<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://blogs.technet.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Revelations of a Confused Mind : Forefront Server Security</title><link>http://blogs.technet.com/shawnt/archive/tags/Forefront+Server+Security/default.aspx</link><description>Tags: Forefront Server Security</description><dc:language>en-US</dc:language><generator>CommunityServer 2.1 SP1 (Build: 61025.2)</generator><item><title>Get Help with Your Pilot from Microsoft - IT Pro Momentum!</title><link>http://blogs.technet.com/shawnt/archive/2008/11/03/get-help-with-your-pilot-from-microsoft-it-pro-momentum.aspx</link><pubDate>Tue, 04 Nov 2008 04:08:25 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3146837</guid><dc:creator>shawnt</dc:creator><slash:comments>2</slash:comments><comments>http://blogs.technet.com/shawnt/comments/3146837.aspx</comments><wfw:commentRss>http://blogs.technet.com/shawnt/commentrss.aspx?PostID=3146837</wfw:commentRss><description>&lt;p&gt;Need some help to test/pilot the latest Microsoft infrastructure technologies list here? &lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;Windows Server 2008 &lt;/li&gt;    &lt;li&gt;SQL Server 2008 &lt;/li&gt;    &lt;li&gt;IIS7 &lt;/li&gt;    &lt;li&gt;Forefront Edge (ISA) &lt;/li&gt;    &lt;li&gt;Forefront Client &amp;amp; Server &lt;/li&gt;    &lt;li&gt;Virtual Server 2005 R2 SP1 or Windows Server Virtualization &lt;/li&gt;    &lt;li&gt;Windows Vista &lt;/li&gt;    &lt;li&gt;MOSS 2007 &lt;/li&gt;    &lt;li&gt;System Center &lt;/li&gt;    &lt;li&gt;Windows PowerShell &lt;/li&gt;    &lt;li&gt;Network Access Protection&lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;b&gt;&lt;/b&gt;&lt;/p&gt;  &lt;p&gt;&lt;b&gt;What is the Momentum Program?&lt;/b&gt;&lt;/p&gt;  &lt;p&gt;Momentum is a Microsoft program focused on supporting &amp;#8220;early adopters&amp;#8221; &amp;#8211; IT professionals who bet on the newest technologies to drive business value for their companies and advance their career. &lt;/p&gt;  &lt;p&gt;&lt;b&gt;&lt;/b&gt;&lt;/p&gt;  &lt;p&gt;&lt;b&gt;&lt;/b&gt;&lt;/p&gt;  &lt;p&gt;&lt;b&gt;&lt;/b&gt;&lt;/p&gt;  &lt;p&gt;&lt;b&gt;Is IT Pro Momentum right for you?&lt;/b&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;Interested in learning more about the newest Microsoft technologies? &lt;/li&gt;    &lt;li&gt;Need help to evaluate different Microsoft products and features? &lt;/li&gt;    &lt;li&gt;Willing to test and pilot in production Microsoft beta products? &lt;/li&gt;    &lt;li&gt;Would like to have access to exclusive forums and Microsoft product support? &lt;/li&gt;    &lt;li&gt;Want to share your early adoption experience with the IT Pro community world-wide?&lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;strong&gt;Through the Momentum Portal, participants will have access a number of benefits including: &lt;/strong&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;In-Depth Technical Content&amp;#160; &lt;/li&gt;    &lt;li&gt;Managed Forums&amp;#160; &lt;/li&gt;    &lt;li&gt;TechNet+ Direct Subscription &lt;/li&gt;    &lt;li&gt;Help from me&amp;#160; &lt;/li&gt;    &lt;li&gt;PSS Support Requests &lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;b&gt;&lt;/b&gt;&lt;/p&gt;  &lt;p&gt;&lt;b&gt;&lt;/b&gt;&lt;/p&gt;  &lt;p&gt;&lt;b&gt;&lt;/b&gt;&lt;/p&gt;  &lt;p&gt;&lt;b&gt;What's in it for you? &lt;/b&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;Exposure and Career Opportunities &lt;/li&gt;    &lt;li&gt;By sharing early adoption successes, IT Pro's receive community recognition and increase their opportunities for networking and career growth. &lt;/li&gt;    &lt;li&gt;Your Voice is Heard &lt;/li&gt;    &lt;li&gt;Through Momentum, IT Pros establish a direct, two-way communication channel with Microsoft which allows you to provide feedback and influence the future of our products and services. &lt;/li&gt;    &lt;li&gt;Reduce Risk of Failure &lt;/li&gt;    &lt;li&gt;Momentum benefits such as free TechNet subscription and PSS support requests reduce the risk and complexity of deploying new technologies. &lt;/li&gt;    &lt;li&gt;Competitive Advantage &amp;#8211; Be the First to Use &amp;amp; Know &lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;Program participants have access to the latest information and cutting-edge technologies developed by Microsoft.&lt;/p&gt;  &lt;p&gt;Does this sound interesting to you? Then &lt;a href="http://blogs.technet.com/shawnt/contact.aspx"&gt;click here&lt;/a&gt; to get in touch with me. &lt;/p&gt;  &lt;p&gt;Now&amp;#8217;s the time for you to get involved!&lt;/p&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3146837" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/shawnt/archive/tags/Vista/default.aspx">Vista</category><category domain="http://blogs.technet.com/shawnt/archive/tags/Forefront/default.aspx">Forefront</category><category domain="http://blogs.technet.com/shawnt/archive/tags/Forefront+Server+Security/default.aspx">Forefront Server Security</category><category domain="http://blogs.technet.com/shawnt/archive/tags/Windows+Server+2008/default.aspx">Windows Server 2008</category><category domain="http://blogs.technet.com/shawnt/archive/tags/Windows+Server/default.aspx">Windows Server</category><category domain="http://blogs.technet.com/shawnt/archive/tags/Windows+Client/default.aspx">Windows Client</category><category domain="http://blogs.technet.com/shawnt/archive/tags/System+Center/default.aspx">System Center</category><category domain="http://blogs.technet.com/shawnt/archive/tags/SQL+Server/default.aspx">SQL Server</category><category domain="http://blogs.technet.com/shawnt/archive/tags/MOSS+2007/default.aspx">MOSS 2007</category><category domain="http://blogs.technet.com/shawnt/archive/tags/IIS/default.aspx">IIS</category></item><item><title>New "Wormable" Exploit Discovered Affecting Windows OS's...</title><link>http://blogs.technet.com/shawnt/archive/2008/10/23/new-wormable-exploit-discovered-affecting-windows-os-s.aspx</link><pubDate>Thu, 23 Oct 2008 21:51:50 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3140986</guid><dc:creator>shawnt</dc:creator><slash:comments>1</slash:comments><comments>http://blogs.technet.com/shawnt/comments/3140986.aspx</comments><wfw:commentRss>http://blogs.technet.com/shawnt/commentrss.aspx?PostID=3140986</wfw:commentRss><description>&lt;p&gt;&lt;a href="http://blogs.technet.com/blogfiles/shawnt/WindowsLiveWriter/NewWormableExploitDiscoveredAffectingWi_C2ED/55X55_security_alert_2.gif"&gt;&lt;img style="border-bottom: 0px; border-left: 0px; margin: 0px 30px 10px; border-top: 0px; border-right: 0px" border="0" alt="55X55_security_alert" align="left" src="http://blogs.technet.com/blogfiles/shawnt/WindowsLiveWriter/NewWormableExploitDiscoveredAffectingWi_C2ED/55X55_security_alert_thumb.gif" width="59" height="59" /&gt;&lt;/a&gt; There was a new critical vulnerability announced today that could lead to remote code execution against Windows Operating Systems. (Specifically, Windows 2000, Windows XP, Windows Server 2003, Windows Vista, and Windows Server 2008.) And, unless you are running Windows Vista or Windows Server 2008*, this exploit even works for non-authenticated users - remotely! &lt;/p&gt;  &lt;p&gt;In short, this means that this exploit could be turned into a new Internet Worm. In fact, consistent exploit code has already been discovered in limited, targeted attacks, which is precisely why this update is a &amp;quot;zero day&amp;quot; update. It needs to be patched now, folks. Don't delay. Again, the vulnerability can be exploited consistently, remotely, and without authentication. These three factors are not good in combination.&lt;/p&gt;  &lt;p&gt;Needless to say, this kind of exploit is potentially very damaging, and the wise administrators among us will reduce their exposure immediately - either by applying the update, or, if updating is not an option due to a lengthy testing and deployment process, then by disabling the computer and server browser services temporarily. Check out this bulletin for more details on how to perform these actions.&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;For more information and to download the update (Select your OS version):&lt;/strong&gt; &lt;a title="http://www.microsoft.com/technet/security/Bulletin/MS08-067.mspx" href="http://www.microsoft.com/technet/security/Bulletin/MS08-067.mspx"&gt;http://www.microsoft.com/technet/security/Bulletin/MS08-067.mspx&lt;/a&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;To get the Update directly from Microsoft Update (US Site):&lt;/strong&gt; &lt;a title="http://update.microsoft.com/microsoftupdate/v6/default.aspx?ln=en-us" href="http://update.microsoft.com/microsoftupdate/v6/default.aspx?ln=en-us"&gt;http://update.microsoft.com/microsoftupdate/v6/default.aspx?ln=en-us&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;* If you are running Windows Vista or Windows Server 2008, the update severity is mitigated by the likelihood that the exploit will only work for authenticated users, even with UAC turned off. Plus, improvements like ASLR (Address Space Layout Randomization) further reduce the ease of exploit. It's nice to see the security investment we made in Windows Vista and Windows Server 2008 paying off in situations like this.&lt;/p&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3140986" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/shawnt/archive/tags/Vista/default.aspx">Vista</category><category domain="http://blogs.technet.com/shawnt/archive/tags/Forefront/default.aspx">Forefront</category><category domain="http://blogs.technet.com/shawnt/archive/tags/Forefront+Server+Security/default.aspx">Forefront Server Security</category><category domain="http://blogs.technet.com/shawnt/archive/tags/Security/default.aspx">Security</category><category domain="http://blogs.technet.com/shawnt/archive/tags/Management/default.aspx">Management</category><category domain="http://blogs.technet.com/shawnt/archive/tags/Windows+Server+2008/default.aspx">Windows Server 2008</category><category domain="http://blogs.technet.com/shawnt/archive/tags/Windows+Server/default.aspx">Windows Server</category><category domain="http://blogs.technet.com/shawnt/archive/tags/Windows+Client/default.aspx">Windows Client</category><category domain="http://blogs.technet.com/shawnt/archive/tags/Windows+Server+2003/default.aspx">Windows Server 2003</category><category domain="http://blogs.technet.com/shawnt/archive/tags/Windows+XP/default.aspx">Windows XP</category></item><item><title>FSSMC to RTM on October 10th</title><link>http://blogs.technet.com/shawnt/archive/2007/09/13/fssmc-to-rtm-on-october-10th.aspx</link><pubDate>Thu, 13 Sep 2007 09:55:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:1948374</guid><dc:creator>shawnt</dc:creator><slash:comments>1</slash:comments><comments>http://blogs.technet.com/shawnt/comments/1948374.aspx</comments><wfw:commentRss>http://blogs.technet.com/shawnt/commentrss.aspx?PostID=1948374</wfw:commentRss><description>&lt;P&gt;&lt;STRONG&gt;&lt;EM&gt;The Forefront Server Security Management Console (FSSMC) is set to release to manufacturing on October 10th!&lt;/EM&gt;&lt;/STRONG&gt; It will be available solely through Micorosoft's volume licensing program around that time. FSSMC stands to be&amp;nbsp;a very solid and necessary addition to the Forefront suite&amp;nbsp;of products.&lt;/P&gt;
&lt;P&gt;For those of you who aren't familiar with the FSSMC, essentially it provides for central configuration, deployment, and updating for all Forefront server security products. It enables IT administrators to manage servers remotely, generate comprehensive reports, and receive outbreak alerts. You might think of it as being very similar to the server-side functionality in FCS (Forefront for Client Security), if you are familar with that functionality. &lt;/P&gt;
&lt;P&gt;For those of you who are running or planning&amp;nbsp;to run any combination of Forefront Security for Exchange Server, Forefront Security for SharePoint, Antigen for Exchange, Antigen for SMTP Gateways, or Antigen Spam Manager, you'll want to take a close look at the FSSMC. As an FYI, Forefront Server Security Management Console does not support Sybari Antigen 8.0 or earlier products.&lt;/P&gt;
&lt;P&gt;If you are interested in learning more about the features included in the FSSMC, check out: &lt;A href="http://www.microsoft.com/forefront/serversecurity/mgmt/features.mspx" mce_href="http://www.microsoft.com/forefront/serversecurity/mgmt/features.mspx"&gt;http://www.microsoft.com/forefront/serversecurity/mgmt/features.mspx&lt;/A&gt;.&lt;/P&gt;
&lt;P&gt;Also, I highly recommend you check out the webcast being put on by Kelli Cook, a security product manager and resident expert on the FSSMC. The webcast will be delivered on October 19, 2007 at 11:30am Pacific Time. For more information and to register, check out: &lt;SPAN style="FONT-SIZE: 10pt; COLOR: navy; FONT-FAMILY: 'Arial','sans-serif'"&gt;&lt;A href="http://msevents.microsoft.com/cui/WebCastEventDetails.aspx?EventID=1032352491&amp;amp;EventCategory=4&amp;amp;culture=en-US&amp;amp;CountryCode=US" mce_href="http://msevents.microsoft.com/cui/WebCastEventDetails.aspx?EventID=1032352491&amp;amp;EventCategory=4&amp;amp;culture=en-US&amp;amp;CountryCode=US"&gt;http://msevents.microsoft.com/cui/WebCastEventDetails.aspx?EventID=1032352491&amp;amp;EventCategory=4&amp;amp;culture=en-US&amp;amp;CountryCode=US&lt;/A&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=1948374" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/shawnt/archive/tags/Forefront/default.aspx">Forefront</category><category domain="http://blogs.technet.com/shawnt/archive/tags/Forefront+Server+Security/default.aspx">Forefront Server Security</category><category domain="http://blogs.technet.com/shawnt/archive/tags/Security/default.aspx">Security</category><category domain="http://blogs.technet.com/shawnt/archive/tags/Antigen/default.aspx">Antigen</category><category domain="http://blogs.technet.com/shawnt/archive/tags/Spam/default.aspx">Spam</category></item></channel></rss>