Technologie Intel® vPro™ & Intel® Centrino® vPro™ Marcin Pawlicki Odkryj zarządzanie IT takie, jakim powinno być 1
Uwagi prawne Intel processor numbers are not a measure of performance. Processor numbers differentiate features within each processor family, not across different processor families. See www.intel.com/products/processor_number for details. Enabling Execute Disable Bit functionality requires a PC with a processor with Execute Disable Bit capability and a supporting operating system. Check with your PC manufacturer on whether your system delivers Execute Disable Bit functionality. 64-bit computing on Intel architecture requires a computer system with a processor, chipset, BIOS, operating system, device drivers and applications enabled for Intel® 64 architecture. Processors will not operate (including 32-bit operation) without an Intel® 64 architecture-enabled BIOS. Performance will vary depending on your hardware and software configurations. Consult with your system vendor for more information. Intel® Active Management Technology requires the platform to have an Intel® AMT- enabled chipset, network hardware and software, connection with a power source, and a network connection. Intel® Virtualization Technology requires a computer system with an enabled Intel® processor, BIOS, virtual machine monitor (VMM) and supporting software applications. Functionality, performance or other benefits will vary depending on hardware and software configurations and may require a BIOS update. Virtualization software applications may not be compatible with all operating systems. Please check with your application vendor. Some HD Audio functionality is dependent on actual implementation, controller, and codec Copyright © 2006 Intel Corporation. All rights reserved. Intel, the Intel logo, Intel. Leap ahead., the Intel. Leap ahead. logo, Centrino, the Centrino logo, Intel Core, Core Inside, Intel Core 2 Duo, the Intel Core 2 Duo logo, vPro, the vPro logo, Intel SpeedStep, Pentium, Pentium Inside and Celeron are trademarks or registered trademarks of Intel Corporation or its subsidiaries in the United States and other countries. * Użyte nazwy własne, marki handlowe i znaki towarowe innych firm są własnością tych firm
... zarządzanie IT zmieniło się Najlepsze technologie firmy Intel dla desktopów i laptopów biznesowych Proaktywne bezpieczeństwo Wbudowane sprzętowe zarządzanie Wydajne i energooszczędne Szerokie wsparcie oprogramowania zarządzającego ... zarządzanie IT zmieniło się 3
Wbudowane zdalne zarządzanie PC Technologia Intel® vPro™ i Intel® Centrino® vPro™ Nowe możliwości i wydajność dla biznesu Zdalny odczyt informacji o konfiguracji sprzętowej komputera Zdalna diagnostyka i naprawa błędów/uszkodzen systemu operacyjnego nawet gdy komputer nie uruchamia się Nazdór nad pracą krytycznych elementów bezpieczeństwa* Wbudowane zdalne zarządzanie PC Szyfrowany dostęp i możliwość instalacji uaktualnień Sprzętowa izolacja wirusów od sieci Kontrola pracy oprogramowania antywirusowego Przyszłe możliwości uruchomienia aplikacji bezpieczeństwa w oddzielnej maszynie wirtualnej Proaktywne bezpieczeństwo komputera Dwurdzeniowy procesor Intel® Core™2 Ograniczony pobór energii (DT) i dłuższa praca na baterii (LPT) Większa wydajność dla aplikacji bezpieczeństwa i zarządzania Gotowa na 64-bitowe systemy operacyjne i nowe aplikacje Wydajość i energoszczędność Wspolny standard platformy oferowany przez wszystkich wiodacych dostawców PC Wspierana przez wiodących dostawców usług outsourcingu IT Szerokie wsparcie oprogramowania zarządzającego i aplikacji Zgodna z MS Vista Premium (Aero Glass interface) Gotowa do pracy od zaraz * Oprogramowanie musi posiadać funkcje obsługi technologii Intel® AMT
Co musi zawierać PC z technologią Intel® vPro™ ? Intel® Core™2 E6x50 Processor Intel® Q35 w/ ICH9-DO Express Chipset Intel® 82566DM-2 Gigabit Network Connection Intel® vPro™ technology: Technology for the next generation of enterprise-level systems Designed for business, with significantly improved performance for compute-intensive tasks Built-in management and security capabilities to meet critical business demands Intel Platform Software & Ecosystem Solutions Intel Key Platform Technologies Intel® Trusted Execution Technology Wsparcie dla nowych standardów zarządzania :WS-MAN and DASH* Trusted Platform Module v1.2 5
Skokowy wzrost wydajności…. 1. Intel® Core 2 Duo processor E6300, September 2006 2. Intel® Core 2 Duo processor E6550, August 2007 3. Intel® Core 2 Duo processor E6700, September 2006 4. Intel® Core 2 Duo processor E6850, August 2007 30% Wzrost wydajności 162 143 128 SYSmark* 2007 Preview 98 KEY POINT: From the time of its introduction to the launch of the 2007 platform, vPro has made significant leaps in performance. The large leap in the low-bin category can be attributed to higher frequencies and doubling of the cache from 2MB to 4MB. We were able to double the cache at the same price thanks to our very healthy 65nm processes ramp. Source: Intel. See Backup for system configurations and important information 20061 20072 20063 20074 Najniższa dostępna częstotliwość zegara procesora platformy Najwyższa dostępna częstotliwość zegara platformy *Other brands may be claimed as the property of others. 6 6
…przy znacznej redukcji poboru energii 1. Intel® Core 2 Duo processor E6xxx sequence, September 2006 2. Intel® Core 2 Duo processor E6x50 sequence, August 2007 3. Intel® Q965 Express chipset with ICH8-DO, September 2006 4. Intel® Q35 Express chipset with ICH9-DO, August 2007 Max obciążenie 65W 65W >55% Redukcja >60% Redukcja Pobór energi [W] 31W >55% Redukcja 22W 13W 13W 8W 5.5W KEY POINT: The large leaps in performance from 2006 to 2007 were also accompanied by substantial reductions in silicon power. The idle power numbers are most significant since they are key to Energy Star compliance. Energy Star is measured at the system level, so Intel’s parts are not “Energy Star compliant.” But these reductions make a substantial contribution to system OEMs to create compliant PCs. 20061 20072 20061 20072 20063 20074 20063 20074 Source: Intel published specifications Processor Max Power (TDP) Processor Idle Power Chipset Max Power (TDP) Chipset Idle Power 7
Co musi zawierać laptop z technologią procesorową Intel® Centrino® Pro? Intel® Core™2 Processor with up to 4MB L2 Cache and 800 MHz FSB Mobile Intel® GM965/PM965 Express Chipset w/ ICH8M- Enhanced or ICH8M-S Enhanced Intel® Next-Gen Wireless: 4965AGN or 4965AG Intel® 82566MM Gigabit Network Connection Optional : Intel® Turbo Memory
Spójne zarządzania desktopami i laptopami Software Vendors IT Outsourcer Systems Management Server 2003 R2 System Center Configuration Manager SP1 2H’08 HP OV OOB MC Value of Centrino Pro = All of the goodness of Centrino Duo + manageability and security. Addressing what IT needs – mobility, reduction in operating costs/risk so they can invest more in strategic projects Cross Client Consistency between vPro (desktops) and Centrino Pro (notebooks) Businesses are telling us they want the same capabilities across their clients, they want to use the same software to manage them … we’re delivering and working to reduce the costs of managing and securing IT’s PC fleet Centrino Pro and the current shipping vPro AMT functionality is exactly the same in the wired/AC configuration. We extended the capabilities to WLAN with Centrino Pro You can use the same Management Console to manage your vPro and Centrino Pro systems (plus you can even use it to manage your non-Pro systems but you don’t get the OOB capabilities that our hardware assisted capability delivers. OOB = unhealthy OS or software, powered off) Tucker Speaker Notes: Consistency across IT’s infrastructure is key to reducing costs. Centrino Pro is designed to reduce the operational costs so businesses can spend more money and time on innovative technologies to give their company a competitive advantage. Centrino Pro complements the vPro desktop bringing the same wired manageability/security features plus adding in the wireless capabilities There’s no need to change your management software, you can use the same ISV solution to now manage the vPro and Centrino Pro PCs The “Pro” platforms are the best PCs for your business PCs with Proactive Security can reduce the time to deploy security updates by up to 86%. Additional Notes: Building on a common technology foundation, notebooks with Intel Centrino Pro and desktops with Intel vPro processor technology offer a unified approach for managing and securing computers throughout your organization. With te latest IT management consoles, you can manage your notebooks and desktops over a wired or secure wireless network even if the OS is inoperable or the PC is powered off. In a recent Gartner Group study released in March, 2007, it found that businesses spend up to 86% on operational related expenses to keep the business running and on break fix leaving only 14% of their budgets to put into innovation to move their business ahead Of all of the support calls that come into a corporate help desk, only 10-15% actually result in a deskside visit. But these deskside visits can account for up to 50% of the cost to support PCs. Reducing deskside visits can dramatically reduce your operational costs and improve employee productivity Intel Centrino Pro processor technology brings the best of our offering with Intel vPro processor technology and adds it right into our highly successful Intel Centrino brand for laptops PCs with Proactive Security can reduce the time to deploy security updates by up to 86%. Atos-Origin Lab Evaluation Tests – April 2006 “Improving IT services and increasing user uptime with Intel® vPro™ technology.” MAY WANT TO RUN CUSTOMER TESTIMONIAL VIDEO HERE OR LATER IN DECK IN THE BROAD INDUSTRY SUPPORT SECTION Single Management Console * Other names and brands may be claimed as the property of their respective owners.
Zintegrowana grafika Intela: GMA 3100(w Q35) i GMA X3100 (w GM965) zgodna z logo “Windows Vista Premium Ready” Pełna obsługa interfejsu graficznego AERO /Vista Premium przez grafikę zintegrowana z chipsetem intela Nie jest wymagana osobna karta graficzna (niższy koszt, niższy pobór energii, spójny instalacja sterowników) Sterowniki Vista WDDM dostępne wraz ze sprzętem lub na stronie intela: support.intel.com oraz Windows Update
Zdalne zarządzanie PC –technologia Intel® AMT Zapewnia wbudowane sprzętowe zarządzanie i proaktywne bezpieczeństwo dla komputerów w sieci Wykrywanie – Zdalne zarządzanie PC niezależnie od stanu ich włączenia i stanu systemu operacyjnego Informacja HW i SW inventory Naprawa – Diagnostyka i naprawa zdalnych PC dzięki kombinacji : SOL (Serial Over Lan) - Zdalne przechwycenie ekranu tekstowego i klawiatury, IDE-R - (remote boot device redireciton) Uruchomienie komputera ze zdalnego obrazu (ISO/IMG) zawierającego narzędzia naprawcze. Zabezpieczenie: System Defence - Wbudowany sprzętowy firewall Agent presence - kontrola pracy SW antywirusowego,firewall, itp Discover: Intel® Active Management Technology enables IT to collect information about PCs even if they are not powered on or functional, ensuring IT managers can identify, list and track all systems on the network. Heal: Intel® Active Management Technology enables IT to diagnose and repair out-of-band (OOB) systems. For example, if an OS has failed, IT establishes a remote control session to the failed system and remotely reboots it from a known good image on a remote drive. After reboot, IT remotely manages the reinstallation of the OS. Protect: Intel® Active Management Technology can reduce exposure to viruses and worms by helping to remotely monitor protection agent versions regardless of system state and push updates to PCs that are down wire. Zmniejszony koszt zarządzania PC dzięki Intel® Active Management Technology www.intel.com/technology/manage/iamt/
SW Diagnostics/Agents/Applications Intel® Active Management Technology – µkontroler zarządzający Management Engine Operating System SW Diagnostics/Agents/Applications Network Driver Management Engine Driver System Defense Management Engine FLASH BIOS ME Services NV Memory Intel AMT Firmware Intel AMT Private Intel AMT Public LAN Controller OOB Comms Filter SOAP TCP/IP TLS Confidentiality HTTP Authorization HW Sensors & AFSC PHY Intel® Q35 Express Chipset = Out-of-band; Active even when System is turned off or OS is down = In Band W 100% niezależne od głównego procesora: pamięć nieulotna Flash mikrokontroler Management Engine i komunikacja sieciowa TCP/IP
Technologia Intel® vPro™ -szerokie wsparcie producentów sprzętu i software zarządzającego Choice Value Chain Choose Hardware Vendor Choose Management Capabilities Choose Software Software supporting Intel vPro technology Hardware supporting Intel vPro technology PC Management Options* Intel® AMT Client Management Suite Dell Client Manager HP Client Manage FSC DeskView Key Points This foil flows from left to right: Overall, Intel vPro technology provided ultimate flexibility Choose from a wide array of hardware vendors With Intel vPro technology, you have the option to choose which management features you want to use – ASF or Intel AMT Depending on your choice for the above, you have various options for software that can extract the features – Intel vPro technology obviously having more choices ASF Software supporting ASF Client Management Suite Dell Client Manager HP Client Manage FSC DeskView * Check with your OEM on availability of ASF support.
Współpraca Microsoft SCCM SP1* z technologią Intel® vPro™ 14
Obsługa Intel AMT v.3.2 w Microsoft System Center Configuration Manager SP1 Intel AMT v3 (Q35) Features SMS 2003 Intel AMT Add-on v3.1* MS SCCM SP1 Native Support SCOM, SCE Intel AMT Mgmt Pack* Availability 12/17/07 Expected 2H’08 11/07 Remote Power Control Yes Redirection IDE-Redirect (IDE-R) Serial Over LAN (SOL) Third-Party Data Store (3PDS) No Hardware Asset Info Yes Events/PET Alerts Subscribe for Events - ASF - AMT-Specific (~10) User Notification (local) (+ display) Agent Presence No System Defense Heuristic Policies General Info Provisioning State Firmware version IDER Session Logs Set-up and Configuration Intel SCS v3.1(EOI Only) SCCM SP1 (WS-MAN only) Intel SCS v3.2 Microsoft SCCM SP1 zapewni natywną obsługę technologii Intel AMT 3.2 poprzez protokół WS-Management Obsługa wcześniejszych wersji iAMT2.x, 3.0/3.1 poprzez Intel WS-Management Translator –dostępny jako opcja instalacji MS SCCM SP1 (przekierowanie do strony WWW intela) Obsługa Bitlocker razem z Intel AMT Obsługiwane w Intel Add-on for SMS v3.1 & MS SCCM SP1 MS SCCM SP1 obsługuje wyłącznie (wymusza) tryb Enterprise –szyfracja TLS The SCCM SP1 Client agent does not support AMT Agent Presence. An use case around Agent Presence can be illustrated by disabling the Client Agent causing the System Defense Policy to trip allow only access to a remediation network. Today, Microsoft does not support this use case, although we are continuing to work with them to adopt it natively SCCM = System Center Configuration Manager SCOM = System Center Operations Manager SCE = System Center Essentials * Supports both AMT v2.x and AMT v3 15 15