Microsoft releases MS12-063 – Cumulative Security Update for Internet Explorer

Posted by bink on September 21 2012, 6:52 PM.

Microsoft released Security Update MS12-063 to address limited attacks against a small number of computers through a vulnerability in Internet Explorer versions 9 and earlier. The majority of customers have automatic updates enabled and will not need to take any action because protections will be downloaded and installed automatically. For those manually updating, we encourage you to apply this update as quickly as possible.

In addition to addressing the issue described in Security Advisory 2757760, MS12-063 also resolves four privately disclosed vulnerabilities that are currently not being exploited.

Please watch the video below for an overview of this bulletin release, and you can find more information about this security update on the Microsoft Security Bulletin Summary web page.

TechNet Blogs

Microsoft Message Analyzer Beta

Posted by bink on September 21 2012, 3:36 PM.

Message Analyzer Icon 48Message Analyzer is the successor of Network Monitor but does much more than a network sniffer or packet tracing tool.

Key capabilities include:

  • Integrated "live" event and message capture at various system levels and endpoints
  • Parsing and validation of protocol messages and sequences
  • Automatic parsing of event messages described by ETW manifests
  • Summarized grid display – top level is “operations”, (requests matched with responses)
  • User controlled "on the fly" grouping by message attributes
  • Ability to browse for logs of different types (.cap, .etl, .txt) and import them together
  • Automatic re-assembly and ability to render payloads
  • Ability to import text logs, parsing them into key element/value pairs
  • Support for “Trace Scenarios” (one or more message providers, filters, and views)

 

Microsoft has released a beta and is working to a drive towards a mid-2013 RTM.

There is also a new blog here: http://blogs.technet.com/messageanalyzer.

(To capture at the NDIS and Firewall layers without running as admin, you must log off and back on after installation to pick up the necessary credentials. )

Sign up for the beta: https://connect.microsoft.com/site216

Microsoft Deployment Toolkit (MDT) 2012 Update 1

Posted by bink on September 20 2012, 9:21 PM.

Microsoft Deployment Toolkit (MDT) 2012 Update 1 is the newest version of MDT, a Solution Accelerator for operating system and application deployment. MDT 2012 Update 1 supports deployment of Windows 8, Windows 7, Office 2010 and 365, Windows Server 2012, and Windows Server 2008 R2 in addition to deployment of Windows Vista, Windows Server 2008, Windows Server 2003, and Windows XP.

Deploy Windows and Office 2010 with Microsoft Deployment Toolkit 2012 Update 1. MDT is the recommended process and toolset for automating desktop and server deployment. MDT provides you with the following benefits:

  • Unified tools and processes, including a set of guidance, for deploying desktops and servers in a common deployment console.
  • Reduced deployment time and standardized desktop and server images, along with improved security and ongoing configuration management.

Some of the key changes in MDT 2012 Update 1 are:
  • Added support for Windows 8 and Windows Server 2012.
  • Support for System Center 2012 Configuration Manager SP1 CTP: Added support in MDT for deploying Windows 8 and Windows Server 2012 with Configuration Manager 2012 SP1 CTP, while supporting all new Configuration Manager functionality (offline BitLocker, UEFI, and Assessment and Deployment Kit).
  • Support for DaRT 8 Beta: Updated MDT to support DaRT 8 for Windows 8 deployments, while continuing to support DaRT 7 for Windows 7 deployments. Added DaRT support for Configuration Manager scenarios.
  • New “Build Your Own Pages” User-Driven Installation (UDI) feature: Enhanced the UDI wizard and designer to enable IT pros to design their own wizard pages with little effort.
  • New System Center 2012 - Orchestrator support: Provided the ability to add steps into an OS deployment task sequence to execute Orchestrator runbooks as part of the deployment process.
  • Other improvements: Added support for Windows PowerShell 3.0, reworked Roles and Features installation logic for Windows 8, improved “boot from VHD” deployment scenarios, and added support for Configuration Manager monitoring.


Choosing the Right Version
MDT is available for x86 and x64 platforms. Select the version that corresponds with your host hardware type. Both versions of MDT 2012 support deployment of x86 and x64 Windows operating systems.
The original release of MDT 2012 Update 1 was version 6.1.2369.0 (Version 6.1 on this page), available for download on August 16, 2012. It added support for System Center 2012 Configuration Manager RTM, Windows 8 RTM, and Windows Server 2012 RTM products. It can be identified as build 6.1.2369.0 in the MDT Workbench console and in the installer program properties.
MDT 2012 Update 1 version 6.1.2373.0 (Version 6.1.1 on this page) was made available for download on September 19, 2012 and adds support for System Center 2012 Configuration Manager CU1 and System Center 2012 Configuration Manager SP1 Beta. It can be identified as MDT build 6.1.2373.0 in the MDT Workbench console or in the installer program properties. This is the latest version and we recommend all users run the latest version when they can to ensure the smoothest experience during future upgrades.
The What's New in MDT 2012 guide and Release Notes are available as separate downloads on this page for those who want to quickly evaluate MDT 2012. The full package of guidance is available in .chm format as part of the toolkit. For those who want it in Word format, a separate download is available in the Files in this Download list.

Download MDT 2012 Update 1 - Microsoft Download Center - Download Details

Security Compliance Manager (SCM) 3.0 Beta announced

Posted by bink on September 20 2012, 9:16 PM.

The Beta Review Program for Security Compliance Manager (SCM) 3.0,includes new security compliance baselines for the following Microsoft products:

  • Windows Server 2012
  • Windows 8
  • Internet Explorer 10

Now you can access the updated settings library in SCM 3.0 Beta to customize your baselines with settings that were not included in previous baselines. Take advantage of these new setting resources to define your own custom baselines, meet business-critical needs in your organization, and elevate the security of Windows Server 2012, Windows 8, and Internet Explorer 10 in your environment.

To download the SCM 3.0 Beta release,  join the new Beta Review Program available on Microsoft Connect at:https://connect.microsoft.com/site715/InvitationUse.aspx?ProgramID=7831&InvitationID=SCM3-XDK9-9QDB.

Internet Explorer Fix it available now; Security Update scheduled for Friday

Posted by bink on September 20 2012, 9:14 PM.

Microsoft has released a Fix it to address the issue affected IE 6,7,8 and 9 This fixit is much easier to implement for non techies than the workaround tool MS released along with the Security Advisory 2757760.  This is an easy, one-click solution that will help protect your computer right away.  It will not affect your ability to browse the web, and it does not require a reboot of your computer.

Then, on this Friday, Sept. 21, Microsoft will release a cumulative update for Internet Explorer through Windows Update and our other standard distribution channels.  It is highly recommended that you install this update as soon as it is available. If you have automatic updates enabled on our PC, you won’t need to take any action – it will automatically be updated on your machine.  This will not only reinforce the issue that the Fix It addressed, but cover other issues as well.

Today’s Advance Notification Service (ANS) provides additional details about the update we are releasing on Friday - MS12-063. Microsoft is planning to release this bulletin as close to 10 a.m. PDT as possible. This cumulative update for Internet Explorer has an aggregate severity rating of Critical. It addresses the publicly disclosed issue described in Security Advisory 2757760 as well as four other Critical-class remote code execution issues.

Test and deploy a.s.a.p. in your organization!

SQL Server 2012 SP1 CTP

Posted by bink on September 20 2012, 9:08 PM.

SQL Server 2012 Service Pack 1(SP1) Customer Technology Preview (CTP) is now available for download. SQL Server 2012 service packs are cumulative updates and upgrade all releases of SQL Server 2012. This service pack contains the cumulative updates up to SQL Server 2012 cumulative update 2.
What's new for SQL Server 2012 SP1:

  • AlwaysOn Availability Group OS Upgrade:
    With the release of SQL Server 2012 RTM the operating system upgrade story for AlwaysOn customers without taking significant downtime to perform a data migration does not exist. The reason behind the problem is that Windows Server 2008 and Windows Server 2008 R2 do not support an upgrade of clustered servers from previous versions, because of incompatibilities between the cluster versions.
    SQL Server 2012 SP1 provides customers a solution to do Availability Group migration from a lower version of Windows Cluster to a higher version of Windows Cluster. It can help customers to keep their SLA when upgrade their Windows Cluster operating systems.
  • Selective XML Index
    Selective XML Index allows users to promote certain paths from their XML documents that will be indexed. The improvement introduces a new type of XML index to SQL Server in addition to Primary XML Index (PXI). The new indexing will improve querying performance over data stored as XML in SQL Server, thus allow for much faster indexing of large XML data workloads and improve on scalability by reducing storage costs of the index itself.
  • FIX: DBCC SHOW_STATISTICS works with SELECT permission
    In prior releases of SQL Server, customers must have administrative or ownership permissions to run DBCC SHOW_STATISTICS successfully. PCU1 for SQL Server 2012 modifies the permission restrictions and allows users with SELECT permission to use this command.
    Note that that the following requirements exist for SELECT permissions to be sufficient to run the command:
    o Users must have permissions on all columns in the statistics object
    o Users must have permission on all columns in a filter condition (if one exists)
  • New dynamic function returns statistics properties
    The dynamic management function sys.dm_db_stats_properties returns properties of statistics for the specified database object (table or indexed view) in the current SQL Server database. User can use this function to return information such as the last time the statistics object was updated for the table or indexed view, or the number of rows that were sampled for statistical calculations.
  • SSMS Complete in Express
    SQL Server 2012 SP1 Express Editions (SQL Server Express With Tools, SQL Server Express COMP, SQL Server Express with Advanced Services and SQL Server Management Studio Express) will now ship the SSMS feature with functionalities that existed with the SSMS from Full Editions of SQL Server.
  • SlipStream Full installation
    SlipStream provides customers a pre-built “Slipstream image” consists of a compressed self-extracting .exe and a ‘.box’ payload file that contains a SQL Server 2012 RTM image (Setup.exe, MSI’s, etc.) along with the most recent Service Pack.
      o A pre-built “Slipstream image” consists of a compressed self-extracting .exe and a ‘.box’ payload file that contains an RTM image (Setup.exe, MSI’s, etc.) along with a given PCU image (MSP)
      o Customers will be able to perform new instance installations (or 2008/2008 R2 Upgrades) at the Service Pack functional level using a ‘single click’ install workflow.
  • Business Intelligence
    Business Intelligence enable self-service BI as a natural part of users day-to-day activities in Excel 2013: Discover, assess and audit user created spreadsheets via SharePoint Server 2013 Preview.
    Share and collaborate on self-service BI assets via SharePoint Server 2013 Preview and SQL Server 2012 SP1.
Download Microsoft® SQL Server® 2012 SP1 CTP

Windows 8 Product Guide for Business

Posted by bink on September 19 2012, 9:29 PM.

Download a detailed guide to the new and improved features in Windows 8 including AppLocker, BitLocker, Windows To Go, and Client Hyper-V.

The Windows 8 Product Guide for Business provides a detailed look at the many new and improved features in Windows 8 that are important to our business customers. This guide can help businesses understand how Windows 8 enables better business tablets, provides new possibilities for mobile productivity, enhances end-to-end security, and delivers manageability and virtualization enhancements.

Windows 8 Product Guide Business_English.pdf

Group Policy Settings Reference for Windows 8 and Windows Server 2012

Posted by bink on September 18 2012, 8:32 AM.

These spreadsheets list the policy settings for computer and user configurations that are included in the Administrative template files delivered with the Windows operating systems specified. You can configure these policy settings when you edit Group Policy Objects.

You can use the filtering capabilities that are included in this spreadsheet to view a specific subset of data, based on one value or a combination of values that are available in one or more of the columns. In addition, you can click Custom in the drop-down list of any of the column headings to add additional filtering criteria within that column.
To view a specific subset of data, click the drop-down arrow in the column heading of cells that contain the value or combination of values on which you want to filter, and then click the desired value in the drop-down list. For example, to view policy settings that are available for Windows Server 2012 or Windows 8, in the Administrative Template worksheet, click the drop-down arrow next to Supported On, and then click At least Microsoft Windows Server 2012 or Windows 8.


What's New?

The Administrative Template spreadsheet contains three columns that provide more information about each policy setting's behavior related to reboots, logoffs, and schema extensions. These columns are the following:

  • Reboot Required: A "Yes" in this column means that the Windows operating systems requires a restart before it applies the described policy setting.
  • Logoff Required: A "Yes" in this column means that the Windows operating system requires the user to log off and log on again before it applies the described policy setting.
  • Active Directory Schema or Domain Requirements: A "Yes" in this column means that you must extend the Active Directory schema before you can deploy this policy setting.
  • Status: A "New" in this column means that the setting did not exist prior to Windows Server 2012 and Windows 8. It does not mean that the setting applies only to Windows Server 2012 and Windows 8. Refer to the column entitled "supported on" to determine to which operating system the policy setting applies.

WindowsServer2012andWindows8GroupPolicySettings.xlsx

Forefront Identity Manager Connector for Lotus Domino 8.x

Posted by bink on September 18 2012, 8:30 AM.

Forefront Identity Manager Connector for Lotus Domino 8.x helps you synchronize identity information, easily provision and deprovision accounts and identity information and also provides password management capabilities for Lotus Domino systems.

Forefront Identity Manager Connector for Lotus Domino 8.x helps you synchronize identity information, easily provision and deprovision accounts and identity information and also provides password management capabilities for Lotus Domino systems.
Supported server versions:

  • IBM Lotus Domino 8.0.x
  • IBM Lotus Domino 8.5.x

 

Download FIM2010 Connector for Lotus Domino 8.x