11 MANAGING USERS AND GROUPS Chapter 13. Chapter 13: MANAGING USERS AND GROUPS2 OVERVIEW  Configure and manage user accounts  Manage user account properties.

Slides:



Advertisements
Similar presentations
Managing User, Computer and Group Accounts
Advertisements

Chapter Five Users, Groups, Profiles, and Policies.
Module 6: Configuring Windows XP Professional to Operate in a Microsoft Network.
Lesson 17: Configuring Security Policies
Module 4: Implementing User, Group, and Computer Accounts
MCDST : Supporting Users and Troubleshooting a Microsoft Windows XP Operating System Chapter 6: Configure and Troubleshoot Local User and Group Accounts.
Chapter 5: Configuring Users and Groups. Types of User Accounts Administrator –Unrestricted access to performing administrative tasks –Use sparingly Standard.
11 SUPPORTING LOCAL USERS AND GROUPS Chapter 3. Chapter 3: Supporting Local Users and Groups2 SUPPORTING LOCAL USERS AND GROUPS  Explain the difference.
LAN Management © Abdou Illia, Spring 2007 School of Business Eastern Illinois University 3/6/2007 Lab.
Hands-On Microsoft Windows Server 2003 Administration Chapter 3 Administering Active Directory.
Chapter 5: Configuring Users and Groups. Windows Vista User Accounts User accounts are the primary means of authentication Built-in Accounts –Administrator:
Chapter 8 Chapter 8: Managing the Server Through Accounts and Groups.
11 WORKING WITH COMPUTER ACCOUNTS Chapter 8. Chapter 8: WORKING WITH COMPUTER ACCOUNTS2 CHAPTER OVERVIEW  Describe the process of adding a computer to.
11 WORKING WITH COMPUTER ACCOUNTS Chapter 8. Chapter 8: WORKING WITH COMPUTER ACCOUNTS2 CHAPTER OVERVIEW Describe the process of adding a computer to.
1 Chapter Overview Creating User and Computer Objects Maintaining User Accounts Creating User Profiles.
Creating and Managing User Accounts. Overview Introduction to User Accounts Guidelines for New User Accounts Creating Local User Accounts Creating and.
Chapter 7 WORKING WITH GROUPS.
11 WORKING WITH USER ACCOUNTS Chapter 6. Chapter 6: WORKING WITH USER ACCOUNTS2 CHAPTER OVERVIEW Understand the differences between local user and domain.
Active Directory Administration Lesson 5. Skills Matrix Technology SkillObjective DomainObjective # Creating Users, Computers, and Groups Automate creation.
Module 2 Creating Active Directory ® Domain Services User and Computer Objects.
70-270: MCSE Guide to Microsoft Windows XP Professional Chapter 5: Users, Groups, Profiles, and Policies.
Understanding Workgroups and Active Directory Lesson 3.
Web Server Administration Chapter 5 Managing a Server.
Working with Workgroups and Domains
September 18, 2002 Introduction to Windows 2000 Server Components Ryan Larson David Greer.
1 Group Account Administration Introduction to Groups Planning a Group Strategy Creating Groups Understanding Default Groups Groups for Administrators.
CN1276 Server (V3) Kemtis Kunanuraksapong MSIS with Distinction MCT, MCTS, MCDST, MCP, A+
CN1260 Client Operating System Kemtis Kunanuraksapong MSIS with Distinction MCT, MCITP, MCTS, MCDST, MCP, A+
1 User Account Administration Introduction to User Accounts Planning New User Accounts Creating User Accounts Creating User Profiles Creating Home Directories.
Managing User Accounts, Passwords and Logon Chapter 5 powered by dj.
User Manager for Domains.  Manages the user accounts in a domain  It is located in the PDC  While User Manager exists in each NT machine, but it is.
5.1 © 2004 Pearson Education, Inc. Lesson 5: Administering User Accounts Exam Microsoft® Windows® 2000 Directory Services Infrastructure Goals 
Module 6: Designing Active Directory Security in Windows Server 2008.
Module 10: Configuring Windows XP Professional to Operate in Microsoft Networks.
Windows Server 2003 Overview 1 Windows 2003 Server Overview Ayaz
1 Chapter Overview Configuring Account Policies Configuring User Rights Configuring Security Options Configuring Internet Options.
Chapter 13 Users, Groups Profiles and Policies. Learning Objectives Understand Windows XP Professional user accounts Understand the different types of.
Active Directory Administration Lesson 5. Skills Matrix Technology SkillObjective DomainObjective # Creating Users, Computers, and Groups Automate creation.
© Wiley Inc All Rights Reserved. MCSE: Windows Server 2003 Active Directory Planning, Implementation, and Maintenance Study Guide, Second Edition.
70-270: MCSE Guide to Microsoft Windows XP Professional 1 Windows XP Professional User Accounts Designed for use as a network client for: Windows NT Windows.
Introduction to Microsoft Management Console (MMC) MMC is a common console framework for management applications. MMC provides a common environment for.
1 Chapter Overview Understanding User Accounts Planning New User Accounts Creating, Modifying, and Deleting User Accounts Setting Properties for User Accounts.
Security Windows 2000 Richard Goldman © December 4, 2001.
Chapter 10: Rights, User, and Group Administration.
Working with Workgroups and Domains Lesson 9. Objectives Understand users and groups Create and manage local users and groups Understand the difference.
Working with Users and Groups Lesson 5. Skills Matrix Technology SkillObjective DomainObjective # Introducing User Account Control Configure and troubleshoot.
Page 1 User Accounts Lecture 3 Hassan Shuja 09/21/2004.
Managing Local Users & Groups. OVERVIEW Configure and manage user accounts Manage user account properties Manage user and group rights Configure user.
Fall 2011 Nassau Community College ITE153 – Operating Systems Session 21 Administering User Accounts and Groups 1.
NetTech Solutions Supporting Local Users and Groups Lesson Three.
NetTech Solutions Security and Security Permissions Lesson Nine.
Week 4 Objectives Overview of Group Policy Group Policy Processing Implementing a Central Store for Administrative Templates.
Working with Users and Groups Lesson 5. Skills Matrix Technology SkillObjective DomainObjective # Introducing User Account Control Configure and troubleshoot.
CHAPTER 5 MANAGING USER ACCOUNTS & GROUPS. User Accounts Windows 95, 98 & Me do not need a user account like Windows XP Professional to access computer.
Operating Systems Concepts 1/e Ruth Watson Chapter 9 Chapter 9 Accounts and Groups Ruth Watson.
Chapter 7 Server Management Policies –User accounts –Groups Rights and permissions Examples.
1 Chapter Overview Using Group Objects Understanding Default Groups Creating Group Objects Managing Administrative Access.
Understanding Security Policies Lesson 3. Objectives.
6/19/2016 أساسيات الأتصال و الشبكات Communication & Networks Fundamentals lab 4.
Configuring the User and Computer Environment Using Group Policy Lesson 8.
Guide to Operating Systems, 5th Edition
Understanding Security Policies
Nassau Community College
Assignment # 8.
ACTIVE DIRECTORY ADMINISTRATION
Active Directory Administration
Creating and Managing User Accounts
BACHELOR’S THESIS DEFENSE
Presentation transcript:

11 MANAGING USERS AND GROUPS Chapter 13

Chapter 13: MANAGING USERS AND GROUPS2 OVERVIEW  Configure and manage user accounts  Manage user account properties  Manage user and group rights  Configure user account policy  Manage and troubleshoot cached credentials  Configure and manage user accounts  Manage user account properties  Manage user and group rights  Configure user account policy  Manage and troubleshoot cached credentials

Chapter 13: MANAGING USERS AND GROUPS3 USER ACCOUNTS  Identify users to the system and to each other  Used to grant access to resources  Collect information about users  Identify users to the system and to each other  Used to grant access to resources  Collect information about users

Chapter 13: MANAGING USERS AND GROUPS4 GROUPS  Collections of user accounts  Simplify access to resources  Can be used for security and messaging (Active Directory)  Collections of user accounts  Simplify access to resources  Can be used for security and messaging (Active Directory)

Chapter 13: MANAGING USERS AND GROUPS5 BUILT-IN USER ACCOUNTS  Configured during setup  Used for administration or guest access  Can be renamed but not deleted  Configured during setup  Used for administration or guest access  Can be renamed but not deleted

Chapter 13: MANAGING USERS AND GROUPS6 BUILT-IN GROUPS  Created during setup  Designed for specific use or administrative roles  User accounts can be added as members  Built-in user accounts cannot be removed  Created during setup  Designed for specific use or administrative roles  User accounts can be added as members  Built-in user accounts cannot be removed

Chapter 13: MANAGING USERS AND GROUPS7 IMPLICIT GROUPS  Membership can change dynamically  Do not appear in user administration tools  Used to grant permissions based on circumstances  Membership can change dynamically  Do not appear in user administration tools  Used to grant permissions based on circumstances

Chapter 13: MANAGING USERS AND GROUPS8 SERVICE ACCOUNTS  Grant services access to system resources  Include built-in and user-defined accounts  Require special accommodations  Grant services access to system resources  Include built-in and user-defined accounts  Require special accommodations

Chapter 13: MANAGING USERS AND GROUPS9 DOMAIN ACCOUNTS AND GROUPS  Include built-in and user-defined accounts and groups  Provide logon and resource access to local system  Can be placed into local groups  Include built-in and user-defined accounts and groups  Provide logon and resource access to local system  Can be placed into local groups

Chapter 13: MANAGING USERS AND GROUPS10 LOCAL USERS AND GROUPS

Chapter 13: MANAGING USERS AND GROUPS11 CONTROL PANEL USER ACCOUNTS

Chapter 13: MANAGING USERS AND GROUPS12 ACTIVE DIRECTORY USERS AND COMPUTERS

Chapter 13: MANAGING USERS AND GROUPS13 MANAGING USERS WITH NET.EXE

Chapter 13: MANAGING USERS AND GROUPS14 PLANNING USERS AND GROUPS

Chapter 13: MANAGING USERS AND GROUPS15 USER ACCOUNT NAMING CONVENTIONS

Chapter 13: MANAGING USERS AND GROUPS16 PASSWORD COMPLEXITY  Create passphrases  Use uppercase, lowercase, and nonalphanumeric characters  Consider enforcing complexity with Group Policy  Create passphrases  Use uppercase, lowercase, and nonalphanumeric characters  Consider enforcing complexity with Group Policy

Chapter 13: MANAGING USERS AND GROUPS17 CHANGING HOW USERS LOG ON OR LOG OFF

Chapter 13: MANAGING USERS AND GROUPS18 MANAGING USERS WITH LOCAL USERS AND GROUPS

Chapter 13: MANAGING USERS AND GROUPS19 MANAGING GROUPS WITH LOCAL USERS AND GROUPS

Chapter 13: MANAGING USERS AND GROUPS20 MANAGING GROUPS WITH NET.EXE

Chapter 13: MANAGING USERS AND GROUPS21 MANAGING USERS WITH USER ACCOUNTS

Chapter 13: MANAGING USERS AND GROUPS22 USER MANAGEMENT BEST PRACTICES  Give administrators a limited account for nonadministrative use  Limit the number of users in the Administrators group  Rename or disable the Administrator account  Rename and leave the Guest account disabled  Observe the principle of least privilege  Give administrators a limited account for nonadministrative use  Limit the number of users in the Administrators group  Rename or disable the Administrator account  Rename and leave the Guest account disabled  Observe the principle of least privilege

Chapter 13: MANAGING USERS AND GROUPS23 MANAGING USER RIGHTS ASSIGNMENTS

Chapter 13: MANAGING USERS AND GROUPS24 MANAGING PASSWORD POLICY

Chapter 13: MANAGING USERS AND GROUPS25 MANAGING ACCOUNT LOCKOUT POLICY

Chapter 13: MANAGING USERS AND GROUPS26 CACHED CREDENTIALS  Cache users’ logon information for offline authentication  User must log on to the domain at least once  Can be disabled to force logons to use domain  Cache users’ logon information for offline authentication  User must log on to the domain at least once  Can be disabled to force logons to use domain

Chapter 13: MANAGING USERS AND GROUPS27 MANAGING CACHED CREDENTIALS

Chapter 13: MANAGING USERS AND GROUPS28 TROUBLESHOOTING CACHED CREDENTIALS  Cached credentials are out of date  User does not have credentials cached  Cached credentials are disabled on a notebook computer  Cached credentials are out of date  User does not have credentials cached  Cached credentials are disabled on a notebook computer

Chapter 13: MANAGING USERS AND GROUPS29 SUMMARY  User accounts help manage resource access.  User groups simplify administration.  Naming conventions uniquely identify users.  Complex passwords strengthen security.  Cached credentials allow access when the domain is unavailable.  User accounts help manage resource access.  User groups simplify administration.  Naming conventions uniquely identify users.  Complex passwords strengthen security.  Cached credentials allow access when the domain is unavailable.