Hardware + Software Solutions for The Best in Client Management & Security Malcolm Hay Intel Manager
vpro - Hardware Management & Security for the New Era of End User Computing Hardware Management Intel Active Management Hardware Security Intel Anti-Theft Intel Trusted Execution Intel Virtualization Intel Identity Protection Intel AES-NI Instructions
The Best Client Management is a Combination of Software and Hardware Headquarters Software commands executed on remote system by Management Agent Branch Office Requires functioning system OS Commands executed on remote system by Use to manage working systems booted, good drivers, agent running etc. Embedded Hardware Controller Management Console Only requirement is a hardware wired or wireless network connection Software Management Channel Management Agent Windows OS vpro Management Channel Use to manage working systems Use to fix broken systems IT Help Desk Embedded Controller PC Hardware
The Best Client Management is a Combination of Software and Hardware Boot Source Branch Office Keyboard/Video/Mouse Internal Flash System Storage Timers Power Management Agent Windows OS Hardware Control of... Embedded Controller
Primary vpro Management Functions Remote Break-Fix Full hardware KVM control of remote system Hardware Assisted Automation & Security Asset inventory out-of-band Remote power-control Automated system wake & execute Remote BIOS configuration Audit all accesses to system firmware Redirect boot source to Disk/DVD/Network Hardware monitoring of system software Hardware monitoring & filtering of network I/F
Discovering vpro Clients from Kace K1000 Dell Kace K1000 1. Execute K1000 script to send Discovery Tool to all clients 3.Upload vpro Status file to K1000 and add inventory fields vpro State & vpro Version to software inventory Client Systems 2. Discovery Tool runs on all client systems and outputs vpro State & vpro Version to XML file.
Configuring vpro Clients from Kace K1000 XML profile containing vpro configuration Intel vpro Clients Configurator Tool 1. Define vpro configuration via Intel SCS 7 wizard based utility (free download) 2. Execute K1000 script to send Configuration Tool + Configuration Data to vpro clients 3. Run Configuration Tool on vpro clients to apply settings
Broken System? Fix It Remotely Using Kace K1000 & vpro Intel AMT KVM Dell Inc. OptiPlex 990 X Settings + - System Configuration + - Video + - Security + - Performance + - Power Management + - POST Behaviour + - Virtualization Support + - Wireless + - Maintenance + - System Logs Booting admin Diagnostic Image... admin... D LL OptiPlex 990 Load Defaults BIOS Rev A01 Apply Exit Login to vpro management engine on remote client Click on computer within Kace K1000 admin console Take hardware control We to run pre-con figured Machine Action to launch Finally of remote can close boot client. the a diagnostic vpro From KVM here image Viewer can onto and control the return system the to power, in screen, keyboard, mouse, disk drives, order DVD to drives check of and the fix remote the installed client irrespective software vpro image of its KVM operating Viewer Once the We problem can reboot is standard recti fied the system K1000 we can and management reboot check/recon figure the now console working the BIOS system settings state
Using vpro with the Kace K2000 Management Appliance Headquarters Branch Office Kace K2000 Appliance PXE request Image Deployment Use vpro Management Channel to initiate PXE boot on remote system IT Help Desk Hardware
Dell KACE Appliances with Intel vpro Dell Kace K1000 Remotely Manage PC s Discovery & Inventory Asset Management Software Distribution Remote Control Security & Patching Dell Kace K2000 + Dell Notebook/Desktop with Intel vpro Remotely Install & Configure PC s OS Imaging Network OS Install User State Migration Remote PC Management & Imaging can be Achieved Irrespective of BIOS config Irrespective of power state Irrespective of working OS Irrespective of working drivers or agents Fully automated
Sources of Technical Information Intel vpro Expert Center Providing an open dialogue between Intel and the IT community Share best known methods with discussion boards and blogs Download latest tools www.intel.com/go/vproexpert Whitepaper Detailing Kace-vPro Integration Steps https://www.kace.com/resources/dell-kace-remote-management-with-intel-vpro-
Holistic Approach to Securing the Client Recovery and Enhanced Patching Intel AMT Identity Protection & Fraud Deterrence Intel Identity Protection Securing Media, Data and Assets Intel AES-NI, Intel Anti-Theft Prevention of Malware Deep Defender Intel TXT & VT
Intel Anti-Theft Protects PCs 1 Local intelligence on PC (Excessive Login Failures or Timer Expiry) detects potential theft and triggers action or PC is disabled via Poison Pill sent over Internet 2 PC shows customized message and remains disabled even if OS is re-installed or BIOS re-flashed 3 Keys for encrypted disk stored in locked chipset on motherboard so not possible to read data on disk
Prevention of Malware A New Security Platform Operates Beyond the OS Industry s First Hardware Assisted Security Platform Foundation to Deliver Future Products
The Best Client Management & Security Solutions Combine Hardware + Software Hardware Management Intel Active Management Hardware Security Intel Anti-Theft Intel Trusted Execution Intel Virtualization Intel Identity Protection Intel AES-NI Instructions