office 365 for it pros - sps michigan 2012

42
Office 365 for IT Pros

Upload: john-ferringer

Post on 14-Dec-2014

2.405 views

Category:

Technology


3 download

DESCRIPTION

One of the common misconceptions about “the cloud” is that it can reduce a company’s IT overhead and expenses. That’s not to say that an organization can’t or won’t save money by going to a cloud service like Office 365, but there are a lot of times when the amount of effort involved in making that move is not immediately apparent. This session will provide attendees with an overview of the most common activities that organizations will find require technical expertise and knowledge when taking their business “to the Cloud!” with Office 365. It will also explore the technical details of those activities, providing IT Pros with an understanding of how they can be executed as well as tips and tricks to help ensure a successful deployment.

TRANSCRIPT

Page 1: Office 365 for IT Pros - SPS Michigan 2012

Office 365 for IT Pros

Page 2: Office 365 for IT Pros - SPS Michigan 2012

Blog: http://www.MyCentralAdmin.com Twitter: @ferringer

Page 3: Office 365 for IT Pros - SPS Michigan 2012

3 | SharePoint Saturday Michigan 2012

Housekeeping

Please turn off all electronic devices or set them to vibrate.

If you must take a phone call, please do so in the hall so as not to disturb others.

Wireless is available to all attendees with a valid Michigan ID, just find the nearest sign-up terminal

Follow SharePoint Saturday Michigan on Twitter @spsmi and hashtag #spsmi

Join us for SharePint after the closing

Chammps 301 West Big Beaver Road Troy, MI 48084

Page 4: Office 365 for IT Pros - SPS Michigan 2012

4 | SharePoint Saturday Michigan 2012

Outline

Office 365 Overview

IT and the Cloud

What we give up

What we get back

Pain points

Page 5: Office 365 for IT Pros - SPS Michigan 2012

5 | SharePoint Saturday Michigan 2012

Email and Calendaring

Websites and Collaboration

IM and Online Meetings

Office Client and Web Apps

Hosted by Microsoft – in the cloud!

Page 6: Office 365 for IT Pros - SPS Michigan 2012

6 | SharePoint Saturday Michigan 2012

Office 365 Overview

IT and the Cloud

What we give up

What we get back

Pain points

Page 7: Office 365 for IT Pros - SPS Michigan 2012

7 | SharePoint Saturday Michigan 2012

Did Someone say Cloud?

Page 8: Office 365 for IT Pros - SPS Michigan 2012

8 | SharePoint Saturday Michigan 2012

What’s Your Perspective?

Page 9: Office 365 for IT Pros - SPS Michigan 2012

9 | SharePoint Saturday Michigan 2012

Office 365’s impact on IT

No more deep platform management

Less control over functionality

More Identity Management

Hybrid challenges

Page 10: Office 365 for IT Pros - SPS Michigan 2012

10 | SharePoint Saturday Michigan 2012

Office 365 Overview

IT and the Cloud

What we give up

What we get back

Pain points

Page 11: Office 365 for IT Pros - SPS Michigan 2012

11 | SharePoint Saturday Michigan 2012

Changing the perspective

Your Environment

Page 12: Office 365 for IT Pros - SPS Michigan 2012

12 | SharePoint Saturday Michigan 2012

Losing Control

No tweaking

No fine customization

No server installs

No storage management

No patching

No networking

No upgrades

*

Page 13: Office 365 for IT Pros - SPS Michigan 2012

13 | SharePoint Saturday Michigan 2012

Office 365 Overview

IT and the Cloud

What we give up

What we get back

Pain points

Page 14: Office 365 for IT Pros - SPS Michigan 2012

14 | SharePoint Saturday Michigan 2012

What we get back

Who can do what?

Accounts and Subscriptions

How do you manage Identity?

Remember the client

Maintaining the connection

Page 15: Office 365 for IT Pros - SPS Michigan 2012

15 | SharePoint Saturday Michigan 2012

Subscriptions

No more CALs

Now you have USLs

Must assign licenses

Dynamic assignment

Page 16: Office 365 for IT Pros - SPS Michigan 2012

17 | SharePoint Saturday Michigan 2012

Office 365 user roles

End Users

Service administrators

Exchange Online

SharePoint Online

Lync Online

Office 365 administrators

External users

Page 17: Office 365 for IT Pros - SPS Michigan 2012

18 | SharePoint Saturday Michigan 2012

Office 365 admin roles

Global administrator

Billing administrator

Password administrator

Services administrator

User management administrator

Delegated administrator

See the Office 365 Support Services Description document for more info:

http://tinyurl.com/o365SvcDescrs

Page 18: Office 365 for IT Pros - SPS Michigan 2012

19 | SharePoint Saturday Michigan 2012

Identity: who gets in?

Where do your Office 365 user accounts live?

What is needed to use them?

What can they do?

What are the limitations of the approach?

Page 19: Office 365 for IT Pros - SPS Michigan 2012

20 | SharePoint Saturday Michigan 2012

Identity Options 1. Microsoft Online (MSO) IDs

2. MSO IDs + Directory Synchronization

3. Single Sign On + Directory Synchronization

Your Environment

AD

MS Online Directory Sync

Identity Services

Provisioning platform

Lync Online

SharePoint Online

Exchange Online

Active Directory Federation Services 2.0

Trust

IdP Directory

Store

Admin Portal/ PowerShell

Authentication platform

Office 365 Desktop Setup

Microsoft Online Services

IdP

Page 20: Office 365 for IT Pros - SPS Michigan 2012

21 | SharePoint Saturday Michigan 2012

What can they do?

Appropriate for • Smaller orgs without

AD on-premise

Pros • No servers required on-

premise

Cons • No SSO • No 2FA • 2 sets of credentials to

manage with differing password policies

• IDs mastered in the cloud

Appropriate for • Medium/Large orgs with

AD on-premise

Pros • Users and groups

mastered on-premise • Enables co-existence

scenarios Cons • No SSO • No 2FA • 2 sets of credentials to

manage with differing password policies

• Single server deployment

Appropriate for • Larger enterprise orgs

with AD on-premise Pros • SSO with corporate cred • IDs mastered on-premise • Password policy

controlled on-premise • 2FA solutions possible • Enables co-existence

scenarios Cons • High availability server

deployments required

Page 21: Office 365 for IT Pros - SPS Michigan 2012

22 | SharePoint Saturday Michigan 2012

Sign On Experience *SSO vs. Online IDs Summary

Win7/Vista/XP

SSO IDs (domain joined)

MS Online IDs

Outlook Web Application

SharePoint Web Application

ActiveSync, POP, IMAP, Entourage

Outlook 2007 or 2010

Online ID Online ID Online ID

Win 7/Vista/XP

Office 2010, or Office 2007 SP2

Online ID

Win7/Vista/XP

Lync Online

Online ID

AD credentials AD credentials AD credentials AD credentials AD credentials

SSO IDs (non-domain joined) AD credentials AD credentials AD credentials AD credentials AD credentials

*Requires AD FS 2.0

Page 22: Office 365 for IT Pros - SPS Michigan 2012

23 | SharePoint Saturday Michigan 2012

Your Environment

AD

MS Online Directory Sync

Identity Services

Lync Online

SharePoint Online

Exchange Online

Active Directory Federation Services 2.0

Trust

IdP Directory

Store

Authentication platform

Office 365 Desktop Setup

Microsoft Online Services

Active Directory Federation Services (AD FS)

Page 23: Office 365 for IT Pros - SPS Michigan 2012

24 | SharePoint Saturday Michigan 2012

How does AD FS work?

Claims authentication

Think of it like a passport

Passport Application

Visa Application

Submit for authorization

Allowed access

Page 24: Office 365 for IT Pros - SPS Michigan 2012

25 | SharePoint Saturday Michigan 2012

AD FS’s Authentication flow

`

Client

(joined to CorpNet)

Authentication platformAD FS 2.0 Server

Exchange Online or

SharePoint Online

Active Directory

Your Environment Microsoft Online Services

Logon (SAML 1.1) Token UPN:[email protected] Source User ID: ABC123

Auth Token UPN:[email protected] Unique ID: 254729

Page 25: Office 365 for IT Pros - SPS Michigan 2012

26 | SharePoint Saturday Michigan 2012

AD FS 2.0 deployment options 1. Single server configuration

2. AD FS 2.0 server farm and load-balancer

3. AD FS 2.0 proxy server or UAG/TMG (External Users, Active Sync, Outlook)

Enterprise

DMZ

AD FS 2.0 Server Proxy

External user Internal

user

Active Directory

AD FS 2.0 Server

AD FS 2.0 Server

AD FS 2.0 Server Proxy

Page 26: Office 365 for IT Pros - SPS Michigan 2012

28 | SharePoint Saturday Michigan 2012

Directory Synchronization

One-way copy of accounts to Office 365

Required for SSO/AD FS

But can be used without AD FS

Required for Hybrid scenarios

Think of it as an appliance, always running

Page 27: Office 365 for IT Pros - SPS Michigan 2012

29 | SharePoint Saturday Michigan 2012

Your Environment

AD

MS Online Directory Sync

Identity Services

Lync Online

SharePoint Online

Exchange Online

Active Directory Federation Services 2.0

Trust

IdP Directory

Store

Authentication platform

Office 365 Desktop Setup

Microsoft Online Services

IdP

How DirSync Fits in

Page 28: Office 365 for IT Pros - SPS Michigan 2012

30 | SharePoint Saturday Michigan 2012

Getting to know DirSync

It’s actually Forefront Identity Manager

Copies AD accounts into Office 365

But not back down

Doesn’t sync passwords

Filtering now available

Can have sizing issues

Upload sizing

Database sizing

FIM: no touchy! (maybe)

Page 29: Office 365 for IT Pros - SPS Michigan 2012

31 | SharePoint Saturday Michigan 2012

We still have those silly users…

OS compatibility

Office compatibility

Single sign on

Training

Transitions

Mobile

Page 30: Office 365 for IT Pros - SPS Michigan 2012

32 | SharePoint Saturday Michigan 2012

None of this works without…

What kind of connection do you have?

How big is it?

How reliable is it?

Is it redundant?

Page 31: Office 365 for IT Pros - SPS Michigan 2012

33 | SharePoint Saturday Michigan 2012

Office 365 Overview

IT and the Cloud

What we give up

What we get back

Pain points

Page 32: Office 365 for IT Pros - SPS Michigan 2012

34 | SharePoint Saturday Michigan 2012

Are you supportive? Know what you get

What are you responsible for?

Who are you dealing with?

Does it meet your requirements?

Page 33: Office 365 for IT Pros - SPS Michigan 2012

35 | SharePoint Saturday Michigan 2012

Where did it go?

Page 34: Office 365 for IT Pros - SPS Michigan 2012

36 | SharePoint Saturday Michigan 2012

No upgrades?

Page 35: Office 365 for IT Pros - SPS Michigan 2012

37 | SharePoint Saturday Michigan 2012

Managing Identity in Office 365

AD FS is complex

And important!

PowerShell is your friend

Remember your internet connection?

Office 365 is constantly changing

Page 36: Office 365 for IT Pros - SPS Michigan 2012

38 | SharePoint Saturday Michigan 2012

Did someone say PowerShell?

Page 37: Office 365 for IT Pros - SPS Michigan 2012

39 | SharePoint Saturday Michigan 2012

A tale of two shells

(soon three)

Page 38: Office 365 for IT Pros - SPS Michigan 2012

40 | SharePoint Saturday Michigan 2012

Troubleshooting Tools

Microsoft Online Diagnostics and Logging tool (MOSDAL)

Microsoft Remote Connectivity Analyzer: HTTP://testexchangeconnectivity.com

Fiddler

WireShark/Netmon

Office 365 Expert Discussion Series: http://tinyurl.com/o365ExptDisc

Page 39: Office 365 for IT Pros - SPS Michigan 2012

41 | SharePoint Saturday Michigan 2012

Tie IT All Together

Page 40: Office 365 for IT Pros - SPS Michigan 2012
Page 41: Office 365 for IT Pros - SPS Michigan 2012

43 | SharePoint Saturday Michigan 2012

Event

Exhibit

Web

Page 42: Office 365 for IT Pros - SPS Michigan 2012

Blog: http://www.MyCentralAdmin.com Twitter: @ferringer