<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:opensearch="http://a9.com/-/spec/opensearch/1.1/" xmlns:clearspace="http://www.jivesoftware.com/xmlns/clearspace/rss" xmlns:dc="http://purl.org/dc/elements/1.1/" version="2.0">
  <channel>
    <title>Intel vPro Expert Center Blog</title>
    <link>http://communities.intel.com/community/openportit/vproexpert/blog</link>
    <description>Intel vPro Expert Center Blog</description>
    <pubDate>Mon, 29 Sep 2008 09:40:21 GMT</pubDate>
    <generator>Clearspace 2.5.9 (http://jivesoftware.com/products/clearspace/)</generator>
    <dc:date>2008-09-29T09:40:21Z</dc:date>
    <item>
      <title>Get Going with GoDaddy</title>
      <link>http://communities.intel.com/community/openportit/vproexpert/blog/2008/09/30/get-going-with-godaddy</link>
      <description>&lt;!-- [DocumentBodyStart:11c35d5b-8874-43cc-b371-b946b3000ab7] --&gt;&lt;div class='jive-rendered-content'&gt;&lt;h1&gt;&lt;span&gt;Going with GoDaddy&lt;/span&gt;&lt;/h1&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;GoDaddy is one of the more popular sources for SSL certificates that support remote configuration. But GoDaddy doesn't take security lightly and will do a good bit of homework to validate that you are authorizated to recieve a Deluxe High-Assurance certificate on behalf of your organization. In order to make your purchasing process smooth and successful, here are some tips.&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;Bill York wrote an excellent blog on how to order such a certificate from GoDaddy that can be found at: &lt;a class="jive-link-blog-small" href="http://communities.intel.com/community/openportit/vproexpert/blog/2008/03/03/steps-to-purchase-a-godaddy-certificate-for-the-purpose-of-vpro-remote-configuration"&gt;http://communities.intel.com/openport/blogs/proexpert/2008/03/03/steps-to-purchase-a-godaddy-certificate-for-the-purpose-of-vpro-remote-configuration&lt;/a&gt;. Start by reading this article to familiarize yourself with the technical steps to complete the order. There are some tips below for setting up a new account that you may want to refer to as you start to follow his steps.&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;GoDaddy performs a good deal of "due diligence" research before they will issue a Deluxe High-Assurance SSL certificate. You can help to ensure the ordering process goes smoothly by anticipating the GoDaddy requirements to facilitate their research. &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;The "checks" that GoDaddy needs to perform are: domain authorization, corporate document approval, and online and verbal phone verification. You can see the on-going status of these steps when you log into your GoDaddy account after placing your order. As each step is completed, the icon next to that step will change in the Certification Steps Status page, shown below: &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;&lt;a href="http://communities.intel.com/servlet/JiveServlet/showImage/38-11589-1904/GoDaddy+Cert+Status+Steps.JPG"&gt;&lt;img height="511" src="http://communities.intel.com/servlet/JiveServlet/downloadImage/38-11589-1904/620-511/GoDaddy+Cert+Status+Steps.JPG" width="620"/&gt;&lt;/a&gt; &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;h3&gt;&lt;span&gt;Account Setup&lt;/span&gt;&lt;/h3&gt;&lt;p&gt;But prior to even ordering your SSL certificate, if you have to create a new account, be sure to use your company's formal legal name. GoDaddy will attempt to look up the company in a database, such as your state's list of registered companies maintained by the Secretary of State to see if your company is established. If not found, you may need to supply a letter of authorization from the company on letterhead for "Corporate Documents Approval" (see below). &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;Also be careful with your company address and phone number. GoDaddy will lookup your company in a online phone directory for the "Corporate Phone Number Found" step. If your business and location are listed with a phone number where you can be reached, you are in good shape since they are going to want to call a published phone number and be transferred to your extension. &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;If you are in a remote office that is not listed in a directory, be prepared to supply a phone bill in your name where you can be reached instead. Your mobile or home phone may be used if you cannot get a transferred call from an office that resolves to your business in a db like Yellowpages.com or Yellowbook.com. If you know that your address and office number will not be found in an online directory, have a copy of a phone bill (mobile or home) on an account in your name available to fax to them. &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;When ordering your Deluxe High-Assurance SSL certificate, be sure to follow the instructions from the articles shown above to generate the CSR and specify the appropriate OU to equal "Intel(R) Client Setup Certificate". Once the order is placed, you can start to monitor the status of your order. &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;h3&gt;&lt;span&gt;Administrative Approval &lt;/span&gt;&lt;/h3&gt;&lt;p&gt;As soon as you place the order, check the WHOIS lookup for your domain by using the link on the form or another method. Then, call or email your internal administrative contact for the domain to let them know to expect an email from GoDaddy requesting authorization for the certificate. Ask that person in your organization to let you know when they've replied and log back in to check the status after they do. The first three steps, "CSR Being Generated", "WHOIS Lookup Being Performed", and "Awaiting Administrative Approval," should be completed at this point. If not, you may want to call GoDaddy Technical Support to let them know of your progress. &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;h3&gt;&lt;span&gt;Corporate Document Approval &lt;/span&gt;&lt;/h3&gt;&lt;p&gt;At that time while you have GoDaddy on the phone, inquire as to whether they can find your company in the Sec. of State database and if not, verify what will substitute for Corporate Document Approval. In some cases, be prepared to submit Articles of Incorporation or copies of a SEC filing at this stage if necessary. &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;In other cases, you will need to fax a letter that includes the date and CommonName for the certificate signed by the department manager that authorizes you getting the certificate. This manager's position or title will need to be verified through either an on-line directory on your company's web site or by calling your HR department or contact. If you know that person's position or title cannot be verified on-line by GoDaddy, include the phone number for HR in the letter. &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;h3&gt;&lt;span&gt;Corporate Phone Number Found &lt;/span&gt;&lt;/h3&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;At this point, GoDaddy may need to forward your corporate documents to an administrative researcher within GoDaddy and there may be a delay for the documents to be verified. After this is done, and your "Corporate Document Approval" step status changes from In Progress to Completed, you may want to call Technical Support to help them find the best phone number to reach you at in an online directory. If this doesn't work for your phone number, ask for the Request for Verification form that you can complete and fax with the phone bill described above.&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;Once they have found the right number to call or received your phone bill and Request for Verification form, all that is left is to wait for the call. Verbally verify your identity and soon the certificate will be issued. In some cases, GoDaddy has sent an additional certificate with a P7X file extension, along with instructions on how to install it. I've not seen a case where the installation of this was necessary, and it may only serve to confuse you. You should only need to install the SSL cert for your domain in accordance with the documentation for your management console or provisioning server such as Intel's Setup and Configuration Service (SCS).&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;Remember, your certificate needs to have a CN matching the domain suffix of the machine where it will be installed and an OU matching "Intel(R) Client Setup Certificate" in the details of the Subject field. Also, the cert will need to "chain up" to the GoDaddy trusted root cert with a thumbprint matching one of the pre-installed trusted root CA thumbprints in the AMT firmware. For more information about certificate format requirements, installation of this cert, and other PKI-related questions regarding remote configuration, as alway,s a good place to look online is here at the vPro Expert Center. &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;Best of luck in getting going with GoDaddy! &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;/div&gt;&lt;!-- [DocumentBodyEnd:11c35d5b-8874-43cc-b371-b946b3000ab7] --&gt;</description>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">client_management</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">vpro</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">pro</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">remote_configuration</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">certificates</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">godaddy</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">pki</category>
      <pubDate>Tue, 30 Sep 2008 13:15:32 GMT</pubDate>
      <author>steve.f.taylor@intel.com</author>
      <guid>http://communities.intel.com/community/openportit/vproexpert/blog/2008/09/30/get-going-with-godaddy</guid>
      <dc:date>2008-09-30T13:15:32Z</dc:date>
      <clearspace:dateToText>1 year, 2 months ago</clearspace:dateToText>
      <clearspace:replyCount>3</clearspace:replyCount>
      <wfw:comment>http://communities.intel.com/community/openportit/vproexpert/blog/comment/get-going-with-godaddy</wfw:comment>
      <wfw:commentRss>http://communities.intel.com/community/openportit/vproexpert/blog/feeds/comments?blogPost=11589</wfw:commentRss>
    </item>
    <item>
      <title>Steps to purchase a GoDaddy Certificate for the purpose of vPro Remote Configuration</title>
      <link>http://communities.intel.com/community/openportit/vproexpert/blog/2008/03/03/steps-to-purchase-a-godaddy-certificate-for-the-purpose-of-vpro-remote-configuration</link>
      <description>&lt;!-- [DocumentBodyStart:60951f21-217b-4081-b0b3-49e0ba4a8782] --&gt;&lt;div class='jive-rendered-content'&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;The following information contains the detailed steps used to order a Remote Configuration Client Certificate from GoDaddy. There are many methods that can be used, but this was tested and validated that the certificate worked for both SMS and SCCM SP1 to provide Remote Configuration Provisioning to vPro clients. &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;&lt;strong&gt;SUMMARY&lt;/strong&gt;: You will be required to prove that you, or your company, own the rights to the domain for which you are applying for this certificate. In the following example, I first registered my lab domain before ordering my Remote Configuration Certificate. I also needed a Company representative to submit a letter of approval (Company Letterhead) to GoDaddy giving me authority to request this certificate. I also tested the certificate I received from GoDaddy did work with Remote Configuring AMT clients in SMS and SCCM SP1 environment.&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;Key items that are detailed in the steps below that were required to get my certificate:&lt;/p&gt;&lt;p&gt;○ Certificate type must be a Deluxe Assurance SSL certificate&lt;/p&gt;&lt;p&gt;○ Certificate request is for an Organization&lt;/p&gt;&lt;p&gt;○ OU = Intel(R) Client Setup Certificate&lt;/p&gt;&lt;p&gt;○ CN = ServerName.domain.com (this must be the FQDN of the Provisioning Server for Remote Configuration generating the CSR)&lt;/p&gt;&lt;p&gt;○ Organization = The legal name of your organization that can approve your certificate request&lt;/p&gt;&lt;p&gt;○ Required Documentation to be submitted (Driver's License, Bank Statement, and Approval Letter on Company Letterhead) &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;STEPS TO PURCHASE THE REMOTE CONFIGURATION CERTIFICATE&lt;/p&gt;&lt;p&gt;1. Go to GoDaddy Web site: www.godaddy.com &lt;/p&gt;&lt;p&gt;2. Select the SSL Certificate link: &lt;a class="jive-link-external-small" href="https://www.godaddy.com/gdshop/ssl/ssl.asp?ci=8979"&gt;https://www.godaddy.com/gdshop/ssl/ssl.asp?ci=8979&lt;/a&gt; &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;&lt;a href="http://communities.intel.com/servlet/JiveServlet/showImage/38-10957-1281/1.png"&gt;&lt;img height="468" src="http://communities.intel.com/servlet/JiveServlet/downloadImage/38-10957-1281/600-468/1.png" width="600"/&gt;&lt;/a&gt; &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;3. From the SSL Certificate page, choose the Deluxe SSL certificate and click ADD&lt;/p&gt;&lt;p&gt;a. select Single (your choice of 1, 2, or 3 years) for a single Domain environment&lt;/p&gt;&lt;p&gt;b. Unlimited Subdomains - wild cards are support for version of AMT 2.6 / 3.2 and higher&lt;/p&gt;&lt;p&gt;4. In the next screen, you will be prompted to customize your order. No additional items are necessary on this screen, select Continue&lt;/p&gt;&lt;p&gt;5. At the Checkout Now screen, you should see the Deluxe Assurance SSL certificate (other options may vary if you selected additional items to purchase)&lt;/p&gt;&lt;p&gt;&lt;a href="http://communities.intel.com/servlet/JiveServlet/showImage/38-10957-1282/2.png"&gt;&lt;img height="492" src="http://communities.intel.com/servlet/JiveServlet/downloadImage/38-10957-1282/620-492/2.png" width="620"/&gt;&lt;/a&gt; &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;6. In the Billing information Window, make sure to include your valid company name. You will be required to have someone from your company submit an approval letter for this certificate request on company letterhead (more detailed steps to follow).&lt;/p&gt;&lt;p&gt;7. After you fill out your billing information, you will need to login to your account to configure the certificate you have just purchased.&lt;/p&gt;&lt;p&gt;8. After logging in to your account, select Manage SSL Certificates.&lt;/p&gt;&lt;p&gt;9. You will see you have an available credit in the Secure Certificates, Click Set up Certificate link and Click Activate Account&lt;/p&gt;&lt;p&gt;a. You may need to Login in to your account or Create a new Certificate account - this is different than your GoDaddy Account&lt;/p&gt;&lt;p&gt;&lt;a href="http://communities.intel.com/servlet/JiveServlet/showImage/38-10957-1283/3.png"&gt;&lt;img height="311" src="http://communities.intel.com/servlet/JiveServlet/downloadImage/38-10957-1283/620-311/3.png" width="620"/&gt;&lt;/a&gt; &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;10. Select the Deluxe High-Assurance SSL Certificate and Click Request Certificate &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;&lt;a href="http://communities.intel.com/servlet/JiveServlet/showImage/38-10957-1284/4.png"&gt;&lt;img height="285" src="http://communities.intel.com/servlet/JiveServlet/downloadImage/38-10957-1284/620-285/4.png" width="620"/&gt;&lt;/a&gt; &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;11. Select &lt;strong&gt;Corporate&lt;/strong&gt; option in Step 1&lt;/p&gt;&lt;p&gt;Fill out Personal Information in Step 2, including your company name&lt;/p&gt;&lt;p&gt;Generate you CSR and paste text in the box provided in Step 3 (make sure to indicate the type of server used to produce CSR)&lt;/p&gt;&lt;p&gt;They provide a link in Step 3 on How to generate a CSR (follow these steps). &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;The &lt;strong&gt;CSR MUST include&lt;/strong&gt; the following fields to be a valid vPro Remote Configuration Certificate and approved by GoDaddy: &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;ul&gt;&lt;li level="1" type="ul"&gt;&lt;p&gt;&lt;strong&gt;OU = Intel(R) Client Setup Certificate&lt;/strong&gt;&lt;/p&gt;&lt;/li&gt;&lt;li level="1" type="ul"&gt;&lt;p&gt;&lt;strong&gt;CN = ServerName.domain.com (this must be the FQDN of the Provisioning Server for Remote Configuration generating the CSR)&lt;/strong&gt;&lt;/p&gt;&lt;/li&gt;&lt;li level="1" type="ul"&gt;&lt;p&gt;&lt;strong&gt;Organization = The legal name of your organization that can approve your certificate request&lt;/strong&gt;&lt;/p&gt;&lt;/li&gt;&lt;/ul&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;&lt;a href="http://communities.intel.com/servlet/JiveServlet/showImage/38-10957-1285/5.png"&gt;&lt;img height="560" src="http://communities.intel.com/servlet/JiveServlet/downloadImage/38-10957-1285/620-560/5.png" width="620"/&gt;&lt;/a&gt; &lt;/p&gt;&lt;p&gt;12. After you paste your CSR information and click Submit, your request will be routed to GoDaddy and they will follow up via email for next steps.&lt;/p&gt;&lt;p&gt;13. You will be asked to send them two forms of Identification (Driver License and Bank Statement)&lt;/p&gt;&lt;p&gt;14. Additionally, you will be asked to have someone within your company provide an approval letter on company letterhead stating that you have the authority to request the SSL certificate for this server and domain.&lt;/p&gt;&lt;p&gt;15. After GoDaddy has validated the required documentation, they will send you an email stating that your SSL certificate is available.&lt;/p&gt;&lt;p&gt;16. You can now download your SSL certificate and apply it to your IIS Web Server on your requesting Provisioning Server.&lt;/p&gt;&lt;/div&gt;&lt;!-- [DocumentBodyEnd:60951f21-217b-4081-b0b3-49e0ba4a8782] --&gt;</description>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">client_management</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">vpro</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">pro</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">remote_configuration</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">certificates</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">godaddy</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">pki</category>
      <pubDate>Mon, 03 Mar 2008 18:45:59 GMT</pubDate>
      <author>william.york@intel.com</author>
      <guid>http://communities.intel.com/community/openportit/vproexpert/blog/2008/03/03/steps-to-purchase-a-godaddy-certificate-for-the-purpose-of-vpro-remote-configuration</guid>
      <dc:date>2008-03-03T18:45:59Z</dc:date>
      <clearspace:dateToText>1 year, 9 months ago</clearspace:dateToText>
      <clearspace:replyCount>8</clearspace:replyCount>
      <wfw:comment>http://communities.intel.com/community/openportit/vproexpert/blog/comment/steps-to-purchase-a-godaddy-certificate-for-the-purpose-of-vpro-remote-configuration</wfw:comment>
      <wfw:commentRss>http://communities.intel.com/community/openportit/vproexpert/blog/feeds/comments?blogPost=10957</wfw:commentRss>
    </item>
    <item>
      <title>New release of Intel® vPro(tm) Packet Decoder Available for Download</title>
      <link>http://communities.intel.com/community/openportit/vproexpert/blog/2008/02/28/new-release-of-intel-vprotm-packet-decoder-available-for-download</link>
      <description>&lt;!-- [DocumentBodyStart:df6f0d15-7c39-448e-bb85-8754fcc0b097] --&gt;&lt;div class='jive-rendered-content'&gt;&lt;p&gt;Today we are announcing version 1.0.5.4 of the &lt;a class="jive-link-wiki-small" href="http://communities.intel.com/docs/DOC-1302"&gt;packet decoder&lt;/a&gt;. This version includes some minor bug fixes as well as two important enhancements:&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;+ Prerelease* support for Intel® AMT Versions 4 &amp;amp; 5&lt;/p&gt;&lt;p&gt;+ Results search &amp;amp; sort&lt;/p&gt;&lt;p&gt;+ Logging&lt;/p&gt;&lt;p&gt;*Due to hardware availability, not all constructs have been tested&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;These enhancements are in direct response to user requests. &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;Here's a 5 minute movie on the tool.&lt;/p&gt;&lt;!--[CodeBlockStart:c1c56c40-0276-40f2-87c5-de64c50d1ff2]--&gt;&lt;span&gt;&lt;embed height="355" src="http://www.youtube.com/v/YZNvqCQnzT4&amp;amp;rel=1" type="application/x-shockwave-flash" width="425" wmode="transparent"&gt;&lt;/embed&gt;&lt;/span&gt;&lt;!--[CodeBlockEnd:c1c56c40-0276-40f2-87c5-de64c50d1ff2]--&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;We are currently reviewing other user's feedback to determine what the next update will contain and when it will be available. Stay tuned.&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;DOPD Software Engineering Team&lt;/p&gt;&lt;/div&gt;&lt;!-- [DocumentBodyEnd:df6f0d15-7c39-448e-bb85-8754fcc0b097] --&gt;</description>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">amt</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">centrino_pro</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">intel</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">vpro_expert_center</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">pro</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">packet</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">developer</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">tool</category>
      <pubDate>Thu, 28 Feb 2008 21:31:28 GMT</pubDate>
      <author>timothy.c.duncan@intel.com</author>
      <guid>http://communities.intel.com/community/openportit/vproexpert/blog/2008/02/28/new-release-of-intel-vprotm-packet-decoder-available-for-download</guid>
      <dc:date>2008-02-28T21:31:28Z</dc:date>
      <clearspace:dateToText>1 year, 9 months ago</clearspace:dateToText>
      <wfw:comment>http://communities.intel.com/community/openportit/vproexpert/blog/comment/new-release-of-intel-vprotm-packet-decoder-available-for-download</wfw:comment>
      <wfw:commentRss>http://communities.intel.com/community/openportit/vproexpert/blog/feeds/comments?blogPost=10934</wfw:commentRss>
    </item>
    <item>
      <title>From iCSO SW Engineering – Intel® vPro™ Packet Decoder – The First of Many</title>
      <link>http://communities.intel.com/community/openportit/vproexpert/blog/2008/01/28/from-icso-sw-engineering-intel-vpro-packet-decoder-the-first-of-many</link>
      <description>&lt;!-- [DocumentBodyStart:a923e82e-9b91-4121-971e-cfe4acd11997] --&gt;&lt;div class='jive-rendered-content'&gt;&lt;p&gt;Last month's post of the open source &lt;a class="jive-link-wiki-small" href="http://communities.intel.com/docs/DOC-1302"&gt;packet decoder&lt;/a&gt; is just the first of a strong list of tools planned by the team that brings you the &lt;a class="jive-link-external-small" href="http://downloadcenter.intel.com/scripts-df-external/Product_Filter.aspx?ProductID=2575"&gt;Technology Test Utility&lt;/a&gt;&lt;strong&gt;.&lt;/strong&gt; The iCSO software engineering team is charted with making utilities and applications available to the public that accelerate and simplify the adoption and activation of Intel vPro technology. &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;We will be maintaining these tools and look forward to your feedback, suggestions, and participation in making these tools the best they can be for you and the marketplace. Our commitment is to post new versions of each tool at least every other month and of course post earlier if issues are found that render the tool less than useful. &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;The next tool we will be posting is a Pre-Installation Utility intended to speed the first user experience and automate as much as possible the initial setup of the Intel® AMT(tm) Setup and Configuration (aka SCS) environment in enterprise mode. Coupled with post setup wizards it will enable users to provision devices with minimal effort and time. &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;We look forward to hearing your feedback on our efforts.&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;Intel's iCSO Software Engineering Team&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;/div&gt;&lt;!-- [DocumentBodyEnd:a923e82e-9b91-4121-971e-cfe4acd11997] --&gt;</description>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">amt</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">centrino_pro</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">client_management</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">developer</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">intel</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">pro</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">scs</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">tool</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">tools</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">vpro</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">source</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">open_source</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">code</category>
      <pubDate>Mon, 28 Jan 2008 17:11:15 GMT</pubDate>
      <author>timothy.c.duncan@intel.com</author>
      <guid>http://communities.intel.com/community/openportit/vproexpert/blog/2008/01/28/from-icso-sw-engineering-intel-vpro-packet-decoder-the-first-of-many</guid>
      <dc:date>2008-01-28T17:11:15Z</dc:date>
      <clearspace:dateToText>1 year, 10 months ago</clearspace:dateToText>
      <wfw:comment>http://communities.intel.com/community/openportit/vproexpert/blog/comment/from-icso-sw-engineering-intel-vpro-packet-decoder-the-first-of-many</wfw:comment>
      <wfw:commentRss>http://communities.intel.com/community/openportit/vproexpert/blog/feeds/comments?blogPost=10861</wfw:commentRss>
    </item>
    <item>
      <title>... GOT ROI !!! Show us yours...</title>
      <link>http://communities.intel.com/community/openportit/vproexpert/blog/2007/12/11/-got-roi-show-us-yours</link>
      <description>&lt;!-- [DocumentBodyStart:c0e7cbeb-a8a7-4da6-8669-2cd212b8918d] --&gt;&lt;div class='jive-rendered-content'&gt;&lt;p&gt;A fellow blogger (Terry Cutler) suggested asking the best group of experts we have on AMT/ vPro about ROI and what you have discovered from the use of this amazing technology in your production environments. I would love to hear from anyone with a proven ROI analysis of their implementation of AMT / vPro. &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;My hope is you can show how security, power savings, desk side visits, asset inventory, etc have been positively affected as you have activated AMT / vPro. A general background on the environment, your industry vertical, and of the vPro implementation. Post online for all to see and / or send your information to &lt;a class="jive-link-email-small" href="mailto:brian.d.brougham@intel.com"&gt;brian.d.brougham@intel.com&lt;/a&gt;. The information will be kept confidential, if requested. &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;Looking forward to the awesome story's, I know are out there... Show us yours!!!!&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;Brian Brougham&lt;/p&gt;&lt;p&gt;Intel Corporation - Digital Office&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;/div&gt;&lt;!-- [DocumentBodyEnd:c0e7cbeb-a8a7-4da6-8669-2cd212b8918d] --&gt;</description>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">roi</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">vpro</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">amt</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">cpro</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">intel</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">pro</category>
      <pubDate>Tue, 11 Dec 2007 20:04:00 GMT</pubDate>
      <author>brian.d.brougham@intel.com</author>
      <guid>http://communities.intel.com/community/openportit/vproexpert/blog/2007/12/11/-got-roi-show-us-yours</guid>
      <dc:date>2007-12-11T20:04:00Z</dc:date>
      <clearspace:dateToText>1 year, 11 months ago</clearspace:dateToText>
      <clearspace:replyCount>2</clearspace:replyCount>
      <wfw:comment>http://communities.intel.com/community/openportit/vproexpert/blog/comment/-got-roi-show-us-yours</wfw:comment>
      <wfw:commentRss>http://communities.intel.com/community/openportit/vproexpert/blog/feeds/comments?blogPost=10805</wfw:commentRss>
    </item>
    <item>
      <title>vPro Project Team Resources for Success</title>
      <link>http://communities.intel.com/community/openportit/vproexpert/blog/2007/10/04/vpro-project-team-resources-for-success</link>
      <description>&lt;!-- [DocumentBodyStart:9a442bf3-19ea-4577-9c70-1960629fdbd1] --&gt;&lt;div class='jive-rendered-content'&gt;&lt;p&gt;Implementing Intel vPro in a production environment is "easy" in comparison to a major project such as domain migration, email setup\migration, ERP setup\update, or changes due to business acquisition or divestiture.  A successful project requires disciplines across IT operations, business processes and governance, project management, client systems management, and understanding of the vPro\AMT technology.&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;That said - there are a few roles\responsibilities that might help.&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;!--[CodeBlockStart:308c19b4-930c-48d5-928b-ad674f731b0c]--&gt;&lt;span&gt;&lt;h2&gt;Project Sponsor or Champion&lt;/h2&gt;&lt;/span&gt;&lt;!--[CodeBlockEnd:308c19b4-930c-48d5-928b-ad674f731b0c]--&gt;&lt;p&gt;The executive or project sponsor with the vision of success, ability to get "buy-in" from others, and has the foresight to navigate internal non-technical challenges.&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;!--[CodeBlockStart:e098f83a-a453-4b33-807e-a00c8eb93048]--&gt;&lt;span&gt;&lt;h2&gt;Project Management&lt;/h2&gt;&lt;/span&gt;&lt;!--[CodeBlockEnd:e098f83a-a453-4b33-807e-a00c8eb93048]--&gt;&lt;p&gt;Coordination of resources, schedules, expectations, and so forth. A key role for any successful project, which often has representation both inside and outside a production environment. &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;!--[CodeBlockStart:fc473162-c8ae-49a6-a79f-b6ee71d5a2a2]--&gt;&lt;span&gt;&lt;h2&gt;Business Process Change Management&lt;/h2&gt;&lt;/span&gt;&lt;!--[CodeBlockEnd:fc473162-c8ae-49a6-a79f-b6ee71d5a2a2]--&gt;&lt;p&gt;Intel vPro extends the reach of client system management with out-of-band capabilities. Understanding the current and future business processes and IT governance is key. Understanding the capabilities of Intel vPro and how it will augment and extend the environment is key. Understanding the desired future state of the environment and associated metrics is paramount. &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;!--[CodeBlockStart:02cb376f-375c-4e57-8cc0-ffa9de1e8e95]--&gt;&lt;span&gt;&lt;h2&gt;IT Infrastructure&lt;/h2&gt;&lt;/span&gt;&lt;!--[CodeBlockEnd:02cb376f-375c-4e57-8cc0-ffa9de1e8e95]--&gt;&lt;p&gt;Intel vPro is focused on the security and manageability of the client systems. It leverages many of the infrastructural capabilities which exist as a foundation to build upon. Understanding the impacts, interactions, troubleshooting, and so forth is important technologically. &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;!--[CodeBlockStart:168b5338-499d-4788-8a49-e93a66025844]--&gt;&lt;span&gt;&lt;h2&gt;Client Systems Management&lt;/h2&gt;&lt;/span&gt;&lt;!--[CodeBlockEnd:168b5338-499d-4788-8a49-e93a66025844]--&gt;&lt;p&gt;Understanding the usage models requires some technical experience with the platform. Combined with the roles above, along with the functionality of client system management and Intel vPro technology - this project team role\responsibility is critical. &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;!--[CodeBlockStart:1429af77-6027-47a4-82c6-077cfa8057ad]--&gt;&lt;span&gt;&lt;h2&gt;Principal and Strategic Architects&lt;/h2&gt;&lt;/span&gt;&lt;!--[CodeBlockEnd:1429af77-6027-47a4-82c6-077cfa8057ad]--&gt;&lt;p&gt;Individual or team with a holistic understanding of the current and future state of the environment, upcoming technological advances, and so forth. Perhaps a superset of previously stated roles. This role\team assists in making visions become reality. &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;Agree or disagree?  Please share&lt;/p&gt;&lt;/div&gt;&lt;!-- [DocumentBodyEnd:9a442bf3-19ea-4577-9c70-1960629fdbd1] --&gt;</description>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">amt</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">project</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">pro</category>
      <pubDate>Thu, 04 Oct 2007 21:45:00 GMT</pubDate>
      <author>terry.c.cutler@intel.com</author>
      <guid>http://communities.intel.com/community/openportit/vproexpert/blog/2007/10/04/vpro-project-team-resources-for-success</guid>
      <dc:date>2007-10-04T21:45:00Z</dc:date>
      <clearspace:dateToText>2 years, 1 month ago</clearspace:dateToText>
      <clearspace:replyCount>1</clearspace:replyCount>
      <wfw:comment>http://communities.intel.com/community/openportit/vproexpert/blog/comment/vpro-project-team-resources-for-success</wfw:comment>
      <wfw:commentRss>http://communities.intel.com/community/openportit/vproexpert/blog/feeds/comments?blogPost=10653</wfw:commentRss>
    </item>
    <item>
      <title>Intel® AMT Versions and Features</title>
      <link>http://communities.intel.com/community/openportit/vproexpert/blog/2007/08/23/intel-amt-versions-and-features</link>
      <description>&lt;!-- [DocumentBodyStart:f4e32de1-3e3a-4c62-bc83-9062a28cbbf1] --&gt;&lt;div class='jive-rendered-content'&gt;&lt;p&gt;Each release of the Intel® &lt;/p&gt;&lt;!--[CodeBlockStart:6e02ccf8-54a8-4077-ad17-b78255992c7f]--&gt;&lt;span&gt;&lt;a class="jive-link-external-small" href="http://juice.altiris.com/glossary/term/341]platform"&gt;AMT&lt;/a&gt;&lt;/span&gt;&lt;!--[CodeBlockEnd:6e02ccf8-54a8-4077-ad17-b78255992c7f]--&gt;&lt;p&gt; provides a few additional features. The good news is that Altiris handles the abstraction and interface or capabilities in heterogeneous environments. However, for troubleshooting, deployment, product selection, and other decisions - it may help to provide a summary of features and capabilities within each generation of the platform.&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;Yet this raises some questions: What version of Intel® AMT is running on the client system? What features does the version support? What are the dependencies on the Intel® Setup and Configuration Service (SCS) for Altiris Out-of-Band provisioning?&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;All good questions - let's step through each.&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;h2&gt;&lt;span&gt;What version of Intel® AMT do I have?&lt;/span&gt;&lt;/h2&gt;&lt;p&gt;Production Intel® AMT systems support either version 2.1 (for Intel® vPro&lt;sup&gt;TM&lt;/sup&gt; desktop systems) or 2.5 (for Intel® Centrino® Pro systems). First generation Intel® vPro&lt;sup&gt;TM&lt;/sup&gt; systems were codenamed Averill. First generation Intel® Centrino® Pro systems were codenamed Santa Rosa. Weybridge is the codename of the second generation Intel® vPro&lt;sup&gt;TM&lt;/sup&gt; desktop platform, and will start with Intel® AMT version 3.0.&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;If ever a question of what exact version of the MEBx (management engine &lt;/p&gt;&lt;!--[CodeBlockStart:29b95d90-546e-419d-a58f-037130614544]--&gt;&lt;span&gt;&lt;a class="jive-link-external-small" href="%20http://juice.altiris.com/glossary/term/282"&gt;BIOS&lt;/a&gt;&lt;/span&gt;&lt;!--[CodeBlockEnd:29b95d90-546e-419d-a58f-037130614544]--&gt;&lt;p&gt; extension), the login screen will reveal the answer. This screen is typically access via Ctrl-P during the POST boot process. The picture below comes from an Intel® Centrino® Pro systems, running v2.15.15.0000 of the MEBx.&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;&lt;a href="http://juice.altiris.com/files/u6338/mebx_first_0.jpg"&gt;&lt;img src="http://juice.altiris.com/files/u6338/mebx_first_0.jpg"/&gt;&lt;/a&gt;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;!--[CodeBlockStart:138032bd-3b53-4964-a3c1-b3545b2364ce]--&gt;&lt;span&gt;&lt;a class="jive-link-external-small" href="http://juice.altiris.com/files/u6338/mebx_first.jpg"&gt;Click to view.&lt;/a&gt;&lt;/span&gt;&lt;!--[CodeBlockEnd:138032bd-3b53-4964-a3c1-b3545b2364ce]--&gt;&lt;h2&gt;&lt;span&gt;Versions and Features of Intel® AMT&lt;/span&gt;&lt;/h2&gt;&lt;p&gt;The table below provides a summary of Intel® AMT platform versions and support features. Remote configuration, formerly called Zero Touch Configuration, will be released in September timeframe for Averill and Santa Rosa systems. A future article will address this topic.&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;Details on Intel® AMT versions beyond that which is stated will be shown later. There is an Intel® AMT 1.0 version, yet not branded as Intel® vPro&lt;sup&gt;TM&lt;/sup&gt;. Details will not be shared.&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;A common question is raised of migration paths from one Intel® AMT family to the next. For example - will Averill systems be firmware upgradeable to Weybridge. No. However, the functionality will continue to grow and the capabilities will be integrated into the Altiris console. Thus a mixed environment is supported. &lt;/p&gt;&lt;p&gt;&lt;a href="http://communities.intel.com/servlet/JiveServlet/showImage/38-1081-1023/AMTFeatures.jpg"&gt;&lt;img height="374" src="http://communities.intel.com/servlet/JiveServlet/downloadImage/38-1081-1023/620-374/AMTFeatures.jpg" width="620"/&gt;&lt;/a&gt;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;Will you find all these items supported in the current Altiris console for out-of-band manageability? No. This is due to the underlying configuration service and management that is needed, and is presently provided by Intel® SCS. This will be addressed more in the next section. If you happen to download and test the Early Access version of &lt;/p&gt;&lt;p&gt;&lt;a class="jive-link-external-small" href="http://juice.altiris.com/glossary/term/340"&gt;OOB&lt;/a&gt;, RTSI, and RTCI &lt;/p&gt;&lt;p&gt;&lt;a class="jive-link-external-small" href="http://portals.altiris.com/Default.aspx?alias=portals.altiris.com/eap"&gt;portals.altiris.com/eap&lt;/a&gt;, you will see the additional functionalities.&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;Does this mean that Santa Rosa systems will not work with the current production environment? In a wired mode, they will perform all of the functions of Averill systems. Some key questions and consideration - Notebooks are powered by AC (wall plug) or DC (battery). In addition, with the wireless network support management of profiles and configurations is needed. &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;Before continuing to the next sections on power policies and supported states for wired versus wireless environments, a quick review of what hardware asset data is collected might help. See &lt;a class="jive-link-external-small" href="http://juice.altiris.com/node/2159"&gt;this document&lt;/a&gt; for a refresher.&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt; &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;h2&gt;&lt;span&gt;Intel® AMT Power Policies&lt;/span&gt;&lt;/h2&gt;&lt;p&gt;Adding Intel® AMT to notebooks presents some new possibilities and considerations. The tables below address some permutations of wired vs. wireless, running on AC or DC power, and whether the host system is healthy (e.g. system on and operating system running), sick (e.g. system on yet operating system failed or unavailable), or asleep (whether standby, hibernate, or off). The power states of Intel® are defined in a policy, with nomenclature that might confuse at first. (e.g. S0, S3, S5, and H0 power states). Review mention of power policies and states in &lt;a class="jive-link-external-small" href="http://juice.altiris.com/node/1904"&gt;.this article&lt;/a&gt;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;In the case of Intel® Centrino® Pro systems, the power policy is even more extensive. Below is a screen shot of the MEBx menu for power policy. A similar list of options will appear in the Intel® AMT profile.&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;&lt;a href="http://juice.altiris.com/files/u6338/power_state_policy_0.jpg"&gt;&lt;img src="http://juice.altiris.com/files/u6338/power_state_policy_0.jpg"/&gt;&lt;/a&gt;&lt;span&gt;[this article|&lt;/span&gt;&lt;a class="jive-link-external-small" href="http://juice.altiris.com/files/u6338/power_state_policy.jpg"&gt;http://juice.altiris.com/files/u6338/power_state_policy.jpg&lt;/a&gt;&lt;span&gt;] &lt;/span&gt;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;&lt;a class="jive-link-external-small" href="http://communities.intel.com/"&gt;Click to view.&lt;/a&gt;&lt;/p&gt;&lt;h2&gt;&lt;span&gt;Intel® AMT over Wired&lt;/span&gt;&lt;/h2&gt;&lt;p&gt;Since Intel® AMT is on by default and consuming power, if powered by battery it may be better to turn the management engine off. This explains the "No" in the right column of the table below. What about the "No" for system isolation and agent presence is the system the host system is asleep and powered via AC? If the host system is off, what agent or virus outbreak is being prevented? That is why these states are not supported nor needed - they both require the host to be running (not necessarily the host operating system).&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;Wired mode also assumes the system is connected directly to the management network. If a remote site is connected to the main site via a VPN appliance, this is effectively a virtual extension of the managed network. However, if the target system requires a software agent running above the host operating system to support VPN, this is different and will be addressed in the next section.&lt;/p&gt;&lt;p&gt;&lt;a href="http://communities.intel.com/servlet/JiveServlet/showImage/38-1081-1022/AMTUseCase.jpg"&gt;&lt;img height="233" src="http://communities.intel.com/servlet/JiveServlet/downloadImage/38-1081-1022/620-233/AMTUseCase.jpg" width="620"/&gt;&lt;/a&gt;&lt;/p&gt;&lt;h2&gt;&lt;span&gt;Intel® AMT over Wireless&lt;/span&gt;&lt;/h2&gt;&lt;p&gt;Similar to the last table, the next view addresses Intel® AMT over wireless. The use cases are the same, as are AC or DC selections, and the state of the host system. The key difference is whether Intel® AMT has wireless access. The wired &lt;/p&gt;&lt;p&gt;&lt;a class="jive-link-external-small" href="http://juice.altiris.com/glossary/term/288"&gt;NIC&lt;/a&gt; is on by default and built into the hardware. The wireless NIC actually requires the host system to be on.&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;Wireless allows mobility, including outside of the managed network. Does this remove the manageability and security of the Intel® AMT platform? If a VPN connection to the managed network requires a Layer 3 (L3) VPN (virtual private network) agent running on top of the host operating system, does out-of-band management still apply?&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;Technologically, the L3 VPN functionality could be embedded into the Intel® AMT management engine. However, do the variety or vendors and approaches, this presents a major validation and certificate challenge. Plus, the number of potential updates and patches would not be favorable. Therefore, if the system is connected via wireless (or wired) outside of the managed network, and using an L3 VPN agent to connect in - there are some consideration of supported functionality. This does not apply to situations where a VPN appliance is between the Intel® AMT system and the managed network - since that is effectively a virtual extension of the physical managed network.&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;Intel® AMT 2.5 supports wireless profiles. Thus if the Intel® AMT device is inside a managed environment, connecting via an 802.11 b/g/n network with defined SSID and configurations, the system can be managed out-of-band. &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt; &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;ul&gt;&lt;li level="1" type="ul"&gt;&lt;p&gt;Note: 802.11i, 802.1x, and NAC are supported in the Intel® AMT profile for Centrino® Pro environments. More on this in a latter section&lt;/p&gt;&lt;/li&gt;&lt;li level="1" type="ul"&gt;&lt;p&gt;802.11n is draft version today. For best compatibility, use 802.11 b/g networks&lt;/p&gt;&lt;/li&gt;&lt;/ul&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;&lt;a href="http://communities.intel.com/servlet/JiveServlet/showImage/38-1081-1024/AMTPower.jpg"&gt;&lt;img height="291" src="http://communities.intel.com/servlet/JiveServlet/downloadImage/38-1081-1024/620-291/AMTPower.jpg" width="620"/&gt;&lt;/a&gt;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt; &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;With the perceived constraints of Intel® AMT over wireless, does out-of-band still apply? Yes.&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;If the device is within a managed network environment - whether wireless or wired - and has been configured (e.g. provisioned) correctly, the system is still manageable if the host is on. (e.g. healthy or sick). As mentioned in an earlier tech-tip, system data is still being collected at boot. Plus, if a network filter policy is pushed down to the Intel® AMT device - part of the System Isolation capability (formerly called Circuit Breaker), that policy remains in effect until removed.&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;If the system is on, yet the host operating system is not functional and the system is inside a managed network environment (whether wired or wireless) - the system is manageable.&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;The last item may raise some concern - if the system is wireless and host is asleep (S1 through S5 power state), why are all use cases not supported? Remember that the wireless network driver for Intel® AMT requires the host to be on (H0), whether or not the operating system is running. Only the wired NIC is powered in the asleep state - if a connection is available.&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt; &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;h2&gt;&lt;span&gt;Intel® SCS versions&lt;/span&gt;&lt;/h2&gt;&lt;p&gt;Within the Altiris OOB server install, a service labeled "AMTconfig" is running. The version number of this windows service refers to the Intel® SCS version number. The Altiris Out-of-Band management console (under Provisioning &amp;amp;gt; Configuration Service Settings) will show additional options and capabilities with higher versions of Intel® SCS. Yet what is the relation and mapping of Intel® SCS to Intel® AMT?&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;The general concept is this: The major version number of Intel® SCS (again - check the AMTconfig service version number) indicates all versions of Intel® AMT supported at or below that number. Therefore, Intel® SCS 3.0 would support AMT 2.0 through 3.0 versions (i.e. Averill, Santa Rosa, and Weybridge). Of course, there are always expections to the rule. Intel® SCS version 1.x supports Intel® AMT 2.1 and below, and Remote Configuration will be supported with a version of Intel® SCS slightly above 3.0. (More on Remote Configuration in a near future article)&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;&lt;em&gt;The opinions expressed on this site are mine alone and do not necessarily reflect the opinions or strategies of Intel Corporation or its worldwide subsidiaries.&lt;/em&gt;&lt;/p&gt;&lt;/div&gt;&lt;!-- [DocumentBodyEnd:f4e32de1-3e3a-4c62-bc83-9062a28cbbf1] --&gt;</description>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">vpro</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">amt</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">versions</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">pro</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">scs</category>
      <pubDate>Thu, 23 Aug 2007 15:34:00 GMT</pubDate>
      <author>terry.c.cutler@intel.com</author>
      <guid>http://communities.intel.com/community/openportit/vproexpert/blog/2007/08/23/intel-amt-versions-and-features</guid>
      <dc:date>2007-08-23T15:34:00Z</dc:date>
      <clearspace:dateToText>2 years, 3 months ago</clearspace:dateToText>
      <clearspace:replyCount>1</clearspace:replyCount>
      <wfw:comment>http://communities.intel.com/community/openportit/vproexpert/blog/comment/intel-amt-versions-and-features</wfw:comment>
      <wfw:commentRss>http://communities.intel.com/community/openportit/vproexpert/blog/feeds/comments?blogPost=1081</wfw:commentRss>
    </item>
    <item>
      <title>Why SCS (Setup and configuration services)? Some thoughts?</title>
      <link>http://communities.intel.com/community/openportit/vproexpert/blog/2007/08/16/why-scs-setup-and-configuration-services-some-thoughts</link>
      <description>&lt;!-- [DocumentBodyStart:81d7ee85-243e-4bb1-846e-7fd8ff1232b7] --&gt;&lt;div class='jive-rendered-content'&gt;&lt;p&gt;I am sure you are all aware of the benefits of adopting the embedded manageability features in vPro. What has SCS got to do with that and why do we need SCS?&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;Can you buy a home theater, plug in the power and expect it to work with all your other media devices? Can you buy a wireless router, switch it on and expect a home network to work without configuring? No. &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;Similarly, in order to reap the benefits of the embedded manageability features in vPro, we need to set it up and configure it appropriately. Setup and Configuration services (SCS) provide the means to setup and configure vPro systems. Some of the abilities that SCS provides include &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt; &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;ul&gt;&lt;li level="1" type="ul"&gt;&lt;p&gt;- Ability to integrate with identity management systems such as Active Directory&lt;/p&gt;&lt;/li&gt;&lt;li level="1" type="ul"&gt;&lt;p&gt;- Ability to request the CA for a certificate on behalf of the vPro system&lt;/p&gt;&lt;/li&gt;&lt;li level="1" type="ul"&gt;&lt;p&gt;- Ability to push wireless profiles on to the vPro system for wireless manageability&lt;/p&gt;&lt;/li&gt;&lt;li level="1" type="ul"&gt;&lt;p&gt;- Method to push configuration settings to a bulk of vPro systems&lt;/p&gt;&lt;/li&gt;&lt;li level="1" type="ul"&gt;&lt;p&gt;- Maintenance operations such as renewal of certificates, re-provisioning systems if hostname changes&lt;/p&gt;&lt;/li&gt;&lt;/ul&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;Currently SCS is integrated as part of an ISV's management console. With vPro spanning across domains such as Asset management, Remote Support, Security, Patching and Compliance, are we looking at a single management console? If we have different management consoles for different domains, how do we ensure that the vPro systems are setup and configured once and all management consoles can operate with vPro? Who provisions, who maintains, who talks to who in order to make efficient use of vPro in a multi-management console eco system? In order to allow effective inter-operability between the management consoles, are we looking at a "unified provisioning application" for all the technologies that Intel supports on a vPro system? &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;Let me know your thoughts... &lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="min-height: 8pt; height: 8pt; padding: 0px;"&gt;&amp;nbsp;&lt;/p&gt;&lt;/div&gt;&lt;!-- [DocumentBodyEnd:81d7ee85-243e-4bb1-846e-7fd8ff1232b7] --&gt;</description>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">vpro</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">pro</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">amt</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">scs</category>
      <category domain="http://communities.intel.com/community/openportit/vproexpert/blog/tags">isv</category>
      <pubDate>Thu, 16 Aug 2007 17:47:00 GMT</pubDate>
      <author>vidya.govindan@intel.com</author>
      <guid>http://communities.intel.com/community/openportit/vproexpert/blog/2007/08/16/why-scs-setup-and-configuration-services-some-thoughts</guid>
      <dc:date>2007-08-16T17:47:00Z</dc:date>
      <clearspace:dateToText>2 years, 3 months ago</clearspace:dateToText>
      <wfw:comment>http://communities.intel.com/community/openportit/vproexpert/blog/comment/why-scs-setup-and-configuration-services-some-thoughts</wfw:comment>
      <wfw:commentRss>http://communities.intel.com/community/openportit/vproexpert/blog/feeds/comments?blogPost=1023</wfw:commentRss>
    </item>
  </channel>
</rss>

