Was bieten Server 2012 und Windows 8 für Branch-Offices konkret? Wie lassen sich verteilte Szenarien für File-Access oder auch Deployment realisieren? Nach dieser Session kennen Sie die neuen Möglichkeiten und können das Potenzial für Ihr Unternehmen einschätzen.
4. URA
URA
Hosted
Cache
Branch Office
Headquarters
URA
Cloud
5.
6. Unified State
Current State
Private Cloud/
HQ
Internet
DirectAccess & VPN:
Remote access:
Connecting remote
Connectivity using
clients to the hybrid
dedicated
cloud for
infrastructure
- Managed
- Unmanaged
Hoster/
Branch
Cross premise
Site to Site
connectivity: using
connectivity
Connecting private
dedicated
and public clouds
infrastructure
Remote Access
Unified Remote Access
Site to Site
7. Contoso Branch Office
(10.1.0.0/16)
Contoso Corp. HQ
(10.0.0.0/16) 10.1.2.0/24
10.1.3.0/24
10.1.3.0/24
S2S
LAN
DirectAccess
Hosters network in cloud
15. BranchCache accelerates e2e
encrypted traffic (TLS/HTTPS, IPsec)
Cached data encrypted on disk and in
transit between clients
Prevents unauthorized access to
cached data
16. BranchCache Security Model
Server transmits content information structure to
the client only if the client has access. Transfer
happens over the accelerated protocol.
Server authenticates the client
and performs authorization
checks.
Client downloads encrypted blocks from
a peer or the hosted cache and decrypts
them with the encryption key.
Client uses content information
structure to calculate:
-segment id (public) Client multicasts the segment id Cached data is stored in
-encryption key (private) to find a peer with the data. encrypted.
17.
18. Identifiers
ID1 ID2 ID3 ID4 ID5 ID6 ID7 ID8 ID9
Block Hashes
Blocks
Max 128K
Fingerprint
Used to choose boundaries
Content
19.
20. Clients use Service Connection Points
(SCPs) to discover and connect to
hosted cache servers.
Hosted cache servers can SCP
automatically create SCPs. SCP
No site-by-site configuration needed.
21. BranchCache cache is encrypted by
default.
Certificate no longer required on
hosted cache server
Actually a performance improvement!
22. Warm
Hosted Cache Data can be exported from “warm”
hosted cache servers
IIS
Hosted Cache
File Server
Data Packages
Data Packages can be imported on
New tools let you prehash data on both hosted cache servers and clients
file and web servers, and create data
packages.
23.
24.
25. Hosted cache server can store much
more data, increasing bandwidth
savings.
ESE
More efficient architecture based on
the Extensible Storage Engine
enables a single hosted cache to
serve more clients.
Multi-TB cache can be spread across
disks.
26. Clients can be configured to use
multiple hosted cache servers in one
branch.
Existing logic enables retrieval from
multiple servers. Uploads done only
once.
Improves scale and availability without
the complexity of clustering.
29. Configuring the Configuring the
Web Server File Server
1. Install BranchCache for Network
1. Install the BranchCache Files role service
feature
2. Enable BranchCache on the server
3. Enable BranchCache on file shares
Configuring the Hosted
Cache Server
1. Add the BranchCache feature to
the Windows Server 2012 server
2. Configure BranchCache with a
trusted certificate
30. To enable and configure BranchCache, you need to perform
the following steps:
1. Enable BranchCache
2. Enable the Distributed Cache mode or
Hosted Cache mode
3. Configure the client firewall
You can modify BranchCache settings and perform
additional configuration tasks, such as:
• Setting the cache size
• Setting the location of the Hosted Cache server
• Clearing the cache
• Creating and replicating a shared key for using in a
server cluster
31. 3rd Party Applications
Office CopyFile Explorer WMP IE SCCM WSUS
3rd Party
Protocols
SMB 2 HTTP BITS Intune
BranchCache™ Platform
32.
33. Printing directly to a print device (instead of server printer
queue)
Transparent for user
Powershell or Print Management Console (per printer)
Limitations
Print Queues using printer drivers which support Client Side
Rendering (supported since W2K8)
Only Network attached printers
Quota, auditing and detailed job logging are lost