Speaker
Description
CERN manages over 10,000 Windows devices – from simulation-heavy workstations to security-hardened desktops and servers critical for accelerator controls. For two decades, this was done with CMF, the CERN-built device management solution. Today, we are gradually moving to mainstream solutions such as Microsoft Intune and Configuration Manager, aiming to leverage industry standard off-the-shelf tools to address CERN operational needs, including for delegated administration and security.
This paper will lay out the benefits and drawbacks of the solutions adopted at CERN and share the experience of the migration of live systems (co)managed by a heterogeneous population of CERN Windows admins.
Finally, we will showcase CERN’s remaining custom tools built at CERN and required for remote delegated management.