SlideShare a Scribd company logo
Best Practices for SharePoint 2010 Public Facing Sites
SpeakersMichael Van CleaveSr. Architect & Practice Lead MCT, MCPD, MCTS, MCSD.NET	Paul Papanek StorkSharePoint  MVP & Author Chief Architect & Practice LeadMBA, MCT, MCSE, MCSD, MCDBA, MCTS, MCITP, MCPD…
AgendaDiscuss the Business CaseNew Internet Friendly LicensingBranding Tips for SuccessAuthentication and Anonymous AccessExtranet TopologiesSecurity GatewaysBest Practices/Avoiding Common PitfallsResources and Q & A
Audience SurveyWhat is your primary role in implementing SharePoint initiatives?Decision Maker, Influencer or SponsorAdmin, Architect or DeveloperAnalyst or End UserConsultant
The Business CaseMarket TrendsCollaborate with business partners/clientsConnect your virtual offices or telecommuting employeesCreate a more compelling internet presence (e.g. including dynamic content, workflow, etc.)Why SharePoint?Leverage content contributors / SME’s throughout your organizationProvide more timely, pointed content with ease Build on your existing SharePoint investment Don’t start from scratch!SharePoint is specifically built for these scenarios
New Licensing ModelsInternet Server licensing No CALs required for external usersVersionsSP Server 2010 for Internet Sites, StandardSame functionality as Standard CALLimited to one Internet domain (i.e. not AD domain)SP Server 2010 for Internet Sites, EnterpriseSame functionality as with Enterprise CALIncludes FAST Search ServerSharePoint FoundationFree, essentially
New Licensing Models – Cont’dDetermine upfront what functionality you need for your public siteLicensing costs differ significantly Development costs can differ significantlyMicrosoft Licensing is complex! Contact us if you need help: Info@ShareSquared.com
Branding for SuccessStart from “close to” scratchPerformance is KeyConsider image format and sizeUse Fiddler or other page analyzersReduce JavaScript payloads (Cui.js, Sp.ui.js, Core.js)Turn off Naming ActiveX controlWeb app general settings pageOrganize your content Utilize SharePoint lists, calendars, web parts etc. Leverage content expiration, versioning, alerts, auditing, etc.Choose a creative design firm that understands your brand, your content and SharePoint!Use a SharePoint Expert for implementation
Authentication ChoicesWindows AuthenticationNative windows authentication methods do not work well over internetBasic Authentication over HTTPSAlternative to native windows authenticationForms Based AuthenticationAlternative user store (SQL, LDAP, etc.)Full support for client application integration.Anonymous AccessRead-only users
Configuring FBA & Anonymous Access
Audience SurveyWhere are you on the SharePoint 2010 adoption curve?Already using SharePoint 2010Will implement/upgrade in 0-3 MonthsWill implement/upgrade in 4-12 MonthsNo near-term plans to upgrade/useUnsure – need more information
Selecting the Right TopologyQuestions to AskWho are the potential users?How will the site be used?What is in the existing environment?Internet Facing TopologiesEdge FirewallBack to Back Perimeter NetworkSplit Back to Back Perimeter Network
Edge FirewallGood for light duty/low security installationsBest for telecommuting employees
Edge Firewall Pros/ConsAdvantagesDisadvantagesLeast amount of hardware & configurationAll Data stored within the trusted networkOnly one set of servers to maintainA single farm to build and maintainMay not need Internet licenseLowest SecurityOnly one firewall protecting Internal network
Perimeter NetworkGood for an Internet only web site.Good for public hosting environment
Perimeter Network Pros/ConsAdvantagesDisadvantagesSingle farm simplifies sharing and maintenanceNo external user access to internal networkContent Deployment between internal and external farm possible Additional infrastructure and configuration requiredInternal users have two user accountsContent Deployment requires external sites to be Read Only
Split PerimeterBest for an Extranet Collaboration scenarioOne way AD Trust
Split Perimeter Pros/ConsAdvantagesDisadvantagesSQL servers not in Perimeter networkInternal users don’t need two accountsExternal users can use Windows (Basic) authenticationRequires the most hardwareMost Complex solution
Gateway Servers	ISA Server 2006Forefront TMG Server 2010Forefront UAG Server 2010
Threat Management GatewayDesigned for Outbound Access ControlCapabilitiesSharePoint publishingNetwork load balancingArray supportMobile accessRich authenticationUnified portalDirect Access
Unified Access GatewayDesigned for Inbound Access ControlCapabilitiesSharePoint publishingNetwork load balancingArray supportMobile accessRich authenticationEndpoint health detectionGranular access policiesInformation leakage mitigationDirect Access
Publishing a SharePoint Site using TMG
Audience SurveyWhat do you see as next steps?Learn more about Public Facing Sites in SharePoint 2010Plan& Design a Public Facing SharePoint SiteImplement a Public Facing SharePoint Site in SharePoint 2010Get some help!
Avoiding PitfallsAnonymous access users still need licensesPeople Picker issues with Read Only Domain ControllersAdmin and Service Accounts should be from Trusted DomainDeactivate/Block features and services that won’t be used (e.g. MySites)Don’t use Themes for SharePoint Foundation 2010Don’t just move to SharePoint – use it’s features!
Best PracticesStart with a “Least Privileges” Security Account approachSet Anonymous Policy for the External Web Application ZoneUse Content Deployment for Read Only WCM systemsService accounts should all be Managed Accounts with automated passwordLeverage multiple zonesAnalyze content & put it into the proper SharePoint structures
SharePoint GamePLAN®Jumpstart your SharePoint deploymentConducted by an MCM, MVP or Sr. ArchitectDeliverablesEducation on SharePoint 2010Brainstorming & Conceptual DesignAssessment – Hardware, AD, Skills, etc.Planning & Implementation Roadmap $4,500 + travel for a 3-day engagementUtilize Microsoft Vouchers (as applicable)Email Info@ShareSquared.com or Call 800-445-1279
DownloadsSeveral handouts are available for download from LiveMeeting:SharePoint 2010 GamePLANSharePoint Composer/MaestroCompany ProfileFREE Trial Version of SharePoint Composer:www.SharePointComposer.com
Resources and Q & AAssessment & PlanningSchedule a SharePoint GamePLAN engagementLearn more about SharePoint 2010Next Webinar: “Tour de SharePoint 2010 with our SharePoint MVP's & Certified Master Candidates” on 5/3/2011Online resourcesExtranet Topologies for SharePoint 2010 http://tinyurl.com/SpExtranetChart Plan Security Hardeninghttp://tinyurl.com/PlanSecHarden Account Permissions and Security Settingshttp://tinyurl.com/AcctPermContact Us: Info@ShareSquared.com or 800-445-1279

More Related Content

PPTX
What your IT Doesn't Know about Publishing DITA Content
PPTX
Best practices for Security and Governance in SharePoint 2013
PPTX
SPSTCDC - SharePoint 2010 Adoption - Decade
PPTX
SharePoint Online v Onprem
PPTX
Sharepoint User Group Geneva - Introduction to Office 365
PPTX
SharePoint Development and the Cloud
PPTX
SharePoint Natural Disasters: "Notes from the field"
PDF
What and how do I choose SharePoint 2013 On-premise vs. Cloud (Office 365)
What your IT Doesn't Know about Publishing DITA Content
Best practices for Security and Governance in SharePoint 2013
SPSTCDC - SharePoint 2010 Adoption - Decade
SharePoint Online v Onprem
Sharepoint User Group Geneva - Introduction to Office 365
SharePoint Development and the Cloud
SharePoint Natural Disasters: "Notes from the field"
What and how do I choose SharePoint 2013 On-premise vs. Cloud (Office 365)

Similar to SharePoint 2010 public facing sites (20)

PPTX
Managesp 160805190411
PPTX
SharePoint 2010 Readiness
PPT
Governance
PPT
Share Point Governance: 10 Steps to Successful Deployment by Joel Oleson Bes...
PPTX
SharePoint 2010 Blended solutions application integration
PPTX
A Successful Path to a Solution Driven SharePoint Migration
PDF
Full trust code is not dead
PDF
SharePoint Add-Ins - Brief Overview
PPT
Maximize Your Sharepoint Investments
PPTX
Sharepoint mobile by pirtle
PPTX
Sharepoint mobile by pirtle
PPTX
Office 365 Deployment Strategies 2.0
PPT
D Cornell Securing Share Point
PPTX
Intro to SharePoint for Developers
PPTX
When to Develop on a Platform (IndyTechFest 2008)
PPT
SharePoint Governance: From Chaos to Success in 10 Steps
PPTX
SharePoint 2013: What's New For Legal?
PPT
Avoiding Failed Deployments Part 2 Interactive Discussion by Joel Oleson
PPTX
Leverage Search and Customize to your Brand within SharePoint 2010
PPTX
SharePoint 2010 design and deploy
Managesp 160805190411
SharePoint 2010 Readiness
Governance
Share Point Governance: 10 Steps to Successful Deployment by Joel Oleson Bes...
SharePoint 2010 Blended solutions application integration
A Successful Path to a Solution Driven SharePoint Migration
Full trust code is not dead
SharePoint Add-Ins - Brief Overview
Maximize Your Sharepoint Investments
Sharepoint mobile by pirtle
Sharepoint mobile by pirtle
Office 365 Deployment Strategies 2.0
D Cornell Securing Share Point
Intro to SharePoint for Developers
When to Develop on a Platform (IndyTechFest 2008)
SharePoint Governance: From Chaos to Success in 10 Steps
SharePoint 2013: What's New For Legal?
Avoiding Failed Deployments Part 2 Interactive Discussion by Joel Oleson
Leverage Search and Customize to your Brand within SharePoint 2010
SharePoint 2010 design and deploy
Ad

More from Chris Riley ☁ (20)

PPTX
The Bootstrappers Guide to the Startup Stack
PPTX
Robot & Frank & Basic AI
PPTX
DevOps is for Everyone - DevOps East
PPTX
Enterprise Docker Requires a Private Registry
PPTX
Continuous Integration (CI) is about more than releases
PPTX
What DevOps means for QA Teams
PPTX
Enterprise DevOps fact or fiction - DevOps Summit 2014
PPTX
Navigating the Developer Tools Market: DevOps Camp Houston 2014
PPTX
Infragistics uses DevOps to increase customer engagment
PPTX
CloudShare TeamLabs Walkthrough
PPTX
Dev/Test in the Cloud - A Business Case
PPTX
Pingar - The Future of Text Analytics
PPTX
Pingar App for SharePoint
PPT
SharePoint meet ECM @ Live 360 2013
PPT
Move your SharePoint Development to the Cloud
PPTX
SPS Toronoto - SharePoint meet ECM
PPTX
CloudShare SP Expert Hackathon
PPTX
SharePoint Meet ECM at #SPSSC
PPTX
SharePoint Meet ECM - SPS Houston
PPTX
SharePoint, Cloud, Records Managment
The Bootstrappers Guide to the Startup Stack
Robot & Frank & Basic AI
DevOps is for Everyone - DevOps East
Enterprise Docker Requires a Private Registry
Continuous Integration (CI) is about more than releases
What DevOps means for QA Teams
Enterprise DevOps fact or fiction - DevOps Summit 2014
Navigating the Developer Tools Market: DevOps Camp Houston 2014
Infragistics uses DevOps to increase customer engagment
CloudShare TeamLabs Walkthrough
Dev/Test in the Cloud - A Business Case
Pingar - The Future of Text Analytics
Pingar App for SharePoint
SharePoint meet ECM @ Live 360 2013
Move your SharePoint Development to the Cloud
SPS Toronoto - SharePoint meet ECM
CloudShare SP Expert Hackathon
SharePoint Meet ECM at #SPSSC
SharePoint Meet ECM - SPS Houston
SharePoint, Cloud, Records Managment
Ad

Recently uploaded (20)

PDF
Reach Out and Touch Someone: Haptics and Empathic Computing
PDF
Encapsulation theory and applications.pdf
PDF
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
PDF
The Rise and Fall of 3GPP – Time for a Sabbatical?
PPTX
Programs and apps: productivity, graphics, security and other tools
PDF
Dropbox Q2 2025 Financial Results & Investor Presentation
PPTX
sap open course for s4hana steps from ECC to s4
PPTX
Effective Security Operations Center (SOC) A Modern, Strategic, and Threat-In...
PDF
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
PDF
Advanced methodologies resolving dimensionality complications for autism neur...
PDF
Profit Center Accounting in SAP S/4HANA, S4F28 Col11
PDF
KodekX | Application Modernization Development
PDF
cuic standard and advanced reporting.pdf
DOCX
The AUB Centre for AI in Media Proposal.docx
PDF
MIND Revenue Release Quarter 2 2025 Press Release
PDF
How UI/UX Design Impacts User Retention in Mobile Apps.pdf
PDF
Per capita expenditure prediction using model stacking based on satellite ima...
PPTX
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
PPTX
Big Data Technologies - Introduction.pptx
PPTX
Digital-Transformation-Roadmap-for-Companies.pptx
Reach Out and Touch Someone: Haptics and Empathic Computing
Encapsulation theory and applications.pdf
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
The Rise and Fall of 3GPP – Time for a Sabbatical?
Programs and apps: productivity, graphics, security and other tools
Dropbox Q2 2025 Financial Results & Investor Presentation
sap open course for s4hana steps from ECC to s4
Effective Security Operations Center (SOC) A Modern, Strategic, and Threat-In...
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
Advanced methodologies resolving dimensionality complications for autism neur...
Profit Center Accounting in SAP S/4HANA, S4F28 Col11
KodekX | Application Modernization Development
cuic standard and advanced reporting.pdf
The AUB Centre for AI in Media Proposal.docx
MIND Revenue Release Quarter 2 2025 Press Release
How UI/UX Design Impacts User Retention in Mobile Apps.pdf
Per capita expenditure prediction using model stacking based on satellite ima...
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
Big Data Technologies - Introduction.pptx
Digital-Transformation-Roadmap-for-Companies.pptx

SharePoint 2010 public facing sites

  • 1. Best Practices for SharePoint 2010 Public Facing Sites
  • 2. SpeakersMichael Van CleaveSr. Architect & Practice Lead MCT, MCPD, MCTS, MCSD.NET Paul Papanek StorkSharePoint MVP & Author Chief Architect & Practice LeadMBA, MCT, MCSE, MCSD, MCDBA, MCTS, MCITP, MCPD…
  • 3. AgendaDiscuss the Business CaseNew Internet Friendly LicensingBranding Tips for SuccessAuthentication and Anonymous AccessExtranet TopologiesSecurity GatewaysBest Practices/Avoiding Common PitfallsResources and Q & A
  • 4. Audience SurveyWhat is your primary role in implementing SharePoint initiatives?Decision Maker, Influencer or SponsorAdmin, Architect or DeveloperAnalyst or End UserConsultant
  • 5. The Business CaseMarket TrendsCollaborate with business partners/clientsConnect your virtual offices or telecommuting employeesCreate a more compelling internet presence (e.g. including dynamic content, workflow, etc.)Why SharePoint?Leverage content contributors / SME’s throughout your organizationProvide more timely, pointed content with ease Build on your existing SharePoint investment Don’t start from scratch!SharePoint is specifically built for these scenarios
  • 6. New Licensing ModelsInternet Server licensing No CALs required for external usersVersionsSP Server 2010 for Internet Sites, StandardSame functionality as Standard CALLimited to one Internet domain (i.e. not AD domain)SP Server 2010 for Internet Sites, EnterpriseSame functionality as with Enterprise CALIncludes FAST Search ServerSharePoint FoundationFree, essentially
  • 7. New Licensing Models – Cont’dDetermine upfront what functionality you need for your public siteLicensing costs differ significantly Development costs can differ significantlyMicrosoft Licensing is complex! Contact us if you need help: Info@ShareSquared.com
  • 8. Branding for SuccessStart from “close to” scratchPerformance is KeyConsider image format and sizeUse Fiddler or other page analyzersReduce JavaScript payloads (Cui.js, Sp.ui.js, Core.js)Turn off Naming ActiveX controlWeb app general settings pageOrganize your content Utilize SharePoint lists, calendars, web parts etc. Leverage content expiration, versioning, alerts, auditing, etc.Choose a creative design firm that understands your brand, your content and SharePoint!Use a SharePoint Expert for implementation
  • 9. Authentication ChoicesWindows AuthenticationNative windows authentication methods do not work well over internetBasic Authentication over HTTPSAlternative to native windows authenticationForms Based AuthenticationAlternative user store (SQL, LDAP, etc.)Full support for client application integration.Anonymous AccessRead-only users
  • 10. Configuring FBA & Anonymous Access
  • 11. Audience SurveyWhere are you on the SharePoint 2010 adoption curve?Already using SharePoint 2010Will implement/upgrade in 0-3 MonthsWill implement/upgrade in 4-12 MonthsNo near-term plans to upgrade/useUnsure – need more information
  • 12. Selecting the Right TopologyQuestions to AskWho are the potential users?How will the site be used?What is in the existing environment?Internet Facing TopologiesEdge FirewallBack to Back Perimeter NetworkSplit Back to Back Perimeter Network
  • 13. Edge FirewallGood for light duty/low security installationsBest for telecommuting employees
  • 14. Edge Firewall Pros/ConsAdvantagesDisadvantagesLeast amount of hardware & configurationAll Data stored within the trusted networkOnly one set of servers to maintainA single farm to build and maintainMay not need Internet licenseLowest SecurityOnly one firewall protecting Internal network
  • 15. Perimeter NetworkGood for an Internet only web site.Good for public hosting environment
  • 16. Perimeter Network Pros/ConsAdvantagesDisadvantagesSingle farm simplifies sharing and maintenanceNo external user access to internal networkContent Deployment between internal and external farm possible Additional infrastructure and configuration requiredInternal users have two user accountsContent Deployment requires external sites to be Read Only
  • 17. Split PerimeterBest for an Extranet Collaboration scenarioOne way AD Trust
  • 18. Split Perimeter Pros/ConsAdvantagesDisadvantagesSQL servers not in Perimeter networkInternal users don’t need two accountsExternal users can use Windows (Basic) authenticationRequires the most hardwareMost Complex solution
  • 19. Gateway Servers ISA Server 2006Forefront TMG Server 2010Forefront UAG Server 2010
  • 20. Threat Management GatewayDesigned for Outbound Access ControlCapabilitiesSharePoint publishingNetwork load balancingArray supportMobile accessRich authenticationUnified portalDirect Access
  • 21. Unified Access GatewayDesigned for Inbound Access ControlCapabilitiesSharePoint publishingNetwork load balancingArray supportMobile accessRich authenticationEndpoint health detectionGranular access policiesInformation leakage mitigationDirect Access
  • 22. Publishing a SharePoint Site using TMG
  • 23. Audience SurveyWhat do you see as next steps?Learn more about Public Facing Sites in SharePoint 2010Plan& Design a Public Facing SharePoint SiteImplement a Public Facing SharePoint Site in SharePoint 2010Get some help!
  • 24. Avoiding PitfallsAnonymous access users still need licensesPeople Picker issues with Read Only Domain ControllersAdmin and Service Accounts should be from Trusted DomainDeactivate/Block features and services that won’t be used (e.g. MySites)Don’t use Themes for SharePoint Foundation 2010Don’t just move to SharePoint – use it’s features!
  • 25. Best PracticesStart with a “Least Privileges” Security Account approachSet Anonymous Policy for the External Web Application ZoneUse Content Deployment for Read Only WCM systemsService accounts should all be Managed Accounts with automated passwordLeverage multiple zonesAnalyze content & put it into the proper SharePoint structures
  • 26. SharePoint GamePLAN®Jumpstart your SharePoint deploymentConducted by an MCM, MVP or Sr. ArchitectDeliverablesEducation on SharePoint 2010Brainstorming & Conceptual DesignAssessment – Hardware, AD, Skills, etc.Planning & Implementation Roadmap $4,500 + travel for a 3-day engagementUtilize Microsoft Vouchers (as applicable)Email Info@ShareSquared.com or Call 800-445-1279
  • 27. DownloadsSeveral handouts are available for download from LiveMeeting:SharePoint 2010 GamePLANSharePoint Composer/MaestroCompany ProfileFREE Trial Version of SharePoint Composer:www.SharePointComposer.com
  • 28. Resources and Q & AAssessment & PlanningSchedule a SharePoint GamePLAN engagementLearn more about SharePoint 2010Next Webinar: “Tour de SharePoint 2010 with our SharePoint MVP's & Certified Master Candidates” on 5/3/2011Online resourcesExtranet Topologies for SharePoint 2010 http://tinyurl.com/SpExtranetChart Plan Security Hardeninghttp://tinyurl.com/PlanSecHarden Account Permissions and Security Settingshttp://tinyurl.com/AcctPermContact Us: Info@ShareSquared.com or 800-445-1279

Editor's Notes

  • #2: PAUL WILL START 10 MINUTE TIMER Blended SharePoint 2010 & .NET Solutions
  • #3: PAUL
  • #4: PAULBullet Points from the email blastDeveloping a Strategy for Leveraging SharePoint Inside-OutNew Internet Friendly Licensing in SharePoint 2010Branding for SuccessAuthentication and Anonymous AccessSelecting the Right Extranet TopologyForefront Threat Management and Unified Access GatewaysBest Practices & Avoiding Pitfalls
  • #5: PAUL
  • #6: MICHAEL
  • #7: MICHAELLimited to ONE Internet domain. (Not AD domain) Example: ShareSquared.com Partners.ShareSquared.com Emplyees.ShareSquared.com NOT: CompanyA.com CompanyB.com OrganizaitonC.org*** Fast Search/Enterprise SharePointYou cannot deploy both on the same license. The license only covers SharePoint Enterprise Internet OR Fast Search Server. Not both concurrently.*** SharePoint Foundation if you expose it externally you need to purchase a Windows external connector or your server.
  • #8: MICHAELMicrosoft Licensing check with a Licensing Representative BEFORE you deploy your site!
  • #9: MICHAELChoose a SharePoint Expert:Branding in needs expert proficiency due to it’s complexity.Start from close to scratch: Start from a minimal.master and only include needed controls (moderate)(icon)Performance is Key: use Fiddler to assist you with what the page is sending to the browserReduce Javascript Payloads: some of the following scripts may not be needed depending on your site. Remove the .js file if it’s functionality is not needed.
  • #10: MICHAELWindows Auth Remote UsersExtranet Remote Partners/Clients/etcAnonymous Read-only users ***Although you can allow users to post to lists (blogs, comments, etc) but you cannot set them up to contribute to libraries.
  • #11: MICHAEL
  • #12: MICHAEL
  • #13: PAUL
  • #14: PAUL
  • #15: PAUL
  • #16: PAUL
  • #17: PAUL
  • #18: PAUL
  • #19: PAUL
  • #20: PAUL
  • #21: PAUL
  • #22: PAUL
  • #23: PAUL
  • #24: PAUL
  • #25: PAUL
  • #26: PAUL
  • #27: PAULIf they need help, we’ve had access to SharePoint 2010 for over a year – we can guide them thru the processMention Downloads, Recording & Email invite to ECM in SharePoint 2010 WebinarExplain SharePoint GamePLAN Q & A - EVERYONE
  • #28: PAUL
  • #29: PAULIf they need help, we’ve had access to SharePoint 2010 for over a year – we can guide them thru the processMention Downloads, Recording & Email invite to ECM in SharePoint 2010 WebinarExplain SharePoint GamePLAN WEBINAR: Tuesday October 26th 11:00 AM PSTCOMPOSER Site: About to get a makeover as a branded 2010 site, build using Composer & MaestroPRICING / LICENSING: Free SharePoint Foundation Version – Composer Only~$299 for Foundation BuildComposer Standard and Enterprise is sold per-UserMaestro Standard and Enterprise is sold per-serverSee the site for pricing details & info in a follow-up email w/ the Q & A contentQ & A – EVERYONEExtranet Topologies for SharePoint 2010http://tinyurl.com/SpExtranetChartPlan Security Hardeninghttp://technet.microsoft.com/en-us/library/cc262849.aspxAccount Permissions and Security Settingshttp://technet.microsoft.com/en-us/library/cc678863.aspx