Goals Introduce the Windows Server 2003 family of operating systems

Slides:



Advertisements
Similar presentations
Encrypting Wireless Data with VPN Techniques
Advertisements

Internet Protocol Security (IP Sec)
1.1 © 2004 Pearson Education, Inc. Exam Managing and Maintaining a Microsoft® Windows® Server 2003 Environment Lesson 1: Introducing Windows Server.
Module 5: Configuring Access for Remote Clients and Networks.
1 Objectives Configure Network Access Services in Windows Server 2008 RADIUS 1.
1 Configuring Virtual Private Networks for Remote Clients and Networks.
70-293: MCSE Guide to Planning a Microsoft Windows Server 2003 Network, Enhanced Chapter 11: Planning Network Access.
Access Controls Supervised by: Dr.Lo’ai Tawalbeh Prepared by: Abeer Saif.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment Chapter 1: Introduction to Windows Server 2003.
70-270, MCSE/MCSA Guide to Installing and Managing Microsoft Windows XP Professional and Windows Server 2003 Chapter Twelve Implementing Terminal.
Hands-On Microsoft Windows Server 2003 Networking Chapter 1 Windows Server 2003 Networking Overview.
Windows 2000 Remote Access. Remote Access Overview With Windows 2000 remote access, remote access clients connect to remote access servers and are transparently.
Internet Protocol Security (IPSec)
Virtual Private Network (VPN) © N. Ganesan, Ph.D..
Windows 2008 Overview Lecture 1. Windows Networking Evolution Windows for Workgroups – peer-to-peer networking built into the OS Windows NT – separate.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment, Enhanced Chapter 1: Introduction to Windows Server 2003.
Lecture slides prepared for “Business Data Communications”, 7/e, by William Stallings and Tom Case, Chapter 8 “TCP/IP”.
Windows Server 2008 Chapter 8 Last Update
Chapter 11: Dial-Up Connectivity in Remote Access Designs
70-291: MCSE Guide to Managing a Microsoft Windows Server 2003 Network Chapter 10: Remote Access.
1 Microsoft Windows NT 4.0 Authentication Protocols Password Authentication Protocol (PAP) Challenge Handshake Authentication Protocol (CHAP) Microsoft.
VPN Scenarios © N. Ganesan, Ph.D.. Chapter Objectives.
Chapter 6 Configuring, Monitoring & Troubleshooting IPsec
Virtual Private Networks (Tunnels). When Are VPN Tunnels Used? VPN with PPTP tunnel Used if: All routers support VPN tunnels You are using MS-CHAP or.
Network Services Lesson 6. Objectives Skills/ConceptsObjective Domain Description Objective Domain Number Setting up common networking services Understanding.
Network LANscape Servers & Equipment Found In a Typical Local Area Network (LAN) By George Squillace New Horizons of MichiganGeorge Squillace MCT, MCSE,
SYSTEM ADMINISTRATION Chapter 13 Security Protocols.
1.1 © 2004 Pearson Education, Inc. Exam Managing and Maintaining a Microsoft® Windows® Server 2003 Environment Lesson 1: Introducing Windows Server.
Module 9: Planning Network Access. Overview Introducing Network Access Selecting Network Access Connection Methods Selecting a Remote Access Policy Strategy.
MCSE Guide to Microsoft Exchange Server 2003 Administration Chapter Four Configuring Outlook and Outlook Web Access.
Chapter 13 – Network Security
Remote Access Chapter 4. Learning Objectives Understand implications of IEEE 802.1x and how it is used Understand VPN technology and its uses for securing.
Remote Access Chapter 4. Learning Objectives Understand implications of IEEE 802.1x and how it is used Understand VPN technology and its uses for securing.
Objectives Configure routing in Windows Server 2008 Configure Routing and Remote Access Services in Windows Server 2008 Network Address Translation 1.
Module 9: Configuring IPsec. Module Overview Overview of IPsec Configuring Connection Security Rules Configuring IPsec NAP Enforcement.
1 Chapter 12: VPN Connectivity in Remote Access Designs Designs That Include VPN Remote Access Essential VPN Remote Access Design Concepts Data Protection.
Module 11: Remote Access Fundamentals
VIRTUAL PRIVATE NETWORK By: Tammy Be Khoa Kieu Stephen Tran Michael Tse.
Module 9: Fundamentals of Securing Network Communication.
1 Introduction to Microsoft Windows 2000 Windows 2000 Overview Windows 2000 Architecture Overview Windows 2000 Directory Services Overview Logging On to.
1 Chapter Overview Password Protection Security Models Firewalls Security Protocols.
1 Week #5 Routing and NAT Network Overview Configuring Routing Configuring Network Address Translation Troubleshooting Routing and Remote Access.
Network Infrastructure Microsoft Windows 2003 Network Infrastructure MCSE Study Guide for Exam
1.1 © 2004 Pearson Education, Inc. Exam Managing and Maintaining a Microsoft® Windows® Server 2003 Environment Lesson 1: Introducing Windows Server.
1 Chapter 13: RADIUS in Remote Access Designs Designs That Include RADIUS Essential RADIUS Design Concepts Data Protection in RADIUS Designs RADIUS Design.
1 Overview of Microsoft Windows 2000 Multipurpose OS Reduces total cost of ownership (TCO)
Active Directory. Computers in organizations Computers are linked together for communication and sharing of resources There is always a need to administer.
4.1 © 2004 Pearson Education, Inc. Exam Managing and Maintaining a Microsoft® Windows® Server 2003 Environment Lesson 12: Implementing Security.
Windows Vista Configuration MCTS : Advanced Networking.
Virtual Private Network Access for Remote Networks
Basharat Institute of Higher Education
Chapter 1 Introduction to Networking
Module 9: Configuring Network Access
Windows 2008 Overview Lecture 1.
Virtual Private Network (VPN)
70-291: MCSE Guide to Managing a Microsoft Windows Server 2003 Network, Enhanced Chapter 1: Networking Overview.
Microsoft Windows NT 4.0 Authentication Protocols
Module 8: Networking Services
Module Overview Installing and Configuring a Network Policy Server
70-293: MCSE Guide to Planning a Microsoft Windows Server 2003 Network, Enhanced Chapter 1: Overview of Planning A Windows Server 2003 Network.
Remote Access Lecture 2.
Configuring and Troubleshooting Routing and Remote Access
Objectives Differentiate between the different editions of Windows Server 2003 Explain Windows Server 2003 network models and server roles Identify concepts.
Understand Networking Services
Examining Network Protocols
Chapter 3: Windows7 Part 4.
Virtual Private Network (VPN)
Server-to-Client Remote Access and DirectAccess
Introduction to Network Security
Cengage Learning: Computer Networking from LANs to WANs
Presentation transcript:

Goals Introduce the Windows Server 2003 family of operating systems Explore the features of Windows Server 2003 Introduce Windows Server 2003 operating system architecture Understand workgroups and domains Introduce Windows Server 2003 network services Understand Windows Server 2003 network protocols Introduce Windows Server 2003 network security services

Introducing the Windows Server 2003 Family of Operating Systems (Skill 1) Introducing the Windows Server 2003 Family of Operating Systems Windows Server 2003 products Standard Edition: for small to medium-sized businesses Enterprise Edition: for mission-critical server workloads Datacenter Edition: for medium to large-sized organizations that require high levels of scalability and reliability Web Edition: for dedicated Web serving and hosting; also a platform for building and hosting Web applications

Figure 1-1 The four main products in the Windows Server 2003 family (Skill 1) Figure 1-1 The four main products in the Windows Server 2003 family

Figure 1-2 Windows Server 2003 features (Skill 2) Figure 1-2 Windows Server 2003 features

Introducing Workgroup and Domains (Skill 4) Introducing Workgroup and Domains Windows Server 2003 operating system supports workgroups and domains, the two basic network model types that enable users to share common resources A workgroup or peer-to-peer network is a logical group of computers that are interconnected, generally over a local area network (LAN) A domain is a logical grouping of network computers that share a central directory database

Introducing Workgroup and Domains (2) (Skill 4) Introducing Workgroup and Domains (2) Workgroup features The administration of user accounts and resource security in a workgroup is decentralized To gain access to resources on any computer in the workgroup, user must have an account on that computer Workgroup limitations A workgroup model is practical only in smaller environments where computers are in close proximity Microsoft recommends that a workgroup consist of less than 10 computers

Figure 1-9 Workgroup model (Skill 4) Figure 1-9 Workgroup model

Introducing Workgroup and Domains (3) (Skill 4) Introducing Workgroup and Domains (3) Domain features Active Directory database Stores information about how the network is structured and organized Enables users to identify and locate resources on the network Domain controller Windows Server 2003 computer on which Active Directory resides Manages security-related aspects of user/domain interactions

Introducing Workgroup and Domains (4) (Skill 4) Introducing Workgroup and Domains (4) Domain advantages Centralized security and administration means that a change to any object within the domain is available to the entire domain Provide a single logon process for users to gain access to network resources, such as file, print, and application resources

(Skill 4) Figure 1-10 Domain model

Introducing Network Services in Windows Server 2003 (Skill 5) Introducing Network Services in Windows Server 2003 Dynamic Host Configuration Protocol (DHCP) Domain Name System (DNS) Windows Internet Name Service (WINS) Virtual Private Networks (VPN) Routing and Remote Access Service (RRAS) Internet Authentication Service (IAS) and Load Balancing Internet Connection Firewall (ICF)

Introducing Network Services in Windows Server 2003 (2) (Skill 5) Introducing Network Services in Windows Server 2003 (2) Dynamic Host Configuration Protocol (DHCP) Provides the standard used by DHCP servers on the network DHCP servers manage the dynamic allocation of IP addresses and the related configuration details for DHCP-enabled clients on your network Domain Name System (DNS) Main name resolution service for Windows Server 2003 Enables access to computers on a TCP/IP network using the domain name

Introducing Network Services in Windows Server 2003 (3) (Skill 5) Introducing Network Services in Windows Server 2003 (3) Windows Internet Name Service (WINS) Assigns or maps an IP address to a computer name so network users can find a computer on a TCP/IP network using the NetBIOS name WINS server database provides a lookup directory Virtual Private Networks (VPNs) Provide connections to private networks, such as a LAN, through a non-secure communication channel like the Internet Use tunneling and encryption to create a virtual tunnel for secure information exchange

Introducing Network Services in Windows Server 2003 (4) (Skill 5) Introducing Network Services in Windows Server 2003 (4) Routing and Remote Access Service (RRAS) Allows remote or mobile workers to connect to a firm’s networks so that they can work as if their computers were physically connected to the network Workers connect to the LAN via modem or Virtual Private Network (VPN) IAS RADIUS and Load Balancing Internet Authentication Service (IAS) is Windows Server 2003’s Remote Authentication Dial-In User Service (RADIUS) server component Network Load Balancing (NLB) allows certain types of servers (mostly file/print servers and Web servers) to scale to a much larger size than would otherwise be possible

Introducing Network Services in Windows Server 2003 (5) (Skill 5) Introducing Network Services in Windows Server 2003 (5) IAS Enhancements Centralize services for wireless users and logs information to a Microsoft SQL server Allow advanced SQL queries Provides new 801.1X authentication features and cross-forest authentication Internet Connection Firewall (ICF) Supplies basic protection on computers directly connected to the Internet or on LAN segments Designed for use in a small business

Figure 1-11 Networking services offered by Windows Server 2003 (Skill 5) Figure 1-11 Networking services offered by Windows Server 2003

Introducing Network Protocols (Skill 6) Introducing Network Protocols Transmission Control Protocol/Internet Protocol (TCP/IP) Point-to-Point Tunneling Protocol (PPTP) Layer Two Tunneling Protocol (L2TP) Hypertext Transmission Protocol (HTTP)

Introducing Network Protocols (2) (Skill 6) Introducing Network Protocols (2) Transmission Control Protocol/Internet Protocol (TCP/IP) Core protocol suite used by the Internet and Windows 2003 Server networks Scalable and routable transport protocol suite used for both large and small networks Enables you to route messages across networks and between computers using different operating systems and with widely varying structural designs

Introducing Network Protocols (3) (Skill 6) Introducing Network Protocols (3) Point-to-Point Tunneling Protocol (PPTP) Tunneling protocol used to create secure connections to corporate networks, over any intermediate network Secure connections for VPNs are created using either PPTP or Layer Two Tunneling Protocol Layer Two Tunneling Protocol (L2TP) Another tunneling protocol used to create VPNs Creates a “tunnel” but does not encrypt data Use in conjunction with IPSec, which provides data encryption

Introducing Network Protocols (4) (Skill 6) Introducing Network Protocols (4) Hypertext Transmission Protocol (HTTP) Part of the TCP/IP protocol suite Standard protocol used in the transmission of data across the Internet

Figure 1-14 Network protocols supported by Windows Server 2003 (Skill 6) Figure 1-14 Network protocols supported by Windows Server 2003

Introducing Network Security Services (Skill 7) Introducing Network Security Services Kerberos v.5 Hypertext Transmission Protocol (HTTP) Internet Protocol Security (IPSec) Encrypting File System (EFS) Security configuration tools

Introducing Network Security Services (2) (Skill 7) Introducing Network Security Services (2) Kerberos v.5 A ticket-based authentication protocol Provides high security for authentication traffic using digital signatures and mutual authentication mechanisms Public Key Infrastructure (PKI) and Microsoft Certificate Services PKI is a system of digital certificates and trusted Certification Authorities (CAs) as well as other registration authorities that issue them Verifies and authenticates the validity of each party in a communication exchange

Introducing Network Security Services (3) (Skill 7) Introducing Network Security Services (3) Internet Protocol Security (IPSec) A vendor-independent encryption protocol The ability to sign and/or encrypt any IP packet makes it vendor- and application-independent Encrypting File System (EFS) Encrypts data stored in files and folders to protect against unauthorized access In the EFS encryption technique, important data is secured using an asymmetrical cryptographic key pair: a public key and a private key

Introducing Network Security Services (4) (Skill 7) Introducing Network Security Services (4) Internet Protocol Security (IPSec) A vendor-independent encryption protocol The ability to sign and/or encrypt any IP packet makes it vendor- and application-independent Security configuration tools Cost reduction tools provided by Windows Server 2003 Include the Microsoft Management Console (MMC) used to configure Windows Server 2003 security settings and conduct system analysis

Figure 1-15 Security Services provided by Windows Server 2003 (Skill 7) Figure 1-15 Security Services provided by Windows Server 2003

Figure 1-17 The Manage Your Server graphical user interface (Skill 7) Figure 1-17 The Manage Your Server graphical user interface