Active Directory: Final Solution to Enterprise System Integration

Slides:



Advertisements
Similar presentations
How to Succeed with Active Directory Robert Williams, PhD CEO Secure Logistix Corporation.
Advertisements

70-294: MCSE Guide to Microsoft Windows Server 2003 Active Directory, Enhanced Chapter 1: Introduction to Active Directory.
Chapter 4 Chapter 4: Planning the Active Directory and Security.
3.1 © 2004 Pearson Education, Inc. Exam Managing and Maintaining a Microsoft® Windows® Server 2003 Environment Lesson 3: Introducing Active Directory.
CS603 Active Directory February 1, 2001.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment Chapter 1: Introduction to Windows Server 2003.
1 Chapter 1 Introduction to Windows Server Two main goals for Net Admin Make network resources available to users Files, folders, printers, etc.
Hands-On Microsoft Windows Server 2003 Administration Chapter 1 Windows Server 2003 Network Administration.
By Rashid Khan Lesson 4-Preparing to Serve: Understanding Microsoft Networking.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment Chapter 1: Introduction to Windows Server 2003.
Chapter 8: Network Operating Systems and Windows Server 2003-Based Networking Network+ Guide to Networks Third Edition.
3.1 © 2004 Pearson Education, Inc. Exam Managing and Maintaining a Microsoft® Windows® Server 2003 Environment Lesson 3: Introducing Active Directory.
By Karan Oberoi.  A directory service (DS) is a software application- or a set of applications - that stores and organizes information about a computer.
Understanding Active Directory
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment, Enhanced Chapter 1: Introduction to Windows Server 2003.
A centralized system.  Active Directory is Microsoft's trademarked directory service, an integral part of the Windows architecture. Like other directory.
1 CSIT 320. Just as the combination of a database and a database management system collects and organizes information about an institution/company/… as.
Overview of Active Directory Domain Services Lesson 1.
Lesson 17. Domains and Active Directory. Objectives At the end of this Presentation, you will be able to:
Overview of Active Directory Domain Services Lesson 1.
(ITI310) SESSIONS : Active Directory By Eng. BASSEM ALSAID.
BZUPAGES.COM An Introduction to. BZUPAGES.COM Introduction Large corporations today face the following problems Finding a certain file. Seeing everything.
Directory services Unit objectives
11 REVIEWING MICROSOFT ACTIVE DIRECTORY CONCEPTS Chapter 1.
Exploring Directory Services. Need for DS Multiple servers, multiple services in single network –Multiple servers for reliability, security, optimizing.
Session 6 Windows Platform Dina Alkhoudari. Learning Objectives What is Active Directory Logical components of active directory Physical components of.
Windows Server 2008 Chapter 4 Last Update
Working with domains and Active Directory
The Directory A distributed database Distributed maintenance.
Microsoft Active Directory(AD) A presentation by Robert, Jasmine, Val and Scott IMT546 December 11, 2004.
Designing Active Directory for Security
Windows 2000 Active Directory Service COSC 513 Yongquan Cai 03/10/2001.
A detailed look at the Microsoft Windows Infrastructure at UWE including Active Directory (AD), MIIS, Exchange, SMS, IIS, SQL Server, Terminal Services.
Windows 2000 Operating System -- Active Directory Service COSC 516 Yuan YAO 08/29/2000.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment, Enhanced Chapter 1: Introduction to Windows Server 2003.
September 18, 2002 Windows 2000 Server Active Directory By Jerry Haggard.
Module 7 Active Directory and Account Management.
Active Directory Harikrishnan V G 18 March Presentation titlePage 2 Agenda ► Introduction – Active Directory ► Directory Service ► Benefits of Active.
Active Directory Maryam Izadi. Topics Covered NT Vs 2000/2003 Active Directory LDAP MMC.
1 Windows 2008 Configuring Server Roles and Services.
Active Directory Overview n Course: Operating System n Professor: Mort Anvari n Student: Lina Si n Date: 09/07/02.
 Identify Active Directory functions and Benefits.  Identify the major components that make up an Active Directory structure.  Identify how DNS relates.
Page 1 Active Directory and DNS Lecture 2 Hassan Shuja 09/14/2004.
By Rashid Khan Lesson 6-Building a Directory Service.
Hands-On Microsoft Windows Server 2008 Chapter 4-Part 1 Introduction to Active Directory and Account Manager.
Windows 2000 Ronnie Park Jarod Nozawa Joe Stones Yassir Mhdhroui.
OVERVIEW OF ACTIVE DIRECTORY
Introduction to Active Directory
1 Active Directory Service in Windows 2000 Li Yang SID: November 2000.
Logical and Physical Network Design 1. Active Directory Objects Objects Represent Network Resources (Users,Groups,Computers,Printers) Attributes Store.
Hussain Ali Department of Computer Engineering KFUPM, Dhahran, Saudi Arabia Active Directory.
Active Directory. Computers in organizations Computers are linked together for communication and sharing of resources There is always a need to administer.
CEG 2400 Fall 2012 Directory Services Active Directory Tree Domain.
Windows 2003 Architecture, Active Directory & DNS Lecture # 3 Hassan Shuja 02/14/2006.
Directory Services CS5493/7493. Directory Services Directory services represent a technological breakthrough by integrating into a single management tool:
1 Introduction to Active Directory Directory Services Uniquely identify users and resources on a network Provide a single point of network management.
MCSE: Windows Server 2003 Active Directory Planning, Implementation, and Maintenance Study Guide, Second Edition (70-294) Chapter 1: Overview of the Active.
Active Directory Domain Services (AD DS). Identity and Access (IDA) – An IDA infrastructure should: Store information about users, groups, computers and.
Planning an Active Directory Deployment Lesson 1.
COMP1321 Digital Infrastructure Richard Henson March 2016.
Windows Active Directory – What is it? Definition - Active Directory is a centralized and standardized system that automates network management of user.
Overview of Active Directory Domain Services
Overview of Active Directory Domain Services
Active Directory Administration
(ITI310) SESSIONS 6-7-8: Active Directory.
Objectives Differentiate between the different editions of Windows Server 2003 Explain Windows Server 2003 network models and server roles Identify concepts.
Active Directory Stored collection of information about objects
Windows Active Directory Environment
ACTIVE DIRECTORY An Overview.. By Karan Oberoi.
Introduction to Active Directory Directory Services
Presentation transcript:

Active Directory: Final Solution to Enterprise System Integration Author: Liming Liao Date: 2/23/2001

What is Directory Services It is the central authority that manages the identities and brokers the relationships between the distributed resources, enabling them to work together. Examples: Yellow Pages, Shopping List It is composed of objects like people, printers, servers, etc.

Functions of Directory Service A place to store information about network-based entities. A consistent way to name, describe, locate, access, manage, and secure information about these individual resources.

Why Directory Service is needed local area networks (LANs) and wide area networks (WANs) grow larger and more complex. networks are connected to the Internet. applications require more from the network and are linked to other systems through corporate intranets.

Life without a Central Directory Service

Life without a Central Directory Service

Disadvantages of life without a Central Directory Service Data duplicates prone to user errors same data for one object has to be input several times enterprise-widely Update information for a single object may require changes to be made to numerous places Multiple logins for a single user trying to access different databases or networks Each database in the enterprise requires a separate login name and password Each network in the enterprise requires a separate login name and password

With Centralized Directory Services

With Centralized Directory Services

Advantages of Directory Services Entry and management of personal data, such as name, phone number and supervisor, is centralized These information is entered and stored in one place. If some of the information is entered wrongly or needs to be changed, it is easy to fix No pain for duplicate inputs and updates

Advantages of Directory Services Information on user ID and password locations for computer systems is centralized Instead of having user IDS and passwords scattered over several systems, they are managed form the central directory service Security is improved because there are much less userIDs and passwords Management of users’ userIDs is much easier for system admins

Advantages of Directory Services The procedure for determining the status and role of an individual in the organization is standardized In a large organization, there will be a number of people that will come and go. It is important to determine the exact status or relationship to the company they represent

Advantages of Directory Services Lookup of names, addresses, phone numbers and other “white pages” information is standardized Lookup of network resources like printers, servers, certificates and other “ yellow pages” information is standardized Centralizing the management of the system will increase reliability and make it easier to keep it up to date

Open Directory Service Solutions- Vendor-specific Directory Service Solution and Open Standards Directory Service Solutions Directory Services- Sun Microsystems NIS+ (Network Information Service Plus) Novell’s NDC (NetWare Directory Service) Microsoft’s Active Directory Open Directory Service Solutions- An Open Solution: X.500 An Open Gateway Service LDAP - the Lightweighted Directory Access Protocal

Microsoft Active Directory Active Directory is the first enterprise-class directory service that is scaleable, built from the ground up using Internet-standard technologies, and fully integrated with the operating system.

Characteristics of Active Directory Hierarchical Organization It uses objects to represent network resources. It uses containers to represent organizations. It organizes information in a tree structure made up of these objects and containers. Object-oriented Storage Different objects can be assigned different attributes. Administrators can assign access privileges to objects Multi-Master Replication Directories can be replicated on different servers and can be maintained locally across the network User can locate resources using the local directory service rather than contact the central domain controller every time as in NT 4.0.

Hierarchical Organization

Object-oriented Storage

Important ADS concepts Workgroup A Windows 2000 workgroup is a logical grouping of networked computers that share resources, such as files and printers, and maintain a local security database, which is a list of user accounts and resource security information for the computer it is on. Domain A Windows 2000 domain is a logical grouping of networked computers that share a central directory database, which contains user accounts and security information for the domain.

Important ADS concepts Domain Tree and Forest A domain tree refers to a hierarchical grouping of domains that share a contiguous namespace, a common schema, and a common global catalog. A domain forest is a collection of two or more domain trees that do not share a contiguous namespace, but do share common schema and global catalog. Namespace A collection of unique domain names.

Important ADS concepts Object and Organizational unit An object is a representation of a network resource, including users, computers, printers, and so forth. Organizational unit is an object that can hold other objects. Multimaster replication The process by which Active Directory domains replicate with each other and resolve conflicting updates. Lightweight Directory Access Protocol (LDAP) An Internet standard by which Active Directory clients and servers communicate.

Benefits of Active Directory Service Simplifies management- Administrators have a single point of management for user accounts, clients, servers and applications Administrators can delegate specific administrative privileges and tasks to individual users and groups to make better use of system administration resources Strengthens security It supports a number of authentication mechanisms used to prove identity upon logon to Windows 2000 It support a fully integrated public key infrastructure and Internet secure protocols to let organizations securely extend selected directory information beyond their firewall to Extranet users and e-commerce customers

Benefits of Active Directory Service Extends interoperatbility Expose all of the Windows 2000 directory features through standards-based interfaces. It provides a development platform for directory-enabled applications. More efficient usage of resources Centralized security control and shared logon information saves the trouble of creating security-admin functions of each specific system Users are exempted of the headache of maintaining multiple security information within a single domain

How to implement ADS LDAP ??? Multi-Platform (Unix, Windows NT, OS2 and IBM mainframes) Multi-Vendor support (Microsoft, Netscape, Sun and Novell) Common standard Centralizes the entry and management of personal data like name, phone number, and supervisor Centralizes the location of user ID and passwords for computer systems Provides the Simple Authentication and Security Layer(SASL) providers, and the Secure Socket Layer(SSL) Protocol Centralizes the procedure for determining the status and role of an individual in the organization Centralizes the lookup of names, addresses, phone numbers and other ‘white page’ information

Summary Directory Services are essential to daily life in a networked world Personal information that is needed for the running of any organization is being kept in many separate systems Centralized directory services can improve productivity and increase security while reducing management overhead