Chương trình nâng cấp từ Live@edu lên Office 365 cho Giáo dục Việt Nam


image

Kế hoạch nâng cấp từ Live@edu lên Office 365 của bạn

trong tháng năm 2013

O365newimage

I. Những việc cần làm ngay:

Các bạn nên chuẩn bị các công việc trước khi nâng cấp từ Live@edu lên Office 365 “Check list to do” như sau:

Hãy dùng tài khoản Administrator và truy cập trang http://eduadmin.live.com

Bước 1. Mở mục: Institution profile

– Hãy thay mã số bưu điện (Zip code/ Post code) thành 100000

image

Bước 2. Hãy kiểm tra mục Contacts for critical notifications và Administrator contact information

hãy thêm 2 địa chỉ email của nhóm hỗ trợ kỹ thuật NOVA Digital , chúng tôi luôn bên cạnh bạn:

thanglt@novadigital.vn ( CIO, chuyên tư vấn giải pháp công nghệ Microsoft Office 365 Cloud and Online Service).

bonnv@novadigital.vn (CTO, chuyên xử lý các tình huống sự cố phức tạp trên Microsoft Office 365 Cloud App, Live@edu services, MOS).

image

Trường hợp cần số điện thoại hỗ trợ: xin hãy nhập thêm 2 số Mobile của NOVA Digital Hotline:

Mobile line 1: +84 912135588 – Mr. Nguyễn Văn Bốn.

Mobile line 2: +84 943851178 – Mr. Lê Toàn Thắng.

Lưu ý: địa chỉ email admin của Trường có thể thêm cả địa chỉ (Alternate mail, không phải địa chỉ live@edu) để đề phòng sự cố không nhận được thông tin từ Edu Admin Live.

 

II. Những việc cần kiểm tra lại hệ thống Live@edu đang dùng:

A. Giới thiệu chung

1. Chương trình nâng cấp từ Live@edu lên Office 365 là bắt buộc, kéo dài thời gian hoàn toàn phụ thuộc theo sự chủ động sắp xếp lịch và thống nhất  kế hoạch của Admin, nhà Trường với NOVA Digital và Microsoft APAC.

2. Hệ thống sau khi được nâng cấp lên Office 365 của khối giáo dục Việt nam là miễn phí và mặc định là Plan 1 (A1)

nghĩa là thuộc nhóm có đăng ký sử dụng: Exchange Online 2010 (Plan 1) dành cho Sinh viên.

3. Bạn là Admin bạn có quyền đăng ký “subscribe” lên Office 365 dành cho giáo dục ở plan 2 (A2) cũng miễn phí, bao gồm:

– SharePoint Online.

– Lync Online.

– Office Web Apps.

(Tóm tắt chức năng: Sinh viên, học sinh, giáo viên, giảng viên có thể dùng audio, hình ảnh, chat với những người khác, chia sẻ tài liệu, văn bản và có thể hội họp, giảng bài trực tuyến trong thời gian thực …)

4. Lưu ý với việc nâng lên Plan 3 (A3) hoặc Plan 4 (A4): đây là các phần đăng ký sẽ bị tính phí (không miễn phí), sẽ bao gồm nhiều tính năng phức tạp, có chi phí dịch vụ … do vậy Admin và Nhà Trường hết sức lưu ý, cần cân nhắc và có kế hoạch cụ thể trong mua licence, sử dụng các phần mềm Office Desktop Pro Plus, Dynamic CRM… trước khi thao tác đăng ký “subscribe” trên hệ thống cổng Office 365.

B. Các bước kiểm tra cụ thể:

Các bạn nên gửi lại cho chúng tôi câu trả lời của các bạn về 2 địa chỉ email: thanglt@novadigital.vn, bonnv@novadigital.vn , sau khi đã xem xét kỹ 7 câu hỏi của chúng tôi để Chuẩn bị trước khi nâng cấp.

1.  Thời gian nào phù hợp để các bạn (Nhà Trường) có thể nâng cấp từ Live@edu lên Office 365 ?

(Giải thích: thời gian nâng cấp tuy không có Downtime “bị dừng dịch vụ” nhưng trong quá trình nâng cấp từng account sẽ được tách thành 2 tài khoản theo hình thức : two separate accounts gồm 1 tài khoản thuộc nhóm “Office 365 account” dùng để truy cập email, và 1 tài khoản thuộc nhóm “Microsoft account” dùng để truy cấp các loại dịch vụ khác của Microsoft services như: skydrive, Messenger, calendar và không dùng để truy cập email. Những vấn đề trên là tự động và người dùng không cần quan tâm.

Do vậy, từng tài khoản vẫn nhận được thư từ ngoài gửi về nhưng không thể gửi hoặc đăng nhập vào hòm thư để lấy thư/gửi thư đi trong lúc đang nâng cấp. thời gian nâng cấp kéo dài phụ thuộc vào số lượng hòm email nâng cấp, thông thường 5 – 15 phút để hoàn thành xử lý nâng cấp ).

2. Bạn hoặc Nhà Trường xem xét có cần phải thực hiện buổi tập huấn hoặc hình thức thông báo cho người dùng biết về việc nâng cấp trên đây ?

(Gợi ý của chúng tôi: Bạn hoặc Nhà Trường nên thông báo ngắn gọn việc nâng cấp hệ thống Live@edu , Exchange mail lên Office 365 sau khi đã có sự thống nhất thời gian hợp lý để triển khai nâng cấp.)

3. Một số thay đổi bạn, Nhà Trường và người dùng nên biết khi nâng cấp hoàn thành ?

– Các banners, Logo còn gọi là “Co-branding” sẽ không được hỗ trợ khi nâng lên Office 365.

– Khi thay đổi thông tin cá nhân, rất có thể Office 365 sẽ yêu cầu bạn khai thêm số điện thoại để bổ sung hình thức bảo mật nhắn tin SMS trực tiếp cho bạn phòng khi bị lộ mật khẩu hoặc bị hacker tấn công.

– Không bao giờ có các quảng cáo hiển thị trên hệ thống email của người dùng (khác với yahoo, gmail…)

– Các username, password để truy cập Office 365 sẽ giống với các tài khoản đã dùng của Live@edu.

– Các tài khoản có thể truy cập vào web thông qua các URL sau:

4. Bạn hoặc Nhà Trường có đang dùng các công cụ để đồng bộ giữa các tài khoản nội bộ AD trong Trường với Live@edu ?

  1. ILM 2007 FP1 của Microsoft ?
  2. IDM 2 hoặc ILM 2010 của Microsoft ? 
  3. MAv3, OLMA, OLSync hoặc Easy Sync ?
  4. PSA (PowerShell Assistant ) phần mềm do NOVA Digital phát triển và cung cấp ?
  5. Live@edu SSO Toolkit
  6. Password Change Notification Service (PCNS)
  7. PSA do nhóm NOVA Team và Live@edu của Nga phối hợp phát triển OpenSource ?
  8. PowerShell script do chính Nhà Trường hoặc đối tác khác cung cấp ?

Lưu ý:

Nếu trong các Chương trình bạn hoặc nhà Trường đang dùng là trường hợp 4. thì chúng tôi (Nova Digital) sẽ hỗ trợ nâng cấp để chuyển đổi phù hợp với hệ thống nâng cấp lên Office 365.

– Nếu các trường hợp còn lại, đều phải disable ngừng sử dụng và huỷ cài đặt.

Sau khi nâng cấp hoàn thành Office 365, chúng tôi sẽ gửi hướng dẫn cụ thể cho giải pháp đồng bộ tài khoản AD server của bạn (Nhà Trường) với Office 365 (với phí dịch vụ tư vấn giải pháp và các hệ thống triển khai, bảo hành hỗ trợ hàng năm thống nhất giữa 2 bên).

– Nếu không dùng hệ thống đồng bộ tài khoản giữa nội bộ và Live@edu cũ nhưng có nhu cầu với hệ thống Office 365, xin hãy trả lời có mong muốn, để lại thông tin của người cần liên lạc phía các bạn tiện cho việc thảo luận…

 

5. Bạn, Nhà Trường và người dùng vẫn đang sử dụng các phần mềm Microsoft Office Outlook client để kiểm tra thư Live@edu ?

Xin hãy lưu ý: sau khi nâng cấp lên Office 365 một số các phần mềm sau không chạy được đều phải nâng cấp hoặc chuyển đổi:

  • Office 2010 RTM không hỗ trợ.
  • Office 2007 phải nâng cấp lên SP3.
  • Office 2010 SP1 và Office Outlook 2011 for MAC PC.
  • Các bản dùng trên Mobile Android, Windows Phone 7,8 vẫn dùng tốt, không ảnh hưởng.
  • Máy laptop, PC cá nhân sẽ phải cài thêm 1 phần mềm “Microsoft Online Services Sign-In Assistant” để hỗ trợ người dùng tự động đăng nhập và xác thực cho tài khoản nhóm Microsoft account, vậy bạn cần lưu ý các máy đã join domain trong DC cần phải cho quyền cài phần mềm này. 

Do vậy, bạn cần phải nâng cấp bản vá lỗi Office theo địa chỉ sau: http://community.office365.com/en-us/wikis/manage/562.aspx  trước khi thực hiện kế hoạch nâng cấp Live@edu sang Office 365.

6. Bạn là quản trị hệ thống của Trường, chúng tôi sẽ thiết lập 1 buổi Workshop tại Văn Phòng Quận 1 – TP.HCMC

Dự kiến vào 1 ngày (14/5 , 16/5, 17/5, 18/5 năm 2013)  hoặc một ngàythuận lợi cho bạn, Nếu các bạn không gần TP.HCMC

vậy thời gian tốt nhất cho bạn là ngày nào ? giờ nào ?

Hãy ghi cụ thể thời gian cho chúng tôi biết chúng tôi sẽ cân nhắc và gửi thông báo lịch tổ chức các buổi WorkShop mới tại Hà Nội hoặc các TP khác.

7. Sau các buổi Workshop do NOVA Digital và Microsoft Office 365 tổ chức, chúng tôi sẽ cùng phối hợp với các bạn, Nhà Trường và đối tác đào tạo, thực hiện đào tạo các khoá học chuyên sâu hệ thống Office 365 dành cho Giáo dục và Doanh Nghiệp thường nhật:

  1. Khoá học M10174: Configuring and Managing Microsoft SharePoint 2010 (Exam 70-667)

  2. Khoá học M10175: Microsoft SharePoint 2010, Application Development (Exam 70-573)

  3. Khoá học M50352: SharePoint 2010 Overview for Power Users

  4. Khoá học 10954: Administering Office 365 (Exam 70-323)

  5. Khoá học 50588A: Office 365: A day in the life of the End-User

  6. Khoá học 10955: Administering Office 365 for Small Businesses (Exam 74-324)

  7. Khoá học 10956: Microsoft Office Specialist (MOS): Microsoft Office 365 (Exam 77-891)

  8. Khoá học 10957: Deploying Office 365 (Exam 70-321)

  9. Khoá học 55010A:  SharePoint Designer 2010 – Customizing and Branding SharePoint 2010 and Office 365

  10. Khoá học M20331: Core Solutions of Microsoft SharePoint Server 2013 (Exam 71-331)

Chi tiết nội dung các khoá học sẽ được đối tác đào tạo của chúng tôi cập nhật liên tục trên trang http://www.robustaglobal.com

Vậy bạn có nhu cầu cần đào tạo khoá học nào ?

hãy ghi danh trong câu trả lời số 7 để chúng tôi giúp bạn nâng cao kiến thức và chất lượng làm việc.

 Xin nhắc lại: Các bạn nên gửi lại cho chúng tôi câu trả lời của các bạn về 2 địa chỉ email: thanglt@novadigital.vn, bonnv@novadigital.vn ,

sau khi đã xem xét kỹ 7 câu hỏi của chúng tôi.

 

Nội dung chương trình chuẩn bị  này hơi dài, mong các bạn đọc và thực hiện chính xác.

Trân trọng cảm ơn !

Advertisements

Newsletter Microsoft Live@edu Feb 2013


image

LIVE@EDU NEWS

PiL NEWS

EDUCATION NEWS

PRODUCT SHOWCASE

EDUCATION TOOLBOX

EDUCATION NEWS

image

Vietnam teams join Global Forum 2012

Joining Global Forum 2012 in Prague, Czech from 28 Nov to 1 Dec 2012, Vietnam team including educator specialist of Ba Ria-Vung Tau DoET and Huynh Bao Thien – winner of local Innovative Teachers Competition highly appreciated this chance to enhance their leadership skills and professional development. With the theme “Your ideas matter”, the Global Forum 2012 helps our school leaders and educator connect, collaborate, and have more vision in developing teaching methods that empower students to become agents of change.

 

Coming to this “Olympia for Education” with “Narrative Literature”, Huynh Bao Thien said: “It’s a great honor to be selected as the most innovative educators on behalf of Vietnam to attend Global Forum. I am looking forward to joining Global Forum of Partners in Learning to share our project with others and get the feedback to improve ourselves in daily teaching and learning activities in Vietnam”.

 

Microsoft Learning Suite indirect training for 300 teachers in Hai Phong Province

After the first direct training of Microsoft Learning Suite in Hai Phong in September, Hai Phong DoET successfully gathered about 300 teachers for its indirect training about this set of innovative teaching and learning applications in this November. Hai Phong core team that including about 10 best qualified teachers acted as the local master trainers in this training and others upcoming in their locality.

During 3 training days that focus on guiding teachers how to use these application in daily lessons, Hai Phong’s teachers were very excited about new apps as Auto Collage, Photosynth, Song Smith…which are easy to use but highly encourage exciting ways of learning in classroom. As the result, most of them show their interest and look forward to participating in other training that help to improve their quality of teaching and learning. As expected, these indirect trainings will be deployed quarterly to reach more local teacher.

 

Cooperate with Vietnam MOET to organize Innovative Teachers Competition 2012

Started in 2005, after 7 years of success to encourage ICT application in education, the 8th Innovative Teachers Competition continuously organized in this November with the cooperation of Vietnam Ministry of Education and Training to honor the teachers with their innovation in teaching and create the chance of supporting and sharing the best experience in new teaching method with ICT integration among the teaches community.

 

Cooperated with MoET at the first time in Innovative Teaches Competition, we expect to reach the most innovative teachers nationwide who are daily devote both time and efforts to bring new way of teaching to excite their students and help them realize their full potential. Through the competition, all of innovative projects will be uploaded on Vietnam landing page of Partners in  Learning network that help to create a huge resource for our education community.

 

ISP Roundtable in Hanoi and Ho Chi Minh City

 

The Innovative School Model of the 21st Century workshop was held on 3rd October, 2012 in Hanoi and 4th October 2012 in Ho Chi Minh City. The primary goal was to increase school leaders’ and ICT managers’ understanding of Microsoft’s Partners in Learning for School program and to introduce the resources that can facilitate innovative education at their classrooms.

The Innovative School Model of the 21st Century workshop set out four parts including Innovative school program, Windows in Classroom, Licensing for education and Demo of Windows 8.  Over 40 education leaders and IT managers from 26 international and private schools in Hanoi and Ho Chi Minh City attended our two-hour event. The schools selected were amongst the pioneers in the national education system. Their supports to the Partners in Learning Program can create an impact on other schools and educational institutions across the country.

image

The Innovative School Model of the 21st Century workshop was held on 3rd October, 2012 in Hanoi

 

 

 

 

ICT News

 

 

DEMO CORNER

education demos:

Demos Live@edu here

Demo SMS Mobile for Education in Vietnam here

 

EVENTS

28th  Nov Global Forum 2012 in Prague

 16th Nov Microsoft Learning Suite Indirect Training in Hai Phong Province

9th Oct Microsoft Participation in Quang Ninh’s ICT Day

4th Oct Roundtable with International and private schools

26th  Oct Windows 8 launch worldwide

 

 

 

MARK YOUR
CALENDAR

Discover the

Training using Live@edu at

BAC BO Colleges  from 25 -26 Oct, 2012

in Hong Bang, Hai Phong City

 

 

 

 

 

Microsoft Participation in Quang Ninh’s ICT Day

 

 

A two-day workshop on Applying Information Technology into Teaching and Learning was organized by the Quang Ninh Department of Education and Training on 8th and  9th of  October. Educational case studies brought to the workshop for discussion included the application of ICT by teachers and students across the province as well as concerns with infratructure and software usage. Ms Trinh Thi Thuy Giang, a professor at the University of Natural Science who has been on Microsoft Partners in Learning’s advisory board since the beginning in Vietnam, presented a dynamic and broad look at the projects submitted in the past few years. She encouraged teachers and students to work on practical projects that were actually focused on improving the quality of teaching and learning rather than on the technology itself. Her presentation brought a great deal of attention and feedbacks from the workshop participants.

 

image

 

 

 

PIL NEWS

 

Microsoft Learning Suite training at Dinh Thien Ly school

image

In October, Microsoft offered a training course for educators at Dinh Thien Ly school, Ho Chi Minh City on the Learning Suite, a set of innovative applications for education that create a robust, creative and collaborative learning environment for students and educators. The Learning Suite includes four sets of resources, enabling participants to create movie, music, photo collage, to research and study, to teach, and to collaborate with each other. The training day was aimed to introduce the tool set as well as to present an opportunity to address any query with the package. Educators were as much amazed at the functions and designs of each tool as they were excited to try them out.  This event was a part of a training series that Microsoft is offering to schools and educational institutions across Vietnam to introduce the Learning Suite.

 

 

 

Hanoi:  100 educators attended Microsoft Learning Suite training in Hanoi and 200 teachers benefited by indirect training of ICT integration into teaching and learning.

image

More than 100 teachers in Hanoi attended the training of Microsoft Learning Suite in October. The package offered over 20 of the most popular tools and teacher resources in one simple, customizable download. With an easy access and friendly interface, the applications can be installed into personal computers and immediately applied into classrooms.  This package, offered free, is among Microsoft’s efforts to facilitate local school communities to integrate with a global network and create a vision for their future. Educators attended the event were enthusiastic with the prospect that their students can now be more eager to embrace new ideas and try new technologies.

For the first two week of October, 200 K12 teachers was attended the indirect training of ICT integration into teaching and learning by Hanoi Department of Education and Training.

 

 

 

LIVE@EDU NEWS

Training Live@edu using for new students in 2012-2013 at the Vocational College of Northern Economics – Technology, Hai Phong

 

 

 

In the morning 25.10.2012, AT.COM Company visited Vocational College of Northern Economics – Technology on occasion to celebrate new school year 2012 – 2013 and take part in training Live@edu using for new students.

Vocational College of Northern Economics – Technology solemnly celebrated the new school year 2012 – 2013. The opening ceremony was attended Dr. Dao Xuan Can – President of Vietnam Cooperative Alliance; Dr. Do Trung Thoai – Member of Standing Committee – Vice chairman of the City People’s Committee; leaders in advisory units of Vietnam Cooperative Alliance, the group of business administrative units of the Vietnam Cooperative Alliance; leaders of the provinces and cities, together with other departments and branches, and the entire management board, staff, teachers, pupils and students.

Following these previous achievements, in the 2012 -2013 school year, staff, faculty and students will continue to promote the efforts of each individual to strive to fulfill their assigned tasks. And then, they constantly affirmed and further enhance the position of the school in vocational training.

In late of 2011 to 2012, thanks to the determination of renewing in training support, direction and determination to direct the investment of leadership and management of IT Department, the school has collaborated with experts of the AT.COM Company to deploy Live@edu service, everything gradually stable, with the effective utilization, minimizing investment costs, especially in e-mail technology, integrated training portal of the school with Outlook Live, Single Sign On “SSO”…

After many times improvement of email technology from Mdeamon, PostScript … we have decided to trial and now complete to use the Outlook Live email system of Live@edu program, initially obtained good results, and many feedback of lectures and students has confirmed the correct direction of the cooperation between the school and AT.COM Company in the long-term using Live@edu service. In the near future we have a plan for the coordination with AT.COM to upgrade Office 365 Education.

Training Live@edu: 25-26 Oct 2012

Number of Participating 3’s University:

902

Teachers/School Officials Trained:

6

Vocational College students:

295

Students Reached (via Student Helpdesk, curriculum, etc.):

25

 

 

image

image

Dr. Pham Van Trung, the school Principal speech new school year

Course soft skills management technology with Live@edu

 

image

  

Training course: Programming integrate Live@edu service package SSO Kit for SharePoint 2010

 

 

Program review in October, 2012

 

 

In 25th  – 26th  Oct, AT.COM has collaborated with 01 schools: BacBo  has organized 01 workshop and went to the unified process AD sync with Outlook Live:

1.                    Using Excel VBA to export accounts from AD to CSV file.

2.                    Compare the information from AD to change the new CSV file.

3.                    Update change password from the database of the application containing the password has changed (lock mode allows the user to change password through Ctrl Alt delete).

Using PowerShell can set schedule automatic update / add accounts from CSV to Outlook Live (lock mode allows the user to change password on Outlook Web Access).

image

 

With a synchronous process above solution, the results obtained from this period include:

               BacBo: 2575 students, 72 teachers, 24 staffs, 2 subdomain and organizations unit.

Support Information Live@edu program

From November 05, team development and training of AT.COM Live@edu has upgraded and updated all the documentation, Case study of AISVietnam, NEU and Document integrating SharePoint 2010 with Live@edu SSO Kit.

Microsoft Vietnam and AT.COM wishes:

                This will be a centralized address information is accurate, complete and up to date information and help support the school can easily search for information, management methods, and deployment scenarios appropriate solutions for systems management at the School of Live@edu.

                Support marketing of Microsoft products and services, providing communication of information, promote the university has more knowledge before and after deploying Live@edu services, improve skills and quality of service management.

References in Website: http://liveatedu.help24x7.net

Live@edu Contact: Tuan Ngo (i-tuan@microsoft.com)

 

 

EDUCATION TOOLBOX

image

 

image

All-in-one  Learning Management System (LMS) for SharePoint

Based on the powerful and highly secure Microsoft Office SharePoint Server platform and integrated with Microsoft Office Communication Server 2007 and Lync, ELEARNINGFORCE’s Learning Management System gives customers an opportunity for effective learning and quick assessments. MS SharePoint based LMS has been successfully deployed both in business corporations and educational institutions.

 

Please visit www.elearningforce.com  to get more information about the LMS or visit the features page  to read about all the Learning Management System capabilities.

 

SharePoint LMS Overview

SharePoint LMS is a fully functional LMS based on the Microsoft Office SharePoint Server (MOSS 2007/WSS 3.0 or SharePoint 2010 Server/Foundation) platform. LMS combines most powerful eLearning tools and features such as:

·         Learning Path

·         Tracking / Reports

·         SCORM 1.2 or 2004 compliance

·         AICC compliance

·         Collaborative tools

·         Shared Question Pool

·         Web conference

 

image

PowerShell Access (PA) is a tool to help Universities and Schools to deploy Microsoft Live@edu integrating AD with Outlook Live Features:

 

                Algorithms to generate unique username & pw.

                Outlook Live ID provisioning.

                Active Directory import/export.

                WLID credential card printing.

                Send SMTP email.

                Outlook Web Access interface integrated into the in School Web portal interface.

                PowerShell schedule auto/manual run for sync user and password with Outlook.

 

You can also join http://liveatedu.codeplex.com to get in touch with source code and documents of PowerShell Access.

image

Mobile Online system uses SMS to send information from the school pupils, students, parents and teachers.

                Score.

                Schedule.

                Calendar parent.

                Calendar to stay and work of the University.

                Transcripts and other information.

                The system is integrated into the Outlook email and SharePoint on-premise.

                School Database Query through SMS Query and SMS to the number of subscribers or brandname.

You can also join http://hocba.vn to get in demo for end-user.

 

 

 

 

 

LIVE@EDU CASE STUDY

 

NATIONAL ECONOMICS University (NEU) Improves Student Services, Saves IT Costs with Microsoft Live@edu email

 

Live@edu is a cloud solution which technical jobs are backed end by Microsoft engineers, with AT.COM -The partner of Technical support help us to deploy and maintain, we are always happy with the quality of service and will try to take advantage of the benefits Live@edu provides…

 

image

Trung Kien, Manager of Technology, National Economics University

 

 

NEU at present time is serving as: One of the largest and top quality economic and business educational institutions in Vietnam. To meet the demand of email system for current teachers and students, the university will have to invest a significant cost to the software and hardware. After deploying Live@edu system in the two years, the university has saved $100,000 cost. It also is improving email reliability and providing teachers a more convenient and collaborative work environment.

Business Needs

NEU has over 45,000 students, a staff of 1167 (of which, there are 697 lecturers, 21 professors, 105 associate professors, 108 doctor degree holders, and 411 masters) and 28 faculties/departments with 44 specializations and 8 training branches for a bachelor’s degree including Economics, Business Administration, Banking and Finance, Accounting, Economic Information System, Law, Computer Science, and Foreign Languages; 33 specializations for a master’s degree and 22 specializations for a doctoral degree in economics, management and business administration. Besides degree granting programmers, it regularly offers intensive training courses in economics and business administration for economic managers and practitioners nationwide.

NEU has so far provided many generations of dynamic managers adaptable to the market economy and capable of acquiring new technologies. Among its graduates, there are many people who are holding important posts in agencies and bodies of the Party, National Assembly, Government, and companies as well.

The next target is intergraded Single Sign On account .NET Portal with Outlook Live and update to Office365 in the future.

 

Objectives:

1.       .NET portal deployment objectives for students, lecturers, parent.
The main objective of deploying.NET Portal is to create a central point for learning management system.

2.       Objective deployed Outlook Live

Provide a reliable, stable and cost-effective email solution.

3.       Single Sign on
Upgrade to new version which easily integrate with many other systems such as SSO for ASP.NET Portal.

NEU is researching SharePoint 2010 integrated with Outlook Live. And plan in 2013, they will deploy SharePoint 2010 for replication.NET Portal solution is using.

 

Benefits

NEU used Exchange Server On premise version 2003, this version have many limited on manage email location system.

By implementing Live@edu, NEU is enjoying more reliable email communications, saving significant costs, and giving teachers and staff a work environment that is more convenient and collaborative.

 

Enhanced Reliability

Since the beginning, NEU have noticed reliability improvements from having replaced the NEU’s onsite email infrastructure with Outlook Live.

“Live@edu is a cloud solution which technical jobs are backed end by Microsoft engineers, with AT.COM Technical support partner help us to deploy and maintain, we are always happy with the quality of service and will try to exploit the benefits Live@edu provides” Mr. Kien says. 

 

Impressive Cost Savings

Yearly savings come from avoiding the licensing costs of email anti-virus and anti-spam software, and the bonus savings in the first year come from avoiding a server hardware replacement.

 

With the savings enabled by moving to Live@edu, NEU are able to preserve other IT

 

By the year 2020, NEU aim to become a quality university in the Asia. Emphasis is, on one hand, put on developing the faculty members in terms of both quantity and qualifications to reach international standards. On the other, to encourage more effective learning, we are now upgrading offices and classrooms, adding new audio visual equipment, developing new textbooks and reference materials, updating information and data system for education, training and research, and replacing the existing infrastructure with a modern one.

 

Solution

NEU has focused on developing Information technology to use and support learning system. Base on Microsoft platform, apply Exchange Server 2003 to manage Email and synchronize database of students, faculties, staffs

NEU have been starting join Live@edu program from December 2010, and currently have about 1167 staff and 45,200 students who are using email as one of the most important applications for learning and teaching.

 

At NEU, Learning management system with .NET Portal help them to manage database canter to store information, manage workflow and create an environment for employees to work effectively.

.NET Portal and Live@edu are working together gives a reliable way to communicate as well as receive alerts via email. This is a new professional working method in organization.

After 2 years using Live@edu, NEU are generally happy with this solution as well as partner’s support (AT.COM Company).

Initiatives that had been considered for cancellation – such as a web-based video archive that is popular with teachers and students alike.

 

Great Collaboration

With SkyDrive enabling document creation and storage to move to the cloud, teachers and staff enjoy not only more convenience but also more collaboration. Teachers are working on lesson plans and class presentations from home or elsewhere, without having to remember to back up files to a portable drive and carry it around with them, Teachers also are using the cloud for sharing photo- and video-based materials and eventually will use it for collaborating on a common curriculum.

 

The advice NEU would give another university evaluating Live@edu is encourage them to use Live@edu. Moreover, Live@edu is going to be upgraded into office 365 which even provides more great features such as Lync, SharePoint online.

 

Customer: NATIONAL ECONOMICS UNIVERSITY

Website: www.neu.com.vn

Customer Size: 1167 employees

Country or Region: Vietnam

Industry: University.

 

Customer Profile

NEU is one of the largest and top quality economic and business educational institutions in Vietnam. It currently has over 45,000 students, a staff of 1167 (of which, there are 697 lecturers, 21 professors, 105 associate professors, 108 doctor degree holders, and 411 masters) and 28 faculties/departments with 44 specializations and 8 training

 

Software and Services

   Microsoft Live@edu.

   Microsoft SSO Kit for .NET Portal.

   Microsoft Office Outlook Live.

   Microsoft Exchange on Premise.

   Windows Live SkyDrive.

   Windows AD server.

 

 

Hardware and Services

   HP385G7 for Exchange on Premise.

   HP385G7 for SQL Server.

   HP350 for ASP.Net Portal.

   HP350 for AD & CA Server.

 

 

 

 

 

For more information about other Microsoft customer successes, please visit: www.microsoft.com/casestudies

 

 

 

 

 

PRODUCT SHOWCASE

Windows Intune
Windows Intune is an integrated, cloud-based client management solution that provides tools, reports, and upgrade licenses to the latest version of Windows, and Windows Intune helps keep your computers up-to-date and secure.

Windows Intune is licensed through the Microsoft Online Commerce Platform (MOCP). It is also available through the Microsoft Enterprise Agreement (EA) and Enrollment for Education Solutions (EES) programs.

See these decks for more information about Intune:

Expand our Partner Eco-system – with prioritized focus on OEM’s, Telco’s and Publishers Telco’sAcademic programs – especially CASA/EES and Intune

Win the Cloud and Enterprise PlatformWin the core infrastructure then, Lead with Live@edu and sell Azure, Intune and CRM Online.

 

 

 

image

 

Cách cấu hình windows 7, Windows 8, windows server 2008 dùng PowerShell cmdlet điều khiển Exchange Online thông qua mạng có Proxy


Mạng internet và mạng nội bộ của các Doanh nghiệp và các Trường được quản lý bởi những nhân viên IT Administrator có những trình độ khác nhau, nhưng phần lớn bị mang tiếng là không có tầm nhìn, đôi lúc còn bị tính vụn vặt, và có lúc không kiểm soát được tình hình thì lại giống các cụ lãnh đạo nhà nước ta là “Cấm”…

Quá khó cho tình hình kiếm soát hệ thống mạng khi không có kiến thức sâu và rộng, có kế hoạch và tầm nhìn để theo đuổi một hệ thống mạng lớn, nhiều người dùng, mật độ và tính phức tạp trong quá trình sử dụng. Thế nhưng đối với quan điểm của Tôi, các tiêu chuẩn về an toàn, tiết kiệm, bảo mật và phù hợp với từng giai đoạn áp dụng công nghệ mạng mới là tiên quyết, bất di bất dịch, và tôi luôn theo đuổi tới cùng quan điểm đó.

Mạng các Doạnh nghiệp và Trường học thay đổi về giao thức đang từ chính sách tự:

1. Kết nối máy nhân viên, sinh viên vào mạng nhà Trường là ra được internet, cái đó chỉ tồn tại thời gian ngắn, quá tải, do người dùng không tự bảo trọng.

2. Đổi sang bắt Join domain, ổn nhưng nhiều việc quá, IT không khoái. Những người dùng cố định thì ổn, còn vãng lai, chỉ đọc, dùng tạm qua mạng của Cơ sở thì chịu mà lượng này lớn hơn, IT lại thay đổi chính sách mạng.

3. Mọc ra một vài ông Firewall, ISA, NAT , Forefront, Zone Alarm, Check Point, TMG, Symantec End Point, FotiGate FG …. quá nhức đầu luôn, lại lọc cổ ông IT Admin ra mà làm, nhưng hậu quả thật khó lường trước, IT Admin đã làm thay đổi cả các cấu hình sử dụng phần mềm của người dùng. Đằng sau sự thay đổi có tính cách mạng âm thầm cho người dùng này, là một cuộc đảo chính, binh biến của người dùng. sự bực bội không hài lòng của người dùng tăng lên như:

– Tôi không check mail offline được vì Proxy không có cấu hình cho mail client.

– PS PowerShell không chạy ra ngoài để điều khiển được Outlook Exchange Online.

– Các phần mềm cũ kỹ không chạy được với Proxy coi như loại khỏi cuộc chiến, IT yêu cầu nâng cấp đê, tiền đâu ra ?

 

Tóm lại:

Cái gì ở ngoài mạng nội bộ là ổn rồi, chúng nó chết cả rồi.

Thế  Cloud Computing hay SaaS là cái gì ? không cần biết, chúng chết cả trong tay IT Admin rồi.

 

Gỡ rối phần mềm trên bằng cách giải quyết nhu cầu của Doanh nghiệp, nhà Trường bằng cách sau: Cách cấu hình windows 7, windows server 2008 dùng PowerShell cmdlet điều khiển Exchange Online thông qua mạng có Proxy

 

Nếu cài đặt Firewall Client không hiệu quả, hãy kiểm tra cài đặt proxy HTTP trên máy tính cục bộ của bạn bằng cách chạy lệnh sau:

netsh winhttp show proxy

Đầu ra của lệnh này có thể cho biết:

Current WinHTTP proxy settings:
    Direct access (no proxy server).

Nếu máy tính cục bộ của bạn chưa chỉ định một proxy HTTP, hãy chỉ định một proxy đó bằng cách chạy lệnh sau:

netsh winhttp set proxy <proxy server name>:80 "<local>"

Ví dụ: nếu tên máy chủ proxy của tổ chức của bạn là proxy1, hãy chạy lệnh sau:

netsh winhttp set proxy proxy1:80 "<local>"

Sau khi chạy lệnh để đặt cấu hình máy chủ proxy, bạn phải thấy đầu ra giống như sau:

Current WinHTTP proxy settings:
    Proxy Server(s) :  proxy1:80
    Bypass List     :  local

 

Hoặc dùng lệnh gán cho card mạng của máy cá nhân phải chạy qua Proxy của IE:

Netsh winhttp import proxy source=ie

Sau khi chạy các lệnh trên bằng CMD / PowerShell (chạy ở chế độ Run as Administrator), hãy chuyển sang dùng các phần mềm như PowerShell, các ứng dụng soạn gửi email client, mailling list và chạy qua mạng có dùng Proxy .

 

Các bước sửa lai code script trong PowerShell để kết nối được giữa PowerShell (PS) với Microsoft Outlook Live (Exchange Online):

$webclient = New-Object System.Net.WebClient
$LiveCred = Get-Credential
$webclient.Proxy.Credentials = $LiveCred
$entry = New-PSSession -ConfigurationName Microsoft.Exchange -ConnectionUri
https://ps.outlook.com/powershell/ -Credential $LiveCred -Authentication Basic -AllowRedirection
Import-PSSession $entry

# cho lệnh xử lý vào đây

 

# kết thúc các lệnh xử lý tại đây
Remove-PSSession $entry

Chúc các bạn thành công.

Cách cấu hình Microsoft Office Outlook kết nối Exchange Online thông qua sử dụng mạng Proxy


 

Trích hướng dẫn cấu hình bằng tay để tạo tài khoản kết nối từ Microsoft Office Outlook 2010 tới máy chủ Exchange Online của chương trình Live@edu hoặc Office 365.

Configure Outlook 2010 Manually with Exchange 2010

 
Configuration Steps

1. Create a new mail profile for Outlook 2010
Start -> Control Panel -> Mail -> Show Profiles -> Click Add.
Give this profile an appropriate name like Robusta TST.
2. Next a window will appear to configure your mail profile (see picture below).
Choose to Manually configure server settings or additional server types.

3. Choose E-mail Service (see picture below).
Select Microsoft Exchange.

4. Microsoft Exchange Settings (see picture below)
Microsoft Exchange Server: mail.myhostedservice.edu.vn
Use Cached Exchange Mode: This should be checked
User Name: Provided during your signup
Before Clicking Next, Choose More Settings.

6. After a few seconds a message is displayed:
“The action could not be completed. The connection to the Microsoft exchange server is unavailable. Outlook must be online or connected to complete this section.”
Click “OK”. A window with Microsoft Exchange Server name and Mailbox name pops up. Click “OK”.
7. A new dialog box will pop-up; Go to “Connection” tab. Check the box near “Connect to my Exchange mailbox using HTTP”
Note: This option will not show up if you don’t have the hot-fix installed. You should either have Service Pack 2
This will highlight the ‘Exchange Proxy Settings’

8. Click “Exchange Proxy Settings” and enter ex2010.myhostedservice.com
Check Box “Only connect to proxy servers that have this principal name or certificate”
Then enter msstd:ex2010.myhostedservice.com
Check Box for “On fast networks, connect using HTTP first, then connect using TCP/IP”
9. Choose “Basic Authentication” under Proxy authentication settings.

10. Click OK then Apply, click OK then Next and Finish
11. When starting Microsoft Office Outlook, use this profile select: “Prompt for a profile to be used” and click Apply
Open Outlook 2010 and launch the newly created profile.
***If there was a pre-existing mail profile, you can specify a default mail profile by opening the control panel, select the Mail icon, select Show Profiles, select Always Use this Profile and use the drop down box to specify the profile created above.

 

Tóm lại:

Thực tế, nếu bạn là người dùng Microsoft Office Outlook 2010/2007 và đang dùng các dịch vụ mail của máy chủ Exchange Server hoặc Exchange Online thì có rất nhiều phương thức kết nối qua các giao thức: HTTP, SMTP, POP, IMAP… giống như các dịch vụ mail thông thường khác.

Nhưng Microsoft còn có 1 phương thức kết nối khác, mạnh mẽ, thuận tiện hơn đó là kết nối Exchange Proxy, RPC hoặc Outlook Anywhere.

Mục đích: 

  • Sử dụng được dịch vụ kết nối nàysẽ giúp cho người dùng dễ dàng kết nối bằng Microsoft Office Outlook 2003,2007,2010,2013 tới Exchange Server nhanh chóng khai báo tài khoản chỉ là : Username (địa chỉ email) và Password (mật khẩu).
  • Bất kể là mạng nơi người dùng có đang sử dụng hình thức bảo mật, chia sẻ hay proxy mạng, thì người dùng đều không quan tâm, dễ dàng kết nối Exchange mail.

Cách làm: Người quản trị mạng dịch vụ email của hệ thống bên Doanh nghiệp/ Trường học phải:

  • Khai báo thêm thông tin bản ghi CNAME: Autodiscover của tên miền dịch vụ email
  • Gắn liền bản ghi Autodiscover.stu.myhostedservice.edu.vn với giá trị yêu cầu của máy chủ Exchange Server hoặc Exchange Online

Các bước thao tác khai báo Autodiscover trong Exchange Online của chương trình Live@edu hoặc Office 365:

  1. Truy cập web http://Eduadmin.live.com 
  2. Chọn mục Domains
  3. Bấm chọn tên miền đang dùng làm dịch vụ Mail Exchange Online
  4. Tìm đến mục: Recommended DNS record updates
  5. Chọn mục: Configure Outlook 2007 Client

Outlook_Exchange_Autodiscover

Hãy copy thông tin có trong mục Configure Outlook 2007 Client và cập nhật thông tin hướng dẫn đó vào trong máy chủ DNS đang quản lý tên miền của Doanh nghiệp, của Trường …

DNS_Autodiscover

 

Chúc các bạn thành công.

Dr. Lê Toàn Thắng

NOVA Digital

ROBUSTA TST

Sưu tầm: cách tích hợp SMS Alert vào SharePoint 2010


Introduction:
SMS Alerting is a new feature introduced in SharePoint 2010. Business requirements like, user should get a SMS whenever new announcement published or stock level decreased can be fulfilled with SMS integration. In some cases, SMS is preferred than Email message as SMS is fast and Email may get filtered by SPAM filters.
Perform the following procedure step by step to configure SMS integration with SharePoint to establish SMS notification system.
Steps Overview

  1. Obtain the SMS Gateway by registering to any of the SMS gateway providers or Setup your own SMS Gateway.
  2. Import the root certificate of the service provider’s Root certificate and create a trusted root authority.
  3. Configure Mobile account settings in SharePoint 2010 central Administration.
  4. Create Alerts/Use third-party applications (like Nintex Workflows) to use the SMS alerts!
Step 1: Obtain the SMS Provider Gateway

There are many SMS gateway services available out there in Internet. It is also possible to setup our own SMS gateway (but more cost involved!).

In this implementation guide, we are going to use: redoxygen.net

Step 2: Import the root certificate of the SMS service provider and add it to trusted root certificate authority

SSL connection must be used between the SharePoint server and the SMS service provider. So, we need to have the SMS service provider website’s certificate provider in trusted certificate provider authority store before proceeding to next step.
Obtain a root certificate and create a trusted root certificate authority. Import the root certificate of the service provider’s HTTPS Web address, and then create a trusted root authority.
Here, https://www.redoxygen.net uses the certificates from Go Daddy.com, So go to: https://certs.godaddy.com/anonymous/repository.seam , download the certificate gd-class2-root.cer under Go Daddy Class 2 Certification Authority Root Certificate (DER Format) and place it under: c:\Certificates\ gd-class2-root.cer (or whichever path applicable)

Download GoDaddy's Root Certificate

Now, the next step is to: Add the certificate to trusted root certificate authority store. This can be achieved by PowerShell. Here is how:

$cert = Get-PfxCertificate "C:\certificates\gd-class2-root.cer"

New-SPTrustedRootAuthority -Name "GoDaddy Inc" -Certificate $cert

if you miss the above steps, You will get an error message “There is a problem connecting to the text message (SMS) service” while configuring Mobile account settings.

SMS Gateway Settings in Mobile Account Configuration For SMS Service in SharePoint 2010 Central Administration

Step 3: Configure Mobile account settings in SharePoint central Administration

1. Go to: Central Administration >> System Settings >> Configure Mobile Account

Mobile Account Configuration For SMS Service in SharePoint 2010 Central Administration

2. Enter the account details you obtained from https://www.redoxygen.net
a. Enter the URL as: https://www.redoxygen.net/oms/service.asmx
b. Enter your user name and password.
c. Click on “Test Service” to validate the settings. You should see “The account is valid”

SMS Gateway settings in Mobile Account Configuration For SMS Service in SharePoint 2010 Central Administration

3. Click on “Ok” button to save your settings.
The above steps can be automated using PowerShell cmd-let:

Set-SPMobileMessagingAccount -Identity sms -WebApplication <WebApplicationUrl> [-ServiceUrl <ServiceUrl>] [-UserId <UserId>] [-Password <Password>]

Step 4: Create Alerts / Use third-party applications to use the SMS alerts!

Now, everything is done. Create your alerts in any list by specifying the mobile number under delivery method as Text Message (SMS) to receive SMS Alerts.

Create New Alert and select delivery Method as: Text Message (SMS) To Receive SMS Alerts in SharePoint

That’s all, you are done! SharePoint will send SMS message as per your alert settings.

Published: Bản tin Microsoft Live@Edu Vietnam


1

LIVE@EDU NEWS

PiL NEWS

EDUCATION NEWS

PRODUCT SHOWCASE

EDUCATION TOOLBOX

 

EDUCATION NEWS

 

2

ISP Roundtable in Hanoi and Ho Chi Minh City

 

The Innovative School Model of the 21st Century workshop was held on 3rd October, 2012 in Hanoi and 4th October 2012 in Ho Chi Minh City. The primary goal was to increase school leaders’ and ICT managers’ understanding of Microsoft’s Partners in Learning for School program and to introduce the resources that can facilitate innovative education at their classrooms.

The Innovative School Model of the 21st Century workshop set out four parts including Innovative school program, Windows in Classroom, Licensing for education and Demo of Windows 8.  Over 40 education leaders and IT managers from 26 international and private schools in Hanoi and Ho Chi Minh City attended our two-hour event. The schools selected were amongst the pioneers in the national education system. Their supports to the Partners in Learning Program can create an impact on other schools and educational institutions across the country.

 3

The Innovative School Model of the 21st Century workshop was held on 3rd October, 2012 in Hanoi

 

 

 
 

 

 

 

ICT News

 

 

DEMO CORNER

education demos:

Demos Live@edu here

Demo SMS Mobile for Education in Vietnam here

 

EVENTS

W1 Oct se co event “Roundtable with International and private schools”

26/10 Windows 8 launch worldwide

 

 

 

MARK YOUR
CALENDAR

Discover the

Training using Live@edu at

BAC BO Colleges  from 25 -26 Oct, 2012

in Hong Bang, Hai Phong City

 

 

 

 

 

Microsoft Participation in Quang Ninh’s ICT Day

 

 

A two-day workshop on Applying Information Technology into Teaching and Learning was organized by the Quang Ninh Department of Education and Training on 8th and  9th of  October. Educational case studies brought to the workshop for discussion included the application of ICT by teachers and students across the province as well as concerns with infratructure and software usage. Ms Trinh Thi Thuy Giang, a professor at the University of Natural Science who has been on Microsoft Partners in Learning’s advisory board since the beginning in Vietnam, presented a dynamic and broad look at the projects submitted in the past few years. She encouraged teachers and students to work on practical projects that were actually focused on improving the quality of teaching and learning rather than on the technology itself. Her presentation brought a great deal of attention and feedbacks from the workshop participants.

 

4

 

 

 

PIL NEWS

 
 

 

Microsoft Learning Suite training at Dinh Thien Ly school

 

5In October, Microsoft offered a training course for educators at Dinh Thien Ly school, Ho Chi Minh City on the Learning Suite, a set of innovative applications for education that create a robust, creative and collaborative learning environment for students and educators. The Learning Suite includes four sets of resources, enabling participants to create movie, music, photo collage, to research and study, to teach, and to collaborate with each other. The training day was aimed to introduce the tool set as well as to present an opportunity to address any query with the package. Educators were as much amazed at the functions and designs of each tool as they were excited to try them out.  This event was a part of a training series that Microsoft is offering to schools and educational institutions across Vietnam to introduce the Learning Suite.

 

 

 

Hanoi:  100 educators attended Microsoft Learning Suite training in Hanoi and 200 teachers benefited by indirect training of ICT integration into teaching and learning.

 

6More than 100 teachers in Hanoi attended the training of Microsoft Learning Suite in October. The package offered over 20 of the most popular tools and teacher resources in one simple, customizable download. With an easy access and friendly interface, the applications can be installed into personal computers and immediately applied into classrooms.  This package, offered free, is among Microsoft’s efforts to facilitate local school communities to integrate with a global network and create a vision for their future. Educators attended the event were enthusiastic with the prospect that their students can now be more eager to embrace new ideas and try new technologies.

For the first two week of October, 200 K12 teachers was attended the indirect training of ICT integration into teaching and learning by Hanoi Department of Education and Training.

 

 

 

 

LIVE@EDU NEWS

Training Live@edu using for new students in 2012-2013 at the Vocational College of Northern Economics – Technology, Hai Phong

 

 

 

In the morning 25.10.2012, Nova Company visited Vocational College of Northern Economics – Technology on occasion to celebrate new school year 2012 – 2013 and take part in training Live@edu using for new students.

Vocational College of Northern Economics – Technology solemnly celebrated the new school year 2012 – 2013. The opening ceremony was attended Dr. Dao Xuan Can – President of Vietnam Cooperative Alliance; Dr. Do Trung Thoai – Member of Standing Committee – Vice chairman of the City People’s Committee; leaders in advisory units of Vietnam Cooperative Alliance, the group of business administrative units of the Vietnam Cooperative Alliance; leaders of the provinces and cities, together with other departments and branches, and the entire management board, staff, teachers, pupils and students.

Following these previous achievements, in the 2012 -2013 school year, staff, faculty and students will continue to promote the efforts of each individual to strive to fulfill their assigned tasks. And then, they constantly affirmed and further enhance the position of the school in vocational training.

In late of 2011 to 2012, thanks to the determination of renewing in training support, direction and determination to direct the investment of leadership and management of IT Department, the school has collaborated with experts of the Nova Company to deploy Live@edu service, everything gradually stable, with the effective utilization, minimizing investment costs, especially in e-mail technology, integrated training portal of the school with Outlook Live, Single Sign On “SSO”…

After many times improvement of email technology from Mdeamon, PostScript … we have decided to trial and now complete to use the Outlook Live email system of Live@edu program, initially obtained good results, and many feedback of lectures and students has confirmed the correct direction of the cooperation between the school and Nova Company in the long-term using Live@edu service. In the near future we have a plan for the coordination with NOVA to upgrade Office 365 Education.

Training Live@edu: 25-26 Oct 2012

Number of Participating 3’s University:

902

Teachers/School Officials Trained:

6

Vocational College students:

295

Students Reached (via Student Helpdesk, curriculum, etc.):

25

 

 

7

8

Dr. Pham Van Trung, the school Principal speech new school year

Course soft skills management technology with Live@edu

9

 

 

 

 

 

 

Training course: Programming integrate Live@edu service package SSO Kit for SharePoint 2010

 

 

   

Program review in October, 2012

 

 

In 25th  26th  Oct, NOVA has collaborated with 01 schools: BacBo  has organized 01 workshop and went to the unified process AD sync with Outlook Live:

1.                    Using Excel VBA to export accounts from AD to CSV file.

2.                    Compare the information from AD to change the new CSV file.

3.                    Update change password from the database of the application containing the password has changed (lock mode allows the user to change password through Ctrl + Alt + delete).

Using PowerShell can set schedule automatic update / add accounts from CSV to Outlook Live (lock mode allows the user to change password on Outlook Web Access).

 

With a synchronous process above solution, the results obtained from this period include:10

               BacBo: 2575 students, 72 teachers, 24 staffs, 2 subdomain and organizations unit.

 

Support Information Live@edu program

From November 05, team development and training of NOVA Live@edu has upgraded and updated all the documentation, Case study of AISVietnam, NEU and Document integrating SharePoint 2010 with Live@edu SSO Kit.

Microsoft Vietnam and NOVA wishes:

                This will be a centralized address information is accurate, complete and up to date information and help support the school can easily search for information, management methods, and deployment scenarios appropriate solutions for systems management at the School of Live@edu.

                Support marketing of Microsoft products and services, providing communication of information, promote the university has more knowledge before and after deploying Live@edu services, improve skills and quality of service management.

References in Website: http://liveatedu.help24x7.net

Live@edu Contact: Tuan Ngo (i-tuan@microsoft.com)

 

 

 

EDUCATION TOOLBOX

 
 

 

11

11All-in-one  Learning Management System (LMS) for SharePoint

Based on the powerful and highly secure Microsoft Office SharePoint Server platform and integrated with Microsoft Office Communication Server 2007 and Lync, ELEARNINGFORCE’s Learning Management System gives customers an opportunity for effective learning and quick assessments. MS SharePoint based LMS has been successfully deployed both in business corporations and educational institutions.

 

Please visit www.elearningforce.com  to get more information about the LMS or visit the features page  to read about all the Learning Management System capabilities.

 

SharePoint LMS Overview

SharePoint LMS is a fully functional LMS based on the Microsoft Office SharePoint Server (MOSS 2007/WSS 3.0 or SharePoint 2010 Server/Foundation) platform. LMS combines most powerful eLearning tools and features such as:

·         Learning Path

·         Tracking / Reports

·         SCORM 1.2 or 2004 compliance

·         AICC compliance

·         Collaborative tools

·         Shared Question Pool

·         Web conference

 

12

PowerShell Access (PA) is a tool to help Universities and Schools to deploy Microsoft Live@edu integrating AD with Outlook Live Features:

 

                Algorithms to generate unique username & pw.

                Outlook Live ID provisioning.

                Active Directory import/export.

                WLID credential card printing.

                Send SMTP email.

                Outlook Web Access interface integrated into the in School Web portal interface.

                PowerShell schedule auto/manual run for sync user and password with Outlook.

 

You can also join http://liveatedu.codeplex.com to get in touch with source code and documents of PowerShell Access.

   

13

Mobile Online system uses SMS to send information from the school pupils, students, parents and teachers.

                Score.

                Schedule.

                Calendar parent.

                Calendar to stay and work of the University.

                Transcripts and other information.

                The system is integrated into the Outlook email and SharePoint on-premise.

                School Database Query through SMS Query and SMS to the number of subscribers or brandname.

You can also join http://hocba.vn to get in demo for end-user.

 

 

     

 

 

PRODUCT SHOWCASE

 

 

Windows Intune
Windows Intune is an integrated, cloud-based client management solution that provides tools, reports, and upgrade licenses to the latest version of Windows, and Windows Intune helps keep your computers up-to-date and secure.

Windows Intune is licensed through the Microsoft Online Commerce Platform (MOCP). It is also available through the Microsoft Enterprise Agreement (EA) and Enrollment for Education Solutions (EES) programs.

See these decks for more information about Intune:

Expand our Partner Eco-system – with prioritized focus on OEM’s, Telco’s and Publishers Telco’sAcademic programs – especially CASA/EES and Intune

Win the Cloud and Enterprise PlatformWin the core infrastructure then, Lead with Live@edu and sell Azure, Intune and CRM Online.

 

 

 

 

14

     
 
       
 

 

Làm thế nào để đồng bộ Active Directory Sync trong khi Username và Password bị mã hoá theo OS 32/64bit ?


Part 1. Password Filter for OS

 

Contents

I.      Password Filters. 1

1.    Password Filter Functions. 2

2.    Password Filter Programming Considerations. 2

3.    Installing and Registering a Password Filter DLL. 3

To install and register a Windows password filter DLL. 3

II.     Enforce Custom Password Policies in Windows. 4

III.        Configuring Security Policy. 5

IV.       The RegEx Password Filter Sample. 6

V.    Installing the Password Filter 8

VI.       Source Code Compiler by VC++. 9

      Download boots link: 9

      Error when Building: 9

      Installation. 9

 

 

I. Password Filters

Password filters provide a way for you to implement password policy and change notification.

When a password change request is made, the Local Security Authority (LSA) calls the password filters registered on the system. Each password filter is called twice: first to validate the new password and then, after all filters have validated the new password, to notify the filters that the change has been made. The following illustration shows this process.

clip_image001

Password change notification is used to synchronize password changes to foreign account databases.

Password filters are used to enforce password policy. Filters validate new passwords and indicate whether the new password conforms to the implemented password policy.

For an overview of using password filters, see Using Password Filters.

For a list of password filter functions, see Password Filter Functions.

The following topics provide more information about password filters:

 

1.  Password Filter Functions

The following password filter functions are implemented by custom password filter DLLs to provide password filtering and password change notification.

Function

Description

InitializeChangeNotify

Indicates that a password filter DLL is initialized.

PasswordChangeNotify

Indicates that a password has been changed.

PasswordFilter

Validates a new password based on password policy.

 

2.  Password Filter Programming Considerations

When implementing password filter export functions, keep the following considerations in mind:

  • Take great care when working with plaintext passwords. Sending plaintext passwords over networks could compromise security. Network “sniffers” can easily watch for plaintext password traffic.
  • Erase all memory used to store passwords by calling the SecureZeroMemory function before freeing memory.
  • All buffers passed into password notification and filter routines should be treated as read-only. Writing data to these buffers may cause unstable behavior.
  • All password notification and filter routines should be thread-safe. Use critical sections or other synchronous programming techniques to protect data where appropriate.
  • Password notification and filtering take place only on the computer that houses the account.
  • All domain controllers are writeable, therefore password filter packages must be present on all domain controllers.

Windows NT 4.0 domains: Notification on domain accounts takes place only on the primary domain controller. In addition to the primary domain controller, the password filter packages should be installed on all backup domain controllers to allow notifications to continue in the event of server role changes.

  • All password filter DLLs run in the security context of the local system account.

For information about

See

How to install and register your own password filter DLL.

Installing and Registering a Password Filter DLL

The password filter DLL provided by Microsoft.

Strong Password Enforcement and Passfilt.dll

Export functions implemented by a password filter DLL.

Password Filter Functions

 

3.  Installing and Registering a Password Filter DLL

You can use the Windows password filter to filter domain or local account passwords. To use the password filter for domain accounts, install and register the DLL on each domain controller in the domain.

Perform the following steps to install your password filter. You can perform these steps manually, or you can write an installer to perform these steps. You need to be an Administrator or belong to the Administrator Group to perform these steps.

clip_image002To install and register a Windows password filter DLL

1.       Copy the DLL to the Windows installation directory on the domain controller or local computer. On standard installations, the default folder is \Windows\System32. Make sure that you create a 32-bit password filter DLL for 32-bit computers and a 64-bit password filter DLL for 64-bit computers, and then copy them to the appropriate location.

2.       To register the password filter, update the following system registry key:

3.  HKEY_LOCAL_MACHINE
4.     SYSTEM
5.        CurrentControlSet
6.           Control
            Lsa

If the Notification Packages subkey exists, add the name of your DLL to the existing value data. Do not overwrite the existing values, and do not include the .dll extension.

If the Notification Packages subkey does not exist, add it, and then specify the name of the DLL for the value data. Do not include the .dll extension.

The Notification Packages subkey can add multiple packages.

7.       Find the password complexity setting.

In Control Panel, click Performance and Maintenance, click Administrative Tools, double-click Local Security Policy, double-click Account Policies, and then double-click Password Policy.

8.       To enforce both the default Windows password filter and the custom password filter, ensure that the Passwords must meet complexity requirements policy setting is enabled. Otherwise, disable the Passwords must meet complexity requirements policy setting.

 

 

II.                Enforce Custom Password Policies in Windows

 

Most people take the easy way out and use the default filter in order to validate passwords. But did you know you can employ authentication modules to customize your password policies to reflect your organization’s unique security requirements? Find out how in this article.

by Yevgeny Menaker

Microsoft Windows allows you to define various password policy rules. Specifically, it allows you to enable the “Password must meet complexity requirements” setting using the Policy Editor. This validates user passwords against password filter(s) (system DLL(s)). Usually, people use the default filter. However, many admins say they’d prefer a Linux-style validation, which would allow them to install various pluggable authentication modules (Linux-PAM modules) to filter user passwords (authentication tokens). You can easily adapt these modules to reflect your organization’s security policy with help of Linux configuration text files. The ability to add-on such modules creates more flexibility in composing password policies. With help of such custom modules (of course, these modules should be developed by a Linux programmers), Linux administrators may even author a regular expression for matching user passwords. Go to www.kernel.org/pub/linux/libs/pam/ for more detailed information about Linux-PAM and the available modules.

 

The Linux model described above may be employed on Windows machines as well.

What You Need: Windows NT/2000/XP


In this article, learn how to create a
Custom Password Filter (DLL in C++) that validates passwords against a configurable regular expression. The RegEx functionality is implemented based on the Boost open source library because it has wide support for regular expressions.

Let’s start with an overview of the Windows Security system.

Windows Security
Windows Security is a policy-based system with a set of rules that compose security settings for a local machine or domain. The work of policy-based systems usually has three major stages:

  1. Creating rules to compose a policy.
  2. Searching for evidences.
  3. Enforcing policy based on the evidences.

There is a parallel between the above stages and real-life legal systems. Most countries have an authority (usually parliament or senate) that makes laws. This corresponds to the first stage—composing the policy). Police departments are the guards of the legal system, responsible for collecting evidence (e.g. measuring car speed on highways) and enforcing the existing laws based on evidences (e.g. canceling driving license in case of exceeding the speed limit). So, a police force corresponds to the second and third stages.

In Windows security, system administrators play the role of parliament. They dictate the policy for an organization domain. In some cases, regular users also design security policy (e.g. when choosing their own passwords). The police uniform is given to the local security authority (LSA) Windows sub-system. LSA collects evidences for decision-making and enforces the policies (laws). The LSA sub-system is represented by the lsass.exe Windows process and several system DLLs.

 

III.             Configuring Security Policy

System Administrators are usually responsible for configuring Security Policy. Since this article is about password filters, I’ll use configuring Password Policy as the example.

 

clip_image004

 

Figure 1. The “Local Security Policy” Management Console: This shows the list of security settings that compose your password policy on the local machine.

 

As mentioned previously, regular users are involved in composing security settings when they choose their own log-on passwords. However, because a weak password can create vulnerable system and compromise organization security, system administrators need more control over this issue and disallow the use of too simple, short and vulnerable to dictionary attacks passwords. In other words, you need to compose a password policy that meets your organization’s security requirements.

To edit security policies, you can use either the secedit.exe command line utility or the “Domain Security Policy” graphical console available from Control Panel -> Administrative Tools on the domain controller machine. With this tool, you will govern the security policy for all the computers in the Windows domain. Note that in case of workstation machine, only the “Local Security Policy” console is installed (shown in Figure 1). Local policy affects settings on the local machines and it doesn’t override domain policy. Thus, the security settings will be effective for local machine users, but not for domain users. This article uses the graphical tool to alter security settings on the local machine.

clip_image006

 

Figure 2. Editing Password Policy Rules: Double-click the “Minimum password length” item to display the dialog window.

 

The left pane of the management console contains an Explorer-like tree. Each node represents a different Security Policy. In this example, you’ll make modifications to the Password Policy to require users to choose long enough passwords (at least 10 characters). Here’s how to do it:

Expand the “Account Policies” node and select “Password Policy.” On the right pane of the management console, you should see a list of security settings (rules) that compose the password policy as shown in Figure 1. Double-click the “Minimum password length” item to display the dialog window (Figure 2). Edit the text field, setting the minimum password length to 10 characters, and click OK.

Congratulations! The new rule is ready. From now on, LSA will not allow your users to choose passwords shorter than 10 characters.

An interesting rule from the Password Policy set is “Password must meet complexity requirements.” This rule may be either Disabled or Enabled. In the Disabled state it has no effect. Enabling this rule instructs LSA to validate each password against Password Filters. If you don’t provide any filter, the default is used (which is considered relatively strong). However, the default allows simple passwords, such as Paris123. You definitely want more powerful filters and this is where Custom Password Filters can be helpful.

What Is a Password Filter?
A Password Filter plays a primary role in decision-making regarding user passwords. By definition, a Password Filter is a system DLL that exports three functions with the following prototypes (note the
__stdcall
calling convention):

BOOLEAN __stdcall InitializeChangeNotify(void);     // (1)

BOOLEAN __stdcall PasswordFilter( // (2)

PUNICODE_STRING AccountName,

PUNICODE_STRING FullName,

PUNICODE_STRING Password,

BOOLEAN SetOperation

);

NTSTATUS __stdcall PasswordChangeNotify(    // (3)

PUNICODE_STRING UserName,

ULONG RelativeId,

PUNICODE_STRING NewPassword

);

How does LSA interact with Custom Password Filters by means of the above interface? First, assume that the “Password must meet complexity requirements” rule is Enabled. On the system startup, LSA loads all the available Password Filters and calls the InitializeChangeNotify() function. When LSA receives TRUE as a return value, this means that the Password Filter loaded successfully and functions properly. Upon this call, LSA also builds a chain of available Password Filters (those that returned TRUE).

When you’re giving a password to a new user or modifying an existing user’s password, LSA assures that every link in Password Filters Chain is satisfied with a new password. LSA invokes the PasswordFilter() function of each filter in the chain. If one filter in a chain returned FALSE, LSA does NOT continue calling the next filter. Instead, it asks the user to provide another password. If every call to PasswordFilter on every filter returns a TRUE value, a new password is approved and each filter is notified about it through the PasswordChangeNotify() function.

As you can see, the Password Filter is a handy tool for LSA (or, the Windows Police), acting as a speed trap for highway patrol, helping to collect evidence from the “field.” These evidences are useful in the third stage, where policies are enforced.

Before You Implement…
Consider the following issues before you start coding your own Password Filters:

*       Treat sensitive data carefully. The PasswordFilter and PasswordChangeNotify functions receive passwords in clear-text format. These passwords should be processed fast and shouldn’t leave any trails in your memory for malicious applications to capture. Introduced in Windows 2003, the SecureZeroMemory Win32 API cleans specified memory. Traditional ZeroMemory may be not enough, since “smart” compilers will optimize your code and remove calls to this API. To make sure there are no such “useful” optimizations, read a random byte from a password string after it was filled with zeros.

*       Make your filters fast and efficient. When LSA calls into the Password Filter function, most Windows processing stops, so make sure you don’t perform any lengthy operations.

*       Expect the unexpected. Because LSA loads password filters during start-up, if something goes wrong, your system may become inoperable or go into deadlock. To avoid this, develop and test your DLLs on machines that have at least two operating systems installed. I have Linux and XP on my box and I found it highly useful when preparing this article. When I encountered problems, I booted from Linux and deleted the Password Filter DLL.

*       Log your actions. Password Filters run in the context of the lsass.exe process. I don’t recommend debugging this process, because after you close the debugger and end the process, your system will shutdown. The best way to debug your already-running filter is to write the log files to disk and follow them to fix the bugs.

*       Pre-debug your DLL. While lsass.exe debugging is not recommended, you may test your fresh Password Filter by writing a small unit-test program. In this program, load your DLL with a call to LoadLibrary Win32 API and invoke exported functions (after getting their addresses within GetProcAddress Win 32 API calls). This way, you may check that your filter doesn’t crash and functions properly.

 

IV.            The RegEx Password Filter Sample

Now that you’re aware of all the possible pitfalls, it’s high time for code action. This section will walk you through the sample provided with this article. I’ve created a VS7 solution with the PasswordFilterRegEx VC project.

As the Password Filter definition requires, you export three functions. Here’s the code for the DEF file included within the sample project:

LIBRARY PasswordFilterRegEx

EXPORTS

InitializeChangeNotify

PasswordChangeNotify

PasswordFilter

 

 
 

The PasswordFilterRegEx.cpp contains source code for the exported functions. The implementations of InitializeChangeNotify and PasswordChangeNotify are quite simple:

// Initialization of Password filter.

// This implementation just returns TRUE

// to let LSA know everything is fine

BOOLEAN __stdcall InitializeChangeNotify(void)

{

WriteToLog(“InitializeChangeNotify()”);

return TRUE;

}

// This function is called by LSA when password

// was successfully changed.

//

// This implementation just returns 0 (Success)

NTSTATUS __stdcall PasswordChangeNotify(

PUNICODE_STRING UserName,

ULONG RelativeId,

PUNICODE_STRING NewPassword

)

{

WriteToLog(“PasswordChangeNotify()”);

return 0;

}

The bulk of the work is done in the PasswordFilter function (shown in Listing 1). First, create a zero-terminating copy of a password string and assign it to an STL wstring object (STL is used in conjunction with the boost regex library):

wszPassword = new wchar_t[Password->Length + 1];

if (NULL == wszPassword)

{

throw E_OUTOFMEMORY;

}

wcsncpy(wszPassword, Password->Buffer, Password->Length);

wszPassword[Password->Length] = 0;

WriteToLog(“Going to check password”);

// Initialize STL string

wstrPassword = wszPassword;

Next, the regular expression is instantiated. The sample Password Filter reads the regular expression from the RegEx value of the following registry key:

HKEY_LOCAL_MACHINE\\Software\\DevX\\PasswordFilter

If the value is not found in registry, the dummy default regular expression (“^(A)$”) is used.

Finally, validate the password against the regular expression and return the results to the caller (LSA):

WriteToLog(“Going to run match”);

// Prepare iterators

wstring::const_iterator start = wstrPassword.begin();

wstring::const_iterator end = wstrPassword.end();

match_results<wstring::const_iterator> what;

unsigned int flags = match_default;

bMatch = regex_match(start, end, what, wrePassword);

if (bMatch)

{

WriteToLog(“Password matches specified RegEx”);

}

else

{

WriteToLog(“Password does NOT match specified RegEx”);

}

. . .

return bMatch;

Just before you return the results to LSA, perform memory clean-up:

// Erase all temporary password data

// for security reasons

wstrPassword.replace(0, wstrPassword.length(), wstrPassword.length(),

(wchar_t)’?’);

wstrPassword.erase();

if (NULL != wszPassword)

{

ZeroMemory(wszPassword, Password->Length);

// Assure that there is no compiler optimizations and read random byte

// from cleaned password string

srand(time(NULL));

wchar_t wch = wszPassword[rand() % Password->Length];

delete [] wszPassword;

wszPassword = NULL;

}

return bMatch;

 

V.              Installing the Password Filter

Note: In order to filter passwords for domain users, you should use the “Domain Security Policy” console on domain controller machine and install there your password filter. In this example, the entire configuration is done on the local machine. Hence, Password Filter will validate passwords for my local machine accounts. Follow this procedure to activate your fresh Password Filter (the same procedure is applicable for the domain controller):

*       Enable the “Password must meet complexity requirements” rule of the Password Policy.

*       Copy the Password Filter DLL to the %SystemRoot%\system32 folder on your machine.

*       Open the Registry Editor (regedit.exe) and locate the following registry key:HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa

*       Modify the “Notification Packages” multi-string value of the above key and add your Password Filter file name without the “.dll” extension. Add the PasswordFilterRegEx string as shown in Figure 3.

clip_image007

 

Figure 3. Editing “Notification Packages”: Add the PasswordFilterRegEx string.

 

*       Close Registry Editor and restart your machine.

Your Password Filter in Action
After you’ve installed Password Filter and restarted your machine, you’re ready for testing. The source code includes a simple regular expression for testing purposes. Find it in the
RegEx value of the HKLM\Software\DevX\PasswordFilter key (the PasswordFilter.reg
file is provided with the code for your convenience):

^([a-zA-Z]+)(\d+)([a-zA-Z]+)$

In other words, start with letters, have some digits in the middle and end up with letters again. This regular expression is not recommended as a strong Password Regular expression, but it is useful for assessing whether your Password Filter does its job.

clip_image009

 

Figure 4. Creating a New User: Select Expand Local Users and Groups, right-click on the Users node, and choose the New User menu item.

 

Remember that this filter stands after the default Windows filter in the chain. So, in order to have any effect, you’ll need tougher requirements than the default. The Paris2003 password will validate against the default filter, but the test regular expression won’t match it. To check this, create a new user. If you use Domain Controller, create a user with Active Directory. On the stand-alone Workstation machine, right-click on My Computer and choose the Manage item from the context menu. Select Expand Local Users and Groups, right-click on the Users node, and choose the New User menu item as shown in Figure 4.

Fill-in the new user’s details and assign a password. Try a simple one (e.g.: Paris2003) and you will get an error message from LSA (Figure 5). Try a different, more complex password (e.g.: Paris2003A) and it will be accepted.

The Secret Is Out
While there are several commercial products that implement Password Filters, it isn’t really all that difficult. Now, that you understand how they work, you can provide your own, customized solution.

clip_image011

 

Figure 5. Error!: This password doesn’t meet the complexity requirements.

 

 

 

 

 

 

VI.            Source Code Compiler by VC++

 

       Download boots link: http://nchc.dl.sourceforge.net/project/boost/boost/1.50.0/boost_1_50_0.zip

 

       Error when Building:

I writed project which uses <boost/thread/locks.hpp>, i added include directory to Additional Include directories, and lib folder to linker. But when i try to build solution, error:

Error 1 error LNK1104: cannot open file ‘libboost_thread-vc100-mt-sgd-1_50.lib’

I searched this file in lib directory, but no file with this name in lib directory. I found file with similar name libboost_thread-vc100-mt-gd-1_50.

       Answer: i built them by guide boost.org/doc/libs/1_50_0/doc/html/bbv2/installation.html

       Installation

To install Boost.Build from an official release or a nightly build, as available on the official web site, follow these steps:

1.     Unpack the release. On the command line, go to the root of the unpacked tree.

2.     Run either .\bootstrap.bat (on Windows), or ./bootstrap.sh (on other operating systems).

3.     Run

./b2 install –prefix=PREFIX

where PREFIX is a directory where you want Boost.Build to be installed.

4.     Optionally, add PREFIX/bin to your PATH environment variable.

If you are not using a Boost.Build package, but rather the version bundled with the Boost C++ Libraries, the above commands should be run in the tools/build/v2 directory.

Now that Boost.Build is installed, you can try some of the examples. Copy PREFIX/share/boost-build/examples/hello to a different directory, then change to that directory and run:

PREFIX/bin/b2

A simple executable should be built.