In this posting I will walk through deploying and configuring the Enhanced Mitigation Experience Toolkit (EMET) 4.1 Update 1 with System Center Configuration Manager 2012 R2.

Last week EMET 4.1 Update 1 was released and included new functionality and updates, such as:

• Updated default protection profiles, Certificate Trust rules, and Group Policy Object configuration.
• Shared remote desktop environments are now supported on Windows servers where EMET is installed.
• Windows Event logging mechanism allows for more accurate reporting in multi-user scenarios.
• Addressed several application-compatibility enhancements and mitigation false positive reporting

There is also a Technical Preview 2 of EMET 5.0 released, but since in a preview it’s not recommended for production deployment at the moment.

I also encourage you to read the following articles before deploying in a production environment EMET mitigations guidelines & The Enhanced Mitigation Experience Toolkit, these articles covers application-compatibility risks and other things to think about before rolling out in wide-scale. I also encourage you to read the EMET User’s Guide that it’s part of the download to get familiar with the mitigation technologies, configuration options and application compatibility testing results.avatar (more…)