Microsoft talks up Longhorn Server security

New security features planned for the Longhorn version of Windows Server will include an automatic patch check and a file system that can fix itself, Microsoft said.

Security and reliability top Microsoft's list of promises to customers for the next major Windows Server release. On Thursday, the software maker shared some details on a few of the security and identity management features it has in store for the Windows Server, code-named Longhorn, which is due in 2007.

One of the new features is "secure-at-install," which is designed to help secure new installations of the operating system in specific server roles. When a new server is installed as a terminal server or file server, for example, the system will automatically find and apply security updates that apply to a particular role, Microsoft said.

In terms of reliability, Windows Server Longhorn will have a "self-healing" file system, Microsoft said. The system can fix itself on the fly if there is a bad sector on a hard disk or even a processor that is showing a high rate of self-correcting errors, the software maker said.

Additionally, new transactional capabilities in the Windows file system and registry will let administrators more easily roll back any changes in case of an error, Microsoft said.

Another security feature planned for the Longhorn server release is Network Access Protection, or NAP. This feature, originally planned for Windows Server 2003 R2, lets users perform a "health check" on PCs connecting to their network and block clients that don't meet rules -- for example, for patches and virus signatures. Windows Server 2003 R2 is an interim Windows Server release that is due by year's end.

When it comes to management features, Microsoft on Thursday at its Professional Developers Conference in Los Angeles shared some of its plans for Active Directory, the company's software for tracking computer users and privileges.

At an unspecified time after it releases Longhorn Server, Microsoft plans to add a Security Token Service, or STS, to Active Directory. This new service is to extend capabilities Microsoft plans to offer with Active Directory Federation Services, or ADFS, which is set to ship with Windows Server 2003 R2.

ADFS lets users create trust relationships with other Active Directory users and enable authentication across corporate boundaries. STS will offer extended federation and privacy support, and integrated resource discovery and management, among other features, Microsoft said.

STS also will support InfoCard, a code name for a new Microsoft technology designed to provide secure storage for identity information that will be shared with online services such as Web stores.

For developers, Microsoft made available at the conference code of WinFX, its next-generation programming model. WinFX is designed to make it easy for developers to use security features in Windows. Developers no longer have to write the security code for dealing with identity and access in Windows themselves, according to Microsoft.

The Professional Developers Conference ends on Friday.

Like this article? Click below to send it to your mobile for free!

Advertisement

Talkback 0 comments


ZDNet's CIO Vision Series

Video | Optus CIO Lawrie Turner

In this exclusive video interview, Optus chief information officer Lawrie Turner speaks to ZDNet.com.au about being the IT head for Australia's number two telco.

Sponsored content

Power Centre - Content from our premier sponsors

Blogs

  • Jude Willis Gutless studios have the wrong target
    I have one word for the Australian Federation Against Copyright Theft (AFACT). Gutless.
  • Array NBN needs workers on board
    Without consensus on labour issues, the eventual winner of the NBN may end up as little more than a lame duck and a cashed-up symbol of the conflict between the desire for progress and the lack of mechanisms to deliver it.
  • Array D'Ascenzo: Read p23 of security review
    Following yesterday's admission by the Australian Taxation Office that its courier had lost a CD containing the details of 3,000 self-managed super funds, it wants to review how it handles information. My suggestion: go back to the review completed in April.
  • More blogs »

Tags

Back to top

Featured