chris mcnulty cto, cryptzone collabcon 2015 · collabcon 2015. #collabcon share your ideas and...

84
Chris McNulty CTO, Cryptzone Collabcon 2015

Upload: vuongliem

Post on 30-Apr-2018

220 views

Category:

Documents


2 download

TRANSCRIPT

Chris McNultyCTO, CryptzoneCollabcon 2015

#CollabCon

Share your ideas and feedback on Twitter

$250 Future Shop gift card for most #CollabCon mentions

15 years in SharePoint, 20+ in IT

MVP MCP MCSE MCTS VTSP MSA

Meet Chris McNulty @cmcnulty2000

3 children (Devin,

Nate, Rachel) and

my wife Hayley

Gold Sponsor

Silver Sponsors

Cryptzone: Three Layers Of DefenseAccess Control • Application & Content Security • Content Governance

APPLICATION & CONTENT SECURITY

HiSoftware Security Sheriff ®

HiSoftware Site Sheriff ®

SEP® Secured EmailSEP® Secured Files & FoldersSEP® Secured eUSB

CONTENT GOVERNANCE

Compliance Sheriff ®

CRYPTZONE SOLUTIONS

ACCESS CONTROL

AppGate® Secure Access

Key Topics

Next Steps

Out of scope On premises migration/upgrade

O365 Dedicated

Extensive migration demos…

Rules Office 365 Shared ‘E’ Plans

Questions – time permitting during session

Any time after session – email etc. - @cmcnulty2000

Presentation governance

http://1drv.ms/1aX9VQB

Today’s deck

The wrong approach to hybrid…

Applications

CONTROL

CO

ST

-E

FFIC

IEN

CYSharePoint (On-premises)

• SharePoint

Value Prop:• Full h/w control – size/scale

• Roll-your-own HA/DR/scale

Value Prop:• 100% of API surface area

• Easy migration of existing apps

• Roll-your-own HA/DR/scale

SharePoint (IaaS)• Hosted SharePoint

Value Prop:• Auto HA, Fault-Tolerance

• Friction-free scale

• Self-provisioning, mgmt. @ scale

• SharePoint Service

Office 365 (SaaS)

Each Persistent Data Disk Can be up to 1 TB

VM Size CPU Cores Memory# Data

DisksIOPs

A0 X Small Shared 768 MB 1 500

A1 Small 1 1.75 GB 2 2x500

A2 Medium 2 3.5 GB 4 4x500

A3 Large 4 7 GB 8 8x500

A4 XLarge 8 14 GB 16 16x500

A6 4 28 GB 8 8x500

A7 8 56 GB 16 16x500

Select from Image Gallery

Create new VM from image gallery

Virtual Machine booted. Changes direct-write

to blob storage

Log in to

Windows Azure

Management Portal

The image is copied to

your blob storage account

R

Bring your own custom Virtual Hard Disk (VHD)

Upload image to blob storage

Virtual Machine booted. Changes direct-write to

blob storage

Create your own VHD

Create a Virtual Machine by attaching to disk

R

K

AffinityGroup

K

http://azure.microsoft.com/en-us/overview/preview-portal/

K

K

https://github.com/windowsazure/azure-sdk-tools-samples

AD/DC/DNSLB WEB/APP SQL

80

20000

Cloud Service

Virtual Network

Windows Azure

Web/App Tier

1 x Large

(4 Cores & 7 GB)

Data Tier

1 x A6

(4 Cores & 28 GB)

Identity Tier

1 Small

(1 Core & 1.75 GB)

K

AD/DC/DNSLB WEB SQLAPP

80

20000

Cloud Service

Virtual Network

Windows Azure

AVSETSPWEB

AVSETSPAPP

AVSETSQLHA

AVSETDCSET

Web Tier

2 x Large

(4 Cores & 7 GB)

App Tier

2 x Large

(4 Cores & 7 GB)

Data Tier

2 x A6

(4 Cores & 28 GB)

1 x Small (Quorum)

(1 Core & 1.75 GB)

Identity Tier

2 Small

(1 Core & 1.75 GB)

K

http://azure.microsoft.com/en-us/documentation/articles/install-configure-powershell/

1.

2.

3.

Build new 2013 farm

Install required solutions, settings and service apps

Backup/restore SQL content DB

SharePoint database attach PowerShell (2010 mode)

Test and perform site collection upgrades (2013 mode)

SPSite“/sites/foo”

Snapshot

Database

R/O

Co

nte

nt

Data

base

Co

nte

nt

Data

base

Configuration

Database

SPSite“/sites/foo”

SPSite

Cloning

Clone

SPSite“/sites/foo-eval”

Evaluation

SPSite“/sites/foo-eval”

Sites

Site Map

AllDocs

AllWebs

AllSites

AllDocs

AllWebs

AllSitesFiltered Copy Of AllSites

Filtered Copy Of AllWebs

Filtered Copy Of AllDocs

Filtered Copy Of …

//sites/foo/sites/foo-eval

Timer Job:

Create Evaluation Sites

12

3

4

54

6

Eastern Long Island, August 2012

Office 365 Enterprise

Plans

E1 E2 E3 E4

SharePoint Online √ √ √ √

Office Online √ √ √

Local Copy of Office

Professional 2013 Plus

√ √

Forms Services, Visio

Services, Access

Services

√ √

Monthly cost per user $8 $20

FEATURE OFFICE 365 ENTERPRISE PLANS

Storage per user (contributes to

total storage base of tenant)

500 megabytes (MB) per subscribed user.

Storage base per tenant 10 GB + 500 MB per subscribed user + additional storage purchased.

Site collection storage limit 1TB

Site collections (#) per tenant 500,000 site collections (other than personal sites).

Subsites Up to 2,000 subsites per site collection

Personal site storage 1TB per user, as soon as provisioned - OneDrive for Business library and personal newsfeed. This amount is

counted separately from tenancy

Public Website storage default 5 GB (to 100GB by admin)

File upload limit 2 GB per file. (for now!)

Maximum number of users per

tenant

500,000+

Maximum number of external

user invitees

None

http://office.microsoft.com/en-us/office365-sharepoint-online-enterprise-help/sharepoint-online-software-boundaries-and-limits-HA102694293.aspx

Prepare and migrate

Build new 2013 farm

Install required solutions, settings and service apps

Backup/restore SQL content DB

SharePoint database attach PowerShell (2010 mode)

Test and perform site collection upgrades (2013 mode)

Prepare content

Migrate users (if hybrid)

Configure necessary apps and services

Migrate content (user or third party tools)

Don’t move a mess!

Option Summary

AD Sync User accts on premises copied to

cloud and passwords synced

DirSync, WAADC, Azure AD

Connect

Option Summary

AD Sync User accts on premises copied to

cloud and passwords synced

DirSync, WAADC, Azure AD

Connect

AD Federation “manual”, Azure AD Connect, ADFS

2.0, certificates

Option Summary

AD Sync User accts on premises copied to

cloud and passwords synced

DirSync, WAADC, Azure AD

Connect

AD Federation “manual”, Azure AD Connect, ADFS

2.0, certificates

Migration Migrate users to cloud and remove

on premises

Third party

Option Summary

AD Sync User accts on premises copied to

cloud and passwords synced

DirSync, WAADC, Azure AD

Connect

AD Federation “manual”, Azure AD Connect, ADFS

2.0, certificates

Migration Migrate users to cloud and remove

on premises

Third party

Cloud only Users defined and live in Azure AD

only

Office 365

http://connect.microsoft.com/site1164

Primary web app

SharePoint Online

InternetMicrosoft data center Intranet

Local search

results only Site collection

Microsoft Office 365 tenant

SharePoint

SharePoint Online cannot query

SharePoint Server

• Search: One-way outbound

• Business Connectivity Services: Not supported

• Duet Enterprise for SharePoint and SAP: Not supported

SharePoint Server 2013

SharePoint Server can query SharePoint Online

Federated search

results

Outbound

Inbound

On-premises SharePoint Server 2013 Enterprise Search portal: Local and remote search results are available

SharePoint Online search portal: Local search results are available

Local search

results onlyPrimary web app

SharePoint Online

InternetMicrosoft data center Intranet

Federated search

results Site collection

Office 365 tenant

SharePoint

SharePoint Online can query SharePoint Server

• Search: One-way inbound

• Business Connectivity Services: Supported

• Duet Enterprise for SharePoint and SAP: Supported

SharePoint Server 2013

SharePoint Server cannot query SharePoint Online

Inbound

On-premises SharePoint Server 2013 Enterprise Search portal: Local search results are available

SharePoint Online search portal: Local and remote search results are available

Perimeter

network

Customer network

Outbound

Reverse proxy

Federated search

resultsPrimary web app

SharePoint Online

InternetMicrosoft data center Intranet

Federated search

results Site collection

Office 365 tenant

SharePoint

SharePoint Online can query SharePoint Server

• Search: Bidirectional

• Business Connectivity Services: Supported

• Duet Enterprise for SharePoint and SAP: Supported

SharePoint Server 2013

SharePoint Server can query SharePoint Online

Inbound

On-premises SharePoint Server 2013 Enterprise Search portal and SharePoint Online search portal: Local and remote

search results are available. If extranet authentication services are configured, extranet users can log in remotely through

an on-premises Active Directory account and use all available hybrid functionality.

Perimeter

network

Customer network

Outbound

Techniques

Not supported Full trust code

SSRS

Performance Point

Custom site definitions

Supported Access Apps & PowerBI

CSOM

REST

SharePoint Designer

InfoPath*

BCS*

SharePoint Store

Auto host, cloud hosted, SharePoint hosted apps

* depends on plan (E3)

Excel

1. Excel Prep Access App

2. Import to Access

3. Customize App

4. Open Database

5. Deploy to O365/SP

Power View

6. Connect Power Pivot

7. Pivot Tables

8. Power View Charts

9. Publish Model to Library

Power BI

10. Enable Model

11. Enable Q&A

12. Promote and Use

Administration

http://www.microsoft.com/en-us/download/details.aspx?id=35588

Add-PSSnapin Microsoft.Online.SharePoint.PowerShell

Connect-SPOService -url https://hurricanesystems-admin.sharepoint.com

-credential [email protected]

Get-SPOSite

Set-SPOSite -Identity

https://hurricanesystems.sharepoint.com/sites/Napa -StorageQuota 1000

http://office.microsoft.com/en-us/business/compare-office-365-for-business-plans-FX102918419.aspx

http://office.microsoft.com/en-us/office365-sharepoint-online-enterprise-help/sharepoint-online-software-boundaries-and-limits-HA102694293.aspx

http://technet.microsoft.com/en-us/library/sharepoint-online-service-description.aspx#bkmk_tableo365

http://technet.microsoft.com/en-us/library/hh967642.aspx

www.chrismcnulty.net/blog

http://blogs.msdn.com/b/kaevans/

http://michaelwasham.com/windows-azure-powershell-reference-guide/introduction-remote-powershell-with-windows-azure/

http://gallery.technet.microsoft.com/scriptcenter/Configures-Secure-Remote-b137f2fe

SharePoint 2013 on Windows Azure Infrastructure Serviceshttp://www.microsoft.com/en-us/download/confirmation.aspx?id=38428

SharePoint 2013 Automation Scriptshttps://github.com/windowsazure/azure-sdk-tools-samples

http://azure.microsoft.com/en-us/documentation/articles/install-configure-powershell/

Session Evaluations

Go to Evaluations on the home page of www.collabcon.org

It is important to get your feedback

Please fill out evaluations for all the sessions you attend

Following the conference, a random drawing from all completed evaluations will be selected

The winner will receive a $250 Future Shop gift card, valid online or in store

http://www.chrismcnulty.net/blog

Q&A

http://1drv.ms/QhG6zY

http://1drv.ms/1aX9VQB