (which allows redistribution of the work). To view a copy of this license, visithttp://creativecommons.org/licenses/by-nd-nc/1.0/ or send a letter to Creative Commons, 559 Nathan Abbott Way, Stanford, California 94305, USA. Microsoft may have patents, patent applications, trademarks, copyrights, or other intellectual property rights covering subject matter in this document. Except as expressly provided in any written license agreement from Microsoft, the furnishing of this document does not give you any license to these patents, trademarks, copyrights, or other intellectual property. The example companies, organizations, products, people and events depicted herein are fictitious.
    [Show full text]
  • Operational and Administrative Guidance
    Operational and Administrative Guidance Microsoft Windows Server, Microsoft Windows 10 version 1909 (November 2019 Update), Microsoft Windows Server 2019 version 1809 Hyper-V Common Criteria Evaluation under the Protection Profile for Virtualization, including the Extended Package for Server Virtualization Revision date: January 15, 2021 © 2021 Microsoft. All rights reserved. Microsoft Windows Server and Windows 10 Hyper-V Administrative Guidance Copyright and disclaimer The information contained in this document represents the current view of Microsoft Corporation on the issues discussed as of the date of publication. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information presented after the date of publication. This document is for informational purposes only. MICROSOFT MAKES NO WARRANTIES, EXPRESS OR IMPLIED, AS TO THE INFORMATION IN THIS DOCUMENT. Complying with all applicable copyright laws is the responsibility of the user. This work is licensed under the Creative Commons Attribution-NoDerivs-NonCommercial VLicense (which allows redistribution of the work). To view a copy of this license, visithttp://creativecommons.org/licenses/by-nd-nc/1.0/ or send a letter to Creative Commons, 559 Nathan Abbott Way, Stanford, California 94305, USA. Microsoft may have patents, patent applications, trademarks, copyrights, or other intellectual property rights covering subject matter in this document. Except as expressly provided in any written license agreement from Microsoft, the furnishing of this document does not give you any license to these patents, trademarks, copyrights, or other intellectual property. The example companies, organizations, products, people and events depicted herein are fictitious.
    [Show full text]
  • Microsoft Windows Server 2012 R2
    MICROSOFT WINDOWS SERVER 2012 R2 APPLICATION-FOCUSED SERVICES TOP 3 BENEFITS Windows Server 2012 R2 enables you to build and deploy applications in your data center that utilize higher-level, ❒4 Comprehensive Cloud Platform cloud-based application services and APIs that are ❒4 Cost Savings and Increased Efficiencies compatible with service provider clouds and Windows Azure. This functionality provides improved application ❒4 Support for a Modern Work Style portability between on-premises, public and partner- hosted clouds, increasing the flexibility and elasticity of your IT services. OPTIMIZE YOUR CLOUD BUSINESS Windows Server 2012 R2 also provides frameworks, With the world of IT changing rapidly, traditional services and tools to increase scalability and elasticity approaches to solving infrastructure problems are for multitenant-aware applications and websites. inadequate. The Microsoft vision for this new era of IT is to provide one consistent platform for infrastructure, apps, and data: the Cloud OS. The Cloud OS spans customer data centers, service provider data centers and the Microsoft PEOPLE WHO GET IT public cloud. At the heart of the solution is Windows Server 2012 R2. With Windows Server 2012 R2, you gain Along with your dedicated account manager, an enterprise-grade platform to cost-effectively optimize CDW has Microsoft trained and certified your business with a cloud. experts who can help find the right data center technologies for you, including: SIMPLE AND COST-EFFECTIVE DESIGN Windows Server 2012 R2 enables you to blend your Professional Services: on-premises solutions with the cloud without having • 500 engineers and project managers, to reengineer infrastructure, systems management or including 90+ Microsoft engineers applications.
    [Show full text]
  • Windows Server 2012 Licensing Data Sheet
    Windows Server 2012 Licensing Data Sheet Product overview With the release of Windows Server 2012, Microsoft Feature Licensing Edition Pricing* brings its experience in building and operating public comparison model clouds to the server platform for private clouds. It offers customers scalable, dynamic and multitenant- Datacenter Unlimited Processor + $4,809 aware cloud infrastructure that helps users connect virtual instances CAL** across-premises. As a result, IT can respond to All features business needs with greater agility and efficiency, and Standard Two virtual Processor + $882 the mobile workforce is able to access personalized instances CAL** work environments from virtually anywhere. All features Edition overview Essentials 2 processor Server $425 The Windows Server 2012 product line-up has been Limited features 25 user limit streamlined and simplified, making it easier for customers to choose the edition that is right for Foundation 1 processor Server OEM Only their needs. Limited features 15 user limit Datacenter edition for highly-virtualized private *Open No Level (NL) ERP. (For specific pricing, contact your Microsoft cloud environments. reseller. Microsoft does not determine pricing or payment terms for Standard edition for non-virtualized or lightly licenses acquired through resellers.) virtualized environments. **Client Access Licenses (CALs) are required for every user or device Essentials edition for small businesses with up to accessing a server. See the Product Use Rights for details. 25 users running on servers with up to two processors. Licensing overview Foundation edition for small businesses with up The packaging and licensing structure for Windows to 15 users running on single processor servers. Server 2012 Datacenter edition and Windows Server To learn more about feature differences by product 2012 Standard edition has been updated to simplify edition, click here.
    [Show full text]
  • Microsoft Update Testing
    Microsoft Update Testing Microsoft provides the Windows Update Service that distributes bug fixes in the form of patches. Normally, Microsoft release patches via Windows Update every second Tuesday of each month and this has unofficially become known as 'Patch Tuesday'. To assure end users they can install Microsoft patches without adversely affecting existing installations of ClearSCADA, a set of regression tests are run on selected operating systems with released versions of ClearSCADA. Date: 11-06-2015 Operating Systems • Windows 7 SP1 (x64) • Windows Server 2008 R2 (x64) • Windows Server 2012 R2 • Windows 8.1 ClearSCADA 2010 R3.2 (72.5373), ClearSCADA 2013 R1.2 (73.4955), ClearSCADA 2013 R2.1 (RC Build 74.5213), ClearSCADA 2014 R1 (75.5387) and ClearSCADA 2015 R1 (76.5640) Installed Patches/Updates on Windows 7 (x64) Security Update for Windows 7, Windows Server 2008 R2, Windows Server 2008, and Windows Vista (KB3063858) https://support.microsoft.com/kb/3063858 Security Update for Windows 7, Windows Server 2008 R2, Windows Server 2008, and Windows Vista (KB3059317) https://support.microsoft.com/kb/3059317 Cumulative Security Update for Internet Explorer (KB3058515) https://support.microsoft.com/kb/3058515 Security Update for Windows 7, Windows Server 2008 R2, Windows Server 2008, Windows Vista, Windows Server 2003, and Windows XP Embedded (KB3057839) https://support.microsoft.com/kb/3057839 Security Update for Windows 7, Windows Server 2008 R2, Windows Server 2008, Windows Vista, Windows Server 2003, and Windows XP Embedded (KB3033890)
    [Show full text]
  • How to Configure File Server Resource Manager in Windows Server 2012 R2 and Above
    How to Configure File Server Resource Manager in Windows Server 2012 R2 and Above HOW TO CONFIGURE FILE SERVER RESOURCE MANAGER IN WINDOWS SERVER 2012 R2 AND ABOVE Table of Contents Introduction .............................................................................................................................................................................................. 3 Installing the role ..................................................................................................................................................................................... 3 Initial Configuration ................................................................................................................................................................................. 4 Creating a Classification Property ......................................................................................................................................................11 Creating a Classification Rule ..............................................................................................................................................................13 Creating/Modifying a Storage Report ...............................................................................................................................................20 Steps to Extend the Limits ..................................................................................................................................................................23 Selecting the
    [Show full text]
  • Best Practices for Oracle Database Performance on Windows
    Best Practices for Oracle Database Performance on Windows Christian Shay Product Manager Oracle Database on Windows Copyright © 2014, Oracle and/or its affiliates. All rights reserved. | Program Agenda 1 Overview 2 Architecture 3 Best Practices for Windows 4 Best Practices for RAC on Windows 5 Q+A: Ask the Experts Copyright © 2014, Oracle and/or its affiliates. All rights reserved. | Slide deck for this session • Within a week, slides will be linked to on OTN Windows page: – http://otn.oracle.com/windows Copyright © 2014, Oracle and/or its affiliates. All rights reserved. | Overview Copyright © 2014, Oracle and/or its affiliates. All rights reserved. | Windows 8.1 and Windows Server 2012 R2 Supported Editions • Windows 8.1 Editions – Pro – Enterprise • Windows Server 2012 R2 Editions – Essentials – Foundation – Standard – Datacenter Copyright © 2014, Oracle and/or its affiliates. All rights reserved. | Windows 32-bit Platform Support OS 11gR1 11gR2 #1 12cR1 client #1 RAC not supported Windows 7 No Yes Yes for 32-bit Windows in 11gR2 Windows Server 2008 11.1.0.7 Yes Yes and later Windows Server 2008 R2 11.1.0.7 Yes Yes Windows 8 No 11.2.0.4 Yes Windows 8.1 No 11.2.0.4 12.1.0.2 Windows Server 2012 No 11.2.0.4 Yes Copyright © 2014, Oracle and/or its affiliates. All rights reserved. | Windows 64-bit (x64) Platform Support #1 OS 11gR1 11gR2 12cR1 RAC and some other features not Windows 7 #1 No Yes Yes supported on Windows client Windows Server 2008 11.1.0.7 Yes Yes # 2 Windows Server 2008 R2 No Yes Yes Single Instance and Client support now; Windows 8 #1 No 11.2.0.4 Yes RAC support planned Windows 8.1 #1 No 11.2.0.4 12.1.0.2 in CY2014 Windows Server 2012 No 11.2.0.4 12.1.0.2 11.2.0.4 Windows Server 2012 R2 No 12.1.0.2 (Planned #2) Oracle Client (Windows 32-bit version) is also supported on Windows x64 systems Copyright © 2014, Oracle and/or its affiliates.
    [Show full text]
  • Windows Embedded Server Embedded Operation System
    Windows Embedded Server Embedded Operation System Features Windows Server for Embedded Systems offers a dynamic infrastructure that can scale and secure workloads, and increase hardware ROI and reduce total cost of ownership The platform features diverse storage choices that can help achieve high- performance, availability and resource efficiency through virtualization and optimization Windows Embedded Server Windows Server for Embedded Systems also automates a broad set of management tasks, and simplifies deployment of workloads, helping move an organization toward full, lights-out automation and easy remote management Deliver centralized access and audit policies, leverage built-in security capabilities, and help lock down your appliances Introduction Windows® Embedded Server is binary identical to Windows Server, with built-in security, reliability, and availability features intended for use in an embedded solution consisting of purpose-built hardware and application software. Windows® Embedded Server allows OEMs to more easily design, build, and deploy dedicated solutions. Feature Details Server Availability Storage Reliance Network adapter teaming enables multiple network adapters to be placed into a team Create storage reliance and availability with Storage Spaces and Storage Pools. interface for bandwidth aggregation and traffic failover. Enables you to virtualize storage by grouping industry-standard disks into Storage Pools and then creating Storage Spaces from the available capacity in the Storage Data Security and Integrity Pools. With Windows Server for Embedded Systems, you have the ability to Claims-based file access allows the flexibility to restrict access to files based on virtualize your storage solution. Storage Spaces gives you the ability to consolidate various claims. all your SAS and SATA connected disks—whether they are SSDs or traditional HDDs—and consolidate them as Storage Pools.
    [Show full text]