Sneak Peek at Windows Server 2008
stinkymountain writes to tell us that NetworkWorld got their hands on Microsoft's latest addition to the server OS market and had a chance to poke around inside Windows Server 2008. It seems that the new release is a vast improvement over older versions in both security and performance but still lacking in several key areas. "There's even a minimalist installation called Windows Server Core that can run various server roles (such as DNS, DHCP, Active Directory components) but not applications (like SQL Server or IIS dynamic pages). It's otherwise a scripted host system for headless operations. There's no GUI front end to a Windows Server Core box, but it is managed by a command line interface (CLI), scripts, remotely via System Manager or other management applications that support Windows Management Instrumentation (WMI), or by Remote Terminal Services. It's also a potential resource-slimmed substrate for Hyper-V and virtualization architectures."
I've been playing with this at work, and for a "trimmed down CLI" version of the OS I find it telling that it uses just 60 mb of memory after booting than the GUI version and it still requires some 3.5 gb of hard drive space (this isn't precise, I'm not at work right now). And the weirdest thing about it is that it's not just command line. It actually loads, to a point, the windows GUI. There's no explorer, but the command line box it gives you is a window. You can move it with the mouse. You can open notepad, and it opens in a window. Regedit is still there. Just to see if I could, I installed Firefox. They leave out a few handy odds and ends like Explorer.exe so you don't get your usual file manager, but if they're serious about going with a real command line, this ain't it.
Maybe it does have it's place. If you just want to run basic DNS or some of the 10 or so other things it's intended to do, then at least it's going to do that for you with slightly less memory/space requirements and without quite so much other stuff running that leaves it so open to other vulnerabilities. But I still find it kind of silly, a good Sys. Admin can lock down the regular GUI version just fine and resource savings are so minimal as to be nonexistent.
But that's just my couple of cents...
you have a point there, it would be nice...
see volume shadow copy
See encrypting file system, or bitlocker.
Not sure exactly what you mean, but windows has got a pretty good fine-grained sercurity system. The main problem is out of the box it is largely turned off, and by default users are administrators.
Really? 2TB isn't enough for you?
Hmm I had never heard anyone complaining about any AD limits before so I did a quick search to find out what they were. I didn't find much, but I did see apparently korea.com has an AD implementation with 8 million accounts.
Yep, you are right, that would be nice.
See NTFS. Its only been around for 10+ years,
See DFS.