- 11 minutes to check out
This post explains a few of the brand-new functions in Windows Server 2016 that are the ones probably to have the best effect as you deal with this release.
The Virtualization location consists of virtualization items and functions for the IT expert to create, release, and preserve Windows Server.
Physical and virtual devices gain from higher time precision due to enhancements in the Win32 Time and Hyper-V Time Synchronization Services. Windows Server can now host services that are certified with upcoming guidelines that need a 1ms precision with regard to UTC.
- What’s brand-new in Hyper-V on Windows Server 2016 This subject discusses the brand-new and altered performance of the Hyper-V function in Windows Server 2016, Client Hyper-V operating on Windows 10, and Microsoft Hyper-V Server 2016.
- Windows Containers: Windows Server 2016 container assistance includes efficiency enhancements, streamlined network management, and assistance for Windows containers on Windows10 For some extra details on containers, see Containers: Docker, Windows and Trends
What’s New in Nano Server Nano Server now has actually an upgraded module for developing Nano Server images, consisting of more separation of physical host and visitor virtual device performance in addition to assistance for various Windows Server editions.
There are likewise enhancements to the Recovery Console, consisting of separation of incoming and outgoing firewall program guidelines along with the capability to fix the setup of WinRM.
Shielded Virtual Machines
Windows Server 2016 offers a brand-new Hyper-V-based Shielded Virtual Machine to secure any Generation 2 virtual maker from a jeopardized material. Amongst the functions presented in Windows Server 2016 are the following:
- A brand-new Encryption Supported mode that provides more securities than for a regular virtual device, however less than Shielded mode, while still supporting vTPM, disk file encryption, Live Migration traffic file encryption, and other functions, consisting of direct material administration benefits such as virtual device console connections and PowerShell Direct.
- Full assistance for transforming existing non-shielded Generation 2 virtual devices to protected virtual devices, consisting of automated disk file encryption.
- Hyper-V Virtual Machine Manager can now see the materials upon which a protected virtual is licensed to run, supplying a method for the material administrator to open a protected virtual device’s essential protector (KP) and see the materials it is allowed to operate on.
- You can change Attestation modes on a running Host Guardian Service. Now you can turn on the fly in between the less protected however easier Active Directory-based attestation and TPM-based attestation.
- End-to-end diagnostics tooling based upon Windows PowerShell that has the ability to spot misconfigurations or mistakes in both protected Hyper-V hosts and the Host Guardian Service.
- A healing environment that provides a method to firmly repair and fix protected virtual devices within the material in which they usually run while providing the exact same level of defense as the protected virtual device itself.
- Host Guardian Service assistance for existing safe Active Directory– you can direct the Host Guardian Service to utilize an existing Active Directory forest as its Active Directory rather of producing its own Active Directory circumstances
For more information and guidelines for dealing with protected virtual devices, see Guarded Fabric and Shielded VMs
Identity and Access
New functions in Identity enhance the capability for companies to protect Active Directory environments and assist them move to cloud-only implementations and hybrid implementations, where some applications and services are hosted in the cloud and others are hosted on properties.
Active Directory Certificate Services
Active Directory Certificate Services (ADVERTISEMENT CS) in Windows Server 2016 increases assistance for TPM essential attestation: You can now utilize Smart Card KSP for essential attestation, and gadgets that are not signed up with to the domain can now utilize NDES registration to get certificates that can be confirmed for secrets remaining in a TPM.
Active Directory Domain Services
Active Directory Domain Services consists of enhancements to assist companies protected Active Directory environments and offer much better identity management experiences for both business and individual gadgets. To learn more, see What’s brand-new in Active Directory Domain Services (ADVERTISEMENT DS) in Windows Server 2016
Active Directory Federation Services
What’s New in Active Directory Federation Services. Active Directory Federation Services (ADVERTISEMENT FS) in Windows Server 2016 consists of brand-new functions that allow you to set up advertisement FS to validate users kept in Lightweight Directory Access Protocol (LDAP) directory sites. To find out more, see What’s New in Advertisement FS for Windows Server 2016
Web Application Proxy
The most current variation of Web Application Proxy concentrates on brand-new functions that make it possible for publishing and pre-authentication for more applications and enhanced user experience. Take a look at the complete list of brand-new functions that consists of pre-authentication for abundant customer apps such as Exchange ActiveSync and wildcard domains for simpler publishing of SharePoint apps. For additional information, see Web Application Proxy in Windows Server 2016
The Management and Automation location concentrates on tool and recommendation info for IT pros who wish to run and handle Windows Server 2016, consisting of Windows PowerShell.
Windows PowerShell 5.1 consists of substantial brand-new functions, consisting of assistance for establishing with classes and brand-new security functions that extend its usage, enhance its use, and permit you to manage and handle Windows-based environments more quickly and adequately. See New Scenarios and Features in WMF 5.1 for information.
New additions for Windows Server 2016 consist of: the capability to run PowerShell.exe in your area on Nano Server (no longer remote just), brand-new Local Users & Groups cmdlets to change the GUI, included PowerShell debugging assistance, and included assistance in Nano Server for security logging & transcription and JEA.
Here are some other brand-new administration functions:
PowerShell Desired State Configuration (DSC) in Windows Management Framework (WMF) 5
Windows Management Framework 5 consists of updates to Windows PowerShell Desired State Configuration (DSC), Windows Remote Management (WinRM), and Windows Management Instrumentation (WMI).
For more details about evaluating the DSC functions of Windows Management Framework 5, see the series of article talked about in Validate functions of PowerShell DSC To download, see Windows Management Framework 5.1
PackageManagement merged bundle management for software application discovery, setup, and stock
Windows Server 2016 and Windows 10 consists of a brand-new PackageManagement function (previously called OneGet) that allows IT Professionals or DevOps to automate software application discovery, setup, and stock (SDII), in your area or from another location, no matter what the installer innovation is and where the software application lies.
For more information, see https://github.com/OneGet/oneget/wiki
PowerShell improvements to help digital forensics and help in reducing security breaches
To assist the group accountable for examining jeopardized systems – in some cases referred to as the “blue group” – we’ve included extra PowerShell logging and other digital forensics performance, and we’ve included performance to help in reducing vulnerabilities in scripts, such as constrained PowerShell, and protected CodeGeneration APIs.
For more details, see the PowerShell ♥ heaven Team article.
The Networking location addresses networking items and functions for the IT expert to create, release, and keep Windows Server 2016.