Windows Server 2012 File Server Resource Manager (FSRM) (1)---profile classification

Source: Internet
Author: User
Tags disk usage

What is FSRM?

FSRM can manage and classify data that is stored on a file server. FSRM includes the following features:

1. File classification infrastructure. This feature automatically performs file classification operations. You can set the file access policy dynamically based on the file classification. Using FSRM allows you to automatically modify the properties of a file based on the application type or file content, or to trigger a file classification by manually configuring options on the server.

2. File management tasks. This feature allows you to apply a policy or action that contains a condition based on the classification of the file. The criteria for file management tasks include: File location, classification properties, data in the file, date of last modified file, time of last Access file. Actions for file management tasks include: file expiration, encrypting files, running custom commands.

3. Quota management. This feature can limit the amount of space on a volume or folder depending on your settings. You can use this feature to automatically apply quota settings to folders that are created on a volume. Alternatively, you can define a quota template, apply the template to a new volume, or use a new folder for the quota settings.

4. File screen management. This feature can be used to control the types of files that a user can hold on a file server. You can restrict files that have only a specific file name extension to a shared folder by using a file screen. For example, you can create a file screening policy that denies files with the MP3 extension on the file server's personal shared folder.

5. Store the report. This feature can be used to view hard disk usage trends and data classification scenarios. It can also be used to monitor the actions of users attempting to save a non-compliant file.


The FSRM for Windows Server 2012 adds the following new features:

1. Integration with DAC (Dynamic Access Control). The DAC provides centralized control of file access and auditing on file servers through the file classification infrastructure.

2. Manual classification. Manual categorization allows users to manually categorize files and folders without having to create automatic classification rules.

3. Deny access to message assistance. You can use the Deny Access assistance feature to customize an error message that notifies users of the win8.1 client that they do not have permission to access the file or folder that they are currently trying to access.

4. File management tasks. Updates for this feature include: Adds and adrms file management tasks, continuous file management tasks, and dynamic namespaces for file management tasks.

5. Automatic classification. The update of this feature improves the level of control of data classification in file servers, including continuous classification, PowerShell commands for custom classifications, updates to existing content classifications, and dynamic namespaces for classification rules.


Use FSRM for automatic file classification of the experimental environment:

LON-DC1 WIN2012R2 domain Controller

LON-SVR1 WIN2012R2 member Server


First, create a classification attribute

Open the PowerShell command console in LON-SVR1, enter add-windowsfeature fs-resource-manager-includemanagementtools install the FSRM role

650) this.width=650; "src=" Http://s3.51cto.com/wyfs02/M00/4D/36/wKioL1RNvBCTamRlAAMGyJFjM_Y627.jpg "title=" QQ picture 20141027112531.jpg "alt=" Wkiol1rnvbctamrlaamgyjfjm_y627.jpg "/>

To open File Server Resource Manager with the Fsrm.msc command

650) this.width=650; "src=" Http://s3.51cto.com/wyfs02/M02/4D/35/wKiom1RNvEzDrz7vAAJsLfQupZU576.jpg "title=" QQ picture 20141027112926.jpg "alt=" Wkiom1rnvezdrz7vaajslfqupzu576.jpg "/>

Right click on the Category Properties option in Category management and select Create attribute

650) this.width=650; "src=" Http://s3.51cto.com/wyfs02/M02/4D/35/wKiom1RNvWCg8gRaAAMy1qMLrcE419.jpg "title=" QQ picture 20141027113205.jpg "alt=" Wkiom1rnvwcg8graaamy1qmlrce419.jpg "/>

Name the new property confidential and set the property type to Yes/No

650) this.width=650; "src=" Http://s3.51cto.com/wyfs02/M00/4D/36/wKioL1RNv1zCDSQQAAPECOuv350382.jpg "title=" QQ picture 20141027113731.jpg "alt=" Wkiol1rnv1zcdsqqaapecouv350382.jpg "/>

Ii. creation of classification rules

Next we right click on the classification rule, select New rule

650) this.width=650; "src=" Http://s3.51cto.com/wyfs02/M00/4D/35/wKiom1RNv8DDoSMNAAMe3eWKZrQ535.jpg "title=" QQ picture 20141027114317.jpg "alt=" Wkiom1rnv8ddosmnaame3ewkzrq535.jpg "/>

Name the new rule and add a description

650) this.width=650; "src=" Http://s3.51cto.com/wyfs02/M02/4D/35/wKiom1RNwUuigWJ2AANa5MaXXys018.jpg "title=" QQ picture 20141027114924.jpg "alt=" Wkiom1rnwuuigwj2aana5maxxys018.jpg "/>

Set the scope of the rule, add the folder path that needs to be managed in the Scope C:\RD folder

650) this.width=650; "src=" Http://s3.51cto.com/wyfs02/M02/4D/36/wKioL1RNwuPgVCwXAAPCrRfiyag068.jpg "title=" QQ picture 20141027115400.jpg "alt=" Wkiol1rnwupgvcwxaapcrrfiyag068.jpg "/>

Then switch to the Category tab, set the classification method to the content classifier, click Configure to enter the configuration window, and select the string in the expression type, enter "research and development Secrets" in the expression

650) this.width=650; "src=" Http://s3.51cto.com/wyfs02/M01/4D/35/wKiom1RNxGWxCIMeAAVnT4usFio918.jpg "title=" QQ picture 20141027120358.jpg "alt=" Wkiom1rnxgwxcimeaavnt4usfio918.jpg "/>

After the setup is complete, return to the File Server Explorer interface, right-click on the classification rule, check configure classification plan

650) this.width=650; "src=" Http://s3.51cto.com/wyfs02/M02/4D/36/wKioL1RNxbWB8xR3AAOD3ECLIdc118.jpg "title=" QQ picture 20141027120811.jpg "alt=" Wkiol1rnxbwb8xr3aaod3eclidc118.jpg "/>

Enable fixed schedule, set the classification time to 8:30 every Sunday, if the company has a mail server, you can check the report sent to the following administrator, fill in the administrator's e-mail address (Configure the mail notification must first configure the mail server SMTP address in the FSRM manager)

650) this.width=650; "src=" Http://s3.51cto.com/wyfs02/M01/4D/36/wKioL1RNxnaSSNq6AASXwx6vBiU120.jpg "title=" QQ picture 20141027121051.jpg "alt=" Wkiol1rnxnassnq6aasxwx6vbiu120.jpg "/>

Create 3 text files in Rd folder, enter test data for File1,file2,file3,file1 and save, file2 input research and development and save, File3 enter research and development secrets and save

650) this.width=650; "src=" Http://s3.51cto.com/wyfs02/M00/4D/36/wKiom1RN0I-hqMPpAANPauAhvfU905.jpg "title=" QQ picture 20141027125549.jpg "alt=" Wkiom1rn0i-hqmppaanpauahvfu905.jpg "/>

First, right-click on the classification properties of the 3 files, you can see that the current confidential value is None, the document has not been classified processing

650) this.width=650; "src=" Http://s3.51cto.com/wyfs02/M01/4D/38/wKioL1RN0gqQMWk5AAPFWp2g9t4700.jpg "title=" QQ picture 20141027130044.jpg "alt=" Wkiol1rn0gqqmwk5aapfwp2g9t4700.jpg "/>

We switch to file Server Explorer, and in the right-click menu of the classification rules, select Run classification immediately with all rules

650) this.width=650; "src=" Http://s3.51cto.com/wyfs02/M02/4D/38/wKioL1RN0nrTPCw3AAN9zpvUAtk004.jpg "title=" QQ picture 20141027130238.jpg "alt=" Wkiol1rn0nrtpcw3aan9zpvuatk004.jpg "/>

In the pop-up options box, select wait for classification to complete, after the completion of the classification there will be an automatic classification report, pull the report content to the bottom of the position, you can see the value of the File3.txt file displayed as "Yes"

650) this.width=650; "src=" Http://s3.51cto.com/wyfs02/M02/4D/37/wKiom1RN00Lwnq8PAALo7ns7bM4563.jpg "title=" QQ picture 20141027130723.jpg "alt=" Wkiom1rn00lwnq8paalo7ns7bm4563.jpg "/>

Once again check the classification properties of the 3 files, you can see that the classification attribute of the File3 file confidential to "yes", because File3 contains a "research and development Confidential" string that conforms to our classification rules, so its confidential is automatically configured to be, The other 2 files do not have a "develop secret" string, so the classification attribute has not been modified.

650) this.width=650; "src=" Http://s3.51cto.com/wyfs02/M00/4D/38/wKioL1RN13_AdyhIAANgJvOn_DY840.jpg "title=" QQ picture 20141027132343.jpg "alt=" Wkiol1rn13_adyhiaangjvon_dy840.jpg "/>



This article is from the "Dry Sea Sponge" blog, please be sure to keep this source http://thefallenheaven.blog.51cto.com/450907/1568780

Windows Server 2012 File Server Resource Manager (FSRM) (1)---profile classification

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.