150 likes | 307 Views
Accelerate Your Cloud Deployments… by using on-premise skills and infrastructure. Mark O’Shea Platform And Device Lead Paradyne Pty Ltd markos@paradyne.com.au. Agenda. What Are The Challenges? What Options Are Available? Optimising Your Windows Intune And Office 365 Deployments Summary.
E N D
Accelerate Your Cloud Deployments… by using on-premise skills and infrastructure Mark O’SheaPlatform And Device LeadParadyne Pty Ltdmarkos@paradyne.com.au
Agenda • What Are The Challenges? • What Options Are Available? • Optimising Your Windows Intune And Office 365 Deployments • Summary
What Are The Challenges? • Unknown state of new clients • Unpatched state of new clients • Internet connection speed • Internet connection charges • Time to source, download and install required software • Costs of software that will assist
What Options Are Available For Updating or Deployment? • From Microsoft alone… • System Center Configuration Manager • Windows Software Update Services • Windows Update/Microsoft Update • download.microsoft.com • BrancheCache • Active Directory
WINDOWS INTUNE ARCHITECTURE • Agents report to the Windows Intune service • Ports 80 and 443 are all that is required for agent communications • Windows Live ID is required for administrative access • IT Pro manages clients via the Web-based console
Optimising Your Windows Intune And Office 365 Deployments • Windows Service Packs • Office 2007 and 2010 Service Packs • Caching with ForeFront TMG
Optimising Your Windows Intune And Office 365 Deployments • Use fastest/best method to get PCs at least to latest Windows Service Pack • Usually the most time consuming component of updating PCs • Potentially eliminates some restarts • Installing from file share could be the best option in small unmanaged networks – no need to complicate things • Be prepared for some app compatissues if pre-work isn’t done - use ACT if necessary
Office 2010 Service Pack 1 • Office 365 Pro Plus subscription download does not include SP1 bits… why? • What if customer wants/needs RTM and not SP1? • More downloads in user portal will lead to more confusion • There is no “slipstreamed” version of SP1, the SP1 bits install after the RTM installation from the updates folder • Very easy process to create an update package for Intune, but it will lead to a larger monolithic installation package • Stick with 32 bit Office 2010 unless a good reason for 64 bit is identified
Office 2010 Hotfixes For Office 365 • Some updates are not available via Windows Update or WSUS, so how do you obtain and deploy? • Manual download and installUse a software distribution system once you have obtained original exe • Don’t create monolithic deployment packages • Single file updates are easier to approve/decline • Less troubleshooting required in case of installation failures
Caching with ForeFront TMG • If multiple PCs in one location are receiving the same updates and installs, a caching solution can deliver huge deployment speed gains • ForeFront TMG is the focus for this session, but much of this also applies to SQUID or other caching solutions that support BITS traffic • Potentially overkill for smaller networks, or is it…? • New Intune beta addresses this, but not completely
Caching with Forefront TMG • What kind of bandwidth savings can be seen? • Testing performed for Intunedin.net showed that installing Windows Intune onto Windows 7 RTM or SP1 machines only generated an additional 50MB -70MB per client once the cache was populated • TMG reporting or even basic server NIC monitoring support this • Multi NIC • Ensures traffic isolation • More difficult network configuration • Single NIC • Less network configurationIncreased chance of non-cached downloads
Caching with ForeFront TMG • Leverage your cache for re-use • For updating a remote site or a new client • Chain to an upstream cache, point unpatched base VMs to the new cache server • Use the published TMG/ISA/Squid caching rules from the Windows Intune team
Bandwidth Optimisation in Intune v3 1 0 1 1 0 0 0 1 0 0 1 1 1 0 0 1 1 0 1 0 1 0 1 1 0 1 Feature Enhancement • Windows Intune clients now leverage Win7 Peer distribution platform – a technology that powers Branch Cache • No additional infrastructure required for caching • Leverage the Windows 7 Enterprise Upgrade Rights 1 0 1 1 0 0 1 0 0 1 0 1 1 0 1 0 1 0 1 1 1 0 1 0 0 1 0 0 0 1 0 1 1 0 1 1 0 1 11 0 0 0 0 1 0 0 1 1 1 0 1 1 0 0 1 0 0 1 0 1 1 0 1 1 1 0 0 1 0 1 1 1 0 0 1 0 0 1 1 0 1 0 1 1 1 0 0 0 1 0 0 1 1 0 1 0 1 0 1 1 0 0 1 0 0 1 0 1 1 0 1 0 1 0 1 1 0 0 1 0 0 1 0 1 0 01 1101 11 1 1 0 11 1011 10 1
Addressing Cost and Demonstrating Value • For smaller organisations the cost of additional assistive infrastructure could be prohibitive, but trial versions are available • Windows Intune – 30 day trial or V3 beta • Windows Server 2008 R2 – 180 day VHD or ISO trial • Threat Management Gateway – 120 Day Trial • Windows 7 Enterprise – 90 Day Trial
Summary • Combine your on premise deployment skills with cloud solutions to get the best result – they aren’t mutually exclusive • eg Caching, Virtualisation, OS and App Deployment • Investigate software trial versions for initial deployments, the longer term value of purchasing may be exposed