Reducing the Attack Surface - Center

advertisement
Make People Productive Anywhere
Easy, Powerful
Productivity
Experience
IT Choice and
Control
Manage Risks through
Enhancing Security and Control
Reduce Application Management Costs
Host on-premises
with SharePoint
Presence
Option to lock
paragraphs
IT Pro Fast Facts
•
•
•
•
Reduce network demand
Reduce mail churn
Keep content managed
Collab without check-in/out
•
•
Core Design tenet
•
•
•
File block
File validation
IT Pro managed
•
•
•
Protected viewer
Isolated process
Informed user
decisions
•
•
•
Minimise clicks
Sticky decisions
Immediate view
Newer is Better
% of vulns affecting Office 2007 since Jan 2007
28% Vulnerable
Fuzzing Iterations Completed
Applications
72% Not Vulnerable
OS Libraries
>10x!
2x!
OS Transport
Network
Office 2007
Office 2007
SP2
Office 2010 so
far...
• Document inspector
• Compatibility checker
• Recover drafts
• GPO Configurable
• Manage document rights
Office 2010 design decisions were made to optimise existing hardware
And also to take advantage of new hardware investments
Services Efficiencies
−
−
Change Level Synching – SharePoint Workspace
Co-authoring – minimise users email files
Requirement
CPU
RAM
Hard disk
Display
Office 2003
233 MHz
128 MB
400 MB
800x600
Office 2007
500 MHz
256 MB
2 GB
1024x768
Office 2010
500 MHz
256 MB
3 GB
1024x576
•
Office 2010 will be delivered as:
New
•
32-bit: Highly Compatible
•
64-bit: Humongous Capacity
http://msdn.microsoft.com/en-us/library/ee691831(office.14).aspx
32-bit Office 2010 64-bit Office 2010
32-bit XP,
Vista, Win7
64-bit
Vista, Win7
• 32-bit Office = best path for most users
•
•
•
•
System Readiness
Inventory Office Applications
Assess hardware & OS readiness
Suggests key upgrades
Summary proposal of 2010 readiness
Application Compatibility
• Identify add-ins & interfaces
• Tag known compatible apps
• Mitigate VBA and macro code
*NEW Office
Environment Assessment Tool (OEAT)
Assess the environment
*UPDATED Office
Migration and Planning Manager (OMPM)
Assess your Office Files
*NEW Office
Reports installed add-ins and anything interfacing
with Office: Reports compatibility.
Scan files for Fidelity and Macro/VBA compatibility
Code Compatibility Inspector (OCCI)
Remediation of Macro/VBA compatibility issues
Inspect code within files flagged by OMPM to
expedite remediation of code compatibility issues.
Build Package
• Define applications and preference
• Bundle supporting elements, i.e.
• Add-ins, languages, guides, etc.
Control Environment
• Enforce system wide policy
• Control Office application @ a granular level
– over 4000 objects
http://www.microsoft.com/downloads/details.aspx?di
splaylang=en&FamilyID=85607061-5eb2-4659-afc55d942b84a024
Operating System
Windows Server 2003
Office
Windows
√
√
Windows Vista
√
Windows Server 08
√
Windows 7 VL
√
√
Windows Server 2008 R2
√
√
http://www.softgridblog.com/?p=153
Make People Productive Anywhere
Easy, Powerful
Productivity
Experience
IT Choice and
Control
Manage Risks through
Enhancing Security and Control
Reduce Application Management Costs
http://OfficeITPro.com
Download