8/26/98The DESY WindowsNT Group1 Windows NT at DESY l Status report l new developments for the automation of administrative tasks l outlook to our preparations.

Slides:



Advertisements
Similar presentations
DIGIDOC A web based tool to Manage Documents. System Overview DigiDoc is a web-based customizable, integrated solution for Business Process Management.
Advertisements

Chapter 20 Oracle Secure Backup.
The VeriTrak Enterprise Application Created for The Verification Company By CTO Source, Inc. This presentation provides an overview of the system and links.
ASGC Site Update Yi-Ping Wu Jeng-Hsueh Wu. Two Significant Researches 1.Oracle Security issues and Studies for 3D 2.Streams Replications Study Report.
Overview of the technology that comprises Attendance Enterprise.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment, Enhanced Chapter 13: Administering Web Resources.
70-293: MCSE Guide to Planning a Microsoft Windows Server 2003 Network, Enhanced Chapter 13: Planning Server and Network Security.
Active Directory: Final Solution to Enterprise System Integration
6/4/2015H. Schwendicke1 Reinhard Baltrusch, Helga Schwendicke, Gunter Trowitzsch Total Virus Defense Licensing Installation Updates Lovesan/
More Control and Flexibility Vitalis Konopelec Technology Solution Professional Microsoft Slovakia s.r.o.
Homework 3.2 Clients Hub What’s wrong with this picture? Clients Using 100TX.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment Chapter 1: Introduction to Windows Server 2003.
Exchange server Mail system Four components Mail user agent (MUA) to read and compose mail Mail transport agent (MTA) route messages Delivery agent.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment Chapter 8: Implementing and Managing Printers.
SLAC HEPNT / HEPIX Meeting October DESY WindowsNT Web-Services Henner Bartels DESY WindowsNT Group.
How Clients and Servers Work Together. Objectives Learn about the interaction of clients and servers Explore the features and functions of Web servers.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment, Enhanced Chapter 8: Implementing and Managing Printers.
MCTS Guide to Microsoft Windows Server 2008 Network Infrastructure Configuration Chapter 8 Introduction to Printers in a Windows Server 2008 Network.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment Chapter 8: Implementing and Managing Printers.
NETOP ONDEMAND What’s new in version 2.1? DECEMBER 09 NETOP ONDEMAND1.
MCTS Guide to Microsoft Windows Server 2008 Network Infrastructure Configuration Chapter 7 Configuring File Services in Windows Server 2008.
Slide 1 of 9 Presenting 24x7 Scheduler The art of computer automation Press PageDown key or click to advance.
12/04/98HEPNT - Windows NT Days1 NT Cluster & MS Dfs Gunter Trowitzsch & DESY WindowsNT Group.
© 2005 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice Advanced Samba Administration Part.
31/10/2000NT Domain - AD Migration - JLab 2000 NT DOMAIN - ACTIVE DIRECTORY MIGRATION Michel Jouvin LAL Orsay
Windows Server MIS 424 Professor Sandvig. Overview Role of servers Performance Requirements Server Hardware Software Windows Server IIS.
Hands-On Microsoft Windows Server 2008 Chapter 1 Introduction to Windows Server 2008.
1 Chapter Overview Network Operating Systems Network Clients Directory Services.
PETS – Power Exchange Trading Software Power Exchange Trading Software for Online Bidding, Billing and much more.
Chapter 7: Using Windows Servers to Share Information.
©Kwan Sai Kit, All Rights Reserved Windows Small Business Server 2003 Features.
1 Guide to Novell NetWare 6.0 Network Administration Chapter 13.
Home Media Network Hard Drive Training for Update to 2.0 By Erik Collett Revised for Firmware Update.
jpasswd A common password change client for Unix and NT Marty Wise Jefferson Lab October, 2000.
Copyright 2000 eMation SECURITY - Controlling Data Access with
SMS 2003 Deployment and Managing Windows Security Rafal Otto Internet Services Group Department of Information Technology CERN 26 May 2016.
70-270: MCSE Guide to Microsoft Windows XP Professional 1 Windows XP Professional User Accounts Designed for use as a network client for: Windows NT Windows.
1 Windows 2008 Configuring Server Roles and Services.
Module 1: Configuring Windows Server Module Overview Describe Windows Server 2008 roles Describe Windows Server 2008 features Describe Windows Server.
1 Chapter Overview Preparing to Upgrade Performing a Version Upgrade from Microsoft SQL Server 7.0 Performing an Online Database Upgrade from SQL Server.
Planning a Microsoft Windows 2000 Administrative Structure Designing default administrative group membership Designing custom administrative groups local.
A Networked Machine Management System 16, 1999.
Chapter 10 Chapter 10: Managing the Distributed File System, Disk Quotas, and Software Installation.
PLANNING A MICROSOFT EXCHANGE SERVER 2003 INFRASTRUCTURE Chapter 2.
Simplify IT Management with AD Scripting Chalermrath K. (MCSE: Security) Jirat B. (MCSE, RHCE) Technology Specialists Microsoft Thailand.
Chapter 11 Working with Credit Card Methods of Processing Credit Cards Preparing for Cyber Cash Authoring a Credit card Transaction.
Core 3: Communication Systems. Network software includes the Network Operating Software (NOS) and also network based applications such as those running.
Configuring and Troubleshooting Identity and Access Solutions with Windows Server® 2008 Active Directory®
1 Chapter Overview Creating Web Sites and FTP Sites Creating Virtual Directories Managing Site Security Troubleshooting IIS.
Introduction to Active Directory
Windows NT at DESY Status report HEP NT 4 th -8 th October 1999 SLAC.
HNC COMPUTING - Network Concepts 1 Network Concepts Network Concepts Network Operating Systems Network Operating Systems.
JLAB Password Security Ian Bird Jefferson Lab HEPiX-SLAC 6 Oct 1999.
Module 1: Introduction to Windows 2000 and Networking.
SAP R/3 User Administration1. 2 User administration in a productive environment is an ongoing process of creating, deleting, changing, and monitoring.
VIRTUAL SERVERS Chapter 7. 2 OVERVIEW Exchange Server 2003 virtual servers Virtual servers in a clustering environment Creating additional virtual servers.
Chapter 7: Using Windows Servers
Basharat Institute of Higher Education
Nithyamoorthy S Core Mind Technologies
Active Directory Administration
Objectives Differentiate between the different editions of Windows Server 2003 Explain Windows Server 2003 network models and server roles Identify concepts.
Printer Admin Print Job Manager
Chapter 27: System Security
Getting Started.
NT Applications Support – Status and Future Developments
Getting Started.
System Management in a Windows based Control Environment
Windows Server Administration Fundamentals
A Scripting Server for Domain Automation Tasks
Unit 6 NT1330 Client-Server Networking II Date: 7/19/2016
Presentation transcript:

8/26/98The DESY WindowsNT Group1 Windows NT at DESY l Status report l new developments for the automation of administrative tasks l outlook to our preparations

DESY 8/26/98The DESY WindowsNT Group2 Summary - Domain Structure l one domain model l DESY group structure in the flat NT4 name space n special naming conventions n 40 living groups n group administrators n TEM is used for user/group administration n NetInstall is used for the application support

DESY 8/26/98The DESY WindowsNT Group3 Summary - (central) Infrastructure 1 PDC 2 BDC (Hamburg + Zeuthen) 1 Home Directory Server Cluster at Hamburg 1 Server at Zeuthen 2 nodes plus 70 GByte RAID3/5 32 GByte RAID 1 Application Server Cluster at Hamburg 1 Server at Zeuthen 2 nodes plus 35 Gbyte RAID3/5 16 GByte SW RAID 1 Mail Server 2 Print Server (Hamburg + Zeuthen) 1 Utility Server, 1 IIS, 1 Dfs Server 2 WINS (Hamburg + Zeuthen)

DESY 8/26/98The DESY WindowsNT Group4 NEWS l statistics n ~ 800 NT clients (active on the domain during last 2 month) n 1300 registered users n nearly 600 daily active users/PC’s (connected to central servers) l NetInstall in production since mid of May Yellow n 200 Yellow Green n 60 Green l Mail Server in production l Application/Script Server

DESY 8/26/98The DESY WindowsNT Group5 Workstations online

DESY 8/26/98The DESY WindowsNT Group6 Connections during the day

DESY 8/26/98The DESY WindowsNT Group7 Users on Home Directory Servers

DESY 8/26/98The DESY WindowsNT Group8 NetInstall Status l Production environment just now with 200 and 60 active workstations l To get simple access and support for central services the NI environment is necessary. basic setup: Perl, Scripting Host, userconfig., home directory setup l Problems with the green setup remote support, helpdesk, complicated package setup l HERA controls and Zeuthen with own NI databases replicated from the central ASG-DB plus own packages l Migration to NI5 in Autumn hierarchical databases, multiple servers internal replication,…., still SMS compliant ----> the right time to jump on

DESY 8/26/98The DESY WindowsNT Group9 NT Mail l in production since April/Mai n IMAP server from UW V n the MTA is sendmail V8.8.6 n the client is Netscape Communicator V4.05 l problems with the logging scheme of the inbox n sendmail is not able to append new mail on an open inbox n workaround under test l a possible migration to PMDF is in discussion (end of the year)

DESY 8/26/98The DESY WindowsNT Group10 Domain automation - the tasks l Tasks for group administrators n most of them handled with the TEM n user account maintenance (password reset, management of parts of the user environment like mail forwarding, user registry updates, …) n group management l more global tasks n creating new user accounts (embedded in the common DESY user registry) n creating new global user groups n moving users (homedir’s) between servers and/or groups n moving group file systems/shares between servers n Dfs maintenance n print server maintenance

DESY 8/26/98The DESY WindowsNT Group11 Domain automation - the problems l Most of the scripts and programs must run under a domain administrator account. l The responsible persons to do the jobs are normal users without special privileges, perhaps group admins. l Security has to be guaranteed over the whole process n authentication n user rights - who is allowed to do what l Integrity of the systems has to be guaranteed n job/task control (to execute it at the right place and time) n checks for parameters

DESY 8/26/98The DESY WindowsNT Group12 Domain automation - approach l Core of the solution will be the MS Transaction Server l The access should be flexible as much as possible n normally from a web browser over the IIS n direct by special applications n independent from programming and script languages l simple and central management/maintenance n central management of the jobs/tasks - one configuration file n access control by the help of the transaction server

DESY 8/26/98The DESY WindowsNT Group13 Domain automation - scheme IIS Transaction Server Script / Program Execution.DLL Client indirect - via SSL Client direct Configuration File DomainAuto.cfg Roles ASP

DESY 8/26/98The DESY WindowsNT Group14 IIS & Transaction Server l Why accessing the IIS via SSL? n Necessary to ensure secure access and authentication over the LAN/internet - “password” security Level is required n Certificate Authority - self made, planed to become sub CA from DFN (CERT) l DCOM interface is used to access the transaction server n Authentication is done automatically (NTLM-A.) n Packet privacy is used n Object and functions are defined by the DLL added to the transaction server Set scriptObj = CreateObject(“DomainAuto.DomainAuto.1”) scriptObj.InvokeScript (“scripname”, “param1 param2”)

DESY 8/26/98The DESY WindowsNT Group15 Inside the MTS %WINDIR%\system32\DomainAuto.cfg #comment #format: (separator = tab) #ScriptName Script Role Flag0/1 DeleteComputer C:\scripts\dc.bat RoleDC 1 # DeleteUser C:\scripts\du.bat Admins 0 Set obj = CreateObject(“DomainAuto.DomainAuto.1”). obj.InvokeScript(“DeleteUser”,”name..”) Roles RoleDC: GroupAdm usg_ Scripts Admins: DomainAdmins C:\scripts\dc.bat C:\scripts\du.bat

DESY 8/26/98The DESY WindowsNT Group16 NT5 preparations l first steps n setup of a test domain n planing of requirements n task list l Usage of Technology already available n IIS n Transaction Server

DESY 8/26/98The DESY WindowsNT Group17 The DESY WindowsNT Group l Henner Bartels fulltime) l Volker Heynen l Ernst-Axel Knabbe l Wolfgang Krechlok l Klaus-Dieter Perger fulltime) l Rolf Rettinger l Helga Schwendicke l Cristian Trachimow l Gunter Trowitzsch