ISD

Desktops Standards Architecture

Desktops Standards Architecture

The current suite of standards associated with a MS Windows-based platform for staff and student services.

The information presented below sets out the current suite of standards associated with Microsoft and Apple platforms for staff and student services, as of August 2017.

This standard is implemented as part of the Student Desktop Service (SITL) within centrally-managed IT laboratories and also is the basis of the Supported Staff Environment (SSE) operated by Information Services.

Desktop Standards Architecture - Microsoft Windows DevicesSSESITL
Hardware Specification
(Microsoft Windows)
Processor Type:
6th Generation Intel Core i5-6500 (Windows 7 onward)
7th Generation Intel Core i5-7500 (Windows 10 onward)
Yes Yes
Memory 8GB Yes Yes
Energy Rating: E-Star 5 Yes Yes
TPM Chip: To be standard on laptops, desktops and other devices that will host information necessitating an encryption standard. Yes  
Hard Disk: 120GB Solid State Drive (SSD) Yes Yes
Administrative desktops deployed will have My Documents re-directed to the user’s HOME directory on a server with all business-critical files being required to be held on networked storage. Users with an approved requirement for a larger capacity local disk drive may seek an alternative SSD or standard mechanical HDD. Yes  
The University's Procurement Office provide approved documents and details supplied by our National Desktops and Notebook Agreement (NDNA) partners on hardware that meets the current specifications. Yes Yes
Operating Systems-(Microsoft Windows) Microsoft Windows 7 64-bit Enterprise 6.1
(note: Cognos exception - see administrative staff systems below)
Where appropriate, ISD will release a technical Data Sheet to define key configuration settings e.g. security aspects of operating system as registry settings.  A ‘standard’ configuration version will be made available for use University-wide.
Yes  
Centrally Managed Student IT Systems (SITL) deployed in Library areas, Laboratories and Teaching Rooms operate under Microsoft Windows 10 LTSB (Long Term Service Branch) to provide the functionality, stability and operational features required for the SITL service.   Yes
A suite of "images" containing a Microsoft Windows Operating System and core applications profile that meet ISD standards is maintained for the SITL and SSE environments. Images are remotely delivered to desktops using SCCM-based technologies. Yes Yes
Core Microsoft Windows Applications
(both SITL and SSE)
Microsoft Office Professional Edition 2016 Yes Yes
Internet Explorer Version 11 Yes Yes
Plugins and Utlities: Adobe Reader XI, Adobe Flash Player, Adobe Shockwave Player, Adobe Digital Editions, Java RE, MS Silverlight,Blackboard Collaborator, VLC Media Player Yes Yes
Google Chrome with Plugins and Utilities: as for Internet Explorer Yes Yes
Adobe Reader XI Yes Yes
SCCM client (management and deployment services) Yes Yes
Student Systems (SITL)

Profile subject to SITL annual review
SPSS V24   Yes
Mindview V6   Yes
TextHELP Read & Write Gold  V11.5   Yes
Plugins and Utilities:
Refworks Write-N-Cite, FileZilla.
  Yes
Administrative Staff Systems
(SSE)
MS Access (normally excluded from Core Applications)
In cases where it is mandatory to have the application approval must be obtained for its deployment
Yes  
MS Outlook 2016 Yes  
Skype For Business Yes  
Oracle8i (8.1.7.0.0) Yes  
Cognos Impromptu V7.3
Staff requiring 'full cognos' client services that include Oracle8i (8.1.7.0.0) and Cognos Impromptu V7.3 will need to run a Windows7 32-bit image that has been enhanced to meet the current core applications.
Yes  
Security and Information Assurance Virus Protection: McAfee EPO client with McAfee Endpoint Security protection. Yes Yes
Firewall: Windows Firewall Yes Yes
All systems to be domain joined for user login/authentication Yes Yes
Data Encryption: Bitlocker services applied to laptops which must have TPM security feature (as identified by the Information Assurance Working Group) Yes  
Workstation Image Protection: Windows Group Policy as applied by "Service Level 1,2 or 3" membership banding within domain computer object containers (see Supported Staff Environment) Yes Yes
    
Desktop Standards Architecture - Apple DevicesSSESITL
Hardware Specification
(Apple MacOS)
Processor Type: 6th Generation Intel Core i5 (minimum) Yes Yes
Memory 8GB Yes Yes
Hard Disk: 120GB Solid State Drive (SSD) Yes Yes
Capability to support the current MacOS version (10.12.5) Yes Yes
Operating Systems-(Apple MacOS) Apple systems deployed from summer 2017 onwards will be with MacOS 10.12.6. Systems procured after this date will be delivered with later MacOS versions.ISD advises that the latest currently available version of MacOS is used at build time (applications and configuration elements will be delivered in a layered fashion by JAMF Pro service. Yes Yes
When operational efficiencies are required (eg: SITL laboratories),an "image" with an OS and applications profile may be prepared and remotely deployed using "Netboot" and "DeployStudio" services.  Yes
Core Additional Applications
(Apple MacOS)
Microsoft Office Professional Edition 2016 Yes Yes
Safari web browser (latest version) Yes Yes
JAMF Pro Client (management and deployment services)YesYes
Plugins and Utilities (latest versions): Adobe Reader, Adobe Digital Editions, Adobe Flash Player, Adobe Shockwave Player, Java RE, VLC Media Player, Blackboard CollaboratorYesYes
SPSS V-24   Yes
Skype For BusinessYes 
Microsoft Outlook 2016 Yes  
Additional applications should be packaged and delivered as required by the JAMF Pro Suite to support operational efficiencies. Yes Yes
Security and Information Assurance Virus Protection: McAfee EPO client with McAfee Endpoint Security protection. Yes Yes
All systems to be domain joined for user login/authentication Yes Yes
Data Encryption: Applied to laptops which must have Filevault-2 encryption security (identified by the Information Assurance Working Group) applied. Yes  
JAMF Pro Suite management of system and security settings Yes Yes