12 out of 18 rated this helpful - Rate this topic

Security and Protection Overview

Published: February 29, 2012

Updated: August 8, 2012

Applies To: Windows Server 2012

This collection contains descriptions and links to information about security technologies in Windows Server 2012 and Windows 8.

The following table provides links to available information for the IT professional about security technologies and features for Windows Server 2012 and Windows 8. More technologies and features will be added to this table as content becomes available.

 

Feature/Technology Overview What’s Changed

Access Control

Access Control and Authorization Overview

Access control helps protect files, applications, and other resources from unauthorized use.

Dynamic Access Control Technical Preview

AppLocker

AppLocker Overview

AppLocker provides policy-based access control management for applications.

Packaged Apps and Packaged App Installer Rules in AppLocker

BitLocker

BitLocker Overview

BitLocker Drive Encryption enables you to encrypt all data that is stored on the operating system volume and configured data volumes for computers running supported versions of Windows. By using a Trusted Platform Module (TPM), it can help ensure the integrity of early startup components.

What's New in BitLocker

Credential Locker

Credential Locker Overview

Credential Locker is managed through the Control Panel by Credential Manager

New and changed functionality

Encrypted Hard Drive

Encrypted Hard Drive

Encrypted Hard Drive is a feature that is provided with BitLocker to enhance data security and management.

Support for Encrypted Hard Drives for Windows

Group Managed Service Accounts

Group Managed Service Accounts Overview

The group Managed Service Account provides the same functionality as the standalone Managed Service Account within the domain, and it extends that functionality over multiple servers.

What's New for Managed Service Accounts

Kerberos

Kerberos Authentication Overview

Kerberos protocol is an authentication mechanism that verifies the identity of a user or host.

What's New in Kerberos Authentication

NTLM

NTLM Overview

The NTLM authentication protocols authenticate users and computers based on a challenge and response mechanism that proves to a server or domain controller that a user knows the password associated with an account.

No changes

Passwords

Passwords Overview

The most common method for authenticating a user's identity is to use a secret passphrase or password as part of the sign in process.

No changes

Security Auditing

Security Auditing Overview

Security auditing is one of the most powerful tools to help maintain the security of your system. Security auditing should identify attacks (successful or not) that pose a threat to your network, or attacks against resources that you have determined through risk assessment to be valuable.

What's New in Security Auditing

Security Configuration Wizard

Security Configuration Wizard

The Security Configuration Wizard is an attack-surface reduction tool that helps administrators create security policies that are based on the minimum functionality required for a server's roles.

No changes

Security Policy Settings

Security Policy Settings Overview

Security policy settings are the configurable rules that the operating system follows when it determines the permissions to grant in response to a request for access to resources.

New and changed functionality

Smart Cards

Smart Card Overview

Smart cards provide a tamper-resistant and portable security solution for tasks such as authenticating clients, signing in to domains, signing code, and securing email.

What's New in Smart Cards

Software Restriction Policies

Software Restriction Policies

Software Restriction Policies (SRP) is Group Policy-based feature that identifies software programs running on computers in a domain, and controls the ability of those programs to run.

No changes

TLS/SSL (Schannel SSP)

TLS/SSL (Schannel SSP) Overview

Schannel is a Security Support Provider (SSP) that implements the Secure Sockets Layer (SSL) and Transport Layer Security (TLS) Internet standard authentication protocols.

What's New in TLS/SSL (Schannel SSP)

Trusted Platform Module (TPM)

Trusted Platform Module Technology Overview

Trusted Platform Module (TPM) technology is designed to provide hardware-based, security-related functions.

New and changed functionality

User Account Control (UAC)

User Account Control Overview

UAC helps mitigate the impact of a malicious program.

New and changed functionality

Windows Authentication and Logon

Windows Authentication Overview

This collection includes:

  • Windows Biometric Framework

  • Kerberos Authentication

  • NTLM

  • Passwords

  • TLS/SSL (Schannel SSP)

For changes in these technologies, see the overviews that are listed for each within this table.

Windows Biometric Framework

Windows Biometric Framework Overview

The Windows Biometric Framework (WBF) is a set of services and interfaces that permit consistent development and management of biometric devices, such as fingerprint readers. WBF improves the reliability and compatibility with biometric services and drivers.

New and changed functionality

See Also

Did you find this helpful?
(1500 characters remaining)

Community Additions

ADD
© 2013 Microsoft. All rights reserved.